[USN-4750-1] Linux kernel vulnerabilities

Severity High
Affected Packages 71
CVEs 10

Several security issues were fixed in the Linux kernel.

Bodong Zhao discovered a use-after-free in the Sun keyboard driver
implementation in the Linux kernel. A local attacker could use this to
cause a denial of service or possibly execute arbitrary code.
(CVE-2020-25669)

It was discovered that the jfs file system implementation in the Linux
kernel contained an out-of-bounds read vulnerability. A local attacker
could use this to possibly cause a denial of service (system crash).
(CVE-2020-27815)

Shisong Qin and Bodong Zhao discovered that Speakup screen reader driver in
the Linux kernel did not correctly handle setting line discipline in some
situations. A local attacker could use this to cause a denial of service
(system crash). (CVE-2020-27830, CVE-2020-28941)

It was discovered that an information leak existed in the syscall
implementation in the Linux kernel on 32 bit systems. A local attacker
could use this to expose sensitive information (kernel memory).
(CVE-2020-28588)

Michael Kurth and Pawel Wieczorkiewicz discovered that the Xen event
processing backend in the Linux kernel did not properly limit the number of
events queued. An attacker in a guest VM could use this to cause a denial
of service in the host OS. (CVE-2020-29568)

Olivier Benjamin and Pawel Wieczorkiewicz discovered a race condition the
Xen paravirt block backend in the Linux kernel, leading to a use-after-free
vulnerability. An attacker in a guest VM could use this to cause a denial
of service in the host OS. (CVE-2020-29569)

Jann Horn discovered that the tty subsystem of the Linux kernel did not use
consistent locking in some situations, leading to a read-after-free
vulnerability. A local attacker could use this to cause a denial of service
(system crash) or possibly expose sensitive information (kernel memory).
(CVE-2020-29660)

Jann Horn discovered a race condition in the tty subsystem of the Linux
kernel in the locking for the TIOCSPGRP ioctl(), leading to a use-after-
free vulnerability. A local attacker could use this to cause a denial of
service (system crash) or possibly execute arbitrary code. (CVE-2020-29661)

It was discovered that the netfilter subsystem in the Linux kernel did not
properly handle filter rules in some situations. A local attacker with the
CAP_NET_ADMIN capability could use this to cause a denial of service.
(CVE-2021-20177)

