[USN-4950-1] Linux kernel vulnerabilities

Severity High
Affected Packages 35
CVEs 3

Several security issues were fixed in the Linux kernel.

Ryota Shiga discovered that the eBPF implementation in the Linux kernel did
not properly verify that a BPF program only reserved as much memory for a
ring buffer as was allocated. A local attacker could use this to cause a
denial of service (system crash) or execute arbitrary code. (CVE-2021-3489)

Manfred Paul discovered that the eBPF implementation in the Linux kernel
did not properly track bounds on bitwise operations. A local attacker could
use this to cause a denial of service (system crash) or execute arbitrary
code. (CVE-2021-3490)

Billy Jheng Bing-Jhong discovered that the io_uring implementation of the
Linux kernel did not properly enforce the MAX_RW_COUNT limit in some
situations. A local attacker could use this to cause a denial of service
(system crash) or execute arbitrary code. (CVE-2021-3491)

Norbert Slusarek discovered that the CAN ISOTP protocol implementation
in the Linux kernel contained a race condition. A local attacker could
use this to cause a denial of service (system crash) or possibly
execute arbitrary code. Please note that to address this issue,
SF_BROADCAST support was removed temporarily from the CAN ISOTP
implementation in Ubuntu 21.04 kernels. (LP: #1927409)

