1
Candidate: CVE-2015-8953
4
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-8953
5
http://seclists.org/oss-sec/2016/q3/371
7
fs/overlayfs/copy_up.c in the Linux kernel before 4.2.6 uses an incorrect
8
cleanup code path, which allows local users to cause a denial of service
9
(dentry reference leak) via filesystem operations on a large file in a
10
lower overlayfs layer.
13
jdstrand> android kernels (flo, goldfish, grouper, maguro, mako and manta) are
14
not supported on the Ubuntu Touch 14.10 and earlier preview kernels
15
jdstrand> linux-lts-saucy no longer receives official support
16
jdstrand> linux-lts-quantal no longer receives official support
19
Discovered-by: Ulrich Obergfell
23
break-fix: e9be9d5e76e34872f0c37d72e25bc27fe9e2c54c ab79efab0a0ba01a74df782eb7fa44b044dae8b5
24
upstream_linux: released (4.3)
25
precise_linux: not-affected
26
trusty_linux: not-affected
27
vivid/ubuntu-core_linux: released (3.19.0-41.46)
28
vivid/stable-phone-overlay_linux: DNE
29
xenial_linux: not-affected (4.2.0-19.23)
30
yakkety_linux: not-affected (4.4.0-21.37)
31
devel_linux: not-affected (4.8.0-22.24)
33
Patches_linux-ti-omap4:
34
upstream_linux-ti-omap4: released (4.3)
35
precise_linux-ti-omap4: not-affected
36
trusty_linux-ti-omap4: DNE
37
vivid/ubuntu-core_linux-ti-omap4: DNE
38
vivid/stable-phone-overlay_linux-ti-omap4: DNE
39
xenial_linux-ti-omap4: DNE
40
yakkety_linux-ti-omap4: DNE
41
devel_linux-ti-omap4: DNE
43
Patches_linux-linaro-omap:
44
upstream_linux-linaro-omap: released (4.3)
45
precise_linux-linaro-omap: ignored (abandoned)
46
trusty_linux-linaro-omap: DNE
47
vivid/ubuntu-core_linux-linaro-omap: DNE
48
vivid/stable-phone-overlay_linux-linaro-omap: DNE
49
xenial_linux-linaro-omap: DNE
50
yakkety_linux-linaro-omap: DNE
51
devel_linux-linaro-omap: DNE
53
Patches_linux-linaro-shared:
54
upstream_linux-linaro-shared: released (4.3)
55
precise_linux-linaro-shared: ignored (abandoned)
56
trusty_linux-linaro-shared: DNE
57
vivid/ubuntu-core_linux-linaro-shared: DNE
58
vivid/stable-phone-overlay_linux-linaro-shared: DNE
59
xenial_linux-linaro-shared: DNE
60
yakkety_linux-linaro-shared: DNE
61
devel_linux-linaro-shared: DNE
63
Patches_linux-linaro-vexpress:
64
upstream_linux-linaro-vexpress: released (4.3)
65
precise_linux-linaro-vexpress: ignored (abandoned)
66
trusty_linux-linaro-vexpress: DNE
67
vivid/ubuntu-core_linux-linaro-vexpress: DNE
68
vivid/stable-phone-overlay_linux-linaro-vexpress: DNE
69
xenial_linux-linaro-vexpress: DNE
70
yakkety_linux-linaro-vexpress: DNE
71
devel_linux-linaro-vexpress: DNE
73
Patches_linux-qcm-msm:
74
upstream_linux-qcm-msm: released (4.3)
75
precise_linux-qcm-msm: ignored (abandoned)
76
trusty_linux-qcm-msm: DNE
77
vivid/ubuntu-core_linux-qcm-msm: DNE
78
vivid/stable-phone-overlay_linux-qcm-msm: DNE
79
xenial_linux-qcm-msm: DNE
80
yakkety_linux-qcm-msm: DNE
81
devel_linux-qcm-msm: DNE
83
Tags_linux-armadaxp: not-ue
84
Patches_linux-armadaxp:
85
upstream_linux-armadaxp: released (4.3)
86
precise_linux-armadaxp: not-affected
87
trusty_linux-armadaxp: DNE
88
vivid/ubuntu-core_linux-armadaxp: DNE
89
vivid/stable-phone-overlay_linux-armadaxp: DNE
90
xenial_linux-armadaxp: DNE
91
yakkety_linux-armadaxp: DNE
92
devel_linux-armadaxp: DNE
94
Tags_linux-lts-quantal: not-ue
95
Patches_linux-lts-quantal: DNE
96
upstream_linux-lts-quantal: released (4.3)
97
