USN-5591-3

See a problem?
Source
https://ubuntu.com/security/notices/USN-5591-3
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/USN-5591-3.json
JSON Data
https://api.osv.dev/v1/vulns/USN-5591-3
Related
  • CVE-2021-33656
Published
2022-09-01T17:51:30.297951Z
Modified
2022-09-01T17:51:30.297951Z
Summary
linux, linux-azure-4.15, linux-dell300x, linux-gcp-4.15, linux-kvm, linux-snapdragon vulnerability
Details

It was discovered that the virtual terminal driver in the Linux kernel did not properly handle VGA console font changes, leading to an out-of-bounds write. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code.

References

Affected packages

Ubuntu:18.04:LTS / linux-gcp-4.15

Package

Name
linux-gcp-4.15

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.15.0-1135.151

Ecosystem specific

{
    "availability": "No subscription needed",
    "binaries": [
        {
            "linux-gcp-4.15-headers-4.15.0-1135": "4.15.0-1135.151",
            "linux-modules-4.15.0-1135-gcp": "4.15.0-1135.151",
            "linux-modules-extra-gcp-lts-18.04": "4.15.0.1135.151",
            "linux-headers-4.15.0-1135-gcp": "4.15.0-1135.151",
            "linux-modules-extra-4.15.0-1135-gcp": "4.15.0-1135.151",
            "linux-headers-gcp-lts-18.04": "4.15.0.1135.151",
            "linux-tools-4.15.0-1135-gcp": "4.15.0-1135.151",
            "linux-image-gcp-lts-18.04": "4.15.0.1135.151",
            "linux-image-4.15.0-1135-gcp": "4.15.0-1135.151",
            "linux-gcp-lts-18.04": "4.15.0.1135.151",
            "linux-tools-gcp-lts-18.04": "4.15.0.1135.151",
            "linux-image-unsigned-4.15.0-1135-gcp": "4.15.0-1135.151",
            "linux-buildinfo-4.15.0-1135-gcp": "4.15.0-1135.151",
            "linux-gcp-4.15-tools-4.15.0-1135": "4.15.0-1135.151"
        }
    ]
}

Ubuntu:18.04:LTS / linux-dell300x

Package

Name
linux-dell300x

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.15.0-1052.57

Ecosystem specific

{
    "availability": "No subscription needed",
    "binaries": [
        {
            "linux-tools-dell300x": "4.15.0.1052.52",
            "linux-tools-4.15.0-1052-dell300x": "4.15.0-1052.57",
            "linux-modules-4.15.0-1052-dell300x": "4.15.0-1052.57",
            "linux-image-unsigned-4.15.0-1052-dell300x": "4.15.0-1052.57",
            "linux-dell300x": "4.15.0.1052.52",
            "linux-dell300x-tools-4.15.0-1052": "4.15.0-1052.57",
            "linux-image-dell300x": "4.15.0.1052.52",
            "linux-dell300x-headers-4.15.0-1052": "4.15.0-1052.57",
            "linux-buildinfo-4.15.0-1052-dell300x": "4.15.0-1052.57",
            "linux-image-4.15.0-1052-dell300x": "4.15.0-1052.57",
            "linux-headers-dell300x": "4.15.0.1052.52",
            "linux-headers-4.15.0-1052-dell300x": "4.15.0-1052.57"
        }
    ]
}

Ubuntu:18.04:LTS / linux-kvm

Package

Name
linux-kvm

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.15.0-1126.131

Ecosystem specific

{
    "availability": "No subscription needed",
    "binaries": [
        {
            "linux-headers-kvm": "4.15.0.1126.119",
            "linux-kvm": "4.15.0.1126.119",
            "linux-image-4.15.0-1126-kvm": "4.15.0-1126.131",
            "linux-tools-4.15.0-1126-kvm": "4.15.0-1126.131",
            "linux-tools-kvm": "4.15.0.1126.119",
            "linux-headers-4.15.0-1126-kvm": "4.15.0-1126.131",
            "linux-kvm-tools-4.15.0-1126": "4.15.0-1126.131",
            "linux-kvm-headers-4.15.0-1126": "4.15.0-1126.131",
            "linux-buildinfo-4.15.0-1126-kvm": "4.15.0-1126.131",
            "linux-modules-4.15.0-1126-kvm": "4.15.0-1126.131",
            "linux-image-kvm": "4.15.0.1126.119"
        }
    ]
}

