🕵️ SicherheitslückenWhat continuous operational resilience looks like under DORA(09.09.2026 um 17:53 Uhr)
🔧 AI Nachrichten OpenAI seeks tougher AI rules. CIOs may feel the ripple effects(10.09.2026 um 12:11 Uhr)
🔧 AI Nachrichten Mistral valued at €21bn after €3bn Series D funding round(08.09.2026 um 10:19 Uhr)
🪟 Windows TippsWindows XP's Cursor Indicator Is Getting a Windows 11 Refresh(25.08.2026 um 13:00 Uhr)
🕵️ SicherheitslückenWhat continuous operational resilience looks like under DORA(09.09.2026 um 17:53 Uhr)
🔧 AI Nachrichten OpenAI seeks tougher AI rules. CIOs may feel the ripple effects(10.09.2026 um 12:11 Uhr)
🔧 AI Nachrichten Mistral valued at €21bn after €3bn Series D funding round(08.09.2026 um 10:19 Uhr)
🪟 Windows TippsWindows XP's Cursor Indicator Is Getting a Windows 11 Refresh(25.08.2026 um 13:00 Uhr)
1 Tag Serie
🐧 Unix Server 🕛 vor 9 Jahren 3 Min Lesezeit CVE-2017-7308
0

USN-3256-1: Linux kernel vulnerability

Cyber Threat & Vulnerability Dossier CVSS 5.8 MEDIUM (Heuristik) EPSS 4.3%
ANGRIPPSVEKTOR
💻 Lokal
AUTHENTIFIZIERUNG
🔓 Keine Authentifizierung nötig
SCHADENSPROFIL
⛔ Dienstausfall (DoS) / Full Compromise
CWE-KLASSIFIZIERUNG
CWE-94: Code Injection
Handlungsempfehlung: Kernel-Paket aktualisieren (apt upgrade linux-image / yum update kernel) und System neu starten.
Im CVE-Radar öffnen
↗ Quelle (ubuntu.com)
🔬 IoC Intelligence (5 Indikatoren erkannt)
4[.]8[.]0[.]464[.]4[.]0[.]723[.]13[.]0[.]1163[.]2[.]0[.]126CVE-2017-7308
🗣️ Stimme:
📑 Inhaltsübersicht

Ubuntu Security Notice USN-3256-1


4th April, 2017


linux, linux-aws, linux-gke, linux-raspi2, linux-snapdragon, linux-ti-omap4 vulnerability


A security issue affects these releases of Ubuntu and its
derivatives:


  • Ubuntu 16.10


  • Ubuntu 16.04 LTS


  • Ubuntu 14.04 LTS


  • Ubuntu 12.04 LTS


Summary


The system could be made to crash under certain conditions.





Software description


  • linux
    - Linux kernel











  • linux-aws
    - Linux kernel for Amazon Web Services (AWS) systems





  • linux-gke
    - Linux kernel for Google Container Engine (GKE) systems





  • linux-raspi2
    - Linux kernel for Raspberry Pi 2







  • linux-snapdragon
    - Linux kernel for Snapdragon Processors





  • linux-ti-omap4
    - Linux kernel for OMAP4




Details


Andrey Konovalov discovered that the AF_PACKET implementation in the Linux
kernel did not properly validate certain block-size data. A local attacker
could use this to cause a denial of service (system crash).



Update instructions


The problem can be corrected by updating your system to the following
package version:


Ubuntu 16.10:



linux-image-powerpc-smp 4.8.0.46.58




linux-image-powerpc-e500mc 4.8.0.46.58




linux-image-generic 4.8.0.46.58







































linux-image-generic-lpae 4.8.0.46.58


















linux-image-lowlatency 4.8.0.46.58




linux-image-raspi2 4.8.0.1033.37




linux-image-powerpc64-smp 4.8.0.46.58




Ubuntu 16.04 LTS:



linux-image-powerpc-e500mc 4.4.0.72.78
































linux-image-powerpc64-smp-lts-utopic 4.4.0.72.78


















linux-image-powerpc64-smp-lts-xenial 4.4.0.72.78











linux-image-gke 4.4.0.1010.12




linux-image-powerpc64-smp-lts-vivid 4.4.0.72.78




linux-image-generic 4.4.0.72.78




linux-image-snapdragon 4.4.0.1055.48




linux-image-aws 4.4.0.1013.16




linux-image-raspi2 4.4.0.1052.53




linux-image-powerpc-smp 4.4.0.72.78











linux-image-generic-lpae 4.4.0.72.78




linux-image-powerpc64-smp-lts-wily 4.4.0.72.78


















linux-image-powerpc64-smp 4.4.0.72.78




linux-image-lowlatency 4.4.0.72.78




Ubuntu 14.04 LTS:





































































































Ubuntu 12.04 LTS:































linux-image-powerpc-smp 3.2.0.126.141




linux-image-generic 3.2.0.126.141


















linux-image-generic-pae 3.2.0.126.141




linux-image-highbank 3.2.0.126.141











linux-image-powerpc64-smp 3.2.0.126.141




linux-image-omap4 3.2.0.1504.99











linux-image-omap 3.2.0.126.141




linux-image-virtual 3.2.0.126.141




To update your system, please follow these instructions:



Vollständiger Original-Bericht
Ausführliche Details, Code-Beispiele & Hersteller-Stellungnahme auf ubuntu.com.
↗ Original-Artikel auf ubuntu.com lesen
Wie bewertest du diesen Beitrag?
1 Klick Feedback
Teilen mit Netzwerk & Team:
Community Threat-Level Barometer
Live Votum

Wie stufst du das Risiko dieser Schwachstelle / Bedrohung für dein Unternehmen ein?

Noch keine Stimmen — schätze das Risiko als Erster ein.

Community-Analysen & Experten-Meinungen 0

Verfasse deine eigene Analyse, teile Workarounds oder diskutiere diesen Vorfall im Blog.
Noch keine Community-Analyse verfasst. Markiere einen Textabschnitt oder klicke oben auf Eigene Analyse verfassen“!
Community Pulse: Relevanz-Einschätzung
1 Klick Experten-Votum
🔴 Akute Relevanz 0%
🟡 In Evaluierung 0%
🟢 Keine Auswirkung 0%
Spannende Innovation 0%
Verwandte Story-Cluster & Quellen (Vektor-KI)
Port 8095 Engine
1 Quelle
Sam Altman calls GPT-6 Astra rollout ‘messy’ as enterprise users wait for access
1 Quelle
Swiss government explores replacing Microsoft 365 with open-source software
1 Quelle
What continuous operational resilience looks like under DORA