USN-3016-1

See a problem?
Source
https://ubuntu.com/security/notices/USN-3016-1
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-3016-1.json
JSON Data
https://api.osv.dev/v1/vulns/USN-3016-1
Related
Published
2016-06-27T19:46:50.896008Z
Modified
2016-06-27T19:46:50.896008Z
Summary
linux vulnerabilities
Details

Jesse Hertz and Tim Newsham discovered that the Linux netfilter implementation did not correctly perform validation when handling 32 bit compatibility IPTSOSET_REPLACE events on 64 bit platforms. A local unprivileged attacker could use this to cause a denial of service (system crash) or execute arbitrary code with administrative privileges. (CVE-2016-4997)

Kangjie Lu discovered an information leak in the core USB implementation in the Linux kernel. A local attacker could use this to obtain potentially sensitive information from kernel memory. (CVE-2016-4482)

Kangjie Lu discovered an information leak in the timer handling implementation in the Advanced Linux Sound Architecture (ALSA) subsystem of the Linux kernel. A local attacker could use this to obtain potentially sensitive information from kernel memory. (CVE-2016-4569, CVE-2016-4578)

Kangjie Lu discovered an information leak in the X.25 Call Request handling in the Linux kernel. A local attacker could use this to obtain potentially sensitive information from kernel memory. (CVE-2016-4580)

It was discovered that an information leak exists in the Rock Ridge implementation in the Linux kernel. A local attacker who is able to mount a malicious iso9660 file system image could exploit this flaw to obtain potentially sensitive information from kernel memory. (CVE-2016-4913)

Baozeng Ding discovered that the Transparent Inter-process Communication (TIPC) implementation in the Linux kernel did not verify socket existence before use in some situations. A local attacker could use this to cause a denial of service (system crash). (CVE-2016-4951)

Jesse Hertz and Tim Newsham discovered that the Linux netfilter implementation did not correctly perform validation when handling IPTSOSET_REPLACE events. A local unprivileged attacker could use this to cause a denial of service (system crash) or obtain potentially sensitive information from kernel memory. (CVE-2016-4998)

References

Affected packages

Ubuntu:16.04:LTS / linux

Package

Name
linux
Purl
pkg:deb/ubuntu/linux@4.4.0-28.47?arch=src?distro=xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.4.0-28.47

Affected versions

4.*

4.2.0-16.19
4.2.0-17.21
4.2.0-19.23
4.3.0-1.10
4.3.0-2.11
4.3.0-5.16
4.3.0-6.17
4.3.0-7.18
4.4.0-2.16
4.4.0-4.19
4.4.0-6.21
4.4.0-7.22
4.4.0-8.23
4.4.0-9.24
4.4.0-10.25
4.4.0-11.26
4.4.0-12.28
4.4.0-13.29
4.4.0-14.30
4.4.0-15.31
4.4.0-16.32
4.4.0-17.33
4.4.0-18.34
4.4.0-21.37
4.4.0-22.39
4.4.0-22.40
4.4.0-24.43

