PublicDateAtUSN: 2014-12-31 Candidate: CVE-2014-9715 PublicDate: 2015-05-27 10:59:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-9715 http://marc.info/?l=netfilter-devel&m=140112364215200&w=2 http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=223b02d923ecd7c84cf9780bb3686f455d279279 (v3.15-rc1) http://www.openwall.com/lists/oss-security/2015/04/08/1 https://ubuntu.com/security/notices/USN-2611-1 https://ubuntu.com/security/notices/USN-2612-1 https://ubuntu.com/security/notices/USN-2613-1 https://ubuntu.com/security/notices/USN-2614-1 https://ubuntu.com/security/notices/USN-2225-1 Description: include/net/netfilter/nf_conntrack_extend.h in the netfilter subsystem in the Linux kernel before 3.14.5 uses an insufficiently large data type for certain extension data, which allows local users to cause a denial of service (NULL pointer dereference and OOPS) via outbound network traffic that triggers extension loading, as demonstrated by configuring a PPTP tunnel in a NAT environment. Ubuntu-Description: Vincent Tondellier discovered an integer overflow in the Linux kernel's netfilter connection tracking accounting of loaded extensions. An attacker on the local area network (LAN) could potential exploit this flaw to cause a denial of service (system crash of targeted system). Notes: jdstrand> android kernels (flo, goldfish, grouper, maguro, mako and manta) are not supported on the Ubuntu Touch 14.10 and earlier preview kernels jdstrand> linux-lts-saucy no longer receives official support jdstrand> linux-lts-quantal no longer receives official support Bugs: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=741667 https://launchpad.net/bugs/1442080 Priority: medium Discovered-by: Vincent Tondellier Assigned-to: CVSS: Patches_linux: break-fix: 5b423f6a40a0327f9d40bc8b97ce9be266f74368 223b02d923ecd7c84cf9780bb3686f455d279279 upstream_linux: released (3.15~rc1) lucid_linux: not-affected precise_linux: released (3.2.0-84.121) precise/esm_linux: released (3.2.0-84.121) trusty_linux: released (3.13.0-53.88) trusty/esm_linux: released (3.13.0-53.88) utopic_linux: not-affected (3.15.0-1.5) vivid_linux: not-affected (3.16.0-23.31) vivid/ubuntu-core_linux: not-affected (3.16.0-23.31) vivid/stable-phone-overlay_linux: DNE wily_linux: not-affected (3.19.0-15.15) xenial_linux: not-affected (4.2.0-16.19) esm-infra/xenial_linux: not-affected (4.2.0-16.19) yakkety_linux: not-affected (4.4.0-21.37) zesty_linux: not-affected (4.8.0-22.24) devel_linux: not-affected (4.10.0-19.21) Patches_linux-ec2: upstream_linux-ec2: released (3.15~rc1) lucid_linux-ec2: not-affected precise_linux-ec2: DNE precise/esm_linux-ec2: DNE trusty_linux-ec2: DNE trusty/esm_linux-ec2: DNE utopic_linux-ec2: DNE vivid_linux-ec2: DNE vivid/ubuntu-core_linux-ec2: DNE vivid/stable-phone-overlay_linux-ec2: DNE wily_linux-ec2: DNE xenial_linux-ec2: DNE yakkety_linux-ec2: DNE zesty_linux-ec2: DNE devel_linux-ec2: DNE Patches_linux-mvl-dove: upstream_linux-mvl-dove: released (3.15~rc1) lucid_linux-mvl-dove: ignored (reached end-of-life) precise_linux-mvl-dove: DNE