Package Affected Version
pkg:deb/ubuntu/linux-image-virtual?distro=hirsute < 5.11.0.17.18
pkg:deb/ubuntu/linux-image-virtual-hwe-20.04?distro=hirsute < 5.11.0.17.18
pkg:deb/ubuntu/linux-image-virtual-hwe-20.04-edge?distro=hirsute < 5.11.0.17.18
pkg:deb/ubuntu/linux-image-raspi?distro=hirsute < 5.11.0.1008.6
pkg:deb/ubuntu/linux-image-raspi-nolpae?distro=hirsute < 5.11.0.1008.6
pkg:deb/ubuntu/linux-image-oracle?distro=hirsute < 5.11.0.1006.6
pkg:deb/ubuntu/linux-image-oem-20.04?distro=hirsute < 5.11.0.17.18
pkg:deb/ubuntu/linux-image-lowlatency?distro=hirsute < 5.11.0.17.18
pkg:deb/ubuntu/linux-image-lowlatency-hwe-20.04?distro=hirsute < 5.11.0.17.18
pkg:deb/ubuntu/linux-image-lowlatency-hwe-20.04-edge?distro=hirsute < 5.11.0.17.18
pkg:deb/ubuntu/linux-image-kvm?distro=hirsute < 5.11.0.1007.7
pkg:deb/ubuntu/linux-image-gke?distro=hirsute < 5.11.0.1007.7
pkg:deb/ubuntu/linux-image-generic?distro=hirsute < 5.11.0.17.18
pkg:deb/ubuntu/linux-image-generic-lpae?distro=hirsute < 5.11.0.17.18
pkg:deb/ubuntu/linux-image-generic-lpae-hwe-20.04?distro=hirsute < 5.11.0.17.18
pkg:deb/ubuntu/linux-image-generic-lpae-hwe-20.04-edge?distro=hirsute < 5.11.0.17.18
pkg:deb/ubuntu/linux-image-generic-hwe-20.04?distro=hirsute < 5.11.0.17.18
pkg:deb/ubuntu/linux-image-generic-hwe-20.04-edge?distro=hirsute < 5.11.0.17.18
pkg:deb/ubuntu/linux-image-generic-64k?distro=hirsute < 5.11.0.17.18
pkg:deb/ubuntu/linux-image-generic-64k-hwe-20.04?distro=hirsute < 5.11.0.17.18
pkg:deb/ubuntu/linux-image-generic-64k-hwe-20.04-edge?distro=hirsute < 5.11.0.17.18
pkg:deb/ubuntu/linux-image-gcp?distro=hirsute < 5.11.0.1007.7
pkg:deb/ubuntu/linux-image-azure?distro=hirsute < 5.11.0.1005.5
pkg:deb/ubuntu/linux-image-aws?distro=hirsute < 5.11.0.1007.7
pkg:deb/ubuntu/linux-image-5.11.0-17-lowlatency?distro=hirsute < 5.11.0-17.18
pkg:deb/ubuntu/linux-image-5.11.0-17-generic?distro=hirsute < 5.11.0-17.18
pkg:deb/ubuntu/linux-image-5.11.0-17-generic-lpae?distro=hirsute < 5.11.0-17.18
pkg:deb/ubuntu/linux-image-5.11.0-17-generic-64k?distro=hirsute < 5.11.0-17.18
pkg:deb/ubuntu/linux-image-5.11.0-1008-raspi?distro=hirsute < 5.11.0-1008.8
pkg:deb/ubuntu/linux-image-5.11.0-1008-raspi-nolpae?distro=hirsute < 5.11.0-1008.8
pkg:deb/ubuntu/linux-image-5.11.0-1007-kvm?distro=hirsute < 5.11.0-1007.7
pkg:deb/ubuntu/linux-image-5.11.0-1007-gcp?distro=hirsute < 5.11.0-1007.7
pkg:deb/ubuntu/linux-image-5.11.0-1007-aws?distro=hirsute < 5.11.0-1007.7
pkg:deb/ubuntu/linux-image-5.11.0-1006-oracle?distro=hirsute < 5.11.0-1006.6
pkg:deb/ubuntu/linux-image-5.11.0-1005-azure?distro=hirsute < 5.11.0-1005.5
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:deb/ubuntu/linux-image-virtual?distro=hirsute ubuntu linux-image-virtual < 5.11.0.17.18 hirsute
Affected pkg:deb/ubuntu/linux-image-virtual-hwe-20.04?distro=hirsute ubuntu linux-image-virtual-hwe-20.04 < 5.11.0.17.18 hirsute
Affected pkg:deb/ubuntu/linux-image-virtual-hwe-20.04-edge?distro=hirsute ubuntu linux-image-virtual-hwe-20.04-edge < 5.11.0.17.18 hirsute
Affected pkg:deb/ubuntu/linux-image-raspi?distro=hirsute ubuntu linux-image-raspi < 5.11.0.1008.6 hirsute
Affected pkg:deb/ubuntu/linux-image-raspi-nolpae?distro=hirsute ubuntu linux-image-raspi-nolpae < 5.11.0.1008.6 hirsute
Affected pkg:deb/ubuntu/linux-image-oracle?distro=hirsute ubuntu linux-image-oracle < 5.11.0.1006.6 hirsute
Affected pkg:deb/ubuntu/linux-image-oem-20.04?distro=hirsute ubuntu linux-image-oem-20.04 < 5.11.0.17.18 hirsute
Affected pkg:deb/ubuntu/linux-image-lowlatency?distro=hirsute ubuntu linux-image-lowlatency < 5.11.0.17.18 hirsute
