[USN-4345-1] Linux kernel vulnerabilities

Severity High
Affected Packages 52
CVEs 9

Several security issues were fixed in the Linux kernel.

Al Viro discovered that the Linux kernel for s390x systems did not properly
perform page table upgrades for kernel sections that use secondary address
mode. A local attacker could use this to cause a denial of service (system
crash) or execute arbitrary code. (CVE-2020-11884)

It was discovered that the Intel Wi-Fi driver in the Linux kernel did not
properly check for errors in some situations. A local attacker could
possibly use this to cause a denial of service (system crash).
(CVE-2019-16234)

Tristan Madani discovered that the block I/O tracing implementation in the
Linux kernel contained a race condition. A local attacker could use this to
cause a denial of service (system crash) or possibly expose sensitive
information. (CVE-2019-19768)

It was discovered that the vhost net driver in the Linux kernel contained a
stack buffer overflow. A local attacker with the ability to perform ioctl()
calls on /dev/vhost-net could use this to cause a denial of service (system
crash). (CVE-2020-10942)

It was discovered that the OV51x USB Camera device driver in the Linux
kernel did not properly validate device metadata. A physically proximate
attacker could use this to cause a denial of service (system crash).
(CVE-2020-11608)

It was discovered that the STV06XX USB Camera device driver in the Linux
kernel did not properly validate device metadata. A physically proximate
attacker could use this to cause a denial of service (system crash).
(CVE-2020-11609)

It was discovered that the Xirlink C-It USB Camera device driver in the
Linux kernel did not properly validate device metadata. A physically
proximate attacker could use this to cause a denial of service (system
crash). (CVE-2020-11668)

It was discovered that the virtual terminal implementation in the Linux
kernel contained a race condition. A local attacker could possibly use this
to cause a denial of service (system crash) or expose sensitive
information. (CVE-2020-8648)

Jordy Zomer discovered that the floppy driver in the Linux kernel did not
properly check for errors in some situations. A local attacker could
possibly use this to cause a denial of service (system crash) or possibly
expose sensitive information. (CVE-2020-9383)

