[USN-4712-1] Linux kernel regression

Severity None
Affected Packages 65

USN-4576-1 introduced a regression in the Linux kernel.

USN-4576-1 fixed a vulnerability in the overlay file system
implementation in the Linux kernel. Unfortunately, that fix introduced
a regression that could incorrectly deny access to overlay files in
some situations. This update fixes the problem.

We apologize for the inconvenience.

Original vulnerability details:

Giuseppe Scrivano discovered that the overlay file system in the Linux
kernel did not properly perform permission checks in some situations. A
local attacker could possibly use this to bypass intended restrictions and
gain read access to restricted files.

Package Affected Version
pkg:deb/ubuntu/linux-image-virtual?distro=groovy < 5.8.0.41.45
pkg:deb/ubuntu/linux-image-virtual?distro=focal < 5.4.0.65.68
pkg:deb/ubuntu/linux-image-virtual-hwe-20.04?distro=groovy < 5.8.0.41.45
pkg:deb/ubuntu/linux-image-virtual-hwe-20.04?distro=focal < 5.8.0.41.46~20.04.27
pkg:deb/ubuntu/linux-image-virtual-hwe-20.04-edge?distro=groovy < 5.8.0.41.45
pkg:deb/ubuntu/linux-image-virtual-hwe-20.04-edge?distro=focal < 5.8.0.41.46~20.04.27
pkg:deb/ubuntu/linux-image-virtual-hwe-18.04?distro=focal < 5.4.0.65.68
pkg:deb/ubuntu/linux-image-virtual-hwe-18.04?distro=bionic < 5.4.0.65.73~18.04.60
pkg:deb/ubuntu/linux-image-virtual-hwe-18.04-edge?distro=focal < 5.4.0.65.68
pkg:deb/ubuntu/linux-image-virtual-hwe-18.04-edge?distro=bionic < 5.4.0.65.73~18.04.60
pkg:deb/ubuntu/linux-image-snapdragon-hwe-18.04?distro=bionic < 5.4.0.65.73~18.04.60
pkg:deb/ubuntu/linux-image-snapdragon-hwe-18.04-edge?distro=bionic < 5.4.0.65.73~18.04.60
pkg:deb/ubuntu/linux-image-oem?distro=focal < 5.4.0.65.68
pkg:deb/ubuntu/linux-image-oem?distro=bionic < 5.4.0.65.73~18.04.60
pkg:deb/ubuntu/linux-image-oem-osp1?distro=focal < 5.4.0.65.68
pkg:deb/ubuntu/linux-image-oem-osp1?distro=bionic < 5.4.0.65.73~18.04.60
pkg:deb/ubuntu/linux-image-oem-20.04?distro=groovy < 5.8.0.41.45
pkg:deb/ubuntu/linux-image-lowlatency?distro=groovy < 5.8.0.41.45
pkg:deb/ubuntu/linux-image-lowlatency?distro=focal < 5.4.0.65.68
pkg:deb/ubuntu/linux-image-lowlatency-hwe-20.04?distro=groovy < 5.8.0.41.45
pkg:deb/ubuntu/linux-image-lowlatency-hwe-20.04?distro=focal < 5.8.0.41.46~20.04.27
pkg:deb/ubuntu/linux-image-lowlatency-hwe-20.04-edge?distro=groovy < 5.8.0.41.45
pkg:deb/ubuntu/linux-image-lowlatency-hwe-20.04-edge?distro=focal < 5.8.0.41.46~20.04.27
pkg:deb/ubuntu/linux-image-lowlatency-hwe-18.04?distro=focal < 5.4.0.65.68
pkg:deb/ubuntu/linux-image-lowlatency-hwe-18.04?distro=bionic < 5.4.0.65.73~18.04.60
pkg:deb/ubuntu/linux-image-lowlatency-hwe-18.04-edge?distro=focal < 5.4.0.65.68
pkg:deb/ubuntu/linux-image-lowlatency-hwe-18.04-edge?distro=bionic < 5.4.0.65.73~18.04.60
pkg:deb/ubuntu/linux-image-generic?distro=groovy < 5.8.0.41.45
pkg:deb/ubuntu/linux-image-generic?distro=focal < 5.4.0.65.68
