Linux Action News 276

Linux Action News 276

Avatar

A high-profile Linux kernel network flaw, we put JFS on a death watch, and break down the controversial Firefox update this week.Sponsored By:Linode: Sign up using the link on this page and receive a $100 60-day credit towards your new account. Kolide: Kolide can help you nail third-party audits and internal compliance goals with endpoint security for your entire fleet. Support Linux Action NewsLinks:A new privilege escalation vulnerability in the Linux kernel — The vulnerability consists of a stack buffer overflow due to an integer
underflow vulnerability inside the nft_payload_copy_vlan function, which is
invoked with nft_payload expressions as long as a VLAN tag is present in
the current skb.netfilter: nft_payload: add C-VLAN support · torvalds/linux@f6ae9f1CVE-2023-0179CVE-2023-0179- Red Hat Customer Portal[net,3/3] netfilter: nft_payload: incorrect arithmetics when fetching VLAN header bits - Patchworkoss-sec: Re: CVE-2023-0179: Linux kernel stack buffer overflow in nftables

Comments

Avatar