Ubuntu:18.04:LTS / linux-snapdragon

Package

Name
linux-snapdragon

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.15.0-1136.146

Ecosystem specific

{
    "availability": "No subscription needed",
    "binaries": [
        {
            "linux-headers-snapdragon": "4.15.0.1136.137",
            "linux-snapdragon-headers-4.15.0-1136": "4.15.0-1136.146",
            "linux-image-snapdragon": "4.15.0.1136.137",
            "linux-modules-4.15.0-1136-snapdragon": "4.15.0-1136.146",
            "linux-tools-snapdragon": "4.15.0.1136.137",
            "linux-tools-4.15.0-1136-snapdragon": "4.15.0-1136.146",
            "linux-buildinfo-4.15.0-1136-snapdragon": "4.15.0-1136.146",
            "linux-image-4.15.0-1136-snapdragon": "4.15.0-1136.146",
            "linux-snapdragon-tools-4.15.0-1136": "4.15.0-1136.146",
            "linux-snapdragon": "4.15.0.1136.137",
            "linux-headers-4.15.0-1136-snapdragon": "4.15.0-1136.146"
        }
    ]
}

Ubuntu:18.04:LTS / linux

Package

Name
linux

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.15.0-192.203

Ecosystem specific

{
    "availability": "No subscription needed",
    "binaries": [
        {
            "linux-buildinfo-4.15.0-192-generic-lpae": "4.15.0-192.203",
            "linux-cloud-tools-lowlatency-hwe-16.04": "4.15.0.192.177",
            "linux-signed-image-lowlatency-hwe-16.04-edge": "4.15.0.192.177",
            "linux-signed-lowlatency-hwe-16.04": "4.15.0.192.177",
            "linux-cloud-tools-virtual": "4.15.0.192.177",
            "linux-cloud-tools-lowlatency": "4.15.0.192.177",
            "linux-tools-lowlatency-hwe-16.04-edge": "4.15.0.192.177",
            "linux-tools-virtual-hwe-16.04-edge": "4.15.0.192.177",
            "linux-tools-lowlatency-hwe-16.04": "4.15.0.192.177",
            "linux-cloud-tools-generic-hwe-16.04": "4.15.0.192.177",
            "linux-modules-4.15.0-192-generic": "4.15.0-192.203",
            "linux-tools-virtual": "4.15.0.192.177",
            "linux-cloud-tools-4.15.0-192": "4.15.0-192.203",
            "linux-signed-image-lowlatency": "4.15.0.192.177",
            "linux-headers-4.15.0-192-generic-lpae": "4.15.0-192.203",
            "linux-cloud-tools-virtual-hwe-16.04": "4.15.0.192.177",
            "linux-source": "4.15.0.192.177",
            "linux-image-extra-virtual": "4.15.0.192.177",
            "linux-tools-generic-lpae-hwe-16.04-edge": "4.15.0.192.177",
            "linux-cloud-tools-generic": "4.15.0.192.177",
            "linux-image-virtual": "4.15.0.192.177",
            "linux-headers-generic-hwe-16.04-edge": "4.15.0.192.177",
            "linux-lowlatency-hwe-16.04": "4.15.0.192.177",
            "linux-tools-generic": "4.15.0.192.177",
            "linux-tools-4.15.0-192-generic": "4.15.0-192.203",
            "linux-image-lowlatency-hwe-16.04": "4.15.0.192.177",
            "linux-generic-hwe-16.04-edge": "4.15.0.192.177",
            "linux-virtual": "4.15.0.192.177",
            "linux-signed-image-generic-hwe-16.04-edge": "4.15.0.192.177",
            "linux-image-unsigned-4.15.0-192-lowlatency": "4.15.0-192.203",
            "linux-generic-hwe-16.04": "4.15.0.192.177",
            "linux-generic-lpae": "4.15.0.192.177",
            "linux-buildinfo-4.15.0-192-generic": "4.15.0-192.203",
            "linux-tools-generic-lpae-hwe-16.04": "4.15.0.192.177",
            "linux-cloud-tools-lowlatency-hwe-16.04-edge": "4.15.0.192.177",
            "linux-buildinfo-4.15.0-192-lowlatency": "4.15.0-192.203",
            "linux-crashdump": "4.15.0.192.177",
            "linux-generic-lpae-hwe-16.04-edge": "4.15.0.192.177",
            "linux-cloud-tools-4.15.0-192-lowlatency": "4.15.0-192.203",
            "linux-image-virtual-hwe-16.04-edge": "4.15.0.192.177",
            "linux-generic": "4.15.0.192.177",
            "linux-tools-virtual-hwe-16.04": "4.15.0.192.177",
