• About WordPress
    • WordPress.org
    • Documentation
    • Learn WordPress
    • Support
    • Feedback
Skip to content
May 26, 2026
  • Linkedin
  • Twitter
  • Facebook
  • Youtube

Daily CyberSecurity

Zero-hour alerts. Unmatched analysis.

Primary Menu
  • Home
  • CVE Watchtower
  • Cyber Criminals
  • Data Leak
  • Linux
  • Malware
  • Vulnerability
  • Submit Press Release
  • Vulnerability Report
Light/Dark Button
  • Home
  • Linux
  • Canonical Releases Kernel Security Updates for Ubuntu 17.10/16.04 LTS
  • Linux

Canonical Releases Kernel Security Updates for Ubuntu 17.10/16.04 LTS

Ddos April 25, 2018 2 minutes read

Canonical today released a new kernel security update for the Ubuntu 17.10 (Artful Aardvark) and Ubuntu 16.04 LTS (Xenial Xerus) operating system series to address several recently discovered security vulnerabilities.

For Ubuntu 17.10 (Artful Aardvark), the new security update addresses the bug in the Linux kernel Broadcom UniMAC MDIO bus controller driver (CVE-2018-8043). Due to improper verification of device resources, local attackers can perform DoS attacks on the system.

For Ubuntu 16.04 LTS (Xenial Xerus), the security patch fixes a buffer overflow vulnerability in the keyring subsystem in the Linux kernel (CVE-2017-13305) and an information leak vulnerability in the ACPI Embedded Controller SMBus driver (CVE-2018-5750). Both of these vulnerabilities may allow local attackers to expose sensitive information.

In addition, two race condition issues (CVE-2018-1000004 and CVE-2018-7566) found in the Linux Kernel Advanced Linux Sound Architecture (ALSA) subsystem have also been fixed. This may allow the local attacker to cause the system to deadlock, access /dev/snd/seq, or cause the system to crash.

Finally, this update resolves a security issue (CVE-2017-16538) found in the Linux kernel DM04/QQBOX USB driver. This driver incorrectly handles device connections and warm restarts, allowing physical attackers to execute arbitrary code or crash the system through denial of service.

Canonical has also patched the Ubuntu 16.04 LTS kernel for Microsoft Azure cloud services and Intel Euclid systems, which only contains the issue identified by Jann Horn in the Linux Kernel Berkeley Packet Filter (BPF) (CVE-2017-16995), which may be Allows the local attacker to crash the system or execute arbitrary code.

The Ubuntu 16.04 LTS kernel update for the Microsoft Azure platform addresses a total of 15 security holes, and full details of all fixes can be found here. It is recommended that users update to the linux-image-4.13.0-1014-azure-4.13.0-1014.17 kernel as soon as possible.

Rate this post

Support Our Threat Intelligence

If you find our CVE report and cybersecurity news helpful, consider supporting our work.

Buy Me a Coffee Logo Buy Me a Coffee PayPal
Crypto QR Code
USDT (TRC20):
TN8BdV8cp4T1Cd28gK9qTAnZknzzuwyUtm
USDT (ERC20):
0x3725e1a7d3bc5765499fa6aaafe307fabcd75bce

Share this article:

Facebook Post LinkedIn Telegram

Related posts:

  1. Canonical releases security kernel patch for Ubuntu 17.10 & Ubuntu 16.04 LTS (HWE)
  2. Netrunner 18.03 releases, based-on Manjaro Distro
  3. Pardus Linux 17.2 release, based-Debian Linux distribution
  4. Memory leak found in GNOME Shell
  5. Linux Kernel Vulnerabilities Expose Systems to Privilege Escalation: Flaws Detailed and Exploit Code Released
Tags: Kernel Security Updates

Search

Translation

CVE WATCHTOWER
๐Ÿšจ

Receive alerts for vulnerabilities being exploited in the wild.

โšก

Get notified instantly when a Proof of Concept (PoC) exploit is published.

๐Ÿ”

Access critical info on vulnerabilities even when marked as "RESERVED".

๐Ÿง 

Insights powered by decades of expertise and global intelligence sources.

๐ŸŽฏ

Customize alerts with up to 10 keywords for your specific tech stack.

๐Ÿ“Š

Export the raw CVE database for SIEM integration and reporting.

Upgrade Package

๐Ÿ”ด Live Critical Threats

  • CVE-2026-42773CVSS 9.3
    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
  • CVE-2026-42774CVSS 9.3
    Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
  • CVE-2026-9478CVSS 9.8
    A weakness has been identified in Totolink A8000RU 7.1cu.643_b20200521. Impacted is the...
  • CVE-2026-9477CVSS 9.8
    A security flaw has been discovered in Totolink A8000RU 7.1cu.643_b20200521. This issue...
  • CVE-2026-9476CVSS 9.8
    A vulnerability was identified in Totolink A8000RU 7.1cu.643_b20200521. This vulnerability affects the...
  • CVE-2026-9475CVSS 9.8
    A vulnerability was determined in Totolink A8000RU 7.1cu.643_b20200521. This affects the function...
  • CVE-2026-9458CVSS 9.8
    A vulnerability was identified in Totolink A8000RU 7.1cu.643_b20200521. The impacted element is...
  • CVE-2026-9457CVSS 9.8
    A vulnerability was determined in Totolink A8000RU 7.1cu.643_b20200521. The affected element is...
  • CVE-2026-9456CVSS 9.8
    A vulnerability was found in Totolink A8000RU 7.1cu.643_b20200521. Impacted is the function...
  • CVE-2026-9455CVSS 9.8
    A vulnerability has been found in Totolink A8000RU 7.1cu.643_b20200521. This issue affects...
Powered by CVE WATCHTOWER

Recent Zero-Day Vulnerabilities

  • Exploited in the Wild: Critical OWA Spoofing Flaw (CVE-2026-42897) Hits On-Premises Exchange Servers
  • Exploited in the Wild: Maximum CVSS 10 SD-WAN Flaw (CVE-2026-20182) Grants Admin Control
  • Exploited in the Wild: Critical 9.8 CVSS RCE Hits Canon GUARDIANWALL MailSuite
  • Exploit Code Released: Public PoC Dumps for Windows BitLocker Bypass and SYSTEM Elevation Zero-Days
  • Exploited in the Wild: “Dirty Frag” Linux Vulnerability Grants Instant Root Access
  • Under Active Attack: Ivanti EPMM Zero-Day Exploited in the Wild via Harvested Admin Credentials
Our Websites
  • Penetration Testing Tools
  • The Daily Information Technology
  • Daily CyberSecurity

    • About SecurityOnline.info
    • Advertise with us
    • Announcement
    • Contact
    • Contributor Register
    • Login
    • About SecurityOnline.info
    • Advertise on SecurityOnline.info
    • Contact Us

    When you purchase through links on our site, we may earn an affiliate commission. Hereโ€™s how it works

    • Disclaimer
    • Privacy Policy
    • DMCA NOTICE
    • Linkedin
    • Twitter
    • Facebook
    • Youtube
    Copyright Daily CyberSecurity ยฉ All rights reserved.