顯示具有 ubuntu 標籤的文章。 顯示所有文章
顯示具有 ubuntu 標籤的文章。 顯示所有文章

2020年8月29日 星期六

[USN-4468-1] Bind vulnerabilities

 ---------- Forwarded message ---------

From: Marc Deslauriers <marc.deslauriers@canonical.com>

Date: Aug 21, 2020 9:58PM

Emanuel Almeida discovered that Bind incorrectly handled certain TCP

payloads. A remote attacker could possibly use this issue to cause Bind to

crash, resulting in a denial of service. This issue only affected Ubuntu

20.04 LTS. (CVE-2020-8620)

Joseph Gullo discovered that Bind incorrectly handled QNAME minimization

when used in certain configurations. A remote attacker could possibly use

this issue to cause Bind to crash, resulting in a denial of service. This

issue only affected Ubuntu 20.04 LTS. (CVE-2020-8621)

Dave Feldman, Jeff Warren, and Joel Cunningham discovered that Bind

incorrectly handled certain truncated responses to a TSIG-signed request. A

remote attacker could possibly use this issue to cause Bind to crash,

resulting in a denial of service. (CVE-2020-8622)

Lyu Chiy discovered that Bind incorrectly handled certain queries. A remote

attacker could possibly use this issue to cause Bind to crash, resulting in

a denial of service. (CVE-2020-8623)

Joop Boonen discovered that Bind incorrectly handled certain subdomain

update-policy rules. A remote attacker granted privileges to change certain

parts of a zone could use this issue to change other contents of the zone,

contrary to expectations. This issue only affected Ubuntu 18.04 LTS and

Ubuntu 20.04 LTS. (CVE-2020-8624)

References:

  https://usn.ubuntu.com/4468-1

  CVE-2020-8620, CVE-2020-8621, CVE-2020-8622, CVE-2020-8623,

  CVE-2020-8624

2020年7月19日 星期日

LM: Kubuntu 20.04 LTS "Focal Fossa" (64-bit)


REF: https://www.linux-magazine.com/Issues/2020/237/This-Month-s-DVD

2020年6月27日 星期六

[USN-4367-2] Linux kernel regression

---------- Forwarded message ---------
From: Steve Beattie <steve.beattie@canonical.com>
Date: May 29, 2020 7:10AM

USN-4367-1 fixed vulnerabilities in the 5.4 Linux kernel. Unfortunately,
that update introduced a regression in overlayfs. This update corrects
the problem.

References:
  https://usn.ubuntu.com/4367-2
  https://usn.ubuntu.com/4367-1
  https://launchpad.net/bugs/1879690

2020年6月14日 星期日

[USN-4359-1] APT vulnerability

---------- Forwarded message ---------
From: Alex Murray
Date: May 14, 2020 10:36AM

It was discovered that APT incorrectly handled certain filenames during
package installation. If an attacker could provide a specially crafted
package to be installed by the system administrator, this could cause APT
to crash.

References:
  https://usn.ubuntu.com/4359-1
  CVE-2020-3810

2019年12月29日 星期日

ADMIN: Ubuntu Server 19.10 (Live)

  • Support for nine months until July 2020
  • Linux 5.3 kernel
  • Updates to Qemu (v4.0), libvirt (v5.4), MySQL (v8.0), PostgreSQL (v11), and more
  • A fresh set of fixes and refreshes to the installer
  • A new Ubuntu Advantage service experience
REF: http://www.admin-magazine.com/Archive/2019/54/Ubuntu-Server-19.10-Live

2019年12月4日 星期三

LM: Ubuntu 19.10 "Eoan Ermine"


REF: http://www.linux-magazine.com/Issues/2020/230/This-Month-s-DVD

2019年11月20日 星期三

[USN-4161-1] Linux kernel vulnerability

---------- Forwarded message ---------
From: Seth Arnold
Date: Oct 22, 2019 5:04AM

It was discovered that the IPv6 routing implementation in the Linux kernel
contained a reference counting error leading to a use-after-free
vulnerability. A local attacker could use this to cause a denial of service
(system crash) or possibly execute arbitrary code.