pkg:deb/ubuntu/linux-image-generic-lpae?distro=groovy < 5.8.0.41.45
pkg:deb/ubuntu/linux-image-generic-lpae?distro=focal < 5.4.0.65.68
pkg:deb/ubuntu/linux-image-generic-lpae-hwe-20.04?distro=groovy < 5.8.0.41.45
pkg:deb/ubuntu/linux-image-generic-lpae-hwe-20.04?distro=focal < 5.8.0.41.46~20.04.27
pkg:deb/ubuntu/linux-image-generic-lpae-hwe-20.04-edge?distro=groovy < 5.8.0.41.45
pkg:deb/ubuntu/linux-image-generic-lpae-hwe-20.04-edge?distro=focal < 5.8.0.41.46~20.04.27
pkg:deb/ubuntu/linux-image-generic-lpae-hwe-18.04?distro=focal < 5.4.0.65.68
pkg:deb/ubuntu/linux-image-generic-lpae-hwe-18.04?distro=bionic < 5.4.0.65.73~18.04.60
pkg:deb/ubuntu/linux-image-generic-lpae-hwe-18.04-edge?distro=focal < 5.4.0.65.68
pkg:deb/ubuntu/linux-image-generic-lpae-hwe-18.04-edge?distro=bionic < 5.4.0.65.73~18.04.60
pkg:deb/ubuntu/linux-image-generic-hwe-20.04?distro=groovy < 5.8.0.41.45
pkg:deb/ubuntu/linux-image-generic-hwe-20.04?distro=focal < 5.8.0.41.46~20.04.27
pkg:deb/ubuntu/linux-image-generic-hwe-20.04-edge?distro=groovy < 5.8.0.41.45
pkg:deb/ubuntu/linux-image-generic-hwe-20.04-edge?distro=focal < 5.8.0.41.46~20.04.27
pkg:deb/ubuntu/linux-image-generic-hwe-18.04?distro=focal < 5.4.0.65.68
pkg:deb/ubuntu/linux-image-generic-hwe-18.04?distro=bionic < 5.4.0.65.73~18.04.60
pkg:deb/ubuntu/linux-image-generic-hwe-18.04-edge?distro=focal < 5.4.0.65.68
pkg:deb/ubuntu/linux-image-generic-hwe-18.04-edge?distro=bionic < 5.4.0.65.73~18.04.60
pkg:deb/ubuntu/linux-image-generic-64k?distro=groovy < 5.8.0.41.45
pkg:deb/ubuntu/linux-image-generic-64k-hwe-20.04?distro=groovy < 5.8.0.41.45
pkg:deb/ubuntu/linux-image-generic-64k-hwe-20.04?distro=focal < 5.8.0.41.46~20.04.27
pkg:deb/ubuntu/linux-image-generic-64k-hwe-20.04-edge?distro=groovy < 5.8.0.41.45
pkg:deb/ubuntu/linux-image-generic-64k-hwe-20.04-edge?distro=focal < 5.8.0.41.46~20.04.27
pkg:deb/ubuntu/linux-image-5.8.0-41-lowlatency?distro=groovy < 5.8.0-41.46
pkg:deb/ubuntu/linux-image-5.8.0-41-lowlatency?distro=focal < 5.8.0-41.46~20.04.1
pkg:deb/ubuntu/linux-image-5.8.0-41-generic?distro=groovy < 5.8.0-41.46
pkg:deb/ubuntu/linux-image-5.8.0-41-generic?distro=focal < 5.8.0-41.46~20.04.1
pkg:deb/ubuntu/linux-image-5.8.0-41-generic-lpae?distro=groovy < 5.8.0-41.46
pkg:deb/ubuntu/linux-image-5.8.0-41-generic-lpae?distro=focal < 5.8.0-41.46~20.04.1
pkg:deb/ubuntu/linux-image-5.8.0-41-generic-64k?distro=groovy < 5.8.0-41.46
pkg:deb/ubuntu/linux-image-5.4.0-65-lowlatency?distro=focal < 5.4.0-65.73
pkg:deb/ubuntu/linux-image-5.4.0-65-lowlatency?distro=bionic < 5.4.0-65.73~18.04.1
pkg:deb/ubuntu/linux-image-5.4.0-65-generic?distro=focal < 5.4.0-65.73
pkg:deb/ubuntu/linux-image-5.4.0-65-generic?distro=bionic < 5.4.0-65.73~18.04.1
pkg:deb/ubuntu/linux-image-5.4.0-65-generic-lpae?distro=focal < 5.4.0-65.73
pkg:deb/ubuntu/linux-image-5.4.0-65-generic-lpae?distro=bionic < 5.4.0-65.73~18.04.1
ID
USN-4712-1
Severity
none
URL
