You do not have permission to delete messages in this group
Copy link
Report message
Show original message
Either email addresses are anonymous for this group or you need the view member email addresses permission to view the original message
to kernelca...@googlegroups.com
Dear Customers,
KernelCare prepared security updates for your system.
Systems with AUTO_UPDATE=True (DEFAULT) in /etc/sysconfig/kcare/kcare.conf will automatically update, and no action is needed for them.
You can manually update the server by running:
/usr/bin/kcarectl --update
Changelog:
ubuntu-trusty-lts-xenial:
CVE-2019-14835: Peter Pi discovered a buffer overflow in the virtio network backend
(vhost_net) implementation in the Linux kernel. An attacker in a guest may be
able to use this to cause a denial of service (host OS crash) or possibly execute
arbitrary code in the host OS.
cvelist: [CVE-2019-14835]
latest-version: kernel-4.4.0-148.174~14.04.1
pve-5:
CVE-2019-14835: Peter Pi discovered a buffer overflow in the virtio network backend
(vhost_net) implementation in the Linux kernel. An attacker in a guest may be
able to use this to cause a denial of service (host OS crash) or possibly execute
arbitrary code in the host OS.
cvelist: [CVE-2019-14835]
latest-version: pve-kernel-4.15.18-20-pve_4.15.18-46
ubuntu-bionic:
CVE-2019-14835: Peter Pi discovered a buffer overflow in the virtio network backend
(vhost_net) implementation in the Linux kernel. An attacker in a guest may be
able to use this to cause a denial of service (host OS crash) or possibly execute
arbitrary code in the host OS.
cvelist: [CVE-2019-14835]
latest-version: kernel-4.15.0-58.64
ubuntu-bionic-hwe:
CVE-2019-14835: Peter Pi discovered a buffer overflow in the virtio network backend
(vhost_net) implementation in the Linux kernel. An attacker in a guest may be
able to use this to cause a denial of service (host OS crash) or possibly execute
arbitrary code in the host OS.
cvelist: [CVE-2019-14835]
latest-version: kernel-5.0.0-29.31~18.04.1
ubuntu-xenial-lts-bionic:
CVE-2019-14835: Peter Pi discovered a buffer overflow in the virtio network backend
(vhost_net) implementation in the Linux kernel. An attacker in a guest may be
able to use this to cause a denial of service (host OS crash) or possibly execute
arbitrary code in the host OS.
cvelist: [CVE-2019-14835]
latest-version: kernel-4.15.0-58.64~16.04.1
ubuntu-trusty:
CVE-2019-14835: Peter Pi discovered a buffer overflow in the virtio network backend
(vhost_net) implementation in the Linux kernel. An attacker in a guest may be
able to use this to cause a denial of service (host OS crash) or possibly execute
arbitrary code in the host OS.
cvelist: [CVE-2019-14835]
latest-version: kernel-3.13.0-165.215
ubuntu-xenial:
CVE-2019-14835: Peter Pi discovered a buffer overflow in the virtio network backend
(vhost_net) implementation in the Linux kernel. An attacker in a guest may be
able to use this to cause a denial of service (host OS crash) or possibly execute
arbitrary code in the host OS.
cvelist: [CVE-2019-14835]
latest-version: kernel-4.4.0-159.187