[USN-4890-1] Linux kernel vulnerabilities

Severity High
Affected Packages 55
CVEs 2

Several security issues were fixed in the Linux kernel.

Piotr Krysiuk discovered that the BPF subsystem in the Linux kernel did not
properly compute a speculative execution limit on pointer arithmetic in
some situations. A local attacker could use this to expose sensitive
information (kernel memory). (CVE-2020-27171)

Piotr Krysiuk discovered that the BPF subsystem in the Linux kernel did not
properly apply speculative execution limits on some pointer types. A local
attacker could use this to expose sensitive information (kernel memory).
(CVE-2020-27170)

Package Affected Version
pkg:deb/ubuntu/linux-image-virtual?distro=bionic < 4.15.0.140.127
pkg:deb/ubuntu/linux-image-virtual-hwe-16.04?distro=xenial < 4.15.0.140.135
pkg:deb/ubuntu/linux-image-virtual-hwe-16.04?distro=bionic < 4.15.0.140.127
pkg:deb/ubuntu/linux-image-virtual-hwe-16.04-edge?distro=xenial < 4.15.0.140.135
pkg:deb/ubuntu/linux-image-virtual-hwe-16.04-edge?distro=bionic < 4.15.0.140.127
pkg:deb/ubuntu/linux-image-snapdragon?distro=bionic < 4.15.0.1099.102
pkg:deb/ubuntu/linux-image-raspi2?distro=bionic < 4.15.0.1082.79
pkg:deb/ubuntu/linux-image-oracle?distro=xenial < 4.15.0.1068.56
pkg:deb/ubuntu/linux-image-oracle-lts-18.04?distro=bionic < 4.15.0.1068.78
pkg:deb/ubuntu/linux-image-oem?distro=xenial < 4.15.0.140.135
pkg:deb/ubuntu/linux-image-lowlatency?distro=bionic < 4.15.0.140.127
pkg:deb/ubuntu/linux-image-lowlatency-hwe-16.04?distro=xenial < 4.15.0.140.135
pkg:deb/ubuntu/linux-image-lowlatency-hwe-16.04?distro=bionic < 4.15.0.140.127
pkg:deb/ubuntu/linux-image-lowlatency-hwe-16.04-edge?distro=xenial < 4.15.0.140.135
pkg:deb/ubuntu/linux-image-lowlatency-hwe-16.04-edge?distro=bionic < 4.15.0.140.127
pkg:deb/ubuntu/linux-image-kvm?distro=bionic < 4.15.0.1088.84
pkg:deb/ubuntu/linux-image-gke?distro=xenial < 4.15.0.1096.97
pkg:deb/ubuntu/linux-image-generic?distro=bionic < 4.15.0.140.127
pkg:deb/ubuntu/linux-image-generic-lpae?distro=bionic < 4.15.0.140.127
pkg:deb/ubuntu/linux-image-generic-lpae-hwe-16.04?distro=xenial < 4.15.0.140.135
pkg:deb/ubuntu/linux-image-generic-lpae-hwe-16.04?distro=bionic < 4.15.0.140.127
pkg:deb/ubuntu/linux-image-generic-lpae-hwe-16.04-edge?distro=xenial < 4.15.0.140.135
pkg:deb/ubuntu/linux-image-generic-lpae-hwe-16.04-edge?distro=bionic < 4.15.0.140.127
pkg:deb/ubuntu/linux-image-generic-hwe-16.04?distro=xenial < 4.15.0.140.135
pkg:deb/ubuntu/linux-image-generic-hwe-16.04?distro=bionic < 4.15.0.140.127
pkg:deb/ubuntu/linux-image-generic-hwe-16.04-edge?distro=xenial < 4.15.0.140.135
pkg:deb/ubuntu/linux-image-generic-hwe-16.04-edge?distro=bionic < 4.15.0.140.127
pkg:deb/ubuntu/linux-image-gcp?distro=xenial < 4.15.0.1096.97
pkg:deb/ubuntu/linux-image-gcp-lts-18.04?distro=bionic < 4.15.0.1096.114
pkg:deb/ubuntu/linux-image-dell300x?distro=bionic < 4.15.0.1015.17
pkg:deb/ubuntu/linux-image-azure?distro=xenial < 4.15.0.1111.102