References:
  https://usn.ubuntu.com/4161-1
  CVE-2019-18198

2019年10月31日 星期四

[USN-4162-1] Linux kernel vulnerabilities

---------- Forwarded message ---------
From: Seth Arnold
Date: Oct 22, 2019 11:14AM

It was discovered that the RSI 91x Wi-Fi driver in the Linux kernel did not
did not handle detach operations correctly, leading to a use-after-free
vulnerability. A physically proximate attacker could use this to cause a
denial of service (system crash) or possibly execute arbitrary code.
(CVE-2018-21008)

Wen Huang discovered that the Marvell Wi-Fi device driver in the Linux
kernel did not properly perform bounds checking, leading to a heap
overflow. A local attacker could use this to cause a denial of service
(system crash) or possibly execute arbitrary code. (CVE-2019-14814,
CVE-2019-14815, CVE-2019-14816)

Matt Delco discovered that the KVM hypervisor implementation in the Linux
kernel did not properly perform bounds checking when handling coalesced
MMIO write operations. A local attacker with write access to /dev/kvm could
use this to cause a denial of service (system crash). (CVE-2019-14821)

Hui Peng and Mathias Payer discovered that the USB audio driver for the
Linux kernel did not properly validate device meta data. A physically
proximate attacker could use this to cause a denial of service (system
crash). (CVE-2019-15117)

Hui Peng and Mathias Payer discovered that the USB audio driver for the
Linux kernel improperly performed recursion while handling device meta
data. A physically proximate attacker could use this to cause a denial of
service (system crash). (CVE-2019-15118)

It was discovered that the Technisat DVB-S/S2 USB device driver in the
Linux kernel contained a buffer overread. A physically proximate attacker
could use this to cause a denial of service (system crash) or possibly
expose sensitive information. (CVE-2019-15505)

Brad Spengler discovered that a Spectre mitigation was improperly
implemented in the ptrace susbsystem of the Linux kernel. A local attacker
could possibly use this to expose sensitive information. (CVE-2019-15902)

It was discovered that the SMB networking file system implementation in the
Linux kernel contained a buffer overread. An attacker could use this to
expose sensitive information (kernel memory). (CVE-2019-15918)

References:
  https://usn.ubuntu.com/4162-1
  CVE-2018-21008, CVE-2019-14814, CVE-2019-14815, CVE-2019-14816,
  CVE-2019-14821, CVE-2019-15117, CVE-2019-15118, CVE-2019-15505,
  CVE-2019-15902, CVE-2019-15918

2019年10月14日 星期一

ROSCon Japan 2019!


REF: https://ubuntu.com/blog/roscon-japan-2019

2019年5月8日 星期三

[USN-3957-1] MySQL vulnerabilities

---------- Forwarded message ---------
From: Marc Deslauriers
Date: Apr 29, 2019 9:42PM

Multiple security issues were discovered in MySQL and this update includes
a new upstream MySQL version to fix these issues.

Please see the following for more information:
https://dev.mysql.com/doc/relnotes/mysql/5.7/en/news-5-7-26.html
https://www.oracle.com/technetwork/security-advisory/cpuapr2019-5072813.html

References:
  https://usn.ubuntu.com/usn/usn-3957-1
  CVE-2019-2566, CVE-2019-2581, CVE-2019-2592, CVE-2019-2614,
  CVE-2019-2627, CVE-2019-2628, CVE-2019-2632, CVE-2019-2683

2019年1月28日 星期一

LM: Canonical Announces Latest Ubuntu Core for IoT

Now offers 10 years of support.
Canonical has announced Ubuntu Core 18, their open source platform for IoT devices. Ubuntu Core 18 is based on Ubuntu 18.04 LTS code-base and will be supported for 10 years.
REF: http://www.linux-magazine.com/Online/News/Canonical-Announces-Latest-Ubuntu-Core-for-IoT

2019年1月23日 星期三

[USN-3863-1] APT vulnerability

---------- Forwarded message ---------
From: Marc Deslauriers
Date: 2019年1月22日 週二 下午9:13

Details:

Max Justicz discovered that APT incorrectly handled certain parameters
during redirects. If a remote attacker were able to perform a
man-in-the-middle attack, this flaw could potentially be used to install
altered packages.