https://ubuntu.com/security/notices/USN-4712-1
Published
2021-02-02T07:14:01
(3 years ago)
Modified
2021-02-02T07:14:01
(3 years ago)
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:deb/ubuntu/linux-image-virtual?distro=groovy ubuntu linux-image-virtual < 5.8.0.41.45 groovy
Affected pkg:deb/ubuntu/linux-image-virtual?distro=focal ubuntu linux-image-virtual < 5.4.0.65.68 focal
Affected pkg:deb/ubuntu/linux-image-virtual-hwe-20.04?distro=groovy ubuntu linux-image-virtual-hwe-20.04 < 5.8.0.41.45 groovy
Affected pkg:deb/ubuntu/linux-image-virtual-hwe-20.04?distro=focal ubuntu linux-image-virtual-hwe-20.04 < 5.8.0.41.46~20.04.27 focal
Affected pkg:deb/ubuntu/linux-image-virtual-hwe-20.04-edge?distro=groovy ubuntu linux-image-virtual-hwe-20.04-edge < 5.8.0.41.45 groovy
Affected pkg:deb/ubuntu/linux-image-virtual-hwe-20.04-edge?distro=focal ubuntu linux-image-virtual-hwe-20.04-edge < 5.8.0.41.46~20.04.27 focal
Affected pkg:deb/ubuntu/linux-image-virtual-hwe-18.04?distro=focal ubuntu linux-image-virtual-hwe-18.04 < 5.4.0.65.68 focal
Affected pkg:deb/ubuntu/linux-image-virtual-hwe-18.04?distro=bionic ubuntu linux-image-virtual-hwe-18.04 < 5.4.0.65.73~18.04.60 bionic
Affected pkg:deb/ubuntu/linux-image-virtual-hwe-18.04-edge?distro=focal ubuntu linux-image-virtual-hwe-18.04-edge < 5.4.0.65.68 focal
Affected pkg:deb/ubuntu/linux-image-virtual-hwe-18.04-edge?distro=bionic ubuntu linux-image-virtual-hwe-18.04-edge < 5.4.0.65.73~18.04.60 bionic
Affected pkg:deb/ubuntu/linux-image-snapdragon-hwe-18.04?distro=bionic ubuntu linux-image-snapdragon-hwe-18.04 < 5.4.0.65.73~18.04.60 bionic
Affected pkg:deb/ubuntu/linux-image-snapdragon-hwe-18.04-edge?distro=bionic ubuntu linux-image-snapdragon-hwe-18.04-edge < 5.4.0.65.73~18.04.60 bionic
Affected pkg:deb/ubuntu/linux-image-oem?distro=focal ubuntu linux-image-oem < 5.4.0.65.68 focal
Affected pkg:deb/ubuntu/linux-image-oem?distro=bionic ubuntu linux-image-oem < 5.4.0.65.73~18.04.60 bionic
Affected pkg:deb/ubuntu/linux-image-oem-osp1?distro=focal ubuntu linux-image-oem-osp1 < 5.4.0.65.68 focal
Affected pkg:deb/ubuntu/linux-image-oem-osp1?distro=bionic ubuntu linux-image-oem-osp1 < 5.4.0.65.73~18.04.60 bionic
Affected pkg:deb/ubuntu/linux-image-oem-20.04?distro=groovy ubuntu linux-image-oem-20.04 < 5.8.0.41.45 groovy
Affected pkg:deb/ubuntu/linux-image-lowlatency?distro=groovy ubuntu linux-image-lowlatency < 5.8.0.41.45 groovy
Affected pkg:deb/ubuntu/linux-image-lowlatency?distro=focal ubuntu linux-image-lowlatency < 5.4.0.65.68 focal
Affected pkg:deb/ubuntu/linux-image-lowlatency-hwe-20.04?distro=groovy ubuntu linux-image-lowlatency-hwe-20.04 < 5.8.0.41.45 groovy
Affected pkg:deb/ubuntu/linux-image-lowlatency-hwe-20.04?distro=focal ubuntu linux-image-lowlatency-hwe-20.04 < 5.8.0.41.46~20.04.27 focal
Affected pkg:deb/ubuntu/linux-image-lowlatency-hwe-20.04-edge?distro=groovy ubuntu linux-image-lowlatency-hwe-20.04-edge < 5.8.0.41.45 groovy