pkg:deb/ubuntu/linux-image-azure?distro=trusty < 4.15.0.1111.84
pkg:deb/ubuntu/linux-image-azure-lts-18.04?distro=bionic < 4.15.0.1111.84
pkg:deb/ubuntu/linux-image-azure-edge?distro=xenial < 4.15.0.1111.102
pkg:deb/ubuntu/linux-image-aws-lts-18.04?distro=bionic < 4.15.0.1097.100
pkg:deb/ubuntu/linux-image-aws-hwe?distro=xenial < 4.15.0.1097.90
pkg:deb/ubuntu/linux-image-4.15.0-140-lowlatency?distro=xenial < 4.15.0-140.144~16.04.1
pkg:deb/ubuntu/linux-image-4.15.0-140-lowlatency?distro=bionic < 4.15.0-140.144
pkg:deb/ubuntu/linux-image-4.15.0-140-generic?distro=xenial < 4.15.0-140.144~16.04.1
pkg:deb/ubuntu/linux-image-4.15.0-140-generic?distro=bionic < 4.15.0-140.144
pkg:deb/ubuntu/linux-image-4.15.0-140-generic-lpae?distro=xenial < 4.15.0-140.144~16.04.1
pkg:deb/ubuntu/linux-image-4.15.0-140-generic-lpae?distro=bionic < 4.15.0-140.144
pkg:deb/ubuntu/linux-image-4.15.0-1111-azure?distro=xenial < 4.15.0-1111.123~16.04.1
pkg:deb/ubuntu/linux-image-4.15.0-1111-azure?distro=trusty < 4.15.0-1111.123~14.04.1
pkg:deb/ubuntu/linux-image-4.15.0-1111-azure?distro=bionic < 4.15.0-1111.123
pkg:deb/ubuntu/linux-image-4.15.0-1099-snapdragon?distro=bionic < 4.15.0-1099.108
pkg:deb/ubuntu/linux-image-4.15.0-1097-aws?distro=xenial < 4.15.0-1097.104~16.04.1
pkg:deb/ubuntu/linux-image-4.15.0-1097-aws?distro=bionic < 4.15.0-1097.104
pkg:deb/ubuntu/linux-image-4.15.0-1096-gcp?distro=xenial < 4.15.0-1096.109~16.04.1
pkg:deb/ubuntu/linux-image-4.15.0-1096-gcp?distro=bionic < 4.15.0-1096.109
pkg:deb/ubuntu/linux-image-4.15.0-1088-kvm?distro=bionic < 4.15.0-1088.90
pkg:deb/ubuntu/linux-image-4.15.0-1082-raspi2?distro=bionic < 4.15.0-1082.87
pkg:deb/ubuntu/linux-image-4.15.0-1068-oracle?distro=xenial < 4.15.0-1068.76~16.04.1
pkg:deb/ubuntu/linux-image-4.15.0-1068-oracle?distro=bionic < 4.15.0-1068.76
pkg:deb/ubuntu/linux-image-4.15.0-1015-dell300x?distro=bionic < 4.15.0-1015.19
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:deb/ubuntu/linux-image-virtual?distro=bionic ubuntu linux-image-virtual < 4.15.0.140.127 bionic
Affected pkg:deb/ubuntu/linux-image-virtual-hwe-16.04?distro=xenial ubuntu linux-image-virtual-hwe-16.04 < 4.15.0.140.135 xenial
Affected pkg:deb/ubuntu/linux-image-virtual-hwe-16.04?distro=bionic ubuntu linux-image-virtual-hwe-16.04 < 4.15.0.140.127 bionic
Affected pkg:deb/ubuntu/linux-image-virtual-hwe-16.04-edge?distro=xenial ubuntu linux-image-virtual-hwe-16.04-edge < 4.15.0.140.135 xenial
Affected pkg:deb/ubuntu/linux-image-virtual-hwe-16.04-edge?distro=bionic ubuntu linux-image-virtual-hwe-16.04-edge < 4.15.0.140.127 bionic
Affected pkg:deb/ubuntu/linux-image-snapdragon?distro=bionic ubuntu linux-image-snapdragon < 4.15.0.1099.102 bionic
Affected pkg:deb/ubuntu/linux-image-raspi2?distro=bionic ubuntu linux-image-raspi2 < 4.15.0.1082.79 bionic
Affected pkg:deb/ubuntu/linux-image-oracle?distro=xenial ubuntu linux-image-oracle < 4.15.0.1068.56 xenial
Affected pkg:deb/ubuntu/linux-image-oracle-lts-18.04?distro=bionic ubuntu linux-image-oracle-lts-18.04 < 4.15.0.1068.78 bionic
