[Triumf-linux-managers] Another privilege escalation vulnerability - CVE-2017-2636

Kel Raywood kray at triumf.ca
Thu Mar 9 13:15:29 PST 2017


Another privilege-escalation vulnerability in the Linux kernel had been 
reported.

https://access.redhat.com/security/vulnerabilities/CVE-2017-2636

Red Hat EL 6 and 7 kernels are affected, hence this applies to 
Scientific Linux as CentOS as well.  Other distributions are also
affected.

As for the previous vulnerability, the flaw is in a rarely-used module, 
n_hdlc, so it is easy to protect your systems by preventing this module 
from loading.

For further instructions see:

https://ccn.triumf.ca/security/linux/vulnerabilities/cve-2017-2636

--
Kelvin Raywood
TRIUMF Information Systems and Technology


More information about the Triumf-linux-managers mailing list