[USN-4916-2] Linux kernel regression
USN-4916-1 introduced a regression in the Linux kernel.
USN-4916-1 fixed vulnerabilities in the Linux kernel. Unfortunately,
the fix for CVE-2021-3493 introduced a memory leak in some situations.
This update fixes the problem.
We apologize for the inconvenience.
Original advisory details:
It was discovered that the overlayfs implementation in the Linux kernel did
not properly validate the application of file system capabilities with
respect to user namespaces. A local attacker could use this to gain
elevated privileges. (CVE-2021-3493)
Piotr Krysiuk discovered that the BPF JIT compiler for x86 in the Linux
kernel did not properly validate computation of branch displacements in
some situations. A local attacker could use this to cause a denial of
service (system crash) or possibly execute arbitrary code. (CVE-2021-29154)
- ID
- USN-4916-2
- Severity
- none
- URL
- https://ubuntu.com/security/notices/USN-4916-2
- Published
-
2021-04-22T03:59:34
(3 years ago) - Modified
-
2021-04-22T03:59:34
(3 years ago)
Type | Package URL | Namespace | Name / Product | Version | Distribution / Platform | Arch | Patch / Fix |
---|---|---|---|---|---|---|---|
Affected | pkg:deb/ubuntu/linux-image-virtual?distro=xenial | ubuntu | linux-image-virtual | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-virtual-lts-xenial?distro=xenial | ubuntu | linux-image-virtual-lts-xenial | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-virtual-lts-xenial?distro=trusty | ubuntu | linux-image-virtual-lts-xenial | < 4.4.0.210.183 | trusty | ||
Affected | pkg:deb/ubuntu/linux-image-virtual-lts-wily?distro=xenial | ubuntu | linux-image-virtual-lts-wily | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-virtual-lts-vivid?distro=xenial | ubuntu | linux-image-virtual-lts-vivid | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-virtual-lts-utopic?distro=xenial | ubuntu | linux-image-virtual-lts-utopic | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-snapdragon?distro=xenial | ubuntu | linux-image-snapdragon | < 4.4.0.1156.148 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-raspi2?distro=xenial | ubuntu | linux-image-raspi2 | < 4.4.0.1152.152 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-raspi2-hwe-18.04?distro=bionic | ubuntu | linux-image-raspi2-hwe-18.04 | < 5.3.0.1040.29 | bionic | ||
Affected | pkg:deb/ubuntu/linux-image-powerpc64-smp?distro=xenial | ubuntu | linux-image-powerpc64-smp | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-powerpc64-smp-lts-xenial?distro=xenial | ubuntu | linux-image-powerpc64-smp-lts-xenial | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-powerpc64-smp-lts-xenial?distro=trusty | ubuntu | linux-image-powerpc64-smp-lts-xenial | < 4.4.0.210.183 | trusty | ||
Affected | pkg:deb/ubuntu/linux-image-powerpc64-smp-lts-wily?distro=xenial | ubuntu | linux-image-powerpc64-smp-lts-wily | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-powerpc64-smp-lts-vivid?distro=xenial | ubuntu | linux-image-powerpc64-smp-lts-vivid | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-powerpc64-smp-lts-utopic?distro=xenial | ubuntu | linux-image-powerpc64-smp-lts-utopic | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-powerpc64-emb?distro=xenial | ubuntu | linux-image-powerpc64-emb | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-powerpc64-emb-lts-xenial?distro=xenial | ubuntu | linux-image-powerpc64-emb-lts-xenial | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-powerpc64-emb-lts-xenial?distro=trusty | ubuntu | linux-image-powerpc64-emb-lts-xenial | < 4.4.0.210.183 | trusty | ||
Affected | pkg:deb/ubuntu/linux-image-powerpc64-emb-lts-wily?distro=xenial | ubuntu | linux-image-powerpc64-emb-lts-wily | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-powerpc64-emb-lts-vivid?distro=xenial | ubuntu | linux-image-powerpc64-emb-lts-vivid | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-powerpc64-emb-lts-utopic?distro=xenial | ubuntu | linux-image-powerpc64-emb-lts-utopic | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-powerpc-smp?distro=xenial | ubuntu | linux-image-powerpc-smp | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-powerpc-smp-lts-xenial?distro=xenial | ubuntu | linux-image-powerpc-smp-lts-xenial | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-powerpc-smp-lts-xenial?distro=trusty | ubuntu | linux-image-powerpc-smp-lts-xenial | < 4.4.0.210.183 | trusty | ||