Affected pkg:deb/ubuntu/linux-image-oem?distro=xenial ubuntu linux-image-oem < 4.15.0.140.135 xenial
Affected pkg:deb/ubuntu/linux-image-lowlatency?distro=bionic ubuntu linux-image-lowlatency < 4.15.0.140.127 bionic
Affected pkg:deb/ubuntu/linux-image-lowlatency-hwe-16.04?distro=xenial ubuntu linux-image-lowlatency-hwe-16.04 < 4.15.0.140.135 xenial
Affected pkg:deb/ubuntu/linux-image-lowlatency-hwe-16.04?distro=bionic ubuntu linux-image-lowlatency-hwe-16.04 < 4.15.0.140.127 bionic
Affected pkg:deb/ubuntu/linux-image-lowlatency-hwe-16.04-edge?distro=xenial ubuntu linux-image-lowlatency-hwe-16.04-edge < 4.15.0.140.135 xenial
Affected pkg:deb/ubuntu/linux-image-lowlatency-hwe-16.04-edge?distro=bionic ubuntu linux-image-lowlatency-hwe-16.04-edge < 4.15.0.140.127 bionic
Affected pkg:deb/ubuntu/linux-image-kvm?distro=bionic ubuntu linux-image-kvm < 4.15.0.1088.84 bionic
Affected pkg:deb/ubuntu/linux-image-gke?distro=xenial ubuntu linux-image-gke < 4.15.0.1096.97 xenial
Affected pkg:deb/ubuntu/linux-image-generic?distro=bionic ubuntu linux-image-generic < 4.15.0.140.127 bionic
Affected pkg:deb/ubuntu/linux-image-generic-lpae?distro=bionic ubuntu linux-image-generic-lpae < 4.15.0.140.127 bionic
Affected pkg:deb/ubuntu/linux-image-generic-lpae-hwe-16.04?distro=xenial ubuntu linux-image-generic-lpae-hwe-16.04 < 4.15.0.140.135 xenial
Affected pkg:deb/ubuntu/linux-image-generic-lpae-hwe-16.04?distro=bionic ubuntu linux-image-generic-lpae-hwe-16.04 < 4.15.0.140.127 bionic
Affected pkg:deb/ubuntu/linux-image-generic-lpae-hwe-16.04-edge?distro=xenial ubuntu linux-image-generic-lpae-hwe-16.04-edge < 4.15.0.140.135 xenial
Affected pkg:deb/ubuntu/linux-image-generic-lpae-hwe-16.04-edge?distro=bionic ubuntu linux-image-generic-lpae-hwe-16.04-edge < 4.15.0.140.127 bionic
Affected pkg:deb/ubuntu/linux-image-generic-hwe-16.04?distro=xenial ubuntu linux-image-generic-hwe-16.04 < 4.15.0.140.135 xenial
Affected pkg:deb/ubuntu/linux-image-generic-hwe-16.04?distro=bionic ubuntu linux-image-generic-hwe-16.04 < 4.15.0.140.127 bionic
Affected pkg:deb/ubuntu/linux-image-generic-hwe-16.04-edge?distro=xenial ubuntu linux-image-generic-hwe-16.04-edge < 4.15.0.140.135 xenial
Affected pkg:deb/ubuntu/linux-image-generic-hwe-16.04-edge?distro=bionic ubuntu linux-image-generic-hwe-16.04-edge < 4.15.0.140.127 bionic
Affected pkg:deb/ubuntu/linux-image-gcp?distro=xenial ubuntu linux-image-gcp < 4.15.0.1096.97 xenial
Affected pkg:deb/ubuntu/linux-image-gcp-lts-18.04?distro=bionic ubuntu linux-image-gcp-lts-18.04 < 4.15.0.1096.114 bionic
Affected pkg:deb/ubuntu/linux-image-dell300x?distro=bionic ubuntu linux-image-dell300x < 4.15.0.1015.17 bionic
Affected pkg:deb/ubuntu/linux-image-azure?distro=xenial ubuntu linux-image-azure < 4.15.0.1111.102 xenial
Affected pkg:deb/ubuntu/linux-image-azure?distro=trusty ubuntu linux-image-azure < 4.15.0.1111.84 trusty
Affected pkg:deb/ubuntu/linux-image-azure-lts-18.04?distro=bionic ubuntu linux-image-azure-lts-18.04 < 4.15.0.1111.84 bionic