Package Affected Version
pkg:deb/ubuntu/linux-image-virtual?distro=focal < 5.4.0.66.69
pkg:deb/ubuntu/linux-image-virtual-hwe-18.04?distro=focal < 5.4.0.66.69
pkg:deb/ubuntu/linux-image-virtual-hwe-18.04?distro=bionic < 5.4.0.66.74~18.04.61
pkg:deb/ubuntu/linux-image-virtual-hwe-18.04-edge?distro=focal < 5.4.0.66.69
pkg:deb/ubuntu/linux-image-virtual-hwe-18.04-edge?distro=bionic < 5.4.0.66.74~18.04.61
pkg:deb/ubuntu/linux-image-snapdragon-hwe-18.04?distro=bionic < 5.4.0.66.74~18.04.61
pkg:deb/ubuntu/linux-image-snapdragon-hwe-18.04-edge?distro=bionic < 5.4.0.66.74~18.04.61
pkg:deb/ubuntu/linux-image-raspi?distro=focal < 5.4.0.1029.64
pkg:deb/ubuntu/linux-image-raspi2?distro=focal < 5.4.0.1029.64
pkg:deb/ubuntu/linux-image-raspi2-hwe-18.04?distro=focal < 5.4.0.1029.64
pkg:deb/ubuntu/linux-image-raspi2-hwe-18.04-edge?distro=focal < 5.4.0.1029.64
pkg:deb/ubuntu/linux-image-raspi-hwe-18.04?distro=focal < 5.4.0.1029.64
pkg:deb/ubuntu/linux-image-raspi-hwe-18.04?distro=bionic < 5.4.0.1029.32
pkg:deb/ubuntu/linux-image-raspi-hwe-18.04-edge?distro=focal < 5.4.0.1029.64
pkg:deb/ubuntu/linux-image-raspi-hwe-18.04-edge?distro=bionic < 5.4.0.1029.32
pkg:deb/ubuntu/linux-image-oracle?distro=focal < 5.4.0.1038.35
pkg:deb/ubuntu/linux-image-oracle?distro=bionic < 5.4.0.1038.41~18.04.21
pkg:deb/ubuntu/linux-image-oracle-edge?distro=bionic < 5.4.0.1038.41~18.04.21
pkg:deb/ubuntu/linux-image-oem?distro=focal < 5.4.0.66.69
pkg:deb/ubuntu/linux-image-oem?distro=bionic < 5.4.0.66.74~18.04.61
pkg:deb/ubuntu/linux-image-oem-osp1?distro=focal < 5.4.0.66.69
pkg:deb/ubuntu/linux-image-oem-osp1?distro=bionic < 5.4.0.66.74~18.04.61
pkg:deb/ubuntu/linux-image-lowlatency?distro=focal < 5.4.0.66.69
pkg:deb/ubuntu/linux-image-lowlatency-hwe-18.04?distro=focal < 5.4.0.66.69
pkg:deb/ubuntu/linux-image-lowlatency-hwe-18.04?distro=bionic < 5.4.0.66.74~18.04.61
pkg:deb/ubuntu/linux-image-lowlatency-hwe-18.04-edge?distro=focal < 5.4.0.66.69
pkg:deb/ubuntu/linux-image-lowlatency-hwe-18.04-edge?distro=bionic < 5.4.0.66.74~18.04.61
pkg:deb/ubuntu/linux-image-kvm?distro=focal < 5.4.0.1033.31
pkg:deb/ubuntu/linux-image-gkeop?distro=focal < 5.4.0.1010.13
pkg:deb/ubuntu/linux-image-gkeop-5.4?distro=focal < 5.4.0.1010.13
pkg:deb/ubuntu/linux-image-gkeop-5.4?distro=bionic < 5.4.0.1010.11~18.04.11
pkg:deb/ubuntu/linux-image-gke-5.4?distro=bionic < 5.4.0.1036.38~18.04.4
pkg:deb/ubuntu/linux-image-generic?distro=focal < 5.4.0.66.69
pkg:deb/ubuntu/linux-image-generic-lpae?distro=focal < 5.4.0.66.69
pkg:deb/ubuntu/linux-image-generic-lpae-hwe-18.04?distro=focal < 5.4.0.66.69
pkg:deb/ubuntu/linux-image-generic-lpae-hwe-18.04?distro=bionic < 5.4.0.66.74~18.04.61
pkg:deb/ubuntu/linux-image-generic-lpae-hwe-18.04-edge?distro=focal < 5.4.0.66.69
pkg:deb/ubuntu/linux-image-generic-lpae-hwe-18.04-edge?distro=bionic < 5.4.0.66.74~18.04.61
