A new Linux kernel build, linux-2.6, fixes 11 separate vulnerabilities that could open the kernel to a denial of service attack, information leak or privilege escalation. Under certain conditions a local user on a system with a malfunctioning CD-ROM drive could gain access to sensitive kernel memory. The remaining fixes address a variety of issues, including memory leaks in the implementation of the PF_KEYv2 socket family and the Linux SCTP protocol. The vulnerabilities should really only be of concern to those with specially configured systems.
Source: https://threatpost.com/linux-kernel-update-fixes-dos-leakage-bugs/102463/