precise/esm_linux-mvl-dove: DNE trusty_linux-mvl-dove: DNE trusty/esm_linux-mvl-dove: DNE utopic_linux-mvl-dove: DNE vivid_linux-mvl-dove: DNE vivid/ubuntu-core_linux-mvl-dove: DNE vivid/stable-phone-overlay_linux-mvl-dove: DNE wily_linux-mvl-dove: DNE xenial_linux-mvl-dove: DNE yakkety_linux-mvl-dove: DNE zesty_linux-mvl-dove: DNE devel_linux-mvl-dove: DNE Patches_linux-ti-omap4: upstream_linux-ti-omap4: released (3.15~rc1) lucid_linux-ti-omap4: DNE precise_linux-ti-omap4: released (3.2.0-1464.84) precise/esm_linux-ti-omap4: DNE (precise was released [3.2.0-1464.84]) trusty_linux-ti-omap4: DNE trusty/esm_linux-ti-omap4: DNE utopic_linux-ti-omap4: DNE vivid_linux-ti-omap4: DNE vivid/ubuntu-core_linux-ti-omap4: DNE vivid/stable-phone-overlay_linux-ti-omap4: DNE wily_linux-ti-omap4: DNE xenial_linux-ti-omap4: DNE yakkety_linux-ti-omap4: DNE zesty_linux-ti-omap4: DNE devel_linux-ti-omap4: DNE Patches_linux-fsl-imx51: upstream_linux-fsl-imx51: released (3.15~rc1) lucid_linux-fsl-imx51: ignored (reached end-of-life, does not affect buildd) precise_linux-fsl-imx51: DNE precise/esm_linux-fsl-imx51: DNE trusty_linux-fsl-imx51: DNE trusty/esm_linux-fsl-imx51: DNE utopic_linux-fsl-imx51: DNE vivid_linux-fsl-imx51: DNE vivid/ubuntu-core_linux-fsl-imx51: DNE vivid/stable-phone-overlay_linux-fsl-imx51: DNE wily_linux-fsl-imx51: DNE xenial_linux-fsl-imx51: DNE yakkety_linux-fsl-imx51: DNE zesty_linux-fsl-imx51: DNE devel_linux-fsl-imx51: DNE Patches_linux-linaro-omap: upstream_linux-linaro-omap: released (3.15~rc1) lucid_linux-linaro-omap: DNE precise_linux-linaro-omap: ignored (abandoned) precise/esm_linux-linaro-omap: DNE (precise was ignored [abandoned]) trusty_linux-linaro-omap: DNE trusty/esm_linux-linaro-omap: DNE utopic_linux-linaro-omap: DNE vivid_linux-linaro-omap: DNE vivid/ubuntu-core_linux-linaro-omap: DNE vivid/stable-phone-overlay_linux-linaro-omap: DNE wily_linux-linaro-omap: DNE xenial_linux-linaro-omap: DNE yakkety_linux-linaro-omap: DNE zesty_linux-linaro-omap: DNE devel_linux-linaro-omap: DNE Patches_linux-linaro-shared: upstream_linux-linaro-shared: released (3.15~rc1) lucid_linux-linaro-shared: DNE precise_linux-linaro-shared: ignored (abandoned) precise/esm_linux-linaro-shared: DNE (precise was ignored [abandoned]) trusty_linux-linaro-shared: DNE trusty/esm_linux-linaro-shared: DNE utopic_linux-linaro-shared: DNE vivid_linux-linaro-shared: DNE vivid/ubuntu-core_linux-linaro-shared: DNE vivid/stable-phone-overlay_linux-linaro-shared: DNE wily_linux-linaro-shared: DNE xenial_linux-linaro-shared: DNE yakkety_linux-linaro-shared: DNE zesty_linux-linaro-shared: DNE devel_linux-linaro-shared: DNE Patches_linux-linaro-vexpress: upstream_linux-linaro-vexpress: released (3.15~rc1) lucid_linux-linaro-vexpress: DNE precise_linux-linaro-vexpress: ignored (abandoned) precise/esm_linux-linaro-vexpress: DNE (precise was ignored [abandoned]) trusty_linux-linaro-vexpress: DNE trusty/esm_linux-linaro-vexpress: DNE utopic_linux-linaro-vexpress: DNE vivid_linux-linaro-vexpress: DNE vivid/ubuntu-core_linux-linaro-vexpress: DNE