USN-6873-1

Source
https://ubuntu.com/security/notices/USN-6873-1
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-6873-1.json
JSON Data
https://api.osv.dev/v1/vulns/USN-6873-1
Upstream
Related
Published
2024-07-04T01:58:30Z
Modified
2026-08-06T03:07:10.394576264Z
Summary
linux-aws, linux-aws-6.5, linux-oem-6.5, linux-oracle, linux-oracle-6.5, linux-starfive vulnerabilities
Details

It was discovered that the Intel Data Streaming and Intel Analytics Accelerator drivers in the Linux kernel allowed direct access to the devices for unprivileged users and virtual machines. A local attacker could use this to cause a denial of service. (CVE-2024-21823)

Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystem: - Netfilter; (CVE-2024-26643, CVE-2024-26925, CVE-2024-26924, CVE-2024-26809)

References

Affected packages

Ubuntu:22.04:LTS / linux-aws-6.5

Package

Name
linux-aws-6.5
Purl
pkg:deb/ubuntu/linux-aws-6.5?arch=source&distro=jammy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.5.0-1022.22~22.04.1

Affected versions

6.*
6.5.0-1008.8~22.04.1
6.5.0-1010.10~22.04.1
6.5.0-1011.11~22.04.1
6.5.0-1012.12~22.04.1
6.5.0-1014.14~22.04.1
6.5.0-1015.15~22.04.1
6.5.0-1016.16~22.04.1
6.5.0-1017.17~22.04.2
6.5.0-1018.18~22.04.1
6.5.0-1020.20~22.04.1
6.5.0-1021.21~22.04.1

Ecosystem specific

{
    "binaries": [
        {
            "binary_name": "linux-aws-6.5-cloud-tools-6.5.0-1022",
            "binary_version": "6.5.0-1022.22~22.04.1"
        },
        {
            "binary_name": "linux-aws-6.5-headers-6.5.0-1022",
            "binary_version": "6.5.0-1022.22~22.04.1"
        },
        {
            "binary_name": "linux-aws-6.5-tools-6.5.0-1022",
            "binary_version": "6.5.0-1022.22~22.04.1"
        },
        {
            "binary_name": "linux-buildinfo-6.5.0-1022-aws",
            "binary_version": "6.5.0-1022.22~22.04.1"
        },
        {
            "binary_name": "linux-cloud-tools-6.5.0-1022-aws",
            "binary_version": "6.5.0-1022.22~22.04.1"
        },
        {
            "binary_name": "linux-headers-6.5.0-1022-aws",
            "binary_version": "6.5.0-1022.22~22.04.1"
        },
        {
            "binary_name": "linux-image-unsigned-6.5.0-1022-aws",
            "binary_version": "6.5.0-1022.22~22.04.1"
        },
        {
            "binary_name": "linux-modules-6.5.0-1022-aws",
            "binary_version": "6.5.0-1022.22~22.04.1"
        },
        {
            "binary_name": "linux-modules-extra-6.5.0-1022-aws",
            "binary_version": "6.5.0-1022.22~22.04.1"
        },
        {
            "binary_name": "linux-tools-6.5.0-1022-aws",
            "binary_version": "6.5.0-1022.22~22.04.1"
        }
    ],
    "availability": "No subscription required"
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-6873-1.json"
cves_map
{
    "cves": [
        {
            "severity": [
                {
                    "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H",
                    "type": "CVSS_V3"
                },
                {
                    "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
                    "type": "CVSS_V3"
                },
                {
                    "score": "high",
                    "type": "Ubuntu"
                }
            ],
            "id": "CVE-2024-26643"
        },
        {
            "severity": [
                {
                    "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H",
                    "type": "CVSS_V3"
                },
                {
                    "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
                    "type": "CVSS_V3"
                },
                {
                    "score": "high",
                    "type": "Ubuntu"
                }
            ],
            "id": "CVE-2024-26809"
        },
        {
            "severity": [
                {
                    "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H",
                    "type": "CVSS_V3"
                },
                {
                    "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
                    "type": "CVSS_V3"
                },
                {
                    "score": "high",
                    "type": "Ubuntu"
                }
            ],
            "id": "CVE-2024-26924"
        },
        {
            "severity": [
                {
                    "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H",
                    "type": "CVSS_V3"
                },
                {
                    "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
                    "type": "CVSS_V3"
                },
                {
                    "score": "high",
                    "type": "Ubuntu"
                }
            ],
            "id": "CVE-2024-26925"
        }
    ],
    "ecosystem": "Ubuntu:22.04:LTS"
}

