USN-4006-2

Source
https://ubuntu.com/security/notices/USN-4006-2
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-4006-2.json
JSON Data
https://api.osv.dev/v1/vulns/USN-4006-2
Related
Published
2019-06-04T22:54:41.863819Z
Modified
2019-06-04T22:54:41.863819Z
Summary
linux-hwe vulnerability
Details

USN-4006-1 fixed a vulnerability in the Linux kernel for Ubuntu 18.10. This update provides the corresponding updates for the Linux Hardware Enablement (HWE) kernel from Ubuntu 18.10 for Ubuntu 18.04 LTS.

Federico Manuel Bento discovered that the Linux kernel did not properly apply Address Space Layout Randomization (ASLR) in some situations for setuid a.out binaries. A local attacker could use this to improve the chances of exploiting an existing vulnerability in a setuid a.out binary.

As a hardening measure, this update disables a.out support.

References

Affected packages

Ubuntu:18.04:LTS / linux-hwe

Package

Name
linux-hwe
Purl
pkg:deb/ubuntu/linux-hwe?arch=src?distro=bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.18.0-21.22~18.04.1

Affected versions

4.*

4.18.0-13.14~18.04.1
4.18.0-14.15~18.04.1
4.18.0-15.16~18.04.1
4.18.0-16.17~18.04.1
4.18.0-17.18~18.04.1
4.18.0-18.19~18.04.1
4.18.0-20.21~18.04.1