Package Affected Version
pkg:deb/ubuntu/linux-image-virtual?distro=bionic < 4.15.0.99.89
pkg:deb/ubuntu/linux-image-virtual-hwe-16.04?distro=xenial < 4.15.0.99.106
pkg:deb/ubuntu/linux-image-virtual-hwe-16.04?distro=bionic < 4.15.0.99.89
pkg:deb/ubuntu/linux-image-virtual-hwe-16.04-edge?distro=xenial < 4.15.0.99.106
pkg:deb/ubuntu/linux-image-virtual-hwe-16.04-edge?distro=bionic < 4.15.0.99.89
pkg:deb/ubuntu/linux-image-snapdragon?distro=bionic < 4.15.0.1077.80
pkg:deb/ubuntu/linux-image-raspi2?distro=bionic < 4.15.0.1061.59
pkg:deb/ubuntu/linux-image-oracle?distro=xenial < 4.15.0.1038.31
pkg:deb/ubuntu/linux-image-oracle-lts-18.04?distro=bionic < 4.15.0.1038.47
pkg:deb/ubuntu/linux-image-oem?distro=xenial < 4.15.0.99.106
pkg:deb/ubuntu/linux-image-oem?distro=bionic < 4.15.0.1080.84
pkg:deb/ubuntu/linux-image-lowlatency?distro=bionic < 4.15.0.99.89
pkg:deb/ubuntu/linux-image-lowlatency-hwe-16.04?distro=xenial < 4.15.0.99.106
pkg:deb/ubuntu/linux-image-lowlatency-hwe-16.04?distro=bionic < 4.15.0.99.89
pkg:deb/ubuntu/linux-image-lowlatency-hwe-16.04-edge?distro=xenial < 4.15.0.99.106
pkg:deb/ubuntu/linux-image-lowlatency-hwe-16.04-edge?distro=bionic < 4.15.0.99.89
pkg:deb/ubuntu/linux-image-kvm?distro=bionic < 4.15.0.1059.59
pkg:deb/ubuntu/linux-image-gke?distro=xenial < 4.15.0.1061.75
pkg:deb/ubuntu/linux-image-gke?distro=bionic < 4.15.0.1058.62
pkg:deb/ubuntu/linux-image-gke-4.15?distro=bionic < 4.15.0.1058.62
pkg:deb/ubuntu/linux-image-generic?distro=bionic < 4.15.0.99.89
pkg:deb/ubuntu/linux-image-generic-lpae?distro=bionic < 4.15.0.99.89
pkg:deb/ubuntu/linux-image-generic-lpae-hwe-16.04?distro=xenial < 4.15.0.99.106
pkg:deb/ubuntu/linux-image-generic-lpae-hwe-16.04?distro=bionic < 4.15.0.99.89
pkg:deb/ubuntu/linux-image-generic-lpae-hwe-16.04-edge?distro=xenial < 4.15.0.99.106
pkg:deb/ubuntu/linux-image-generic-lpae-hwe-16.04-edge?distro=bionic < 4.15.0.99.89
pkg:deb/ubuntu/linux-image-generic-hwe-16.04?distro=xenial < 4.15.0.99.106
pkg:deb/ubuntu/linux-image-generic-hwe-16.04?distro=bionic < 4.15.0.99.89
pkg:deb/ubuntu/linux-image-generic-hwe-16.04-edge?distro=xenial < 4.15.0.99.106
pkg:deb/ubuntu/linux-image-generic-hwe-16.04-edge?distro=bionic < 4.15.0.99.89
pkg:deb/ubuntu/linux-image-gcp?distro=xenial < 4.15.0.1061.75
pkg:deb/ubuntu/linux-image-azure?distro=xenial < 4.15.0.1082.81
pkg:deb/ubuntu/linux-image-azure-edge?distro=xenial < 4.15.0.1082.81
pkg:deb/ubuntu/linux-image-aws-lts-18.04?distro=bionic < 4.15.0.1066.69
pkg:deb/ubuntu/linux-image-aws-hwe?distro=xenial < 4.15.0.1066.66
pkg:deb/ubuntu/linux-image-4.15.0-99-lowlatency?distro=xenial < 4.15.0-99.100~16.04.1
pkg:deb/ubuntu/linux-image-4.15.0-99-lowlatency?distro=bionic < 4.15.0-99.100
pkg:deb/ubuntu/linux-image-4.15.0-99-generic?distro=xenial < 4.15.0-99.100~16.04.1
pkg:deb/ubuntu/linux-image-4.15.0-99-generic?distro=bionic < 4.15.0-99.100
pkg:deb/ubuntu/linux-image-4.15.0-99-generic-lpae?distro=xenial < 4.15.0-99.100~16.04.1
pkg:deb/ubuntu/linux-image-4.15.0-99-generic-lpae?distro=bionic < 4.15.0-99.100
pkg:deb/ubuntu/linux-image-4.15.0-1082-azure?distro=xenial < 4.15.0-1082.92~16.04.1
pkg:deb/ubuntu/linux-image-4.15.0-1080-oem?distro=bionic < 4.15.0-1080.90
pkg:deb/ubuntu/linux-image-4.15.0-1077-snapdragon?distro=bionic < 4.15.0-1077.84
pkg:deb/ubuntu/linux-image-4.15.0-1066-aws?distro=xenial < 4.15.0-1066.70~16.04.1
pkg:deb/ubuntu/linux-image-4.15.0-1066-aws?distro=bionic < 4.15.0-1066.70
pkg:deb/ubuntu/linux-image-4.15.0-1061-raspi2?distro=bionic < 4.15.0-1061.65
pkg:deb/ubuntu/linux-image-4.15.0-1061-gcp?distro=xenial < 4.15.0-1061.65
