USN-5926-1

Source
https://ubuntu.com/security/notices/USN-5926-1
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/USN-5926-1.json
Related
Published
2023-03-06T23:32:12.746608Z
Modified
2023-03-06T23:32:12.746608Z
Summary
linux, linux-aws, linux-kvm, linux-lts-xenial vulnerabilities
Details

Kirill Tkhai discovered that the XFS file system implementation in the Linux kernel did not calculate size correctly when pre-allocating space in some situations. A local attacker could use this to expose sensitive information. (CVE-2021-4155)

Lee Jones discovered that a use-after-free vulnerability existed in the Bluetooth implementation in the Linux kernel. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2022-20566)

Duoming Zhou discovered that a race condition existed in the SLIP driver in the Linux kernel, leading to a null pointer dereference vulnerability. An attacker could use this to cause a denial of service (system crash). (CVE-2022-41858)

Tamás Koczka discovered that the Bluetooth L2CAP implementation in the Linux kernel did not properly initialize memory in some situations. A physically proximate attacker could possibly use this to expose sensitive information (kernel memory). (CVE-2022-42895)

José Oliveira and Rodrigo Branco discovered that the prctl syscall implementation in the Linux kernel did not properly protect against indirect branch prediction attacks in some situations. A local attacker could possibly use this to expose sensitive information. (CVE-2023-0045)

It was discovered that the RNDIS USB driver in the Linux kernel contained an integer overflow vulnerability. A local attacker with physical access could plug in a malicious USB device to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2023-23559)

References

Affected packages

Ubuntu:Pro:14.04:LTS / linux-lts-xenial

Package

Name
linux-lts-xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0The exact introduced commit is unknown
Fixed
4.4.0-237.271~14.04.1

Ecosystem specific

{
    "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro",
    "binaries": [
        {
            "linux-headers-4.4.0-237-generic": "4.4.0-237.271~14.04.1",
            "linux-signed-lowlatency-lts-xenial": "4.4.0.237.206",
            "linux-cloud-tools-lowlatency-lts-xenial": "4.4.0.237.206",
            "linux-image-virtual-lts-xenial": "4.4.0.237.206",
            "linux-modules-extra-4.4.0-237-generic": "4.4.0-237.271~14.04.1",
            "linux-headers-4.4.0-237": "4.4.0-237.271~14.04.1",
            "linux-generic-lts-xenial": "4.4.0.237.206",
            "linux-image-4.4.0-237-lowlatency": "4.4.0-237.271~14.04.1",
            "linux-image-unsigned-4.4.0-237-generic": "4.4.0-237.271~14.04.1",
            "linux-image-generic-lts-xenial": "4.4.0.237.206",
            "linux-image-extra-virtual-lts-xenial": "4.4.0.237.206",
            "linux-buildinfo-4.4.0-237-lowlatency": "4.4.0-237.271~14.04.1",
            "linux-tools-generic-lts-xenial": "4.4.0.237.206",
            "linux-virtual-lts-xenial": "4.4.0.237.206",
            "linux-headers-virtual-lts-xenial": "4.4.0.237.206",
            "linux-buildinfo-4.4.0-237-generic": "4.4.0-237.271~14.04.1",
            "linux-tools-4.4.0-237-lowlatency": "4.4.0-237.271~14.04.1",
            "linux-signed-generic-lts-xenial": "4.4.0.237.206",
            "linux-lts-xenial-cloud-tools-4.4.0-237": "4.4.0-237.271~14.04.1",
            "linux-cloud-tools-generic-lts-xenial": "4.4.0.237.206",
            "linux-headers-generic-lts-xenial": "4.4.0.237.206",
            "linux-image-lowlatency-lts-xenial": "4.4.0.237.206",
            "linux-modules-4.4.0-237-generic": "4.4.0-237.271~14.04.1",
            "linux-cloud-tools-4.4.0-237-generic": "4.4.0-237.271~14.04.1",
            "linux-image-4.4.0-237-generic": "4.4.0-237.271~14.04.1",
            "linux-cloud-tools-virtual-lts-xenial": "4.4.0.237.206",
            "linux-lts-xenial-tools-4.4.0-237": "4.4.0-237.271~14.04.1",
            "linux-signed-image-generic-lts-xenial": "4.4.0.237.206",
            "linux-signed-image-lowlatency-lts-xenial": "4.4.0.237.206",
            "linux-image-unsigned-4.4.0-237-lowlatency": "4.4.0-237.271~14.04.1",
            "linux-tools-4.4.0-237-generic": "4.4.0-237.271~14.04.1",
            "linux-lowlatency-lts-xenial": "4.4.0.237.206",
            "linux-modules-4.4.0-237-lowlatency": "4.4.0-237.271~14.04.1",
            "linux-cloud-tools-4.4.0-237-lowlatency": "4.4.0-237.271~14.04.1",
            "linux-tools-virtual-lts-xenial": "4.4.0.237.206",
            "linux-tools-lowlatency-lts-xenial": "4.4.0.237.206",
            "linux-headers-4.4.0-237-lowlatency": "4.4.0-237.271~14.04.1",
            "linux-headers-lowlatency-lts-xenial": "4.4.0.237.206"
        }
    ]
}