References:
  https://usn.ubuntu.com/usn/usn-3863-1
  CVE-2019-3462

2018年12月26日 星期三

LJ: Review: the Dell XPS 13 Developer Edition Laptop

Dell XPS 13
A look at Dell's thin and sleek XPS 13 Developer Edition laptop that now ships with Ubuntu 18.04 LTS pre-installed.
REF: https://www.linuxjournal.com/content/review-dell-xps-13-developer-edition-laptop

2018年12月3日 星期一

[USN-3830-1] OpenJDK regression

---------- Forwarded message ---------
From: Steve Beattie
Date: 2018年11月28日 週三 下午5:16

USN-3804-1 fixed vulnerabilities in OpenJDK. Unfortunately, that update
introduced a regression when validating JAR files that prevented Java
applications from finding classes in some situations. This update
fixes the problem.

We apologize for the inconvenience.

References:
  https://usn.ubuntu.com/usn/usn-3830-1
  https://usn.ubuntu.com/usn/usn-3804-1
  https://launchpad.net/bugs/1800792

2018年11月21日 星期三

[USN-3819-1] Linux kernel vulnerability

---------- Forwarded message ---------
From: Steve Beattie
Date: 2018年11月15日 週四 上午8:50

Felix Wilhelm discovered that the Xen netback driver in the Linux kernel
did not properly perform input validation in some situations. An attacker
could use this to cause a denial of service (system crash) or possibly
execute arbitrary code.

References:
  https://usn.ubuntu.com/usn/usn-3819-1
  CVE-2018-15471

2018年8月21日 星期二

[USN-3738-1] Samba vulnerabilities

---------- Forwarded message ----------
From: Marc Deslauriers
Date: 2018-08-15 1:48 GMT+08:00

Svyatoslav Phirsov discovered that the Samba libsmbclient library
incorrectly handled extra long filenames. A malicious server could use this
issue to cause Samba to crash, resulting in a denial of service, or
possibly execute arbitrary code. (CVE-2018-10858)

Volker Mauel discovered that Samba incorrectly handled database output.
When used as an Active Directory Domain Controller, a remote authenticated
attacker could use this issue to cause Samba to crash, resulting in a
denial of service. This issue only affected Ubuntu 18.04 LTS.
(CVE-2018-10918)

Phillip Kuhrt discovered that the Samba LDAP server incorrectly handled
certain confidential attribute values. A remote authenticated attacker
could possibly use this issue to obtain certain sensitive information.
(CVE-2018-10919)

Vivek Das discovered that Samba incorrectly handled NTLMv1 being explicitly
disabled on the server. A remote user could possibly be authenticated using
NTLMv1, contrary to expectations. This issue only affected Ubuntu 18.04
LTS. (CVE-2018-1139)

References:
  https://usn.ubuntu.com/usn/usn-3738-1
  CVE-2018-10858, CVE-2018-10918, CVE-2018-10919, CVE-2018-1139

2018年7月16日 星期一

Honey I Shrunk Ubuntu

Swapnil Bhartiya
Canonical has released a new version of Ubuntu that’s 50% smaller than the standard Ubuntu Server.
Canonical is tightening its focus on cloud and enterprise markets. The company has released a new version of Ubuntu, dubbed Minimal Ubuntu, which it claims is optimized for automated use at scale, with a tiny package set and minimal security cross-section.
Canonical claims that Minimal Ubuntu is the smallest Ubuntu base image for cloud operations. These images are less than 50% the size of the standard Ubuntu server image and boot up to 40% faster.
REF: http://www.linux-magazine.com/Online/News/Honey-I-Shrunk-Ubuntu

2018年6月30日 星期六

[USN-3692-1] OpenSSL vulnerabilities

---------- Forwarded message ----------
From: Marc Deslauriers 
Date: 2018-06-26 20:32 GMT+08:00
...
Summary:

Several security issues were fixed in OpenSSL.