vivid/stable-phone-overlay_linux-linaro-vexpress: DNE wily_linux-linaro-vexpress: DNE xenial_linux-linaro-vexpress: DNE yakkety_linux-linaro-vexpress: DNE zesty_linux-linaro-vexpress: DNE devel_linux-linaro-vexpress: DNE Patches_linux-qcm-msm: upstream_linux-qcm-msm: released (3.15~rc1) lucid_linux-qcm-msm: ignored (abandoned) precise_linux-qcm-msm: ignored (abandoned) precise/esm_linux-qcm-msm: DNE (precise was ignored [abandoned]) trusty_linux-qcm-msm: DNE trusty/esm_linux-qcm-msm: DNE utopic_linux-qcm-msm: DNE vivid_linux-qcm-msm: DNE vivid/ubuntu-core_linux-qcm-msm: DNE vivid/stable-phone-overlay_linux-qcm-msm: DNE wily_linux-qcm-msm: DNE xenial_linux-qcm-msm: DNE yakkety_linux-qcm-msm: DNE zesty_linux-qcm-msm: DNE devel_linux-qcm-msm: DNE Tags_linux-armadaxp: not-ue Patches_linux-armadaxp: upstream_linux-armadaxp: released (3.15~rc1) lucid_linux-armadaxp: DNE precise_linux-armadaxp: released (3.2.0-1650.70) precise/esm_linux-armadaxp: DNE (precise was released [3.2.0-1650.70]) trusty_linux-armadaxp: DNE trusty/esm_linux-armadaxp: DNE utopic_linux-armadaxp: DNE vivid_linux-armadaxp: DNE vivid/ubuntu-core_linux-armadaxp: DNE vivid/stable-phone-overlay_linux-armadaxp: DNE wily_linux-armadaxp: DNE xenial_linux-armadaxp: DNE yakkety_linux-armadaxp: DNE zesty_linux-armadaxp: DNE devel_linux-armadaxp: DNE Tags_linux-lts-quantal: not-ue Patches_linux-lts-quantal: upstream_linux-lts-quantal: released (3.15~rc1) lucid_linux-lts-quantal: DNE precise_linux-lts-quantal: ignored (was pending [3.5.0-61.90] OEM release) precise/esm_linux-lts-quantal: DNE (precise was ignored [was pending [3.5.0-61.90] OEM release]) trusty_linux-lts-quantal: DNE trusty/esm_linux-lts-quantal: DNE utopic_linux-lts-quantal: DNE vivid_linux-lts-quantal: DNE vivid/ubuntu-core_linux-lts-quantal: DNE vivid/stable-phone-overlay_linux-lts-quantal: DNE wily_linux-lts-quantal: DNE xenial_linux-lts-quantal: DNE yakkety_linux-lts-quantal: DNE zesty_linux-lts-quantal: DNE devel_linux-lts-quantal: DNE Patches_linux-lts-raring: upstream_linux-lts-raring: released (3.15~rc1) lucid_linux-lts-raring: DNE precise_linux-lts-raring: ignored (was needs-triage now end-of-life) precise/esm_linux-lts-raring: DNE (precise was ignored [was needs-triage now end-of-life]) trusty_linux-lts-raring: DNE trusty/esm_linux-lts-raring: DNE utopic_linux-lts-raring: DNE vivid_linux-lts-raring: DNE vivid/ubuntu-core_linux-lts-raring: DNE vivid/stable-phone-overlay_linux-lts-raring: DNE wily_linux-lts-raring: DNE xenial_linux-lts-raring: DNE yakkety_linux-lts-raring: DNE zesty_linux-lts-raring: DNE devel_linux-lts-raring: DNE Tags_linux-lts-saucy: not-ue Patches_linux-lts-saucy: upstream_linux-lts-saucy: released (3.15~rc1) lucid_linux-lts-saucy: DNE precise_linux-lts-saucy: released (3.11.0-22.38~precise1) precise/esm_linux-lts-saucy: DNE (precise was released [3.11.0-22.38~precise1]) trusty_linux-lts-saucy: DNE trusty/esm_linux-lts-saucy: DNE utopic_linux-lts-saucy: DNE vivid_linux-lts-saucy: DNE vivid/ubuntu-core_linux-lts-saucy: DNE vivid/stable-phone-overlay_linux-lts-saucy: DNE