Ubuntu:22.04:LTS / linux-oem-6.5

Package

Name
linux-oem-6.5
Purl
pkg:deb/ubuntu/linux-oem-6.5?arch=source&distro=jammy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.5.0-1025.26

Affected versions

6.*
6.5.0-1003.3
6.5.0-1004.4
6.5.0-1006.6
6.5.0-1007.7
6.5.0-1008.8
6.5.0-1009.10
6.5.0-1011.12
6.5.0-1013.14
6.5.0-1014.15
6.5.0-1015.16
6.5.0-1016.17
6.5.0-1018.19
6.5.0-1019.20
6.5.0-1020.21
6.5.0-1022.23
6.5.0-1023.24
6.5.0-1024.25

Ecosystem specific

{
    "binaries": [
        {
            "binary_name": "linux-buildinfo-6.5.0-1025-oem",
            "binary_version": "6.5.0-1025.26"
        },
        {
            "binary_name": "linux-headers-6.5.0-1025-oem",
            "binary_version": "6.5.0-1025.26"
        },
        {
            "binary_name": "linux-image-unsigned-6.5.0-1025-oem",
            "binary_version": "6.5.0-1025.26"
        },
        {
            "binary_name": "linux-modules-6.5.0-1025-oem",
            "binary_version": "6.5.0-1025.26"
        },
        {
            "binary_name": "linux-modules-ipu6-6.5.0-1025-oem",
            "binary_version": "6.5.0-1025.26"
        },
        {
            "binary_name": "linux-modules-ivsc-6.5.0-1025-oem",
            "binary_version": "6.5.0-1025.26"
        },
        {
            "binary_name": "linux-modules-iwlwifi-6.5.0-1025-oem",
            "binary_version": "6.5.0-1025.26"
        },
        {
            "binary_name": "linux-modules-usbio-6.5.0-1025-oem",
            "binary_version": "6.5.0-1025.26"
        },
        {
            "binary_name": "linux-oem-6.5-headers-6.5.0-1025",
            "binary_version": "6.5.0-1025.26"
        },
        {
            "binary_name": "linux-oem-6.5-lib-rust-6.5.0-1025-oem",
            "binary_version": "6.5.0-1025.26"
        },
        {
            "binary_name": "linux-oem-6.5-tools-6.5.0-1025",
            "binary_version": "6.5.0-1025.26"
        },
        {
            "binary_name": "linux-oem-6.5-tools-host",
            "binary_version": "6.5.0-1025.26"
        },
        {
            "binary_name": "linux-tools-6.5.0-1025-oem",
            "binary_version": "6.5.0-1025.26"
        }
    ],
    "availability": "No subscription required"
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-6873-1.json"
cves_map
{
    "cves": [
        {
            "severity": [
                {
                    "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H",
                    "type": "CVSS_V3"
                },
                {
                    "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
                    "type": "CVSS_V3"
                },
                {
                    "score": "high",
                    "type": "Ubuntu"
                }
            ],
            "id": "CVE-2024-26643"
        },
        {
            "severity": [
                {
                    "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H",
                    "type": "CVSS_V3"
                },
                {
                    "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
                    "type": "CVSS_V3"
                },
                {
                    "score": "high",
                    "type": "Ubuntu"
                }
            ],
            "id": "CVE-2024-26809"
        },
        {
            "severity": [
                {
                    "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H",
                    "type": "CVSS_V3"
                },
                {
                    "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
                    "type": "CVSS_V3"
                },
                {
                    "score": "high",
                    "type": "Ubuntu"
                }
            ],
            "id": "CVE-2024-26924"
        },
        {
            "severity": [
                {
                    "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H",
                    "type": "CVSS_V3"
                },
                {
                    "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
                    "type": "CVSS_V3"
                },
                {
                    "score": "high",
                    "type": "Ubuntu"
                }
            ],
            "id": "CVE-2024-26925"
        }
    ],
    "ecosystem": "Ubuntu:22.04:LTS"
}