Ecosystem specific

{
    "availability": "No subscription required",
    "binaries": [
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "block-modules-4.18.0-21-generic-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "block-modules-4.18.0-21-generic-lpae-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "block-modules-4.18.0-21-snapdragon-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "crypto-modules-4.18.0-21-generic-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "crypto-modules-4.18.0-21-generic-lpae-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "crypto-modules-4.18.0-21-snapdragon-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "dasd-extra-modules-4.18.0-21-generic-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "dasd-modules-4.18.0-21-generic-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "fat-modules-4.18.0-21-generic-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "fat-modules-4.18.0-21-generic-lpae-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "fat-modules-4.18.0-21-snapdragon-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "fb-modules-4.18.0-21-generic-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "firewire-core-modules-4.18.0-21-generic-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "floppy-modules-4.18.0-21-generic-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "fs-core-modules-4.18.0-21-generic-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "fs-core-modules-4.18.0-21-generic-lpae-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "fs-core-modules-4.18.0-21-snapdragon-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "fs-secondary-modules-4.18.0-21-generic-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "fs-secondary-modules-4.18.0-21-generic-lpae-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "fs-secondary-modules-4.18.0-21-snapdragon-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "input-modules-4.18.0-21-generic-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "input-modules-4.18.0-21-generic-lpae-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "input-modules-4.18.0-21-snapdragon-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "ipmi-modules-4.18.0-21-generic-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "ipmi-modules-4.18.0-21-generic-lpae-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "ipmi-modules-4.18.0-21-snapdragon-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "kernel-image-4.18.0-21-generic-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "kernel-image-4.18.0-21-generic-lpae-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "kernel-image-4.18.0-21-snapdragon-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "linux-buildinfo-4.18.0-21-generic"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "linux-buildinfo-4.18.0-21-generic-lpae"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "linux-buildinfo-4.18.0-21-lowlatency"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "linux-buildinfo-4.18.0-21-snapdragon"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "linux-cloud-tools-4.18.0-21-generic"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "linux-cloud-tools-4.18.0-21-lowlatency"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "linux-headers-4.18.0-21"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "linux-headers-4.18.0-21-generic"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "linux-headers-4.18.0-21-generic-lpae"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "linux-headers-4.18.0-21-lowlatency"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "linux-headers-4.18.0-21-snapdragon"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "linux-hwe-cloud-tools-4.18.0-21"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "linux-hwe-tools-4.18.0-21"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "linux-hwe-udebs-generic"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "linux-hwe-udebs-generic-lpae"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "linux-hwe-udebs-snapdragon"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "linux-image-4.18.0-21-generic"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "linux-image-4.18.0-21-generic-dbgsym"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "linux-image-4.18.0-21-generic-lpae"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "linux-image-4.18.0-21-generic-lpae-dbgsym"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "linux-image-4.18.0-21-lowlatency"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "linux-image-4.18.0-21-lowlatency-dbgsym"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "linux-image-4.18.0-21-snapdragon"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "linux-image-4.18.0-21-snapdragon-dbgsym"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "linux-image-unsigned-4.18.0-21-generic"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "linux-image-unsigned-4.18.0-21-generic-dbgsym"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "linux-image-unsigned-4.18.0-21-lowlatency"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "linux-image-unsigned-4.18.0-21-lowlatency-dbgsym"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "linux-modules-4.18.0-21-generic"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "linux-modules-4.18.0-21-generic-lpae"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "linux-modules-4.18.0-21-lowlatency"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "linux-modules-4.18.0-21-snapdragon"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "linux-modules-extra-4.18.0-21-generic"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "linux-source-4.18.0"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "linux-tools-4.18.0-21-generic"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "linux-tools-4.18.0-21-generic-lpae"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "linux-tools-4.18.0-21-lowlatency"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "linux-tools-4.18.0-21-snapdragon"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "md-modules-4.18.0-21-generic-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "md-modules-4.18.0-21-generic-lpae-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "md-modules-4.18.0-21-snapdragon-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "message-modules-4.18.0-21-generic-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "message-modules-4.18.0-21-snapdragon-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "mouse-modules-4.18.0-21-generic-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "mouse-modules-4.18.0-21-generic-lpae-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "mouse-modules-4.18.0-21-snapdragon-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "multipath-modules-4.18.0-21-generic-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "multipath-modules-4.18.0-21-generic-lpae-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "multipath-modules-4.18.0-21-snapdragon-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "nfs-modules-4.18.0-21-generic-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "nfs-modules-4.18.0-21-generic-lpae-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "nfs-modules-4.18.0-21-snapdragon-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "nic-modules-4.18.0-21-generic-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "nic-modules-4.18.0-21-generic-lpae-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "nic-modules-4.18.0-21-snapdragon-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "nic-pcmcia-modules-4.18.0-21-generic-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "nic-shared-modules-4.18.0-21-generic-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "nic-shared-modules-4.18.0-21-generic-lpae-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "nic-shared-modules-4.18.0-21-snapdragon-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "nic-usb-modules-4.18.0-21-generic-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "nic-usb-modules-4.18.0-21-generic-lpae-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "nic-usb-modules-4.18.0-21-snapdragon-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "parport-modules-4.18.0-21-generic-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "parport-modules-4.18.0-21-generic-lpae-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "parport-modules-4.18.0-21-snapdragon-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "pata-modules-4.18.0-21-generic-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "pcmcia-modules-4.18.0-21-generic-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "pcmcia-storage-modules-4.18.0-21-generic-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "plip-modules-4.18.0-21-generic-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "plip-modules-4.18.0-21-generic-lpae-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "plip-modules-4.18.0-21-snapdragon-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "ppp-modules-4.18.0-21-generic-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "ppp-modules-4.18.0-21-generic-lpae-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "ppp-modules-4.18.0-21-snapdragon-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "sata-modules-4.18.0-21-generic-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "sata-modules-4.18.0-21-generic-lpae-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "sata-modules-4.18.0-21-snapdragon-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "scsi-modules-4.18.0-21-generic-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "scsi-modules-4.18.0-21-generic-lpae-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "scsi-modules-4.18.0-21-snapdragon-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "serial-modules-4.18.0-21-generic-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "storage-core-modules-4.18.0-21-generic-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "storage-core-modules-4.18.0-21-generic-lpae-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "storage-core-modules-4.18.0-21-snapdragon-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "usb-modules-4.18.0-21-generic-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "usb-modules-4.18.0-21-generic-lpae-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "usb-modules-4.18.0-21-snapdragon-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "virtio-modules-4.18.0-21-generic-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "virtio-modules-4.18.0-21-snapdragon-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "vlan-modules-4.18.0-21-generic-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "vlan-modules-4.18.0-21-generic-lpae-di"
        },
        {
            "binary_version": "4.18.0-21.22~18.04.1",
            "binary_name": "vlan-modules-4.18.0-21-snapdragon-di"
        }
    ]
}