wily_linux-lts-saucy: DNE xenial_linux-lts-saucy: DNE yakkety_linux-lts-saucy: DNE zesty_linux-lts-saucy: DNE devel_linux-lts-saucy: DNE Patches_linux-lts-trusty: upstream_linux-lts-trusty: released (3.15~rc1) lucid_linux-lts-trusty: DNE precise_linux-lts-trusty: released (3.13.0-53.87~precise1) precise/esm_linux-lts-trusty: released (3.13.0-53.87~precise1) trusty_linux-lts-trusty: DNE trusty/esm_linux-lts-trusty: DNE utopic_linux-lts-trusty: DNE vivid_linux-lts-trusty: DNE vivid/ubuntu-core_linux-lts-trusty: DNE vivid/stable-phone-overlay_linux-lts-trusty: DNE wily_linux-lts-trusty: DNE xenial_linux-lts-trusty: DNE yakkety_linux-lts-trusty: DNE zesty_linux-lts-trusty: DNE devel_linux-lts-trusty: DNE Patches_linux-goldfish: upstream_linux-goldfish: released (3.15~rc1) lucid_linux-goldfish: DNE precise_linux-goldfish: DNE precise/esm_linux-goldfish: DNE trusty_linux-goldfish: ignored trusty/esm_linux-goldfish: DNE (trusty was ignored) utopic_linux-goldfish: ignored (reached end-of-life) vivid_linux-goldfish: ignored (reached end-of-life) vivid/ubuntu-core_linux-goldfish: DNE vivid/stable-phone-overlay_linux-goldfish: DNE wily_linux-goldfish: ignored (reached end-of-life) xenial_linux-goldfish: ignored (abandoned) yakkety_linux-goldfish: ignored (abandoned) zesty_linux-goldfish: ignored (abandoned) devel_linux-goldfish: DNE Patches_linux-grouper: upstream_linux-grouper: released (3.15~rc1) lucid_linux-grouper: DNE precise_linux-grouper: DNE precise/esm_linux-grouper: DNE trusty_linux-grouper: ignored trusty/esm_linux-grouper: DNE (trusty was ignored) utopic_linux-grouper: ignored (reached end-of-life) vivid_linux-grouper: DNE vivid/ubuntu-core_linux-grouper: DNE vivid/stable-phone-overlay_linux-grouper: DNE wily_linux-grouper: DNE xenial_linux-grouper: DNE yakkety_linux-grouper: DNE zesty_linux-grouper: DNE devel_linux-grouper: DNE Patches_linux-maguro: upstream_linux-maguro: released (3.15~rc1) lucid_linux-maguro: DNE precise_linux-maguro: DNE precise/esm_linux-maguro: DNE trusty_linux-maguro: ignored trusty/esm_linux-maguro: DNE (trusty was ignored) utopic_linux-maguro: DNE vivid_linux-maguro: DNE vivid/ubuntu-core_linux-maguro: DNE vivid/stable-phone-overlay_linux-maguro: DNE wily_linux-maguro: DNE xenial_linux-maguro: DNE yakkety_linux-maguro: DNE zesty_linux-maguro: DNE devel_linux-maguro: DNE Patches_linux-mako: upstream_linux-mako: released (3.15~rc1) lucid_linux-mako: DNE precise_linux-mako: DNE precise/esm_linux-mako: DNE trusty_linux-mako: ignored trusty/esm_linux-mako: DNE (trusty was ignored) utopic_linux-mako: not-affected vivid_linux-mako: not-affected vivid/ubuntu-core_linux-mako: DNE vivid/stable-phone-overlay_linux-mako: not-affected wily_linux-mako: not-affected xenial_linux-mako: not-affected yakkety_linux-mako: not-affected zesty_linux-mako: DNE devel_linux-mako: DNE Patches_linux-manta: upstream_linux-manta: released (3.15~rc1) lucid_linux-manta: DNE precise_linux-manta: DNE precise/esm_linux-manta: DNE trusty_linux-manta: ignored trusty/esm_linux-manta: DNE (trusty was ignored) utopic_linux-manta: ignored (reached end-of-life) vivid_linux-manta: ignored (reached end-of-life) vivid/ubuntu-core_linux-manta: DNE vivid/stable-phone-overlay_linux-manta: DNE wily_linux-manta: ignored (reached end-of-life) xenial_linux-manta: DNE yakkety_linux-manta: DNE zesty_linux-manta: DNE devel_linux-manta: DNE Patches_linux-flo: upstream_linux-flo: released (3.15~rc1) lucid_linux-flo: DNE precise_linux-flo: DNE precise/esm_linux-flo: DNE trusty_linux-flo: ignored trusty/esm_linux-flo: DNE (trusty was ignored) utopic_linux-flo: not-affected vivid_linux-flo: not-affected vivid/ubuntu-core_linux-flo: DNE vivid/stable-phone-overlay_linux-flo: not-affected wily_linux-flo: not-affected xenial_linux-flo: not-affected yakkety_linux-flo: not-affected zesty_linux-flo: DNE devel_linux-flo: DNE Patches_linux-lts-utopic: upstream_linux-lts-utopic: released (3.15~rc1) lucid_linux-lts-utopic: DNE precise_linux-lts-utopic: DNE precise/esm_linux-lts-utopic: DNE trusty_linux-lts-utopic: not-affected (3.16.0-25.33~14.04.2) trusty/esm_linux-lts-utopic: DNE (trusty was not-affected [3.16.0-25.33~14.04.2]) utopic_linux-lts-utopic: DNE vivid_linux-lts-utopic: DNE vivid/ubuntu-core_linux-lts-utopic: DNE vivid/stable-phone-overlay_linux-lts-utopic: DNE wily_linux-lts-utopic: DNE xenial_linux-lts-utopic: DNE yakkety_linux-lts-utopic: DNE zesty_linux-lts-utopic: DNE devel_linux-lts-utopic: DNE Patches_linux-2.6: upstream_linux-2.6: released (3.15~rc1) lucid_linux-2.6: DNE precise_linux-2.6: DNE precise/esm_linux-2.6: DNE trusty_linux-2.6: DNE trusty/esm_linux-2.6: DNE utopic_linux-2.6: DNE vivid_linux-2.6: DNE vivid/ubuntu-core_linux-2.6: DNE vivid/stable-phone-overlay_linux-2.6: DNE wily_linux-2.6: DNE xenial_linux-2.6: DNE yakkety_linux-2.6: DNE zesty_linux-2.6: DNE devel_linux-2.6: DNE Patches_linux-lts-vivid: upstream_linux-lts-vivid: released (3.15~rc1) lucid_linux-lts-vivid: DNE precise_linux-lts-vivid: DNE precise/esm_linux-lts-vivid: DNE trusty_linux-lts-vivid: not-affected (3.19.0-18.18~14.04.1) trusty/esm_linux-lts-vivid: DNE (trusty was not-affected [3.19.0-18.18~14.04.1]) utopic_linux-lts-vivid: DNE vivid_linux-lts-vivid: DNE vivid/ubuntu-core_linux-lts-vivid: DNE vivid/stable-phone-overlay_linux-lts-vivid: DNE wily_linux-lts-vivid: DNE xenial_linux-lts-vivid: DNE yakkety_linux-lts-vivid: DNE zesty_linux-lts-vivid: DNE devel_linux-lts-vivid: DNE Patches_linux-lts-wily: upstream_linux-lts-wily: released (3.15~rc1) precise_linux-lts-wily: DNE precise/esm_linux-lts-wily: DNE trusty_linux-lts-wily: not-affected (4.2.0-18.22~14.04.1) trusty/esm_linux-lts-wily: DNE (trusty was not-affected [4.2.0-18.22~14.04.1]) vivid_linux-lts-wily: DNE vivid/ubuntu-core_linux-lts-wily: DNE vivid/stable-phone-overlay_linux-lts-wily: DNE wily_linux-lts-wily: DNE xenial_linux-lts-wily: DNE yakkety_linux-lts-wily: DNE zesty_linux-lts-wily: DNE devel_linux-lts-wily: DNE Patches_linux-raspi2: upstream_linux-raspi2: released (3.15~rc1) precise_linux-raspi2: DNE precise/esm_linux-raspi2: DNE trusty_linux-raspi2: DNE trusty/esm_linux-raspi2: DNE vivid_linux-raspi2: DNE