pkg:deb/ubuntu/linux-image-4.15.0-1059-kvm?distro=bionic < 4.15.0-1059.60
pkg:deb/ubuntu/linux-image-4.15.0-1058-gke?distro=bionic < 4.15.0-1058.61
pkg:deb/ubuntu/linux-image-4.15.0-1038-oracle?distro=xenial < 4.15.0-1038.42~16.04.1
pkg:deb/ubuntu/linux-image-4.15.0-1038-oracle?distro=bionic < 4.15.0-1038.42
ID
USN-4345-1
Severity
high
URL
https://ubuntu.com/security/notices/USN-4345-1
Published
2020-04-28T23:54:52
(4 years ago)
Modified
2020-04-28T23:54:52
(4 years ago)
Other Advisories
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:deb/ubuntu/linux-image-virtual?distro=bionic ubuntu linux-image-virtual < 4.15.0.99.89 bionic
Affected pkg:deb/ubuntu/linux-image-virtual-hwe-16.04?distro=xenial ubuntu linux-image-virtual-hwe-16.04 < 4.15.0.99.106 xenial
Affected pkg:deb/ubuntu/linux-image-virtual-hwe-16.04?distro=bionic ubuntu linux-image-virtual-hwe-16.04 < 4.15.0.99.89 bionic
Affected pkg:deb/ubuntu/linux-image-virtual-hwe-16.04-edge?distro=xenial ubuntu linux-image-virtual-hwe-16.04-edge < 4.15.0.99.106 xenial
Affected pkg:deb/ubuntu/linux-image-virtual-hwe-16.04-edge?distro=bionic ubuntu linux-image-virtual-hwe-16.04-edge < 4.15.0.99.89 bionic
Affected pkg:deb/ubuntu/linux-image-snapdragon?distro=bionic ubuntu linux-image-snapdragon < 4.15.0.1077.80 bionic
Affected pkg:deb/ubuntu/linux-image-raspi2?distro=bionic ubuntu linux-image-raspi2 < 4.15.0.1061.59 bionic
Affected pkg:deb/ubuntu/linux-image-oracle?distro=xenial ubuntu linux-image-oracle < 4.15.0.1038.31 xenial
Affected pkg:deb/ubuntu/linux-image-oracle-lts-18.04?distro=bionic ubuntu linux-image-oracle-lts-18.04 < 4.15.0.1038.47 bionic
Affected pkg:deb/ubuntu/linux-image-oem?distro=xenial ubuntu linux-image-oem < 4.15.0.99.106 xenial
Affected pkg:deb/ubuntu/linux-image-oem?distro=bionic ubuntu linux-image-oem < 4.15.0.1080.84 bionic
Affected pkg:deb/ubuntu/linux-image-lowlatency?distro=bionic ubuntu linux-image-lowlatency < 4.15.0.99.89 bionic
Affected pkg:deb/ubuntu/linux-image-lowlatency-hwe-16.04?distro=xenial ubuntu linux-image-lowlatency-hwe-16.04 < 4.15.0.99.106 xenial
Affected pkg:deb/ubuntu/linux-image-lowlatency-hwe-16.04?distro=bionic ubuntu linux-image-lowlatency-hwe-16.04 < 4.15.0.99.89 bionic
Affected pkg:deb/ubuntu/linux-image-lowlatency-hwe-16.04-edge?distro=xenial ubuntu linux-image-lowlatency-hwe-16.04-edge < 4.15.0.99.106 xenial
Affected pkg:deb/ubuntu/linux-image-lowlatency-hwe-16.04-edge?distro=bionic ubuntu linux-image-lowlatency-hwe-16.04-edge < 4.15.0.99.89 bionic
Affected pkg:deb/ubuntu/linux-image-kvm?distro=bionic ubuntu linux-image-kvm < 4.15.0.1059.59 bionic
Affected pkg:deb/ubuntu/linux-image-gke?distro=xenial ubuntu linux-image-gke < 4.15.0.1061.75 xenial
Affected pkg:deb/ubuntu/linux-image-gke?distro=bionic ubuntu linux-image-gke < 4.15.0.1058.62 bionic
Affected pkg:deb/ubuntu/linux-image-gke-4.15?distro=bionic ubuntu linux-image-gke-4.15 < 4.15.0.1058.62 bionic
Affected pkg:deb/ubuntu/linux-image-generic?distro=bionic ubuntu linux-image-generic < 4.15.0.99.89 bionic
Affected pkg:deb/ubuntu/linux-image-generic-lpae?distro=bionic ubuntu linux-image-generic-lpae < 4.15.0.99.89 bionic
Affected pkg:deb/ubuntu/linux-image-generic-lpae-hwe-16.04?distro=xenial ubuntu linux-image-generic-lpae-hwe-16.04 < 4.15.0.99.106 xenial
Affected pkg:deb/ubuntu/linux-image-generic-lpae-hwe-16.04?distro=bionic ubuntu linux-image-generic-lpae-hwe-16.04 < 4.15.0.99.89 bionic
Affected pkg:deb/ubuntu/linux-image-generic-lpae-hwe-16.04-edge?distro=xenial ubuntu linux-image-generic-lpae-hwe-16.04-edge < 4.15.0.99.106 xenial