Affected pkg:deb/ubuntu/linux-image-azure-edge?distro=xenial ubuntu linux-image-azure-edge < 4.15.0.1111.102 xenial
Affected pkg:deb/ubuntu/linux-image-aws-lts-18.04?distro=bionic ubuntu linux-image-aws-lts-18.04 < 4.15.0.1097.100 bionic
Affected pkg:deb/ubuntu/linux-image-aws-hwe?distro=xenial ubuntu linux-image-aws-hwe < 4.15.0.1097.90 xenial
Affected pkg:deb/ubuntu/linux-image-4.15.0-140-lowlatency?distro=xenial ubuntu linux-image-4.15.0-140-lowlatency < 4.15.0-140.144~16.04.1 xenial
Affected pkg:deb/ubuntu/linux-image-4.15.0-140-lowlatency?distro=bionic ubuntu linux-image-4.15.0-140-lowlatency < 4.15.0-140.144 bionic
Affected pkg:deb/ubuntu/linux-image-4.15.0-140-generic?distro=xenial ubuntu linux-image-4.15.0-140-generic < 4.15.0-140.144~16.04.1 xenial
Affected pkg:deb/ubuntu/linux-image-4.15.0-140-generic?distro=bionic ubuntu linux-image-4.15.0-140-generic < 4.15.0-140.144 bionic
Affected pkg:deb/ubuntu/linux-image-4.15.0-140-generic-lpae?distro=xenial ubuntu linux-image-4.15.0-140-generic-lpae < 4.15.0-140.144~16.04.1 xenial
Affected pkg:deb/ubuntu/linux-image-4.15.0-140-generic-lpae?distro=bionic ubuntu linux-image-4.15.0-140-generic-lpae < 4.15.0-140.144 bionic
Affected pkg:deb/ubuntu/linux-image-4.15.0-1111-azure?distro=xenial ubuntu linux-image-4.15.0-1111-azure < 4.15.0-1111.123~16.04.1 xenial
Affected pkg:deb/ubuntu/linux-image-4.15.0-1111-azure?distro=trusty ubuntu linux-image-4.15.0-1111-azure < 4.15.0-1111.123~14.04.1 trusty
Affected pkg:deb/ubuntu/linux-image-4.15.0-1111-azure?distro=bionic ubuntu linux-image-4.15.0-1111-azure < 4.15.0-1111.123 bionic
Affected pkg:deb/ubuntu/linux-image-4.15.0-1099-snapdragon?distro=bionic ubuntu linux-image-4.15.0-1099-snapdragon < 4.15.0-1099.108 bionic
Affected pkg:deb/ubuntu/linux-image-4.15.0-1097-aws?distro=xenial ubuntu linux-image-4.15.0-1097-aws < 4.15.0-1097.104~16.04.1 xenial
Affected pkg:deb/ubuntu/linux-image-4.15.0-1097-aws?distro=bionic ubuntu linux-image-4.15.0-1097-aws < 4.15.0-1097.104 bionic
Affected pkg:deb/ubuntu/linux-image-4.15.0-1096-gcp?distro=xenial ubuntu linux-image-4.15.0-1096-gcp < 4.15.0-1096.109~16.04.1 xenial
Affected pkg:deb/ubuntu/linux-image-4.15.0-1096-gcp?distro=bionic ubuntu linux-image-4.15.0-1096-gcp < 4.15.0-1096.109 bionic
Affected pkg:deb/ubuntu/linux-image-4.15.0-1088-kvm?distro=bionic ubuntu linux-image-4.15.0-1088-kvm < 4.15.0-1088.90 bionic
Affected pkg:deb/ubuntu/linux-image-4.15.0-1082-raspi2?distro=bionic ubuntu linux-image-4.15.0-1082-raspi2 < 4.15.0-1082.87 bionic
Affected pkg:deb/ubuntu/linux-image-4.15.0-1068-oracle?distro=xenial ubuntu linux-image-4.15.0-1068-oracle < 4.15.0-1068.76~16.04.1 xenial
Affected pkg:deb/ubuntu/linux-image-4.15.0-1068-oracle?distro=bionic ubuntu linux-image-4.15.0-1068-oracle < 4.15.0-1068.76 bionic
Affected pkg:deb/ubuntu/linux-image-4.15.0-1015-dell300x?distro=bionic ubuntu linux-image-4.15.0-1015-dell300x < 4.15.0-1015.19 bionic
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...