Ubuntu:Pro:14.04:LTS / linux-aws

Package

Name
linux-aws

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0The exact introduced commit is unknown
Fixed
4.4.0-1116.122

Ecosystem specific

{
    "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro",
    "binaries": [
        {
            "linux-tools-4.4.0-1116-aws": "4.4.0-1116.122",
            "linux-image-4.4.0-1116-aws": "4.4.0-1116.122",
            "linux-aws": "4.4.0.1116.113",
            "linux-buildinfo-4.4.0-1116-aws": "4.4.0-1116.122",
            "linux-tools-aws": "4.4.0.1116.113",
            "linux-headers-aws": "4.4.0.1116.113",
            "linux-headers-4.4.0-1116-aws": "4.4.0-1116.122",
            "linux-aws-cloud-tools-4.4.0-1116": "4.4.0-1116.122",
            "linux-modules-4.4.0-1116-aws": "4.4.0-1116.122",
            "linux-cloud-tools-4.4.0-1116-aws": "4.4.0-1116.122",
            "linux-image-aws": "4.4.0.1116.113",
            "linux-aws-tools-4.4.0-1116": "4.4.0-1116.122",
            "linux-aws-headers-4.4.0-1116": "4.4.0-1116.122"
        }
    ]
}

Ubuntu:Pro:16.04:LTS / linux-kvm

Package

Name
linux-kvm

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0The exact introduced commit is unknown
Fixed
4.4.0-1117.127

Ecosystem specific

{
    "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro",
    "binaries": [
        {
            "linux-headers-kvm": "4.4.0.1117.114",
            "linux-kvm": "4.4.0.1117.114",
            "linux-kvm-cloud-tools-4.4.0-1117": "4.4.0-1117.127",
            "linux-cloud-tools-4.4.0-1117-kvm": "4.4.0-1117.127",
            "linux-tools-kvm": "4.4.0.1117.114",
            "linux-image-4.4.0-1117-kvm": "4.4.0-1117.127",
            "linux-buildinfo-4.4.0-1117-kvm": "4.4.0-1117.127",
            "linux-tools-4.4.0-1117-kvm": "4.4.0-1117.127",
            "linux-kvm-headers-4.4.0-1117": "4.4.0-1117.127",
            "linux-headers-4.4.0-1117-kvm": "4.4.0-1117.127",
            "linux-kvm-tools-4.4.0-1117": "4.4.0-1117.127",
            "linux-image-kvm": "4.4.0.1117.114",
            "linux-modules-4.4.0-1117-kvm": "4.4.0-1117.127"
        }
    ]
}

Ubuntu:Pro:16.04:LTS / linux

Package

Name
linux

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0The exact introduced commit is unknown
Fixed
4.4.0-237.271