Ecosystem specific

{
    "availability": "No subscription required",
    "binaries": [
        {
            "md-modules-4.4.0-28-generic-lpae-di": "4.4.0-28.47",
            "block-modules-4.4.0-28-generic-lpae-di": "4.4.0-28.47",
            "fs-core-modules-4.4.0-28-generic-di": "4.4.0-28.47",
            "nic-shared-modules-4.4.0-28-generic-lpae-di": "4.4.0-28.47",
            "pata-modules-4.4.0-28-powerpc64-smp-di": "4.4.0-28.47",
            "linux-source-4.4.0": "4.4.0-28.47",
            "linux-headers-4.4.0-28-lowlatency": "4.4.0-28.47",
            "linux-image-4.4.0-28-generic-lpae-dbgsym": "4.4.0-28.47",
            "block-modules-4.4.0-28-powerpc-e500mc-di": "4.4.0-28.47",
            "nic-shared-modules-4.4.0-28-powerpc-smp-di": "4.4.0-28.47",
            "ppp-modules-4.4.0-28-generic-di": "4.4.0-28.47",
            "vlan-modules-4.4.0-28-generic-di": "4.4.0-28.47",
            "block-modules-4.4.0-28-powerpc64-smp-di": "4.4.0-28.47",
            "ipmi-modules-4.4.0-28-powerpc-e500mc-di": "4.4.0-28.47",
            "linux-image-4.4.0-28-powerpc64-emb": "4.4.0-28.47",
            "nic-pcmcia-modules-4.4.0-28-generic-di": "4.4.0-28.47",
            "storage-core-modules-4.4.0-28-powerpc64-smp-di": "4.4.0-28.47",
            "fat-modules-4.4.0-28-powerpc64-smp-di": "4.4.0-28.47",
            "ppp-modules-4.4.0-28-generic-lpae-di": "4.4.0-28.47",
            "linux-tools-4.4.0-28": "4.4.0-28.47",
            "plip-modules-4.4.0-28-powerpc-smp-di": "4.4.0-28.47",
            "block-modules-4.4.0-28-generic-di": "4.4.0-28.47",
            "plip-modules-4.4.0-28-generic-lpae-di": "4.4.0-28.47",
            "nic-usb-modules-4.4.0-28-generic-di": "4.4.0-28.47",
            "linux-headers-4.4.0-28-powerpc64-emb": "4.4.0-28.47",
            "md-modules-4.4.0-28-powerpc-e500mc-di": "4.4.0-28.47",
            "mouse-modules-4.4.0-28-powerpc64-smp-di": "4.4.0-28.47",
            "nic-modules-4.4.0-28-powerpc64-smp-di": "4.4.0-28.47",
            "ppp-modules-4.4.0-28-powerpc-smp-di": "4.4.0-28.47",
            "speakup-modules-4.4.0-28-powerpc64-smp-di": "4.4.0-28.47",
            "fat-modules-4.4.0-28-generic-di": "4.4.0-28.47",
            "virtio-modules-4.4.0-28-powerpc64-smp-di": "4.4.0-28.47",
            "linux-cloud-tools-4.4.0-28-lowlatency": "4.4.0-28.47",
            "linux-headers-4.4.0-28-powerpc-smp": "4.4.0-28.47",
            "squashfs-modules-4.4.0-28-generic-lpae-di": "4.4.0-28.47",
            "ppp-modules-4.4.0-28-powerpc-e500mc-di": "4.4.0-28.47",
            "serial-modules-4.4.0-28-generic-di": "4.4.0-28.47",
            "plip-modules-4.4.0-28-generic-di": "4.4.0-28.47",
            "linux-image-4.4.0-28-generic": "4.4.0-28.47",
            "usb-modules-4.4.0-28-powerpc-e500mc-di": "4.4.0-28.47",
            "linux-image-4.4.0-28-powerpc64-smp-dbgsym": "4.4.0-28.47",
            "linux-image-4.4.0-28-powerpc-e500mc": "4.4.0-28.47",
            "vlan-modules-4.4.0-28-powerpc-e500mc-di": "4.4.0-28.47",
            "parport-modules-4.4.0-28-generic-di": "4.4.0-28.47",
            "input-modules-4.4.0-28-powerpc-e500mc-di": "4.4.0-28.47",
            "ipmi-modules-4.4.0-28-powerpc64-smp-di": "4.4.0-28.47",
            "nic-modules-4.4.0-28-generic-di": "4.4.0-28.47",
            "vlan-modules-4.4.0-28-powerpc-smp-di": "4.4.0-28.47",
            "dasd-modules-4.4.0-28-generic-di": "4.4.0-28.47",
            "linux-image-4.4.0-28-powerpc64-smp": "4.4.0-28.47",