Ubuntu:22.04:LTS / linux-oracle-6.5

Package

Name
linux-oracle-6.5
Purl
pkg:deb/ubuntu/linux-oracle-6.5?arch=source&distro=jammy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
6.5.0-1025.25~22.04.1

Affected versions

6.*
6.5.0-1013.13~22.04.4
6.5.0-1014.14~22.04.1
6.5.0-1015.15~22.04.1
6.5.0-1016.16~22.04.1
6.5.0-1018.18~22.04.1
6.5.0-1019.19~22.04.1
6.5.0-1020.20~22.04.1
6.5.0-1021.21~22.04.1
6.5.0-1023.23~22.04.1
6.5.0-1024.24~22.04.1

Ecosystem specific

{
    "binaries": [
        {
            "binary_name": "linux-buildinfo-6.5.0-1025-oracle",
            "binary_version": "6.5.0-1025.25~22.04.1"
        },
        {
            "binary_name": "linux-buildinfo-6.5.0-1025-oracle-64k",
            "binary_version": "6.5.0-1025.25~22.04.1"
        },
        {
            "binary_name": "linux-headers-6.5.0-1025-oracle",
            "binary_version": "6.5.0-1025.25~22.04.1"
        },
        {
            "binary_name": "linux-headers-6.5.0-1025-oracle-64k",
            "binary_version": "6.5.0-1025.25~22.04.1"
        },
        {
            "binary_name": "linux-image-unsigned-6.5.0-1025-oracle",
            "binary_version": "6.5.0-1025.25~22.04.1"
        },
        {
            "binary_name": "linux-image-unsigned-6.5.0-1025-oracle-64k",
            "binary_version": "6.5.0-1025.25~22.04.1"
        },
        {
            "binary_name": "linux-modules-6.5.0-1025-oracle",
            "binary_version": "6.5.0-1025.25~22.04.1"
        },
        {
            "binary_name": "linux-modules-6.5.0-1025-oracle-64k",
            "binary_version": "6.5.0-1025.25~22.04.1"
        },
        {
            "binary_name": "linux-modules-extra-6.5.0-1025-oracle",
            "binary_version": "6.5.0-1025.25~22.04.1"
        },
        {
            "binary_name": "linux-modules-extra-6.5.0-1025-oracle-64k",
            "binary_version": "6.5.0-1025.25~22.04.1"
        },
        {
            "binary_name": "linux-oracle-6.5-headers-6.5.0-1025",
            "binary_version": "6.5.0-1025.25~22.04.1"
        },
        {
            "binary_name": "linux-oracle-6.5-tools-6.5.0-1025",
            "binary_version": "6.5.0-1025.25~22.04.1"
        },
        {
            "binary_name": "linux-tools-6.5.0-1025-oracle",
            "binary_version": "6.5.0-1025.25~22.04.1"
        },
        {
            "binary_name": "linux-tools-6.5.0-1025-oracle-64k",
            "binary_version": "6.5.0-1025.25~22.04.1"
        }
    ],
    "availability": "No subscription required"
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-6873-1.json"
cves_map
{
    "cves": [
        {
            "severity": [
                {
                    "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H",
                    "type": "CVSS_V3"
                },
                {
                    "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
                    "type": "CVSS_V3"
                },
                {
                    "score": "high",
                    "type": "Ubuntu"
                }
            ],
            "id": "CVE-2024-26643"
        },
        {
            "severity": [
                {
                    "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H",
                    "type": "CVSS_V3"
                },
                {
                    "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
                    "type": "CVSS_V3"
                },
                {
                    "score": "high",
                    "type": "Ubuntu"
                }
            ],
            "id": "CVE-2024-26809"
        },
        {
            "severity": [
                {
                    "score": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H",
                    "type": "CVSS_V3"
                },
                {
                    "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
                    "type": "CVSS_V3"
                },
                {
                    "score": "high",
                    "type": "Ubuntu"
                }
            ],
            "id": "CVE-2024-26924"
        },
        {
            "severity": [
                {
                    "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H",
                    "type": "CVSS_V3"
                },
                {
                    "score": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
                    "type": "CVSS_V3"
                },
                {
                    "score": "high",
                    "type": "Ubuntu"
                }
            ],
            "id": "CVE-2024-26925"
        }
    ],
    "ecosystem": "Ubuntu:22.04:LTS"
}