URGENT: Linux CVE out on 5.1.x Kernels SEVERITY: CRITICAL

News, happenings
Post Reply
Message
Author
scsijon
Posts: 1596
Joined: Thu 24 May 2007, 03:59
Location: the australian mallee
Contact:

URGENT: Linux CVE out on 5.1.x Kernels SEVERITY: CRITICAL

#1 Post by scsijon »

Peebee and others,

Anyone using 5.1.x pre 5.1.11 you may want to upgrade ASAP, there is a Critical CVE out on it (CVE-2019-11478+), Multiple Linux and FreeBSD DoS Vulnerabilities, Security Vulnerability: TCP SACK Denial of Service attacks, and a few others.

Anyone that uses netflix, especially, should stop using it until you've upgraded (the tcp part of the problem was initially found by their internal systems apparently).

ozsouth
Posts: 858
Joined: Fri 01 Jan 2010, 22:08
Location: S.E Australia

#2 Post by ozsouth »

Today Peebee posted a 5.1.11 64 bit kernel & I posted a 4.14.127 64 bit kernel. Both give TCP_SACK mitigation & are Slacko64/ScPup64 compatible.

User avatar
mikeslr
Posts: 3890
Joined: Mon 16 Jun 2008, 21:20
Location: 500 seconds from Sol

#3 Post by mikeslr »

Following up ozsouth's post as peebee's 5.1.11 kernel package was difficult to locate. The link to it is from here, http://murga-linux.com/puppy/viewtopic. ... 29#1029629. Click "Interim delta updates and newer kernels may be available".

The link to ozsouth's kernel package is on http://murga-linux.com/puppy/viewtopic. ... 12#1030512

Post Reply