Affected pkg:deb/ubuntu/linux-image-generic-lpae-hwe-16.04-edge?distro=bionic ubuntu linux-image-generic-lpae-hwe-16.04-edge < 4.15.0.99.89 bionic
Affected pkg:deb/ubuntu/linux-image-generic-hwe-16.04?distro=xenial ubuntu linux-image-generic-hwe-16.04 < 4.15.0.99.106 xenial
Affected pkg:deb/ubuntu/linux-image-generic-hwe-16.04?distro=bionic ubuntu linux-image-generic-hwe-16.04 < 4.15.0.99.89 bionic
Affected pkg:deb/ubuntu/linux-image-generic-hwe-16.04-edge?distro=xenial ubuntu linux-image-generic-hwe-16.04-edge < 4.15.0.99.106 xenial
Affected pkg:deb/ubuntu/linux-image-generic-hwe-16.04-edge?distro=bionic ubuntu linux-image-generic-hwe-16.04-edge < 4.15.0.99.89 bionic
Affected pkg:deb/ubuntu/linux-image-gcp?distro=xenial ubuntu linux-image-gcp < 4.15.0.1061.75 xenial
Affected pkg:deb/ubuntu/linux-image-azure?distro=xenial ubuntu linux-image-azure < 4.15.0.1082.81 xenial
Affected pkg:deb/ubuntu/linux-image-azure-edge?distro=xenial ubuntu linux-image-azure-edge < 4.15.0.1082.81 xenial
Affected pkg:deb/ubuntu/linux-image-aws-lts-18.04?distro=bionic ubuntu linux-image-aws-lts-18.04 < 4.15.0.1066.69 bionic
Affected pkg:deb/ubuntu/linux-image-aws-hwe?distro=xenial ubuntu linux-image-aws-hwe < 4.15.0.1066.66 xenial
Affected pkg:deb/ubuntu/linux-image-4.15.0-99-lowlatency?distro=xenial ubuntu linux-image-4.15.0-99-lowlatency < 4.15.0-99.100~16.04.1 xenial
Affected pkg:deb/ubuntu/linux-image-4.15.0-99-lowlatency?distro=bionic ubuntu linux-image-4.15.0-99-lowlatency < 4.15.0-99.100 bionic
Affected pkg:deb/ubuntu/linux-image-4.15.0-99-generic?distro=xenial ubuntu linux-image-4.15.0-99-generic < 4.15.0-99.100~16.04.1 xenial
Affected pkg:deb/ubuntu/linux-image-4.15.0-99-generic?distro=bionic ubuntu linux-image-4.15.0-99-generic < 4.15.0-99.100 bionic
Affected pkg:deb/ubuntu/linux-image-4.15.0-99-generic-lpae?distro=xenial ubuntu linux-image-4.15.0-99-generic-lpae < 4.15.0-99.100~16.04.1 xenial
Affected pkg:deb/ubuntu/linux-image-4.15.0-99-generic-lpae?distro=bionic ubuntu linux-image-4.15.0-99-generic-lpae < 4.15.0-99.100 bionic
Affected pkg:deb/ubuntu/linux-image-4.15.0-1082-azure?distro=xenial ubuntu linux-image-4.15.0-1082-azure < 4.15.0-1082.92~16.04.1 xenial
Affected pkg:deb/ubuntu/linux-image-4.15.0-1080-oem?distro=bionic ubuntu linux-image-4.15.0-1080-oem < 4.15.0-1080.90 bionic
Affected pkg:deb/ubuntu/linux-image-4.15.0-1077-snapdragon?distro=bionic ubuntu linux-image-4.15.0-1077-snapdragon < 4.15.0-1077.84 bionic
Affected pkg:deb/ubuntu/linux-image-4.15.0-1066-aws?distro=xenial ubuntu linux-image-4.15.0-1066-aws < 4.15.0-1066.70~16.04.1 xenial
Affected pkg:deb/ubuntu/linux-image-4.15.0-1066-aws?distro=bionic ubuntu linux-image-4.15.0-1066-aws < 4.15.0-1066.70 bionic
Affected pkg:deb/ubuntu/linux-image-4.15.0-1061-raspi2?distro=bionic ubuntu linux-image-4.15.0-1061-raspi2 < 4.15.0-1061.65 bionic
Affected pkg:deb/ubuntu/linux-image-4.15.0-1061-gcp?distro=xenial ubuntu linux-image-4.15.0-1061-gcp < 4.15.0-1061.65 xenial
Affected pkg:deb/ubuntu/linux-image-4.15.0-1059-kvm?distro=bionic ubuntu linux-image-4.15.0-1059-kvm < 4.15.0-1059.60 bionic
Affected pkg:deb/ubuntu/linux-image-4.15.0-1058-gke?distro=bionic ubuntu linux-image-4.15.0-1058-gke < 4.15.0-1058.61 bionic
Affected pkg:deb/ubuntu/linux-image-4.15.0-1038-oracle?distro=xenial ubuntu linux-image-4.15.0-1038-oracle < 4.15.0-1038.42~16.04.1 xenial
Affected pkg:deb/ubuntu/linux-image-4.15.0-1038-oracle?distro=bionic ubuntu linux-image-4.15.0-1038-oracle < 4.15.0-1038.42 bionic
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...