ubuntu-trusty:
CVE-2017-16939: The Linux kernel is vulerable to a use-after-free flaw when Transformation
User configuration interface(CONFIG_XFRM_USER) compile-time configuration were
enabled. This vulnerability occurs while closing a xfrm netlink socket in xfrm_dump_policy_done.
A user/process could abuse this flaw to potentially escalate their privileges
on a system.
CVE-2017-8824: A use-after-free vulnerability was found in DCCP socket code affecting
the Linux kernel since 2.6.16. This vulnerability could allow an attacker to their
escalate privileges.
KCARE-643: Adjust handling of functions names when generating patched code.
buglist: [KCARE-643]
cvelist: [CVE-2017-8824, CVE-2017-16939]
latest-version: 3.