星球 - USN-3094-1: Systemd vulnerability

來自:Ubuntu security notices | 2016/10/4 5:28:40

Ubuntu Security Notice USN-3094-1


29th September, 2016


systemd vulnerability


A security issue affects these releases of Ubuntu and its
derivatives:




  • Ubuntu 16.04 LTS





Summary


The system could be made unavailable under certain conditions.





Software description





  • systemd
    - system and service manager







Details


Andrew Ayer discovered that Systemd improperly handled zero-length
notification messages. A local unprivileged attacker could use
this to cause a denial of service (init crash leading to system
unavailability).



Update instructions


The problem can be corrected by updating your system to the following
package version:




Ubuntu 16.04 LTS:




systemd

229-4ubuntu10






To update your system, please follow these instructions:
https://wiki.ubuntu.com/Security/Upgrades.


In general, a standard system update will make all the necessary changes.





References




LP: 1628687