[USN-4950-1] Linux kernel vulnerabilities
Several security issues were fixed in the Linux kernel.
Ryota Shiga discovered that the eBPF implementation in the Linux kernel did
not properly verify that a BPF program only reserved as much memory for a
ring buffer as was allocated. A local attacker could use this to cause a
denial of service (system crash) or execute arbitrary code. (CVE-2021-3489)
Manfred Paul discovered that the eBPF implementation in the Linux kernel
did not properly track bounds on bitwise operations. A local attacker could
use this to cause a denial of service (system crash) or execute arbitrary
code. (CVE-2021-3490)
Billy Jheng Bing-Jhong discovered that the io_uring implementation of the
Linux kernel did not properly enforce the MAX_RW_COUNT limit in some
situations. A local attacker could use this to cause a denial of service
(system crash) or execute arbitrary code. (CVE-2021-3491)
Norbert Slusarek discovered that the CAN ISOTP protocol implementation
in the Linux kernel contained a race condition. A local attacker could
use this to cause a denial of service (system crash) or possibly
execute arbitrary code. Please note that to address this issue,
SF_BROADCAST support was removed temporarily from the CAN ISOTP
implementation in Ubuntu 21.04 kernels. (LP: #1927409)
- ID
- USN-4950-1
- Severity
- high
- Severity from
- CVE-2021-3491
- URL
- https://ubuntu.com/security/notices/USN-4950-1
- Published
-
2021-05-11T22:42:22
(3 years ago) - Modified
-
2021-05-11T22:42:22
(3 years ago) - Other Advisories
-
- ALSA-2021:4356
- ELSA-2021-4356
- FEDORA-2021-05152dbcf5
- FEDORA-2021-286375de1e
- openSUSE-SU-2021:0843-1
- openSUSE-SU-2021:0947-1
- openSUSE-SU-2021:1975-1
- openSUSE-SU-2021:1977-1
- RHSA-2021:4140
- RHSA-2021:4356
- SUSE-SU-2021:1887-1
- SUSE-SU-2021:1888-1
- SUSE-SU-2021:1889-1
- SUSE-SU-2021:1890-1
- SUSE-SU-2021:1891-1
- SUSE-SU-2021:1899-1
- SUSE-SU-2021:1912-1
- SUSE-SU-2021:1913-1
- SUSE-SU-2021:1975-1
- SUSE-SU-2021:1977-1
- SUSE-SU-2021:2198-1
- SUSE-SU-2021:2208-1
- SUSE-SU-2021:2421-1
- USN-4948-1
- USN-4949-1
Type | Package URL | Namespace | Name / Product | Version | Distribution / Platform | Arch | Patch / Fix |
---|---|---|---|---|---|---|---|
Affected | pkg:deb/ubuntu/linux-image-virtual?distro=hirsute | ubuntu | linux-image-virtual | < 5.11.0.17.18 | hirsute | ||
Affected | pkg:deb/ubuntu/linux-image-virtual-hwe-20.04?distro=hirsute | ubuntu | linux-image-virtual-hwe-20.04 | < 5.11.0.17.18 | hirsute | ||
Affected | pkg:deb/ubuntu/linux-image-virtual-hwe-20.04-edge?distro=hirsute | ubuntu | linux-image-virtual-hwe-20.04-edge | < 5.11.0.17.18 | hirsute | ||
Affected | pkg:deb/ubuntu/linux-image-raspi?distro=hirsute | ubuntu | linux-image-raspi | < 5.11.0.1008.6 | hirsute | ||
Affected | pkg:deb/ubuntu/linux-image-raspi-nolpae?distro=hirsute | ubuntu | linux-image-raspi-nolpae | < 5.11.0.1008.6 | hirsute | ||
Affected | pkg:deb/ubuntu/linux-image-oracle?distro=hirsute | ubuntu | linux-image-oracle | < 5.11.0.1006.6 | hirsute | ||
Affected | pkg:deb/ubuntu/linux-image-oem-20.04?distro=hirsute | ubuntu | linux-image-oem-20.04 | < 5.11.0.17.18 | hirsute | ||
Affected | pkg:deb/ubuntu/linux-image-lowlatency?distro=hirsute | ubuntu | linux-image-lowlatency | < 5.11.0.17.18 | hirsute | ||
Affected | pkg:deb/ubuntu/linux-image-lowlatency-hwe-20.04?distro=hirsute | ubuntu | linux-image-lowlatency-hwe-20.04 | < 5.11.0.17.18 | hirsute | ||
Affected | pkg:deb/ubuntu/linux-image-lowlatency-hwe-20.04-edge?distro=hirsute | ubuntu | linux-image-lowlatency-hwe-20.04-edge | < 5.11.0.17.18 | hirsute | ||
Affected | pkg:deb/ubuntu/linux-image-kvm?distro=hirsute | ubuntu | linux-image-kvm | < 5.11.0.1007.7 | hirsute | ||