pkg:deb/ubuntu/linux-image-generic-hwe-18.04?distro=focal < 5.4.0.66.69
pkg:deb/ubuntu/linux-image-generic-hwe-18.04?distro=bionic < 5.4.0.66.74~18.04.61
pkg:deb/ubuntu/linux-image-generic-hwe-18.04-edge?distro=focal < 5.4.0.66.69
pkg:deb/ubuntu/linux-image-generic-hwe-18.04-edge?distro=bionic < 5.4.0.66.74~18.04.61
pkg:deb/ubuntu/linux-image-gcp?distro=focal < 5.4.0.1037.46
pkg:deb/ubuntu/linux-image-gcp?distro=bionic < 5.4.0.1037.24
pkg:deb/ubuntu/linux-image-gcp-edge?distro=bionic < 5.4.0.1037.24
pkg:deb/ubuntu/linux-image-azure?distro=focal < 5.4.0.1040.38
pkg:deb/ubuntu/linux-image-azure?distro=bionic < 5.4.0.1040.20
pkg:deb/ubuntu/linux-image-azure-edge?distro=bionic < 5.4.0.1040.20
pkg:deb/ubuntu/linux-image-aws?distro=focal < 5.4.0.1038.39
pkg:deb/ubuntu/linux-image-aws?distro=bionic < 5.4.0.1038.22
pkg:deb/ubuntu/linux-image-aws-edge?distro=bionic < 5.4.0.1038.22
pkg:deb/ubuntu/linux-image-5.4.0-66-lowlatency?distro=focal < 5.4.0-66.74
pkg:deb/ubuntu/linux-image-5.4.0-66-lowlatency?distro=bionic < 5.4.0-66.74~18.04.2
pkg:deb/ubuntu/linux-image-5.4.0-66-generic?distro=focal < 5.4.0-66.74
pkg:deb/ubuntu/linux-image-5.4.0-66-generic?distro=bionic < 5.4.0-66.74~18.04.2
pkg:deb/ubuntu/linux-image-5.4.0-66-generic-lpae?distro=focal < 5.4.0-66.74
pkg:deb/ubuntu/linux-image-5.4.0-66-generic-lpae?distro=bionic < 5.4.0-66.74~18.04.2
pkg:deb/ubuntu/linux-image-5.4.0-1040-azure?distro=focal < 5.4.0-1040.42
pkg:deb/ubuntu/linux-image-5.4.0-1040-azure?distro=bionic < 5.4.0-1040.42~18.04.1
pkg:deb/ubuntu/linux-image-5.4.0-1038-oracle?distro=focal < 5.4.0-1038.41
pkg:deb/ubuntu/linux-image-5.4.0-1038-oracle?distro=bionic < 5.4.0-1038.41~18.04.1
pkg:deb/ubuntu/linux-image-5.4.0-1038-aws?distro=focal < 5.4.0-1038.40
pkg:deb/ubuntu/linux-image-5.4.0-1038-aws?distro=bionic < 5.4.0-1038.40~18.04.1
pkg:deb/ubuntu/linux-image-5.4.0-1037-gcp?distro=focal < 5.4.0-1037.40
pkg:deb/ubuntu/linux-image-5.4.0-1037-gcp?distro=bionic < 5.4.0-1037.40~18.04.1
pkg:deb/ubuntu/linux-image-5.4.0-1036-gke?distro=bionic < 5.4.0-1036.38~18.04.1
pkg:deb/ubuntu/linux-image-5.4.0-1033-kvm?distro=focal < 5.4.0-1033.34
pkg:deb/ubuntu/linux-image-5.4.0-1029-raspi?distro=focal < 5.4.0-1029.32
pkg:deb/ubuntu/linux-image-5.4.0-1029-raspi?distro=bionic < 5.4.0-1029.32~18.04.1
pkg:deb/ubuntu/linux-image-5.4.0-1010-gkeop?distro=focal < 5.4.0-1010.11
pkg:deb/ubuntu/linux-image-5.4.0-1010-gkeop?distro=bionic < 5.4.0-1010.11~18.04.1
ID
USN-4750-1
Severity
high
URL
https://ubuntu.com/security/notices/USN-4750-1
Published
2021-02-25T06:31:14
(3 years ago)
Modified
2021-02-25T06:31:14
(3 years ago)
Other Advisories
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:deb/ubuntu/linux-image-virtual?distro=focal ubuntu linux-image-virtual < 5.4.0.66.69 focal
Affected pkg:deb/ubuntu/linux-image-virtual-hwe-18.04?distro=focal ubuntu linux-image-virtual-hwe-18.04 < 5.4.0.66.69 focal