Affected | pkg:deb/ubuntu/linux-image-powerpc-smp-lts-wily?distro=xenial | ubuntu | linux-image-powerpc-smp-lts-wily | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-powerpc-smp-lts-vivid?distro=xenial | ubuntu | linux-image-powerpc-smp-lts-vivid | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-powerpc-smp-lts-utopic?distro=xenial | ubuntu | linux-image-powerpc-smp-lts-utopic | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-powerpc-e500mc?distro=xenial | ubuntu | linux-image-powerpc-e500mc | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-powerpc-e500mc-lts-xenial?distro=xenial | ubuntu | linux-image-powerpc-e500mc-lts-xenial | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-powerpc-e500mc-lts-xenial?distro=trusty | ubuntu | linux-image-powerpc-e500mc-lts-xenial | < 4.4.0.210.183 | trusty | ||
Affected | pkg:deb/ubuntu/linux-image-powerpc-e500mc-lts-wily?distro=xenial | ubuntu | linux-image-powerpc-e500mc-lts-wily | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-powerpc-e500mc-lts-vivid?distro=xenial | ubuntu | linux-image-powerpc-e500mc-lts-vivid | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-powerpc-e500mc-lts-utopic?distro=xenial | ubuntu | linux-image-powerpc-e500mc-lts-utopic | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-oem-20.04?distro=focal | ubuntu | linux-image-oem-20.04 | < 5.6.0.1055.51 | focal | ||
Affected | pkg:deb/ubuntu/linux-image-lowlatency?distro=xenial | ubuntu | linux-image-lowlatency | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-lowlatency-lts-xenial?distro=xenial | ubuntu | linux-image-lowlatency-lts-xenial | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-lowlatency-lts-xenial?distro=trusty | ubuntu | linux-image-lowlatency-lts-xenial | < 4.4.0.210.183 | trusty | ||
Affected | pkg:deb/ubuntu/linux-image-lowlatency-lts-wily?distro=xenial | ubuntu | linux-image-lowlatency-lts-wily | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-lowlatency-lts-vivid?distro=xenial | ubuntu | linux-image-lowlatency-lts-vivid | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-lowlatency-lts-utopic?distro=xenial | ubuntu | linux-image-lowlatency-lts-utopic | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-kvm?distro=xenial | ubuntu | linux-image-kvm | < 4.4.0.1093.91 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-gkeop-5.3?distro=bionic | ubuntu | linux-image-gkeop-5.3 | < 5.3.0.74.131 | bionic | ||
Affected | pkg:deb/ubuntu/linux-image-gke-5.3?distro=bionic | ubuntu | linux-image-gke-5.3 | < 5.3.0.1043.26 | bionic | ||
Affected | pkg:deb/ubuntu/linux-image-generic?distro=xenial | ubuntu | linux-image-generic | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-generic-lts-xenial?distro=xenial | ubuntu | linux-image-generic-lts-xenial | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-generic-lts-xenial?distro=trusty | ubuntu | linux-image-generic-lts-xenial | < 4.4.0.210.183 | trusty | ||
Affected | pkg:deb/ubuntu/linux-image-generic-lts-wily?distro=xenial | ubuntu | linux-image-generic-lts-wily | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-generic-lts-vivid?distro=xenial | ubuntu | linux-image-generic-lts-vivid | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-generic-lts-utopic?distro=xenial | ubuntu | linux-image-generic-lts-utopic | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-generic-lpae?distro=xenial | ubuntu | linux-image-generic-lpae | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-generic-lpae-lts-xenial?distro=xenial | ubuntu | linux-image-generic-lpae-lts-xenial | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-generic-lpae-lts-xenial?distro=trusty | ubuntu | linux-image-generic-lpae-lts-xenial | < 4.4.0.210.183 | trusty | ||
