It was discovered that the AF_UNIX socket garbage collection implementation in Ubuntu Noble's 6.8 kernel did not properly handle out-of-band (OOB) messages, leading to a use-after-free vulnerability. An attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code.
{
"availability": "No subscription required",
"binaries": [
{
"binary_name": "linux-buildinfo-6.8.0-1035-oracle",
"binary_version": "6.8.0-1035.36~22.04.1"
},
{
"binary_name": "linux-buildinfo-6.8.0-1035-oracle-64k",
"binary_version": "6.8.0-1035.36~22.04.1"
},
{
"binary_name": "linux-headers-6.8.0-1035-oracle",
"binary_version": "6.8.0-1035.36~22.04.1"
},
{
"binary_name": "linux-headers-6.8.0-1035-oracle-64k",
"binary_version": "6.8.0-1035.36~22.04.1"
},
{
"binary_name": "linux-image-unsigned-6.8.0-1035-oracle",
"binary_version": "6.8.0-1035.36~22.04.1"
},
{
"binary_name": "linux-image-unsigned-6.8.0-1035-oracle-64k",
"binary_version": "6.8.0-1035.36~22.04.1"
},
{
"binary_name": "linux-modules-6.8.0-1035-oracle",
"binary_version": "6.8.0-1035.36~22.04.1"
},
{
"binary_name": "linux-modules-6.8.0-1035-oracle-64k",
"binary_version": "6.8.0-1035.36~22.04.1"
},
{
"binary_name": "linux-modules-extra-6.8.0-1035-oracle",
"binary_version": "6.8.0-1035.36~22.04.1"
},
{
"binary_name": "linux-modules-extra-6.8.0-1035-oracle-64k",
"binary_version": "6.8.0-1035.36~22.04.1"
},
{
"binary_name": "linux-oracle-6.8-headers-6.8.0-1035",
"binary_version": "6.8.0-1035.36~22.04.1"
},
{
"binary_name": "linux-oracle-6.8-tools-6.8.0-1035",
"binary_version": "6.8.0-1035.36~22.04.1"
},
{
"binary_name": "linux-tools-6.8.0-1035-oracle",
"binary_version": "6.8.0-1035.36~22.04.1"
},
{
"binary_name": "linux-tools-6.8.0-1035-oracle-64k",
"binary_version": "6.8.0-1035.36~22.04.1"
}
]
}