[ubuntu/xenial-security] linux-gcp 4.15.0-1034.36~16.04.1 (Accepted)

Andy Whitcroft apw at canonical.com
Wed Jun 19 11:03:06 UTC 2019


linux-gcp (4.15.0-1034.36~16.04.1) xenial; urgency=medium


  [ Ubuntu: 4.15.0-1034.36 ]

  * Remote denial of service (resource exhaustion) caused by TCP SACK scoreboard
    manipulation (LP: #1831638)
    - SAUCE: tcp: tcp_fragment() should apply sane memory limits
  * Remote denial of service (system crash) caused by integer overflow in TCP
    SACK handling (LP: #1831637)
    - SAUCE: tcp: limit payload size of sacked skbs

Date: 2019-06-06 15:27:13.910405+00:00
Changed-By: Stefan Bader <stefan.bader at canonical.com>
Signed-By: Andy Whitcroft <apw at canonical.com>
https://launchpad.net/ubuntu/+source/linux-gcp/4.15.0-1034.36~16.04.1
-------------- next part --------------
Sorry, changesfile not available.


More information about the Xenial-changes mailing list