** Description changed: - [espfix bypass using set_thread_area] + arch/x86/kernel/tls.c in the Thread Local Storage (TLS) implementation + in the Linux kernel through 3.18.1 allows local users to bypass the + espfix protection mechanism, and consequently makes it easier for local + users to bypass the ASLR protection mechanism, via a crafted application + that makes a set_thread_area system call and later reads a 16-bit value. Break-Fix: - 41bdc78544b8a93a9c6814b8bbbfef966272abbe
-- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1403852 Title: CVE-2014-8133 To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1403852/+subscriptions -- ubuntu-bugs mailing list [email protected] https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