Affected pkg:deb/ubuntu/linux-image-lowlatency-hwe-20.04-edge?distro=focal ubuntu linux-image-lowlatency-hwe-20.04-edge < 5.8.0.41.46~20.04.27 focal
Affected pkg:deb/ubuntu/linux-image-lowlatency-hwe-18.04?distro=focal ubuntu linux-image-lowlatency-hwe-18.04 < 5.4.0.65.68 focal
Affected pkg:deb/ubuntu/linux-image-lowlatency-hwe-18.04?distro=bionic ubuntu linux-image-lowlatency-hwe-18.04 < 5.4.0.65.73~18.04.60 bionic
Affected pkg:deb/ubuntu/linux-image-lowlatency-hwe-18.04-edge?distro=focal ubuntu linux-image-lowlatency-hwe-18.04-edge < 5.4.0.65.68 focal
Affected pkg:deb/ubuntu/linux-image-lowlatency-hwe-18.04-edge?distro=bionic ubuntu linux-image-lowlatency-hwe-18.04-edge < 5.4.0.65.73~18.04.60 bionic
Affected pkg:deb/ubuntu/linux-image-generic?distro=groovy ubuntu linux-image-generic < 5.8.0.41.45 groovy
Affected pkg:deb/ubuntu/linux-image-generic?distro=focal ubuntu linux-image-generic < 5.4.0.65.68 focal
Affected pkg:deb/ubuntu/linux-image-generic-lpae?distro=groovy ubuntu linux-image-generic-lpae < 5.8.0.41.45 groovy
Affected pkg:deb/ubuntu/linux-image-generic-lpae?distro=focal ubuntu linux-image-generic-lpae < 5.4.0.65.68 focal
Affected pkg:deb/ubuntu/linux-image-generic-lpae-hwe-20.04?distro=groovy ubuntu linux-image-generic-lpae-hwe-20.04 < 5.8.0.41.45 groovy
Affected pkg:deb/ubuntu/linux-image-generic-lpae-hwe-20.04?distro=focal ubuntu linux-image-generic-lpae-hwe-20.04 < 5.8.0.41.46~20.04.27 focal
Affected pkg:deb/ubuntu/linux-image-generic-lpae-hwe-20.04-edge?distro=groovy ubuntu linux-image-generic-lpae-hwe-20.04-edge < 5.8.0.41.45 groovy
Affected pkg:deb/ubuntu/linux-image-generic-lpae-hwe-20.04-edge?distro=focal ubuntu linux-image-generic-lpae-hwe-20.04-edge < 5.8.0.41.46~20.04.27 focal
Affected pkg:deb/ubuntu/linux-image-generic-lpae-hwe-18.04?distro=focal ubuntu linux-image-generic-lpae-hwe-18.04 < 5.4.0.65.68 focal
Affected pkg:deb/ubuntu/linux-image-generic-lpae-hwe-18.04?distro=bionic ubuntu linux-image-generic-lpae-hwe-18.04 < 5.4.0.65.73~18.04.60 bionic
Affected pkg:deb/ubuntu/linux-image-generic-lpae-hwe-18.04-edge?distro=focal ubuntu linux-image-generic-lpae-hwe-18.04-edge < 5.4.0.65.68 focal
Affected pkg:deb/ubuntu/linux-image-generic-lpae-hwe-18.04-edge?distro=bionic ubuntu linux-image-generic-lpae-hwe-18.04-edge < 5.4.0.65.73~18.04.60 bionic
Affected pkg:deb/ubuntu/linux-image-generic-hwe-20.04?distro=groovy ubuntu linux-image-generic-hwe-20.04 < 5.8.0.41.45 groovy
Affected pkg:deb/ubuntu/linux-image-generic-hwe-20.04?distro=focal ubuntu linux-image-generic-hwe-20.04 < 5.8.0.41.46~20.04.27 focal
Affected pkg:deb/ubuntu/linux-image-generic-hwe-20.04-edge?distro=groovy ubuntu linux-image-generic-hwe-20.04-edge < 5.8.0.41.45 groovy
Affected pkg:deb/ubuntu/linux-image-generic-hwe-20.04-edge?distro=focal ubuntu linux-image-generic-hwe-20.04-edge < 5.8.0.41.46~20.04.27 focal