            "linux-signed-lowlatency-hwe-16.04-edge": "4.15.0.192.177",
            "linux-lowlatency-hwe-16.04-edge": "4.15.0.192.177",
            "linux-tools-4.15.0-192": "4.15.0-192.203",
            "linux-modules-4.15.0-192-generic-lpae": "4.15.0-192.203",
            "linux-signed-image-generic-hwe-16.04": "4.15.0.192.177",
            "linux-headers-generic-lpae": "4.15.0.192.177",
            "linux-image-generic-lpae": "4.15.0.192.177",
            "linux-signed-image-generic": "4.15.0.192.177",
            "linux-tools-lowlatency": "4.15.0.192.177",
            "linux-signed-generic-hwe-16.04-edge": "4.15.0.192.177",
            "linux-source-4.15.0": "4.15.0-192.203",
            "linux-cloud-tools-common": "4.15.0-192.203",
            "linux-signed-generic-hwe-16.04": "4.15.0.192.177",
            "linux-modules-extra-4.15.0-192-generic": "4.15.0-192.203",
            "linux-tools-generic-hwe-16.04-edge": "4.15.0.192.177",
            "linux-libc-dev": "4.15.0-192.203",
            "linux-headers-lowlatency-hwe-16.04-edge": "4.15.0.192.177",
            "linux-headers-virtual-hwe-16.04": "4.15.0.192.177",
            "linux-doc": "4.15.0-192.203",
            "linux-image-extra-virtual-hwe-16.04-edge": "4.15.0.192.177",
            "linux-image-unsigned-4.15.0-192-generic": "4.15.0-192.203",
            "linux-tools-generic-hwe-16.04": "4.15.0.192.177",
            "linux-headers-4.15.0-192-lowlatency": "4.15.0-192.203",
            "linux-image-4.15.0-192-generic-lpae": "4.15.0-192.203",
            "linux-headers-generic": "4.15.0.192.177",
            "linux-image-generic-lpae-hwe-16.04": "4.15.0.192.177",
            "linux-image-4.15.0-192-lowlatency": "4.15.0-192.203",
            "linux-headers-lowlatency": "4.15.0.192.177",
            "linux-headers-4.15.0-192": "4.15.0-192.203",
            "linux-headers-virtual": "4.15.0.192.177",
            "linux-cloud-tools-generic-hwe-16.04-edge": "4.15.0.192.177",
            "linux-image-lowlatency": "4.15.0.192.177",
            "linux-headers-virtual-hwe-16.04-edge": "4.15.0.192.177",
            "linux-virtual-hwe-16.04-edge": "4.15.0.192.177",
            "linux-tools-host": "4.15.0-192.203",
            "linux-generic-lpae-hwe-16.04": "4.15.0.192.177",
            "linux-headers-generic-lpae-hwe-16.04-edge": "4.15.0.192.177",
            "linux-image-4.15.0-192-generic": "4.15.0-192.203",
            "linux-headers-lowlatency-hwe-16.04": "4.15.0.192.177",
            "linux-tools-4.15.0-192-generic-lpae": "4.15.0-192.203",
            "linux-signed-lowlatency": "4.15.0.192.177",
            "linux-tools-generic-lpae": "4.15.0.192.177",
            "linux-virtual-hwe-16.04": "4.15.0.192.177",
            "linux-image-extra-virtual-hwe-16.04": "4.15.0.192.177",
            "linux-cloud-tools-4.15.0-192-generic": "4.15.0-192.203",
            "linux-headers-generic-lpae-hwe-16.04": "4.15.0.192.177",
            "linux-signed-image-lowlatency-hwe-16.04": "4.15.0.192.177",
            "linux-cloud-tools-virtual-hwe-16.04-edge": "4.15.0.192.177",
            "linux-image-generic-hwe-16.04": "4.15.0.192.177",
            "linux-headers-generic-hwe-16.04": "4.15.0.192.177",
            "linux-signed-generic": "4.15.0.192.177",
            "linux-image-generic-lpae-hwe-16.04-edge": "4.15.0.192.177",
            "linux-headers-4.15.0-192-generic": "4.15.0-192.203",
            "linux-tools-common": "4.15.0-192.203",
            "linux-image-generic": "4.15.0.192.177",
            "linux-image-lowlatency-hwe-16.04-edge": "4.15.0.192.177",
            "linux-lowlatency": "4.15.0.192.177",
            "linux-modules-4.15.0-192-lowlatency": "4.15.0-192.203",
            "linux-image-generic-hwe-16.04-edge": "4.15.0.192.177",
            "linux-tools-4.15.0-192-lowlatency": "4.15.0-192.203",
            "linux-image-virtual-hwe-16.04": "4.15.0.192.177"
        }
    ]
}

