[USN-5002-1] Linux kernel (HWE) vulnerability

Severity High
Affected Packages 7
CVEs 1

The system could be made to run programs as an administrator.

Norbert Slusarek discovered a race condition in the CAN BCM networking
protocol of the Linux kernel leading to multiple use-after-free
vulnerabilities. A local attacker could use this issue to execute arbitrary
code.

Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:deb/ubuntu/linux-image-raspi2-hwe-18.04?distro=bionic ubuntu linux-image-raspi2-hwe-18.04 < 5.3.0.1041.30 bionic
Affected pkg:deb/ubuntu/linux-image-gkeop-5.3?distro=bionic ubuntu linux-image-gkeop-5.3 < 5.3.0.75.132 bionic
Affected pkg:deb/ubuntu/linux-image-gke-5.3?distro=bionic ubuntu linux-image-gke-5.3 < 5.3.0.1044.27 bionic
Affected pkg:deb/ubuntu/linux-image-5.3.0-75-lowlatency?distro=bionic ubuntu linux-image-5.3.0-75-lowlatency < 5.3.0-75.71 bionic
Affected pkg:deb/ubuntu/linux-image-5.3.0-75-generic?distro=bionic ubuntu linux-image-5.3.0-75-generic < 5.3.0-75.71 bionic
Affected pkg:deb/ubuntu/linux-image-5.3.0-1044-gke?distro=bionic ubuntu linux-image-5.3.0-1044-gke < 5.3.0-1044.47 bionic
Affected pkg:deb/ubuntu/linux-image-5.3.0-1041-raspi2?distro=bionic ubuntu linux-image-5.3.0-1041-raspi2 < 5.3.0-1041.43 bionic
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...