Affected pkg:deb/ubuntu/linux-image-virtual-hwe-18.04?distro=bionic ubuntu linux-image-virtual-hwe-18.04 < 5.4.0.66.74~18.04.61 bionic
Affected pkg:deb/ubuntu/linux-image-virtual-hwe-18.04-edge?distro=focal ubuntu linux-image-virtual-hwe-18.04-edge < 5.4.0.66.69 focal
Affected pkg:deb/ubuntu/linux-image-virtual-hwe-18.04-edge?distro=bionic ubuntu linux-image-virtual-hwe-18.04-edge < 5.4.0.66.74~18.04.61 bionic
Affected pkg:deb/ubuntu/linux-image-snapdragon-hwe-18.04?distro=bionic ubuntu linux-image-snapdragon-hwe-18.04 < 5.4.0.66.74~18.04.61 bionic
Affected pkg:deb/ubuntu/linux-image-snapdragon-hwe-18.04-edge?distro=bionic ubuntu linux-image-snapdragon-hwe-18.04-edge < 5.4.0.66.74~18.04.61 bionic
Affected pkg:deb/ubuntu/linux-image-raspi?distro=focal ubuntu linux-image-raspi < 5.4.0.1029.64 focal
Affected pkg:deb/ubuntu/linux-image-raspi2?distro=focal ubuntu linux-image-raspi2 < 5.4.0.1029.64 focal
Affected pkg:deb/ubuntu/linux-image-raspi2-hwe-18.04?distro=focal ubuntu linux-image-raspi2-hwe-18.04 < 5.4.0.1029.64 focal
Affected pkg:deb/ubuntu/linux-image-raspi2-hwe-18.04-edge?distro=focal ubuntu linux-image-raspi2-hwe-18.04-edge < 5.4.0.1029.64 focal
Affected pkg:deb/ubuntu/linux-image-raspi-hwe-18.04?distro=focal ubuntu linux-image-raspi-hwe-18.04 < 5.4.0.1029.64 focal
Affected pkg:deb/ubuntu/linux-image-raspi-hwe-18.04?distro=bionic ubuntu linux-image-raspi-hwe-18.04 < 5.4.0.1029.32 bionic
Affected pkg:deb/ubuntu/linux-image-raspi-hwe-18.04-edge?distro=focal ubuntu linux-image-raspi-hwe-18.04-edge < 5.4.0.1029.64 focal
Affected pkg:deb/ubuntu/linux-image-raspi-hwe-18.04-edge?distro=bionic ubuntu linux-image-raspi-hwe-18.04-edge < 5.4.0.1029.32 bionic
Affected pkg:deb/ubuntu/linux-image-oracle?distro=focal ubuntu linux-image-oracle < 5.4.0.1038.35 focal
Affected pkg:deb/ubuntu/linux-image-oracle?distro=bionic ubuntu linux-image-oracle < 5.4.0.1038.41~18.04.21 bionic
Affected pkg:deb/ubuntu/linux-image-oracle-edge?distro=bionic ubuntu linux-image-oracle-edge < 5.4.0.1038.41~18.04.21 bionic
Affected pkg:deb/ubuntu/linux-image-oem?distro=focal ubuntu linux-image-oem < 5.4.0.66.69 focal
Affected pkg:deb/ubuntu/linux-image-oem?distro=bionic ubuntu linux-image-oem < 5.4.0.66.74~18.04.61 bionic
Affected pkg:deb/ubuntu/linux-image-oem-osp1?distro=focal ubuntu linux-image-oem-osp1 < 5.4.0.66.69 focal
Affected pkg:deb/ubuntu/linux-image-oem-osp1?distro=bionic ubuntu linux-image-oem-osp1 < 5.4.0.66.74~18.04.61 bionic
Affected pkg:deb/ubuntu/linux-image-lowlatency?distro=focal ubuntu linux-image-lowlatency < 5.4.0.66.69 focal
Affected pkg:deb/ubuntu/linux-image-lowlatency-hwe-18.04?distro=focal ubuntu linux-image-lowlatency-hwe-18.04 < 5.4.0.66.69 focal
Affected pkg:deb/ubuntu/linux-image-lowlatency-hwe-18.04?distro=bionic ubuntu linux-image-lowlatency-hwe-18.04 < 5.4.0.66.74~18.04.61 bionic
