KernelCare update was released

2 views
Skip to first unread message

KernelCare

unread,
Sep 18, 2019, 11:14:16 AM9/18/19
to kernelca...@googlegroups.com
Dear Customers,

KernelCare prepared security updates for your system.
Systems with AUTO_UPDATE=True (DEFAULT) in /etc/sysconfig/kcare/kcare.conf will automatically update, and no action is needed for them.
You can manually update the server by running:

/usr/bin/kcarectl --update

Changelog:

ubuntu-trusty-lts-xenial:
CVE-2019-14835: Peter Pi discovered a buffer overflow in the virtio network backend
(vhost_net) implementation in the Linux kernel. An attacker in a guest may be
able to use this to cause a denial of service (host OS crash) or possibly execute
arbitrary code in the host OS.
cvelist: [CVE-2019-14835]
latest-version: kernel-4.4.0-148.174~14.04.1
pve-5:
CVE-2019-14835: Peter Pi discovered a buffer overflow in the virtio network backend
(vhost_net) implementation in the Linux kernel. An attacker in a guest may be
able to use this to cause a denial of service (host OS crash) or possibly execute
arbitrary code in the host OS.
cvelist: [CVE-2019-14835]
latest-version: pve-kernel-4.15.18-20-pve_4.15.18-46
ubuntu-bionic:
CVE-2019-14835: Peter Pi discovered a buffer overflow in the virtio network backend
(vhost_net) implementation in the Linux kernel. An attacker in a guest may be
able to use this to cause a denial of service (host OS crash) or possibly execute
arbitrary code in the host OS.
cvelist: [CVE-2019-14835]
latest-version: kernel-4.15.0-58.64
ubuntu-bionic-hwe:
CVE-2019-14835: Peter Pi discovered a buffer overflow in the virtio network backend
(vhost_net) implementation in the Linux kernel. An attacker in a guest may be
able to use this to cause a denial of service (host OS crash) or possibly execute
arbitrary code in the host OS.
cvelist: [CVE-2019-14835]
latest-version: kernel-5.0.0-29.31~18.04.1
ubuntu-xenial-lts-bionic:
CVE-2019-14835: Peter Pi discovered a buffer overflow in the virtio network backend
(vhost_net) implementation in the Linux kernel. An attacker in a guest may be
able to use this to cause a denial of service (host OS crash) or possibly execute
arbitrary code in the host OS.
cvelist: [CVE-2019-14835]
latest-version: kernel-4.15.0-58.64~16.04.1
ubuntu-trusty:
CVE-2019-14835: Peter Pi discovered a buffer overflow in the virtio network backend
(vhost_net) implementation in the Linux kernel. An attacker in a guest may be
able to use this to cause a denial of service (host OS crash) or possibly execute
arbitrary code in the host OS.
cvelist: [CVE-2019-14835]
latest-version: kernel-3.13.0-165.215
ubuntu-xenial:
CVE-2019-14835: Peter Pi discovered a buffer overflow in the virtio network backend
(vhost_net) implementation in the Linux kernel. An attacker in a guest may be
able to use this to cause a denial of service (host OS crash) or possibly execute
arbitrary code in the host OS.
cvelist: [CVE-2019-14835]
latest-version: kernel-4.4.0-159.187
Reply all
Reply to author
Forward
0 new messages