            "nfs-modules-4.4.0-28-generic-lpae-di": "4.4.0-28.47",
            "linux-cloud-tools-common": "4.4.0-28.47",
            "linux-image-4.4.0-28-lowlatency-dbgsym": "4.4.0-28.47",
            "storage-core-modules-4.4.0-28-powerpc-smp-di": "4.4.0-28.47",
            "fb-modules-4.4.0-28-generic-di": "4.4.0-28.47",
            "linux-libc-dev": "4.4.0-28.47",
            "pata-modules-4.4.0-28-powerpc-smp-di": "4.4.0-28.47",
            "nfs-modules-4.4.0-28-powerpc64-smp-di": "4.4.0-28.47",
            "irda-modules-4.4.0-28-generic-lpae-di": "4.4.0-28.47",
            "pcmcia-modules-4.4.0-28-generic-di": "4.4.0-28.47",
            "vlan-modules-4.4.0-28-generic-lpae-di": "4.4.0-28.47",
            "scsi-modules-4.4.0-28-powerpc64-smp-di": "4.4.0-28.47",
            "squashfs-modules-4.4.0-28-powerpc64-smp-di": "4.4.0-28.47",
            "fs-secondary-modules-4.4.0-28-generic-lpae-di": "4.4.0-28.47",
            "linux-cloud-tools-4.4.0-28-dbgsym": "4.4.0-28.47",
            "scsi-modules-4.4.0-28-powerpc-smp-di": "4.4.0-28.47",
            "sata-modules-4.4.0-28-powerpc-e500mc-di": "4.4.0-28.47",
            "sata-modules-4.4.0-28-powerpc-smp-di": "4.4.0-28.47",
            "multipath-modules-4.4.0-28-generic-lpae-di": "4.4.0-28.47",
            "nic-shared-modules-4.4.0-28-generic-di": "4.4.0-28.47",
            "multipath-modules-4.4.0-28-powerpc64-smp-di": "4.4.0-28.47",
            "kernel-image-4.4.0-28-generic-lpae-di": "4.4.0-28.47",
            "vlan-modules-4.4.0-28-powerpc64-smp-di": "4.4.0-28.47",
            "nic-shared-modules-4.4.0-28-powerpc-e500mc-di": "4.4.0-28.47",
            "fs-secondary-modules-4.4.0-28-generic-di": "4.4.0-28.47",
            "linux-headers-4.4.0-28-generic-lpae": "4.4.0-28.47",
            "linux-headers-4.4.0-28": "4.4.0-28.47",
            "linux-udebs-powerpc-smp": "4.4.0-28.47",
            "speakup-modules-4.4.0-28-powerpc-smp-di": "4.4.0-28.47",
            "irda-modules-4.4.0-28-generic-di": "4.4.0-28.47",
            "linux-image-4.4.0-28-powerpc-smp": "4.4.0-28.47",
            "nic-usb-modules-4.4.0-28-powerpc64-smp-di": "4.4.0-28.47",
            "linux-image-4.4.0-28-lowlatency": "4.4.0-28.47",
            "linux-image-4.4.0-28-generic-lpae": "4.4.0-28.47",
            "ppp-modules-4.4.0-28-powerpc64-smp-di": "4.4.0-28.47",
            "linux-tools-4.4.0-28-generic-lpae": "4.4.0-28.47",
            "fs-secondary-modules-4.4.0-28-powerpc64-smp-di": "4.4.0-28.47",
            "pcmcia-storage-modules-4.4.0-28-generic-di": "4.4.0-28.47",
            "storage-core-modules-4.4.0-28-generic-lpae-di": "4.4.0-28.47",
            "linux-tools-common": "4.4.0-28.47",
            "usb-modules-4.4.0-28-generic-di": "4.4.0-28.47",
            "squashfs-modules-4.4.0-28-powerpc-e500mc-di": "4.4.0-28.47",
            "block-modules-4.4.0-28-powerpc-smp-di": "4.4.0-28.47",
            "nfs-modules-4.4.0-28-generic-di": "4.4.0-28.47",
            "linux-headers-4.4.0-28-generic": "4.4.0-28.47",
            "nfs-modules-4.4.0-28-powerpc-smp-di": "4.4.0-28.47",
            "linux-image-4.4.0-28-powerpc64-emb-dbgsym": "4.4.0-28.47",
            "nic-usb-modules-4.4.0-28-generic-lpae-di": "4.4.0-28.47",
            "dasd-extra-modules-4.4.0-28-generic-di": "4.4.0-28.47",
            "firewire-core-modules-4.4.0-28-powerpc64-smp-di": "4.4.0-28.47",
            "linux-tools-4.4.0-28-powerpc-e500mc": "4.4.0-28.47",
            "mouse-modules-4.4.0-28-generic-di": "4.4.0-28.47",