Affected | pkg:deb/ubuntu/linux-image-generic-lpae-lts-wily?distro=xenial | ubuntu | linux-image-generic-lpae-lts-wily | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-generic-lpae-lts-vivid?distro=xenial | ubuntu | linux-image-generic-lpae-lts-vivid | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-generic-lpae-lts-utopic?distro=xenial | ubuntu | linux-image-generic-lpae-lts-utopic | < 4.4.0.210.216 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-aws?distro=xenial | ubuntu | linux-image-aws | < 4.4.0.1128.133 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-aws?distro=trusty | ubuntu | linux-image-aws | < 4.4.0.1092.89 | trusty | ||
Affected | pkg:deb/ubuntu/linux-image-5.6.0-1055-oem?distro=focal | ubuntu | linux-image-5.6.0-1055-oem | < 5.6.0-1055.59 | focal | ||
Affected | pkg:deb/ubuntu/linux-image-5.3.0-74-lowlatency?distro=bionic | ubuntu | linux-image-5.3.0-74-lowlatency | < 5.3.0-74.70 | bionic | ||
Affected | pkg:deb/ubuntu/linux-image-5.3.0-74-generic?distro=bionic | ubuntu | linux-image-5.3.0-74-generic | < 5.3.0-74.70 | bionic | ||
Affected | pkg:deb/ubuntu/linux-image-5.3.0-1043-gke?distro=bionic | ubuntu | linux-image-5.3.0-1043-gke | < 5.3.0-1043.46 | bionic | ||
Affected | pkg:deb/ubuntu/linux-image-5.3.0-1040-raspi2?distro=bionic | ubuntu | linux-image-5.3.0-1040-raspi2 | < 5.3.0-1040.42 | bionic | ||
Affected | pkg:deb/ubuntu/linux-image-4.4.0-210-powerpc64-smp?distro=xenial | ubuntu | linux-image-4.4.0-210-powerpc64-smp | < 4.4.0-210.242 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-4.4.0-210-powerpc64-smp?distro=trusty | ubuntu | linux-image-4.4.0-210-powerpc64-smp | < 4.4.0-210.242~14.04.1 | trusty | ||
Affected | pkg:deb/ubuntu/linux-image-4.4.0-210-powerpc64-emb?distro=xenial | ubuntu | linux-image-4.4.0-210-powerpc64-emb | < 4.4.0-210.242 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-4.4.0-210-powerpc64-emb?distro=trusty | ubuntu | linux-image-4.4.0-210-powerpc64-emb | < 4.4.0-210.242~14.04.1 | trusty | ||
Affected | pkg:deb/ubuntu/linux-image-4.4.0-210-powerpc-smp?distro=xenial | ubuntu | linux-image-4.4.0-210-powerpc-smp | < 4.4.0-210.242 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-4.4.0-210-powerpc-smp?distro=trusty | ubuntu | linux-image-4.4.0-210-powerpc-smp | < 4.4.0-210.242~14.04.1 | trusty | ||
Affected | pkg:deb/ubuntu/linux-image-4.4.0-210-powerpc-e500mc?distro=xenial | ubuntu | linux-image-4.4.0-210-powerpc-e500mc | < 4.4.0-210.242 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-4.4.0-210-powerpc-e500mc?distro=trusty | ubuntu | linux-image-4.4.0-210-powerpc-e500mc | < 4.4.0-210.242~14.04.1 | trusty | ||
Affected | pkg:deb/ubuntu/linux-image-4.4.0-210-lowlatency?distro=xenial | ubuntu | linux-image-4.4.0-210-lowlatency | < 4.4.0-210.242 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-4.4.0-210-lowlatency?distro=trusty | ubuntu | linux-image-4.4.0-210-lowlatency | < 4.4.0-210.242~14.04.1 | trusty | ||
Affected | pkg:deb/ubuntu/linux-image-4.4.0-210-generic?distro=xenial | ubuntu | linux-image-4.4.0-210-generic | < 4.4.0-210.242 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-4.4.0-210-generic?distro=trusty | ubuntu | linux-image-4.4.0-210-generic | < 4.4.0-210.242~14.04.1 | trusty | ||
Affected | pkg:deb/ubuntu/linux-image-4.4.0-210-generic-lpae?distro=xenial | ubuntu | linux-image-4.4.0-210-generic-lpae | < 4.4.0-210.242 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-4.4.0-210-generic-lpae?distro=trusty | ubuntu | linux-image-4.4.0-210-generic-lpae | < 4.4.0-210.242~14.04.1 | trusty | ||
Affected | pkg:deb/ubuntu/linux-image-4.4.0-1156-snapdragon?distro=xenial | ubuntu | linux-image-4.4.0-1156-snapdragon | < 4.4.0-1156.166 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-4.4.0-1152-raspi2?distro=xenial | ubuntu | linux-image-4.4.0-1152-raspi2 | < 4.4.0-1152.163 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-4.4.0-1128-aws?distro=xenial | ubuntu | linux-image-4.4.0-1128-aws | < 4.4.0-1128.142 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-4.4.0-1093-kvm?distro=xenial | ubuntu | linux-image-4.4.0-1093-kvm | < 4.4.0-1093.102 | xenial | ||
Affected | pkg:deb/ubuntu/linux-image-4.4.0-1092-aws?distro=trusty | ubuntu | linux-image-4.4.0-1092-aws | < 4.4.0-1092.96 | trusty |