Ubuntu:18.04:LTS / linux-azure-4.15

Package

Name
linux-azure-4.15

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
4.15.0-1150.165

Ecosystem specific

{
    "availability": "No subscription needed",
    "binaries": [
        {
            "linux-buildinfo-4.15.0-1150-azure": "4.15.0-1150.165",
            "linux-signed-image-azure-lts-18.04": "4.15.0.1150.120",
            "linux-tools-4.15.0-1150-azure": "4.15.0-1150.165",
            "linux-cloud-tools-4.15.0-1150-azure": "4.15.0-1150.165",
            "linux-tools-azure-lts-18.04": "4.15.0.1150.120",
            "linux-signed-azure-lts-18.04": "4.15.0.1150.120",
            "linux-modules-4.15.0-1150-azure": "4.15.0-1150.165",
            "linux-image-4.15.0-1150-azure": "4.15.0-1150.165",
            "linux-azure-lts-18.04": "4.15.0.1150.120",
            "linux-image-azure-lts-18.04": "4.15.0.1150.120",
            "linux-azure-4.15-cloud-tools-4.15.0-1150": "4.15.0-1150.165",
            "linux-cloud-tools-azure-lts-18.04": "4.15.0.1150.120",
            "linux-modules-extra-azure-lts-18.04": "4.15.0.1150.120",
            "linux-headers-4.15.0-1150-azure": "4.15.0-1150.165",
            "linux-image-unsigned-4.15.0-1150-azure": "4.15.0-1150.165",
            "linux-azure-4.15-tools-4.15.0-1150": "4.15.0-1150.165",
            "linux-modules-extra-4.15.0-1150-azure": "4.15.0-1150.165",
            "linux-headers-azure-lts-18.04": "4.15.0.1150.120",
            "linux-azure-4.15-headers-4.15.0-1150": "4.15.0-1150.165"
        }
    ]
}