precise_linux-lts-quantal: ignored (end-of-life)
98
trusty_linux-lts-quantal: DNE
99
vivid/ubuntu-core_linux-lts-quantal: DNE
100
vivid/stable-phone-overlay_linux-lts-quantal: DNE
101
xenial_linux-lts-quantal: DNE
102
yakkety_linux-lts-quantal: DNE
103
devel_linux-lts-quantal: DNE
105
Patches_linux-lts-raring:
106
upstream_linux-lts-raring: released (4.3)
107
precise_linux-lts-raring: ignored (end-of-life)
108
trusty_linux-lts-raring: DNE
109
vivid/ubuntu-core_linux-lts-raring: DNE
110
vivid/stable-phone-overlay_linux-lts-raring: DNE
111
xenial_linux-lts-raring: DNE
112
yakkety_linux-lts-raring: DNE
113
devel_linux-lts-raring: DNE
115
Tags_linux-lts-saucy: not-ue
116
Patches_linux-lts-saucy:
117
upstream_linux-lts-saucy: released (4.3)
118
precise_linux-lts-saucy: ignored (end-of-life)
119
trusty_linux-lts-saucy: DNE
120
vivid/ubuntu-core_linux-lts-saucy: DNE
121
vivid/stable-phone-overlay_linux-lts-saucy: DNE
122
xenial_linux-lts-saucy: DNE
123
yakkety_linux-lts-saucy: DNE
124
devel_linux-lts-saucy: DNE
126
Patches_linux-lts-trusty:
127
upstream_linux-lts-trusty: released (4.3)
128
precise_linux-lts-trusty: not-affected
129
trusty_linux-lts-trusty: DNE
130
vivid/ubuntu-core_linux-lts-trusty: DNE
131
vivid/stable-phone-overlay_linux-lts-trusty: DNE
132
xenial_linux-lts-trusty: DNE
133
yakkety_linux-lts-trusty: DNE
134
devel_linux-lts-trusty: DNE
136
Patches_linux-goldfish:
137
upstream_linux-goldfish: released (4.3)
138
precise_linux-goldfish: DNE
139
trusty_linux-goldfish: ignored
140
vivid/ubuntu-core_linux-goldfish: DNE
141
vivid/stable-phone-overlay_linux-goldfish: DNE
142
xenial_linux-goldfish: not-affected
143
yakkety_linux-goldfish: not-affected
144
devel_linux-goldfish: not-affected
146
Patches_linux-grouper:
147
upstream_linux-grouper: released (4.3)
148
precise_linux-grouper: DNE
149
trusty_linux-grouper: ignored
150
vivid/ubuntu-core_linux-grouper: DNE
151
vivid/stable-phone-overlay_linux-grouper: DNE
152
xenial_linux-grouper: DNE
153
yakkety_linux-grouper: DNE
154
devel_linux-grouper: DNE
156
Patches_linux-maguro:
157
upstream_linux-maguro: released (4.3)
158
precise_linux-maguro: DNE
159
trusty_linux-maguro: ignored
160
vivid/ubuntu-core_linux-maguro: DNE
161
vivid/stable-phone-overlay_linux-maguro: DNE
162
xenial_linux-maguro: DNE
163
yakkety_linux-maguro: DNE
164
devel_linux-maguro: DNE
167
upstream_linux-mako: released (4.3)
168
precise_linux-mako: DNE
169
trusty_linux-mako: ignored
170
vivid/ubuntu-core_linux-mako: DNE
171
vivid/stable-phone-overlay_linux-mako: not-affected
172
xenial_linux-mako: not-affected
173
yakkety_linux-mako: not-affected
174
devel_linux-mako: not-affected
177
upstream_linux-manta: released (4.3)
178
precise_linux-manta: DNE
179
trusty_linux-manta: ignored
180
vivid/ubuntu-core_linux-manta: DNE
181
vivid/stable-phone-overlay_linux-manta: DNE
182
xenial_linux-manta: DNE
183
yakkety_linux-manta: DNE
184
devel_linux-manta: DNE
187
upstream_linux-flo: released (4.3)
188
precise_linux-flo: DNE
189
trusty_linux-flo: ignored
190
vivid/ubuntu-core_linux-flo: DNE
191
vivid/stable-phone-overlay_linux-flo: not-affected
192
xenial_linux-flo: not-affected
193
yakkety_linux-flo: not-affected
194
devel_linux-flo: not-affected
196
Patches_linux-raspi2:
197
upstream_linux-raspi2: released (4.3)
198
precise_linux-raspi2: DNE
199
trusty_linux-raspi2: DNE
200
vivid/ubuntu-core_linux-raspi2: released (4.2.0-1022.29)