vivid/ubuntu-core_linux-raspi2: released (4.2.0-1014.21) vivid/stable-phone-overlay_linux-raspi2: DNE wily_linux-raspi2: not-affected (4.2.0-1008.12) xenial_linux-raspi2: not-affected (4.2.0-1013.19) yakkety_linux-raspi2: not-affected (4.4.0-1009.10) zesty_linux-raspi2: not-affected (4.8.0-1013.15) devel_linux-raspi2: not-affected (4.10.0-1004.6) Patches_linux-lts-xenial: upstream_linux-lts-xenial: released (3.15~rc1) precise_linux-lts-xenial: DNE precise/esm_linux-lts-xenial: DNE trusty_linux-lts-xenial: not-affected (4.4.0-13.29~14.04.1) trusty/esm_linux-lts-xenial: not-affected (4.4.0-13.29~14.04.1) vivid_linux-lts-xenial: DNE vivid/ubuntu-core_linux-lts-xenial: DNE vivid/stable-phone-overlay_linux-lts-xenial: DNE wily_linux-lts-xenial: DNE xenial_linux-lts-xenial: DNE yakkety_linux-lts-xenial: DNE zesty_linux-lts-xenial: DNE devel_linux-lts-xenial: DNE Patches_linux-snapdragon: upstream_linux-snapdragon: released (3.15~rc1) precise_linux-snapdragon: DNE precise/esm_linux-snapdragon: DNE trusty_linux-snapdragon: DNE trusty/esm_linux-snapdragon: DNE vivid/ubuntu-core_linux-snapdragon: DNE vivid/stable-phone-overlay_linux-snapdragon: DNE wily_linux-snapdragon: DNE xenial_linux-snapdragon: not-affected (4.4.0-1012.12) yakkety_linux-snapdragon: not-affected (4.4.0-1012.12) zesty_linux-snapdragon: not-affected (4.4.0-1029.32) devel_linux-snapdragon: not-affected (4.4.0-1050.54) Patches_linux-aws: upstream_linux-aws: released (3.15~rc1) precise_linux-aws: DNE precise/esm_linux-aws: DNE trusty_linux-aws: not-affected (4.4.0-1002.2) trusty/esm_linux-aws: not-affected (4.4.0-1002.2) vivid/ubuntu-core_linux-aws: DNE vivid/stable-phone-overlay_linux-aws: DNE xenial_linux-aws: not-affected (4.4.0-1001.10) esm-infra/xenial_linux-aws: not-affected (4.4.0-1001.10) yakkety_linux-aws: DNE zesty_linux-aws: DNE devel_linux-aws: DNE Patches_linux-hwe-edge: upstream_linux-hwe-edge: released (3.15~rc1) precise_linux-hwe-edge: DNE precise/esm_linux-hwe-edge: DNE trusty_linux-hwe-edge: DNE trusty/esm_linux-hwe-edge: DNE vivid/ubuntu-core_linux-hwe-edge: DNE vivid/stable-phone-overlay_linux-hwe-edge: DNE xenial_linux-hwe-edge: not-affected (4.8.0-36.36~16.04.1) esm-infra/xenial_linux-hwe-edge: not-affected (4.8.0-36.36~16.04.1) yakkety_linux-hwe-edge: DNE zesty_linux-hwe-edge: DNE devel_linux-hwe-edge: DNE Patches_linux-hwe: upstream_linux-hwe: released (3.15~rc1) precise_linux-hwe: DNE precise/esm_linux-hwe: DNE trusty_linux-hwe: DNE trusty/esm_linux-hwe: DNE vivid/ubuntu-core_linux-hwe: DNE vivid/stable-phone-overlay_linux-hwe: DNE xenial_linux-hwe: not-affected (4.8.0-36.36~16.04.1) esm-infra/xenial_linux-hwe: not-affected (4.8.0-36.36~16.04.1) yakkety_linux-hwe: DNE zesty_linux-hwe: DNE devel_linux-hwe: DNE Patches_linux-gke: upstream_linux-gke: released (3.15~rc1) precise_linux-gke: DNE precise/esm_linux-gke: DNE trusty_linux-gke: DNE trusty/esm_linux-gke: DNE vivid/ubuntu-core_linux-gke: DNE vivid/stable-phone-overlay_linux-gke: DNE xenial_linux-gke: not-affected (4.4.0-1003.3) yakkety_linux-gke: DNE zesty_linux-gke: DNE devel_linux-gke: DNE