Affected pkg:deb/ubuntu/linux-image-lowlatency-hwe-20.04?distro=hirsute ubuntu linux-image-lowlatency-hwe-20.04 < 5.11.0.17.18 hirsute
Affected pkg:deb/ubuntu/linux-image-lowlatency-hwe-20.04-edge?distro=hirsute ubuntu linux-image-lowlatency-hwe-20.04-edge < 5.11.0.17.18 hirsute
Affected pkg:deb/ubuntu/linux-image-kvm?distro=hirsute ubuntu linux-image-kvm < 5.11.0.1007.7 hirsute
Affected pkg:deb/ubuntu/linux-image-gke?distro=hirsute ubuntu linux-image-gke < 5.11.0.1007.7 hirsute
Affected pkg:deb/ubuntu/linux-image-generic?distro=hirsute ubuntu linux-image-generic < 5.11.0.17.18 hirsute
Affected pkg:deb/ubuntu/linux-image-generic-lpae?distro=hirsute ubuntu linux-image-generic-lpae < 5.11.0.17.18 hirsute
Affected pkg:deb/ubuntu/linux-image-generic-lpae-hwe-20.04?distro=hirsute ubuntu linux-image-generic-lpae-hwe-20.04 < 5.11.0.17.18 hirsute
Affected pkg:deb/ubuntu/linux-image-generic-lpae-hwe-20.04-edge?distro=hirsute ubuntu linux-image-generic-lpae-hwe-20.04-edge < 5.11.0.17.18 hirsute
Affected pkg:deb/ubuntu/linux-image-generic-hwe-20.04?distro=hirsute ubuntu linux-image-generic-hwe-20.04 < 5.11.0.17.18 hirsute
Affected pkg:deb/ubuntu/linux-image-generic-hwe-20.04-edge?distro=hirsute ubuntu linux-image-generic-hwe-20.04-edge < 5.11.0.17.18 hirsute
Affected pkg:deb/ubuntu/linux-image-generic-64k?distro=hirsute ubuntu linux-image-generic-64k < 5.11.0.17.18 hirsute
Affected pkg:deb/ubuntu/linux-image-generic-64k-hwe-20.04?distro=hirsute ubuntu linux-image-generic-64k-hwe-20.04 < 5.11.0.17.18 hirsute
Affected pkg:deb/ubuntu/linux-image-generic-64k-hwe-20.04-edge?distro=hirsute ubuntu linux-image-generic-64k-hwe-20.04-edge < 5.11.0.17.18 hirsute
Affected pkg:deb/ubuntu/linux-image-gcp?distro=hirsute ubuntu linux-image-gcp < 5.11.0.1007.7 hirsute
Affected pkg:deb/ubuntu/linux-image-azure?distro=hirsute ubuntu linux-image-azure < 5.11.0.1005.5 hirsute
Affected pkg:deb/ubuntu/linux-image-aws?distro=hirsute ubuntu linux-image-aws < 5.11.0.1007.7 hirsute
Affected pkg:deb/ubuntu/linux-image-5.11.0-17-lowlatency?distro=hirsute ubuntu linux-image-5.11.0-17-lowlatency < 5.11.0-17.18 hirsute
Affected pkg:deb/ubuntu/linux-image-5.11.0-17-generic?distro=hirsute ubuntu linux-image-5.11.0-17-generic < 5.11.0-17.18 hirsute
Affected pkg:deb/ubuntu/linux-image-5.11.0-17-generic-lpae?distro=hirsute ubuntu linux-image-5.11.0-17-generic-lpae < 5.11.0-17.18 hirsute
Affected pkg:deb/ubuntu/linux-image-5.11.0-17-generic-64k?distro=hirsute ubuntu linux-image-5.11.0-17-generic-64k < 5.11.0-17.18 hirsute
Affected pkg:deb/ubuntu/linux-image-5.11.0-1008-raspi?distro=hirsute ubuntu linux-image-5.11.0-1008-raspi < 5.11.0-1008.8 hirsute
Affected pkg:deb/ubuntu/linux-image-5.11.0-1008-raspi-nolpae?distro=hirsute ubuntu linux-image-5.11.0-1008-raspi-nolpae < 5.11.0-1008.8 hirsute
Affected pkg:deb/ubuntu/linux-image-5.11.0-1007-kvm?distro=hirsute ubuntu linux-image-5.11.0-1007-kvm < 5.11.0-1007.7 hirsute
Affected pkg:deb/ubuntu/linux-image-5.11.0-1007-gcp?distro=hirsute ubuntu linux-image-5.11.0-1007-gcp < 5.11.0-1007.7 hirsute
Affected pkg:deb/ubuntu/linux-image-5.11.0-1007-aws?distro=hirsute ubuntu linux-image-5.11.0-1007-aws < 5.11.0-1007.7 hirsute
Affected pkg:deb/ubuntu/linux-image-5.11.0-1006-oracle?distro=hirsute ubuntu linux-image-5.11.0-1006-oracle < 5.11.0-1006.6 hirsute
Affected pkg:deb/ubuntu/linux-image-5.11.0-1005-azure?distro=hirsute ubuntu linux-image-5.11.0-1005-azure < 5.11.0-1005.5 hirsute
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...