vulnerability

Ubuntu: (Multiple Advisories) (CVE-2017-1000255): Linux kernel vulnerabilities

Severity
7
CVSS
(AV:L/AC:L/Au:N/C:N/I:C/A:C)
Published
Oct 10, 2017
Added
Oct 10, 2017
Modified
Aug 18, 2025

Description

It was discovered that on the PowerPC architecture, the kernel did not
properly sanitize the signal stack when handling sigreturn(). A local
attacker could use this to cause a denial of service (system crash) or
possibly execute arbitrary code. (CVE-2017-1000255)

Andrey Konovalov discovered that a divide-by-zero error existed in the TCP
stack implementation in the Linux kernel. A local attacker could use this
to cause a denial of service (system crash). (CVE-2017-14106)

Solutions

ubuntu-upgrade-linux-image-4-10-0-1019-raspi2ubuntu-upgrade-linux-image-4-10-0-37-genericubuntu-upgrade-linux-image-4-10-0-37-generic-lpaeubuntu-upgrade-linux-image-4-10-0-37-lowlatencyubuntu-upgrade-linux-image-4-13-0-1006-raspi2ubuntu-upgrade-linux-image-4-13-0-17-genericubuntu-upgrade-linux-image-4-13-0-17-generic-lpaeubuntu-upgrade-linux-image-4-13-0-17-lowlatencyubuntu-upgrade-linux-image-genericubuntu-upgrade-linux-image-generic-hwe-16-04ubuntu-upgrade-linux-image-generic-lpaeubuntu-upgrade-linux-image-generic-lpae-hwe-16-04ubuntu-upgrade-linux-image-lowlatencyubuntu-upgrade-linux-image-lowlatency-hwe-16-04ubuntu-upgrade-linux-image-powerpc-e500mcubuntu-upgrade-linux-image-powerpc-smpubuntu-upgrade-linux-image-powerpc64-embubuntu-upgrade-linux-image-powerpc64-smpubuntu-upgrade-linux-image-raspi2ubuntu-upgrade-linux-image-virtual

References

    Title
    NEW

    Explore Exposure Command

    Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.