            "plip-modules-4.4.0-28-powerpc-e500mc-di": "4.4.0-28.47",
            "fat-modules-4.4.0-28-powerpc-e500mc-di": "4.4.0-28.47",
            "ipmi-modules-4.4.0-28-generic-di": "4.4.0-28.47",
            "crypto-modules-4.4.0-28-generic-lpae-di": "4.4.0-28.47",
            "multipath-modules-4.4.0-28-powerpc-e500mc-di": "4.4.0-28.47",
            "input-modules-4.4.0-28-generic-lpae-di": "4.4.0-28.47",
            "linux-udebs-generic": "4.4.0-28.47",
            "parport-modules-4.4.0-28-powerpc64-smp-di": "4.4.0-28.47",
            "nic-shared-modules-4.4.0-28-powerpc64-smp-di": "4.4.0-28.47",
            "parport-modules-4.4.0-28-generic-lpae-di": "4.4.0-28.47",
            "fat-modules-4.4.0-28-generic-lpae-di": "4.4.0-28.47",
            "floppy-modules-4.4.0-28-generic-di": "4.4.0-28.47",
            "linux-tools-4.4.0-28-powerpc-smp": "4.4.0-28.47",
            "nic-modules-4.4.0-28-powerpc-smp-di": "4.4.0-28.47",
            "firewire-core-modules-4.4.0-28-generic-di": "4.4.0-28.47",
            "fat-modules-4.4.0-28-powerpc-smp-di": "4.4.0-28.47",
            "irda-modules-4.4.0-28-powerpc64-smp-di": "4.4.0-28.47",
            "input-modules-4.4.0-28-generic-di": "4.4.0-28.47",
            "scsi-modules-4.4.0-28-generic-di": "4.4.0-28.47",
            "crypto-modules-4.4.0-28-powerpc-smp-di": "4.4.0-28.47",
            "usb-modules-4.4.0-28-generic-lpae-di": "4.4.0-28.47",
            "irda-modules-4.4.0-28-powerpc-e500mc-di": "4.4.0-28.47",
            "nic-usb-modules-4.4.0-28-powerpc-e500mc-di": "4.4.0-28.47",
            "multipath-modules-4.4.0-28-powerpc-smp-di": "4.4.0-28.47",
            "linux-udebs-powerpc-e500mc": "4.4.0-28.47",
            "nic-modules-4.4.0-28-powerpc-e500mc-di": "4.4.0-28.47",
            "floppy-modules-4.4.0-28-powerpc-e500mc-di": "4.4.0-28.47",
            "linux-udebs-powerpc64-smp": "4.4.0-28.47",
            "fs-core-modules-4.4.0-28-powerpc64-smp-di": "4.4.0-28.47",
            "linux-image-extra-4.4.0-28-generic": "4.4.0-28.47",
            "fs-core-modules-4.4.0-28-powerpc-e500mc-di": "4.4.0-28.47",
            "nic-usb-modules-4.4.0-28-powerpc-smp-di": "4.4.0-28.47",
            "crypto-modules-4.4.0-28-powerpc-e500mc-di": "4.4.0-28.47",
            "linux-image-4.4.0-28-powerpc-smp-dbgsym": "4.4.0-28.47",
            "mouse-modules-4.4.0-28-powerpc-smp-di": "4.4.0-28.47",
            "usb-modules-4.4.0-28-powerpc-smp-di": "4.4.0-28.47",
            "input-modules-4.4.0-28-powerpc-smp-di": "4.4.0-28.47",
            "usb-modules-4.4.0-28-powerpc64-smp-di": "4.4.0-28.47",
            "kernel-image-4.4.0-28-powerpc-e500mc-di": "4.4.0-28.47",
            "kernel-image-4.4.0-28-generic-di": "4.4.0-28.47",
            "linux-tools-4.4.0-28-generic": "4.4.0-28.47",
            "linux-tools-4.4.0-28-powerpc64-smp": "4.4.0-28.47",
            "irda-modules-4.4.0-28-powerpc-smp-di": "4.4.0-28.47",
            "message-modules-4.4.0-28-powerpc64-smp-di": "4.4.0-28.47",
            "parport-modules-4.4.0-28-powerpc-e500mc-di": "4.4.0-28.47",
            "md-modules-4.4.0-28-generic-di": "4.4.0-28.47",
            "sata-modules-4.4.0-28-powerpc64-smp-di": "4.4.0-28.47",
            "linux-image-4.4.0-28-powerpc-e500mc-dbgsym": "4.4.0-28.47",
            "linux-tools-4.4.0-28-lowlatency": "4.4.0-28.47",
            "linux-headers-4.4.0-28-powerpc64-smp": "4.4.0-28.47",
            "linux-cloud-tools-4.4.0-28": "4.4.0-28.47",