Affected pkg:deb/ubuntu/linux-image-lowlatency-hwe-18.04-edge?distro=focal ubuntu linux-image-lowlatency-hwe-18.04-edge < 5.4.0.66.69 focal
Affected pkg:deb/ubuntu/linux-image-lowlatency-hwe-18.04-edge?distro=bionic ubuntu linux-image-lowlatency-hwe-18.04-edge < 5.4.0.66.74~18.04.61 bionic
Affected pkg:deb/ubuntu/linux-image-kvm?distro=focal ubuntu linux-image-kvm < 5.4.0.1033.31 focal
Affected pkg:deb/ubuntu/linux-image-gkeop?distro=focal ubuntu linux-image-gkeop < 5.4.0.1010.13 focal
Affected pkg:deb/ubuntu/linux-image-gkeop-5.4?distro=focal ubuntu linux-image-gkeop-5.4 < 5.4.0.1010.13 focal
Affected pkg:deb/ubuntu/linux-image-gkeop-5.4?distro=bionic ubuntu linux-image-gkeop-5.4 < 5.4.0.1010.11~18.04.11 bionic
Affected pkg:deb/ubuntu/linux-image-gke-5.4?distro=bionic ubuntu linux-image-gke-5.4 < 5.4.0.1036.38~18.04.4 bionic
Affected pkg:deb/ubuntu/linux-image-generic?distro=focal ubuntu linux-image-generic < 5.4.0.66.69 focal
Affected pkg:deb/ubuntu/linux-image-generic-lpae?distro=focal ubuntu linux-image-generic-lpae < 5.4.0.66.69 focal
Affected pkg:deb/ubuntu/linux-image-generic-lpae-hwe-18.04?distro=focal ubuntu linux-image-generic-lpae-hwe-18.04 < 5.4.0.66.69 focal
Affected pkg:deb/ubuntu/linux-image-generic-lpae-hwe-18.04?distro=bionic ubuntu linux-image-generic-lpae-hwe-18.04 < 5.4.0.66.74~18.04.61 bionic
Affected pkg:deb/ubuntu/linux-image-generic-lpae-hwe-18.04-edge?distro=focal ubuntu linux-image-generic-lpae-hwe-18.04-edge < 5.4.0.66.69 focal
Affected pkg:deb/ubuntu/linux-image-generic-lpae-hwe-18.04-edge?distro=bionic ubuntu linux-image-generic-lpae-hwe-18.04-edge < 5.4.0.66.74~18.04.61 bionic
Affected pkg:deb/ubuntu/linux-image-generic-hwe-18.04?distro=focal ubuntu linux-image-generic-hwe-18.04 < 5.4.0.66.69 focal
Affected pkg:deb/ubuntu/linux-image-generic-hwe-18.04?distro=bionic ubuntu linux-image-generic-hwe-18.04 < 5.4.0.66.74~18.04.61 bionic
Affected pkg:deb/ubuntu/linux-image-generic-hwe-18.04-edge?distro=focal ubuntu linux-image-generic-hwe-18.04-edge < 5.4.0.66.69 focal
Affected pkg:deb/ubuntu/linux-image-generic-hwe-18.04-edge?distro=bionic ubuntu linux-image-generic-hwe-18.04-edge < 5.4.0.66.74~18.04.61 bionic
Affected pkg:deb/ubuntu/linux-image-gcp?distro=focal ubuntu linux-image-gcp < 5.4.0.1037.46 focal
Affected pkg:deb/ubuntu/linux-image-gcp?distro=bionic ubuntu linux-image-gcp < 5.4.0.1037.24 bionic
Affected pkg:deb/ubuntu/linux-image-gcp-edge?distro=bionic ubuntu linux-image-gcp-edge < 5.4.0.1037.24 bionic
Affected pkg:deb/ubuntu/linux-image-azure?distro=focal ubuntu linux-image-azure < 5.4.0.1040.38 focal
Affected pkg:deb/ubuntu/linux-image-azure?distro=bionic ubuntu linux-image-azure < 5.4.0.1040.20 bionic
Affected pkg:deb/ubuntu/linux-image-azure-edge?distro=bionic ubuntu linux-image-azure-edge < 5.4.0.1040.20 bionic
Affected pkg:deb/ubuntu/linux-image-aws?distro=focal ubuntu linux-image-aws < 5.4.0.1038.39 focal