Ecosystem specific

{
    "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro",
    "binaries": [
        {
            "linux-tools-virtual-lts-vivid": "4.4.0.237.243",
            "linux-tools-generic-lts-wily": "4.4.0.237.243",
            "linux-headers-generic-lts-wily": "4.4.0.237.243",
            "linux-cloud-tools-virtual-lts-wily": "4.4.0.237.243",
            "linux-source-4.4.0": "4.4.0-237.271",
            "linux-cloud-tools-lowlatency-lts-xenial": "4.4.0.237.243",
            "linux-image-extra-virtual-lts-utopic": "4.4.0.237.243",
            "linux-generic-lts-utopic": "4.4.0.237.243",
            "linux-tools-virtual": "4.4.0.237.243",
            "linux-signed-image-lowlatency": "4.4.0.237.243",
            "linux-source": "4.4.0.237.243",
            "linux-cloud-tools-generic": "4.4.0.237.243",
            "linux-tools-generic": "4.4.0.237.243",
            "linux-image-virtual": "4.4.0.237.243",
            "linux-signed-image-generic-lts-wily": "4.4.0.237.243",
            "linux-headers-virtual-lts-utopic": "4.4.0.237.243",
            "linux-image-generic-lts-vivid": "4.4.0.237.243",
            "linux-virtual": "4.4.0.237.243",
            "linux-tools-4.4.0-237-lowlatency": "4.4.0-237.271",
            "linux-virtual-lts-utopic": "4.4.0.237.243",
            "linux-modules-4.4.0-237-lowlatency": "4.4.0-237.271",
            "linux-image-lowlatency-lts-xenial": "4.4.0.237.243",
            "linux-generic-lts-vivid": "4.4.0.237.243",
            "linux-crashdump": "4.4.0.237.243",
            "linux-generic": "4.4.0.237.243",
            "linux-cloud-tools-4.4.0-237-generic": "4.4.0-237.271",
            "linux-image-unsigned-4.4.0-237-lowlatency": "4.4.0-237.271",
            "linux-headers-lowlatency-lts-utopic": "4.4.0.237.243",
            "linux-cloud-tools-lowlatency-lts-wily": "4.4.0.237.243",
            "linux-image-generic-lts-wily": "4.4.0.237.243",
            "linux-headers-4.4.0-237-lowlatency": "4.4.0-237.271",
            "linux-signed-image-generic": "4.4.0.237.243",
            "linux-tools-lowlatency": "4.4.0.237.243",
            "linux-image-virtual-lts-vivid": "4.4.0.237.243",
            "linux-image-hwe-virtual-trusty": "4.4.0.237.243",
            "linux-cloud-tools-common": "4.4.0-237.271",
            "linux-libc-dev": "4.4.0-237.271",
            "linux-image-virtual-lts-xenial": "4.4.0.237.243",
            "linux-image-unsigned-4.4.0-237-generic": "4.4.0-237.271",
            "linux-tools-lowlatency-lts-wily": "4.4.0.237.243",
            "linux-image-generic-lts-xenial": "4.4.0.237.243",
            "linux-headers-virtual": "4.4.0.237.243",
            "linux-hwe-generic-trusty": "4.4.0.237.243",
            "linux-buildinfo-4.4.0-237-lowlatency": "4.4.0-237.271",
            "linux-virtual-lts-xenial": "4.4.0.237.243",
            "linux-image-generic-lts-utopic": "4.4.0.237.243",
            "linux-tools-generic-lts-vivid": "4.4.0.237.243",
            "linux-headers-virtual-lts-xenial": "4.4.0.237.243",
            "linux-headers-virtual-lts-vivid": "4.4.0.237.243",
            "linux-generic-lts-wily": "4.4.0.237.243",
            "linux-tools-lts-utopic": "4.4.0.237.243",
            "linux-signed-lowlatency": "4.4.0.237.243",
            "linux-image-4.4.0-237-generic": "4.4.0-237.271+1",
            "linux-image-extra-virtual-lts-vivid": "4.4.0.237.243",
            "linux-headers-generic-lts-vivid": "4.4.0.237.243",
            "linux-signed-image-generic-lts-xenial": "4.4.0.237.243",
            "linux-lowlatency-lts-utopic": "4.4.0.237.243",
            "linux-signed-image-lowlatency-lts-xenial": "4.4.0.237.243",
            "linux-tools-common": "4.4.0-237.271",
            "linux-cloud-tools-virtual-lts-xenial": "4.4.0.237.243",
            "linux-image-generic": "4.4.0.237.243",
            "linux-lowlatency-lts-vivid": "4.4.0.237.243",
            "linux-cloud-tools-lowlatency-lts-vivid": "4.4.0.237.243",
            "linux-tools-4.4.0-237": "4.4.0-237.271",