201
vivid/stable-phone-overlay_linux-raspi2: DNE
202
xenial_linux-raspi2: not-affected (4.3.0-1006.6)
203
yakkety_linux-raspi2: not-affected (4.4.0-1009.10)
204
devel_linux-raspi2: not-affected (4.8.0-1013.15)
206
Patches_linux-lts-utopic:
207
upstream_linux-lts-utopic: released (4.3)
208
precise_linux-lts-utopic: DNE
209
trusty_linux-lts-utopic: ignored (end-of-life)
210
vivid/ubuntu-core_linux-lts-utopic: DNE
211
vivid/stable-phone-overlay_linux-lts-utopic: DNE
212
xenial_linux-lts-utopic: DNE
213
yakkety_linux-lts-utopic: DNE
214
devel_linux-lts-utopic: DNE
216
Patches_linux-lts-vivid:
217
upstream_linux-lts-vivid: released (4.3)
218
precise_linux-lts-vivid: DNE
219
trusty_linux-lts-vivid: released (3.19.0-41.46~14.04.2)
220
vivid/ubuntu-core_linux-lts-vivid: DNE
221
vivid/stable-phone-overlay_linux-lts-vivid: DNE
222
xenial_linux-lts-vivid: DNE
223
yakkety_linux-lts-vivid: DNE
224
devel_linux-lts-vivid: DNE
226
Patches_linux-lts-wily:
227
upstream_linux-lts-wily: released (4.3)
228
precise_linux-lts-wily: DNE
229
trusty_linux-lts-wily: released (4.2.0-19.23~14.04.1)
230
vivid/ubuntu-core_linux-lts-wily: DNE
231
vivid/stable-phone-overlay_linux-lts-wily: DNE
232
xenial_linux-lts-wily: DNE
233
yakkety_linux-lts-wily: DNE
234
devel_linux-lts-wily: DNE
236
Patches_linux-krillin:
237
product_linux-krillin: not-affected
239
Patches_linux-vegetahd:
240
product_linux-vegetahd: not-affected
242
Patches_linux-lts-xenial:
243
upstream_linux-lts-xenial: released (4.3)
244
precise_linux-lts-xenial: DNE
245
trusty_linux-lts-xenial: not-affected (4.4.0-13.29~14.04.1)
246
vivid/ubuntu-core_linux-lts-xenial: DNE
247
vivid/stable-phone-overlay_linux-lts-xenial: DNE
248
xenial_linux-lts-xenial: DNE
249
yakkety_linux-lts-xenial: DNE
250
devel_linux-lts-xenial: DNE
252
Patches_linux-snapdragon:
253
upstream_linux-snapdragon: released (4.3)
254
precise_linux-snapdragon: DNE
255
trusty_linux-snapdragon: DNE
256
vivid/ubuntu-core_linux-snapdragon: DNE
257
vivid/stable-phone-overlay_linux-snapdragon: DNE
258
xenial_linux-snapdragon: not-affected (4.4.0-1012.12)
259
yakkety_linux-snapdragon: not-affected (4.4.0-1012.12)
260
devel_linux-snapdragon: not-affected (4.4.0-1029.32)
263
upstream_linux-aws: released (4.3)
264
precise_linux-aws: DNE
265
trusty_linux-aws: not-affected (4.4.0-1002.2)
266
vivid/ubuntu-core_linux-aws: DNE
267
vivid/stable-phone-overlay_linux-aws: DNE
268
xenial_linux-aws: not-affected (4.4.0-1001.10)
269
yakkety_linux-aws: DNE
272
Patches_linux-hwe-edge:
273
upstream_linux-hwe-edge: released (4.3)
274
precise_linux-hwe-edge: DNE
275
trusty_linux-hwe-edge: DNE
276
vivid/ubuntu-core_linux-hwe-edge: DNE
277
vivid/stable-phone-overlay_linux-hwe-edge: DNE
278
xenial_linux-hwe-edge: not-affected (4.8.0-28.30~16.04.1)
279
yakkety_linux-hwe-edge: DNE
280
devel_linux-hwe-edge: DNE
283
upstream_linux-hwe: released (4.3)
284
precise_linux-hwe: DNE
285
trusty_linux-hwe: DNE
286
vivid/ubuntu-core_linux-hwe: DNE
287
vivid/stable-phone-overlay_linux-hwe: DNE
288
xenial_linux-hwe: not-affected (4.8.0-36.36~16.04.1)
289
yakkety_linux-hwe: DNE
293
upstream_linux-gke: released (4.3)
294
precise_linux-gke: DNE
295
trusty_linux-gke: DNE
296
vivid/ubuntu-core_linux-gke: DNE
297
vivid/stable-phone-overlay_linux-gke: DNE
298
xenial_linux-gke: not-affected (4.4.0-1003.3)
299
yakkety_linux-gke: DNE