            "message-modules-4.4.0-28-powerpc-e500mc-di": "4.4.0-28.47",
            "fs-secondary-modules-4.4.0-28-powerpc-e500mc-di": "4.4.0-28.47",
            "firewire-core-modules-4.4.0-28-powerpc-smp-di": "4.4.0-28.47",
            "linux-cloud-tools-4.4.0-28-generic": "4.4.0-28.47",
            "storage-core-modules-4.4.0-28-generic-di": "4.4.0-28.47",
            "kernel-image-4.4.0-28-powerpc-smp-di": "4.4.0-28.47",
            "message-modules-4.4.0-28-generic-di": "4.4.0-28.47",
            "linux-doc": "4.4.0-28.47",
            "virtio-modules-4.4.0-28-powerpc-e500mc-di": "4.4.0-28.47",
            "input-modules-4.4.0-28-powerpc64-smp-di": "4.4.0-28.47",
            "mouse-modules-4.4.0-28-generic-lpae-di": "4.4.0-28.47",
            "message-modules-4.4.0-28-powerpc-smp-di": "4.4.0-28.47",
            "linux-headers-4.4.0-28-powerpc-e500mc": "4.4.0-28.47",
            "mouse-modules-4.4.0-28-powerpc-e500mc-di": "4.4.0-28.47",
            "squashfs-modules-4.4.0-28-powerpc-smp-di": "4.4.0-28.47",
            "scsi-modules-4.4.0-28-generic-lpae-di": "4.4.0-28.47",
            "virtio-modules-4.4.0-28-generic-di": "4.4.0-28.47",
            "md-modules-4.4.0-28-powerpc-smp-di": "4.4.0-28.47",
            "nfs-modules-4.4.0-28-powerpc-e500mc-di": "4.4.0-28.47",
            "crypto-modules-4.4.0-28-powerpc64-smp-di": "4.4.0-28.47",
            "pata-modules-4.4.0-28-powerpc-e500mc-di": "4.4.0-28.47",
            "sata-modules-4.4.0-28-generic-lpae-di": "4.4.0-28.47",
            "speakup-modules-4.4.0-28-powerpc-e500mc-di": "4.4.0-28.47",
            "md-modules-4.4.0-28-powerpc64-smp-di": "4.4.0-28.47",
            "ipmi-modules-4.4.0-28-generic-lpae-di": "4.4.0-28.47",
            "sata-modules-4.4.0-28-generic-di": "4.4.0-28.47",
            "crypto-modules-4.4.0-28-generic-di": "4.4.0-28.47",
            "linux-tools-4.4.0-28-powerpc64-emb": "4.4.0-28.47",
            "storage-core-modules-4.4.0-28-powerpc-e500mc-di": "4.4.0-28.47",
            "nic-modules-4.4.0-28-generic-lpae-di": "4.4.0-28.47",
            "fs-core-modules-4.4.0-28-generic-lpae-di": "4.4.0-28.47",
            "firewire-core-modules-4.4.0-28-powerpc-e500mc-di": "4.4.0-28.47",
            "virtio-modules-4.4.0-28-powerpc-smp-di": "4.4.0-28.47",
            "fs-secondary-modules-4.4.0-28-powerpc-smp-di": "4.4.0-28.47",
            "plip-modules-4.4.0-28-powerpc64-smp-di": "4.4.0-28.47",
            "linux-udebs-generic-lpae": "4.4.0-28.47",
            "linux-tools-4.4.0-28-dbgsym": "4.4.0-28.47",
            "speakup-modules-4.4.0-28-generic-lpae-di": "4.4.0-28.47",
            "floppy-modules-4.4.0-28-powerpc64-smp-di": "4.4.0-28.47",
            "kernel-image-4.4.0-28-powerpc64-smp-di": "4.4.0-28.47",
            "floppy-modules-4.4.0-28-powerpc-smp-di": "4.4.0-28.47",
            "pata-modules-4.4.0-28-generic-di": "4.4.0-28.47",
            "scsi-modules-4.4.0-28-powerpc-e500mc-di": "4.4.0-28.47",
            "squashfs-modules-4.4.0-28-generic-di": "4.4.0-28.47",
            "fs-core-modules-4.4.0-28-powerpc-smp-di": "4.4.0-28.47",
            "linux-image-4.4.0-28-generic-dbgsym": "4.4.0-28.47",
            "multipath-modules-4.4.0-28-generic-di": "4.4.0-28.47",
            "ipmi-modules-4.4.0-28-powerpc-smp-di": "4.4.0-28.47",
            "speakup-modules-4.4.0-28-generic-di": "4.4.0-28.47",
            "parport-modules-4.4.0-28-powerpc-smp-di": "4.4.0-28.47"
        }
    ]
}