            "linux-headers-generic-lts-utopic": "4.4.0.237.243",
            "linux-lowlatency": "4.4.0.237.243",
            "linux-cloud-tools-virtual-lts-utopic": "4.4.0.237.243",
            "linux-signed-image-generic-lts-utopic": "4.4.0.237.243",
            "linux-cloud-tools-generic-lts-wily": "4.4.0.237.243",
            "linux-image-lowlatency-lts-vivid": "4.4.0.237.243",
            "linux-signed-generic-lts-vivid": "4.4.0.237.243",
            "linux-image-hwe-generic-trusty": "4.4.0.237.243",
            "linux-tools-generic-lts-utopic": "4.4.0.237.243",
            "linux-tools-virtual-lts-wily": "4.4.0.237.243",
            "linux-lowlatency-lts-wily": "4.4.0.237.243",
            "linux-image-virtual-lts-utopic": "4.4.0.237.243",
            "linux-cloud-tools-lowlatency": "4.4.0.237.243",
            "linux-cloud-tools-virtual": "4.4.0.237.243",
            "linux-headers-4.4.0-237": "4.4.0-237.271",
            "linux-image-4.4.0-237-lowlatency": "4.4.0-237.271+1",
            "linux-cloud-tools-generic-lts-vivid": "4.4.0.237.243",
            "linux-cloud-tools-virtual-lts-vivid": "4.4.0.237.243",
            "linux-image-extra-virtual": "4.4.0.237.243",
            "linux-signed-image-lowlatency-lts-wily": "4.4.0.237.243",
            "linux-headers-lowlatency-lts-wily": "4.4.0.237.243",
            "linux-tools-generic-lts-xenial": "4.4.0.237.243",
            "linux-cloud-tools-lowlatency-lts-utopic": "4.4.0.237.243",
            "linux-signed-image-generic-lts-vivid": "4.4.0.237.243",
            "linux-cloud-tools-generic-lts-xenial": "4.4.0.237.243",
            "linux-headers-generic-lts-xenial": "4.4.0.237.243",
            "linux-lowlatency-lts-xenial": "4.4.0.237.243",
            "linux-virtual-lts-vivid": "4.4.0.237.243",
            "linux-image-lowlatency-lts-utopic": "4.4.0.237.243",
            "linux-image-extra-virtual-lts-wily": "4.4.0.237.243",
            "linux-cloud-tools-4.4.0-237": "4.4.0-237.271",
            "linux-headers-lowlatency-lts-xenial": "4.4.0.237.243",
            "linux-signed-lowlatency-lts-wily": "4.4.0.237.243",
            "linux-headers-4.4.0-237-generic": "4.4.0-237.271",
            "linux-tools-lowlatency-lts-vivid": "4.4.0.237.243",
            "linux-signed-lowlatency-lts-xenial": "4.4.0.237.243",
            "linux-image-lowlatency-lts-wily": "4.4.0.237.243",
            "linux-modules-extra-4.4.0-237-generic": "4.4.0-237.271",
            "linux-doc": "4.4.0-237.271",
            "linux-generic-lts-xenial": "4.4.0.237.243",
            "linux-headers-lowlatency-lts-vivid": "4.4.0.237.243",
            "linux-headers-generic": "4.4.0.237.243",
            "linux-headers-lowlatency": "4.4.0.237.243",
            "linux-image-lowlatency": "4.4.0.237.243",
            "linux-image-extra-virtual-lts-xenial": "4.4.0.237.243",
            "linux-tools-virtual-lts-utopic": "4.4.0.237.243",
            "linux-tools-host": "4.4.0-237.271",
            "linux-headers-virtual-lts-wily": "4.4.0.237.243",
            "linux-buildinfo-4.4.0-237-generic": "4.4.0-237.271",
            "linux-signed-generic-lts-wily": "4.4.0.237.243",
            "linux-signed-generic-lts-xenial": "4.4.0.237.243",
            "linux-signed-generic-lts-utopic": "4.4.0.237.243",
            "linux-cloud-tools-generic-lts-utopic": "4.4.0.237.243",
            "linux-image-virtual-lts-wily": "4.4.0.237.243",
            "linux-hwe-virtual-trusty": "4.4.0.237.243",
            "linux-modules-4.4.0-237-generic": "4.4.0-237.271",
            "linux-tools-lowlatency-lts-utopic": "4.4.0.237.243",
            "linux-signed-generic": "4.4.0.237.243",
            "linux-tools-4.4.0-237-generic": "4.4.0-237.271",
            "linux-virtual-lts-wily": "4.4.0.237.243",
            "linux-tools-lowlatency-lts-xenial": "4.4.0.237.243",
            "linux-tools-virtual-lts-xenial": "4.4.0.237.243",
            "linux-cloud-tools-4.4.0-237-lowlatency": "4.4.0-237.271"
        }
    ]
}