Lucene search

K
ubuntuUbuntuUSN-1919-1
HistoryJul 29, 2013 - 12:00 a.m.

Linux kernel vulnerability

2013-07-2900:00:00
ubuntu.com
60

CVSS2

7.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:N/I:N/A:C

AI Score

5.8

Confidence

High

EPSS

0.015

Percentile

87.2%

Releases

  • Ubuntu 13.04

Packages

  • linux - Linux kernel

Details

Kees Cook discovered a format string vulnerability in the Broadcom B43
wireless driver for the Linux kernel. A local user could exploit this flaw
to gain administrative privileges. (CVE-2013-2852)

Marcus Moeller and Ken Fallon discovered that the CIFS incorrectly built
certain paths. A local attacker with access to a CIFS partition could
exploit this to crash the system, leading to a denial of service.
(CVE-2013-4247)

CVSS2

7.8

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:N/I:N/A:C

AI Score

5.8

Confidence

High

EPSS

0.015

Percentile

87.2%