Software Description:
- openssl: Secure Socket Layer (SSL) cryptographic library and tools
- openssl1.0: Secure Socket Layer (SSL) cryptographic library and tools

Details:

Keegan Ryan discovered that OpenSSL incorrectly handled ECDSA key
generation. An attacker could possibly use this issue to perform a
cache-timing attack and recover private ECDSA keys. (CVE-2018-0495)

Guido Vranken discovered that OpenSSL incorrectly handled very large prime
values during a key agreement. A remote attacker could possibly use this
issue to consume resources, leading to a denial of service. (CVE-2018-0732)

Alejandro Cabrera Aldaya, Billy Brumley, Cesar Pereida Garcia and Luis
Manuel Alvarez Tapia discovered that OpenSSL incorrectly handled RSA key
generation. An attacker could possibly use this issue to perform a
cache-timing attack and recover private RSA keys. (CVE-2018-0737)
...
References:
  https://usn.ubuntu.com/usn/usn-3692-1
  CVE-2018-0495, CVE-2018-0732, CVE-2018-0737

2018年6月14日 星期四

[USN-3674-1] Linux kernel vulnerabilities

---------- Forwarded message ----------
From: Steve Beattie 
Date: 2018-06-12 10:18 GMT+08:00
==========================================================================
Ubuntu Security Notice USN-3677-1
June 11, 2018

linux, linux-raspi2 vulnerabilities
==========================================================================Details:

It was discovered that the netfilter subsystem of the Linux kernel did not
properly validate ebtables offsets. A local attacker could use this to
cause a denial of service (system crash) or possibly execute arbitrary
code. (CVE-2018-1068)
Wen Xu discovered that the ext4 filesystem implementation in the Linux
kernel did not properly handle corrupted meta data in some situations. An
attacker could use this to specially craft an ext4 file system that caused
a denial of service (system crash) when mounted. (CVE-2018-1092)
It was discovered that a NULL pointer dereference existed in the RDS(Reliable Datagram Sockets) protocol implementation in the Linux kernel. A
local attacker could use this to cause a denial of service (system crash).
(CVE-2018-7492)

It was discovered that the 802.11 software simulator implementation in the
Linux kernel contained a memory leak when handling certain error
conditions. A local attacker could possibly use this to cause a denial of
service (memory exhaustion). (CVE-2018-8087)
Eyal Itkin discovered that the USB displaylink video adapter driver in the
Linux kernel did not properly validate mmap offsets sent from userspace. A
local attacker could use this to expose sensitive information (kernel
memory) or possibly execute arbitrary code. (CVE-2018-8781)
Update instructions:

The problem can be corrected by updating your system to the following
package versions:
Ubuntu 17.10:
  linux-image-4.13.0-1022-raspi2  4.13.0-1022.23
  linux-image-4.13.0-45-generic   4.13.0-45.50
  linux-image-4.13.0-45-generic-lpae  4.13.0-45.50
  linux-image-4.13.0-45-lowlatency  4.13.0-45.50
  linux-image-generic             4.13.0.45.48
  linux-image-generic-lpae        4.13.0.45.48
  linux-image-lowlatency          4.13.0.45.48
  linux-image-raspi2              4.13.0.1022.20

After a standard system update you need to reboot your computer to make
all the necessary changes.

ATTENTION: Due to an unavoidable ABI change the kernel updates have
been given a new version number, which requires you to recompile and
reinstall all third party kernel modules you might have installed.
Unless you manually uninstalled the standard kernel metapackages
(e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual,
linux-powerpc), a standard system upgrade will automatically perform
this as well.

References:
  https://usn.ubuntu.com/usn/usn-3677-1
  CVE-2018-1068, CVE-2018-1092, CVE-2018-7492, CVE-2018-8087,
  CVE-2018-8781

Package Information:
  https://launchpad.net/ubuntu/+source/linux/4.13.0-45.50
  https://launchpad.net/ubuntu/+source/linux-raspi2/4.13.0-1022.23

2018年5月28日 星期一

Mobile Desktop Innovation

Purism, which is developing the free and secure Librem 5 phone, is keeping the product in the public’s awareness by regularly releasing partnership announcements. It’s a shrewd strategy, especially since the Librem 5 is over a year away from production. However, the latest announcement – that Ubuntu Touch will be available on the Librem 5 – is even more significant than earlier announcements. The news means that in addition to its other benefits, the Librem 5 will also offer one of the most innovative desktops for mobile devices available. Together, the Librem 5 and Ubuntu promise to show just how innovative free software can be.
REF: http://www.linux-magazine.com/Online/Features/Librem-5-and-Ubuntu-Touch