Affected pkg:deb/ubuntu/linux-image-aws?distro=bionic ubuntu linux-image-aws < 5.4.0.1038.22 bionic
Affected pkg:deb/ubuntu/linux-image-aws-edge?distro=bionic ubuntu linux-image-aws-edge < 5.4.0.1038.22 bionic
Affected pkg:deb/ubuntu/linux-image-5.4.0-66-lowlatency?distro=focal ubuntu linux-image-5.4.0-66-lowlatency < 5.4.0-66.74 focal
Affected pkg:deb/ubuntu/linux-image-5.4.0-66-lowlatency?distro=bionic ubuntu linux-image-5.4.0-66-lowlatency < 5.4.0-66.74~18.04.2 bionic
Affected pkg:deb/ubuntu/linux-image-5.4.0-66-generic?distro=focal ubuntu linux-image-5.4.0-66-generic < 5.4.0-66.74 focal
Affected pkg:deb/ubuntu/linux-image-5.4.0-66-generic?distro=bionic ubuntu linux-image-5.4.0-66-generic < 5.4.0-66.74~18.04.2 bionic
Affected pkg:deb/ubuntu/linux-image-5.4.0-66-generic-lpae?distro=focal ubuntu linux-image-5.4.0-66-generic-lpae < 5.4.0-66.74 focal
Affected pkg:deb/ubuntu/linux-image-5.4.0-66-generic-lpae?distro=bionic ubuntu linux-image-5.4.0-66-generic-lpae < 5.4.0-66.74~18.04.2 bionic
Affected pkg:deb/ubuntu/linux-image-5.4.0-1040-azure?distro=focal ubuntu linux-image-5.4.0-1040-azure < 5.4.0-1040.42 focal
Affected pkg:deb/ubuntu/linux-image-5.4.0-1040-azure?distro=bionic ubuntu linux-image-5.4.0-1040-azure < 5.4.0-1040.42~18.04.1 bionic
Affected pkg:deb/ubuntu/linux-image-5.4.0-1038-oracle?distro=focal ubuntu linux-image-5.4.0-1038-oracle < 5.4.0-1038.41 focal
Affected pkg:deb/ubuntu/linux-image-5.4.0-1038-oracle?distro=bionic ubuntu linux-image-5.4.0-1038-oracle < 5.4.0-1038.41~18.04.1 bionic
Affected pkg:deb/ubuntu/linux-image-5.4.0-1038-aws?distro=focal ubuntu linux-image-5.4.0-1038-aws < 5.4.0-1038.40 focal
Affected pkg:deb/ubuntu/linux-image-5.4.0-1038-aws?distro=bionic ubuntu linux-image-5.4.0-1038-aws < 5.4.0-1038.40~18.04.1 bionic
Affected pkg:deb/ubuntu/linux-image-5.4.0-1037-gcp?distro=focal ubuntu linux-image-5.4.0-1037-gcp < 5.4.0-1037.40 focal
Affected pkg:deb/ubuntu/linux-image-5.4.0-1037-gcp?distro=bionic ubuntu linux-image-5.4.0-1037-gcp < 5.4.0-1037.40~18.04.1 bionic
Affected pkg:deb/ubuntu/linux-image-5.4.0-1036-gke?distro=bionic ubuntu linux-image-5.4.0-1036-gke < 5.4.0-1036.38~18.04.1 bionic
Affected pkg:deb/ubuntu/linux-image-5.4.0-1033-kvm?distro=focal ubuntu linux-image-5.4.0-1033-kvm < 5.4.0-1033.34 focal
Affected pkg:deb/ubuntu/linux-image-5.4.0-1029-raspi?distro=focal ubuntu linux-image-5.4.0-1029-raspi < 5.4.0-1029.32 focal
Affected pkg:deb/ubuntu/linux-image-5.4.0-1029-raspi?distro=bionic ubuntu linux-image-5.4.0-1029-raspi < 5.4.0-1029.32~18.04.1 bionic
Affected pkg:deb/ubuntu/linux-image-5.4.0-1010-gkeop?distro=focal ubuntu linux-image-5.4.0-1010-gkeop < 5.4.0-1010.11 focal
Affected pkg:deb/ubuntu/linux-image-5.4.0-1010-gkeop?distro=bionic ubuntu linux-image-5.4.0-1010-gkeop < 5.4.0-1010.11~18.04.1 bionic
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...