Affected | pkg:deb/ubuntu/linux-image-gke?distro=hirsute | ubuntu | linux-image-gke | < 5.11.0.1007.7 | hirsute | ||
Affected | pkg:deb/ubuntu/linux-image-generic?distro=hirsute | ubuntu | linux-image-generic | < 5.11.0.17.18 | hirsute | ||
Affected | pkg:deb/ubuntu/linux-image-generic-lpae?distro=hirsute | ubuntu | linux-image-generic-lpae | < 5.11.0.17.18 | hirsute | ||
Affected | pkg:deb/ubuntu/linux-image-generic-lpae-hwe-20.04?distro=hirsute | ubuntu | linux-image-generic-lpae-hwe-20.04 | < 5.11.0.17.18 | hirsute | ||
Affected | pkg:deb/ubuntu/linux-image-generic-lpae-hwe-20.04-edge?distro=hirsute | ubuntu | linux-image-generic-lpae-hwe-20.04-edge | < 5.11.0.17.18 | hirsute | ||
Affected | pkg:deb/ubuntu/linux-image-generic-hwe-20.04?distro=hirsute | ubuntu | linux-image-generic-hwe-20.04 | < 5.11.0.17.18 | hirsute | ||
Affected | pkg:deb/ubuntu/linux-image-generic-hwe-20.04-edge?distro=hirsute | ubuntu | linux-image-generic-hwe-20.04-edge | < 5.11.0.17.18 | hirsute | ||
Affected | pkg:deb/ubuntu/linux-image-generic-64k?distro=hirsute | ubuntu | linux-image-generic-64k | < 5.11.0.17.18 | hirsute | ||
Affected | pkg:deb/ubuntu/linux-image-generic-64k-hwe-20.04?distro=hirsute | ubuntu | linux-image-generic-64k-hwe-20.04 | < 5.11.0.17.18 | hirsute | ||
Affected | pkg:deb/ubuntu/linux-image-generic-64k-hwe-20.04-edge?distro=hirsute | ubuntu | linux-image-generic-64k-hwe-20.04-edge | < 5.11.0.17.18 | hirsute | ||
Affected | pkg:deb/ubuntu/linux-image-gcp?distro=hirsute | ubuntu | linux-image-gcp | < 5.11.0.1007.7 | hirsute | ||
Affected | pkg:deb/ubuntu/linux-image-azure?distro=hirsute | ubuntu | linux-image-azure | < 5.11.0.1005.5 | hirsute | ||
Affected | pkg:deb/ubuntu/linux-image-aws?distro=hirsute | ubuntu | linux-image-aws | < 5.11.0.1007.7 | hirsute | ||
Affected | pkg:deb/ubuntu/linux-image-5.11.0-17-lowlatency?distro=hirsute | ubuntu | linux-image-5.11.0-17-lowlatency | < 5.11.0-17.18 | hirsute | ||
Affected | pkg:deb/ubuntu/linux-image-5.11.0-17-generic?distro=hirsute | ubuntu | linux-image-5.11.0-17-generic | < 5.11.0-17.18 | hirsute | ||
Affected | pkg:deb/ubuntu/linux-image-5.11.0-17-generic-lpae?distro=hirsute | ubuntu | linux-image-5.11.0-17-generic-lpae | < 5.11.0-17.18 | hirsute | ||
Affected | pkg:deb/ubuntu/linux-image-5.11.0-17-generic-64k?distro=hirsute | ubuntu | linux-image-5.11.0-17-generic-64k | < 5.11.0-17.18 | hirsute | ||
Affected | pkg:deb/ubuntu/linux-image-5.11.0-1008-raspi?distro=hirsute | ubuntu | linux-image-5.11.0-1008-raspi | < 5.11.0-1008.8 | hirsute | ||
Affected | pkg:deb/ubuntu/linux-image-5.11.0-1008-raspi-nolpae?distro=hirsute | ubuntu | linux-image-5.11.0-1008-raspi-nolpae | < 5.11.0-1008.8 | hirsute | ||
Affected | pkg:deb/ubuntu/linux-image-5.11.0-1007-kvm?distro=hirsute | ubuntu | linux-image-5.11.0-1007-kvm | < 5.11.0-1007.7 | hirsute | ||
Affected | pkg:deb/ubuntu/linux-image-5.11.0-1007-gcp?distro=hirsute | ubuntu | linux-image-5.11.0-1007-gcp | < 5.11.0-1007.7 | hirsute | ||
Affected | pkg:deb/ubuntu/linux-image-5.11.0-1007-aws?distro=hirsute | ubuntu | linux-image-5.11.0-1007-aws | < 5.11.0-1007.7 | hirsute | ||
Affected | pkg:deb/ubuntu/linux-image-5.11.0-1006-oracle?distro=hirsute | ubuntu | linux-image-5.11.0-1006-oracle | < 5.11.0-1006.6 | hirsute | ||
Affected | pkg:deb/ubuntu/linux-image-5.11.0-1005-azure?distro=hirsute | ubuntu | linux-image-5.11.0-1005-azure | < 5.11.0-1005.5 | hirsute |
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | Exploits | PoC | Pubblication Date | Modification Date |
---|---|---|---|---|---|---|---|---|---|---|---|
# CVE | Description | CVSS | EPSS | EPSS Trend (30 days) | Affected Products | Weaknesses | Security Advisories | PoC | Pubblication Date | Modification Date |