Affected pkg:deb/ubuntu/linux-image-generic-hwe-18.04?distro=focal ubuntu linux-image-generic-hwe-18.04 < 5.4.0.65.68 focal
Affected pkg:deb/ubuntu/linux-image-generic-hwe-18.04?distro=bionic ubuntu linux-image-generic-hwe-18.04 < 5.4.0.65.73~18.04.60 bionic
Affected pkg:deb/ubuntu/linux-image-generic-hwe-18.04-edge?distro=focal ubuntu linux-image-generic-hwe-18.04-edge < 5.4.0.65.68 focal
Affected pkg:deb/ubuntu/linux-image-generic-hwe-18.04-edge?distro=bionic ubuntu linux-image-generic-hwe-18.04-edge < 5.4.0.65.73~18.04.60 bionic
Affected pkg:deb/ubuntu/linux-image-generic-64k?distro=groovy ubuntu linux-image-generic-64k < 5.8.0.41.45 groovy
Affected pkg:deb/ubuntu/linux-image-generic-64k-hwe-20.04?distro=groovy ubuntu linux-image-generic-64k-hwe-20.04 < 5.8.0.41.45 groovy
Affected pkg:deb/ubuntu/linux-image-generic-64k-hwe-20.04?distro=focal ubuntu linux-image-generic-64k-hwe-20.04 < 5.8.0.41.46~20.04.27 focal
Affected pkg:deb/ubuntu/linux-image-generic-64k-hwe-20.04-edge?distro=groovy ubuntu linux-image-generic-64k-hwe-20.04-edge < 5.8.0.41.45 groovy
Affected pkg:deb/ubuntu/linux-image-generic-64k-hwe-20.04-edge?distro=focal ubuntu linux-image-generic-64k-hwe-20.04-edge < 5.8.0.41.46~20.04.27 focal
Affected pkg:deb/ubuntu/linux-image-5.8.0-41-lowlatency?distro=groovy ubuntu linux-image-5.8.0-41-lowlatency < 5.8.0-41.46 groovy
Affected pkg:deb/ubuntu/linux-image-5.8.0-41-lowlatency?distro=focal ubuntu linux-image-5.8.0-41-lowlatency < 5.8.0-41.46~20.04.1 focal
Affected pkg:deb/ubuntu/linux-image-5.8.0-41-generic?distro=groovy ubuntu linux-image-5.8.0-41-generic < 5.8.0-41.46 groovy
Affected pkg:deb/ubuntu/linux-image-5.8.0-41-generic?distro=focal ubuntu linux-image-5.8.0-41-generic < 5.8.0-41.46~20.04.1 focal
Affected pkg:deb/ubuntu/linux-image-5.8.0-41-generic-lpae?distro=groovy ubuntu linux-image-5.8.0-41-generic-lpae < 5.8.0-41.46 groovy
Affected pkg:deb/ubuntu/linux-image-5.8.0-41-generic-lpae?distro=focal ubuntu linux-image-5.8.0-41-generic-lpae < 5.8.0-41.46~20.04.1 focal
Affected pkg:deb/ubuntu/linux-image-5.8.0-41-generic-64k?distro=groovy ubuntu linux-image-5.8.0-41-generic-64k < 5.8.0-41.46 groovy
Affected pkg:deb/ubuntu/linux-image-5.4.0-65-lowlatency?distro=focal ubuntu linux-image-5.4.0-65-lowlatency < 5.4.0-65.73 focal
Affected pkg:deb/ubuntu/linux-image-5.4.0-65-lowlatency?distro=bionic ubuntu linux-image-5.4.0-65-lowlatency < 5.4.0-65.73~18.04.1 bionic
Affected pkg:deb/ubuntu/linux-image-5.4.0-65-generic?distro=focal ubuntu linux-image-5.4.0-65-generic < 5.4.0-65.73 focal
Affected pkg:deb/ubuntu/linux-image-5.4.0-65-generic?distro=bionic ubuntu linux-image-5.4.0-65-generic < 5.4.0-65.73~18.04.1 bionic
Affected pkg:deb/ubuntu/linux-image-5.4.0-65-generic-lpae?distro=focal ubuntu linux-image-5.4.0-65-generic-lpae < 5.4.0-65.73 focal
Affected pkg:deb/ubuntu/linux-image-5.4.0-65-generic-lpae?distro=bionic ubuntu linux-image-5.4.0-65-generic-lpae < 5.4.0-65.73~18.04.1 bionic
Loading...