[USN-5804-2] Linux kernel vulnerabilities

Severity High
Affected Packages 30
CVEs 4

Several security issues were fixed in the Linux kernel.

It was discovered that the NFSD implementation in the Linux kernel did not
properly handle some RPC messages, leading to a buffer overflow. A remote
attacker could use this to cause a denial of service (system crash) or
possibly execute arbitrary code. (CVE-2022-43945)

Tamás Koczka discovered that the Bluetooth L2CAP handshake implementation
in the Linux kernel contained multiple use-after-free vulnerabilities. A
physically proximate attacker could use this to cause a denial of service
(system crash) or possibly execute arbitrary code. (CVE-2022-42896)

It was discovered that the Xen netback driver in the Linux kernel did not
properly handle packets structured in certain ways. An attacker in a guest
VM could possibly use this to cause a denial of service (host NIC
availability). (CVE-2022-3643)

It was discovered that an integer overflow vulnerability existed in the
Bluetooth subsystem in the Linux kernel. A physically proximate attacker
could use this to cause a denial of service (system crash).
(CVE-2022-45934)

Package Affected Version
pkg:deb/ubuntu/linux-tools-gcp-lts-18.04?distro=bionic < 4.15.0.1143.157
pkg:deb/ubuntu/linux-tools-aws-lts-18.04?distro=bionic < 4.15.0.1148.146
pkg:deb/ubuntu/linux-tools-4.15.0-1148-aws?distro=bionic < 4.15.0-1148.160
pkg:deb/ubuntu/linux-tools-4.15.0-1143-gcp?distro=bionic < 4.15.0-1143.159
pkg:deb/ubuntu/linux-modules-extra-gcp-lts-18.04?distro=bionic < 4.15.0.1143.157
pkg:deb/ubuntu/linux-modules-extra-aws-lts-18.04?distro=bionic < 4.15.0.1148.146
pkg:deb/ubuntu/linux-modules-extra-4.15.0-1148-aws?distro=bionic < 4.15.0-1148.160
pkg:deb/ubuntu/linux-modules-extra-4.15.0-1143-gcp?distro=bionic < 4.15.0-1143.159
pkg:deb/ubuntu/linux-modules-4.15.0-1148-aws?distro=bionic < 4.15.0-1148.160
pkg:deb/ubuntu/linux-modules-4.15.0-1143-gcp?distro=bionic < 4.15.0-1143.159
pkg:deb/ubuntu/linux-image-unsigned-4.15.0-1148-aws?distro=bionic < 4.15.0-1148.160
pkg:deb/ubuntu/linux-image-unsigned-4.15.0-1143-gcp?distro=bionic < 4.15.0-1143.159
pkg:deb/ubuntu/linux-image-gcp-lts-18.04?distro=bionic < 4.15.0.1143.157
pkg:deb/ubuntu/linux-image-aws-lts-18.04?distro=bionic < 4.15.0.1148.146
pkg:deb/ubuntu/linux-image-4.15.0-1148-aws?distro=bionic < 4.15.0-1148.160
pkg:deb/ubuntu/linux-image-4.15.0-1143-gcp?distro=bionic < 4.15.0-1143.159
pkg:deb/ubuntu/linux-headers-gcp-lts-18.04?distro=bionic < 4.15.0.1143.157
pkg:deb/ubuntu/linux-headers-aws-lts-18.04?distro=bionic < 4.15.0.1148.146
pkg:deb/ubuntu/linux-headers-4.15.0-1148-aws?distro=bionic < 4.15.0-1148.160
pkg:deb/ubuntu/linux-headers-4.15.0-1143-gcp?distro=bionic < 4.15.0-1143.159
pkg:deb/ubuntu/linux-gcp-lts-18.04?distro=bionic < 4.15.0.1143.157
pkg:deb/ubuntu/linux-gcp-4.15-tools-4.15.0-1143?distro=bionic < 4.15.0-1143.159
pkg:deb/ubuntu/linux-gcp-4.15-headers-4.15.0-1143?distro=bionic < 4.15.0-1143.159
pkg:deb/ubuntu/linux-cloud-tools-4.15.0-1148-aws?distro=bionic < 4.15.0-1148.160
pkg:deb/ubuntu/linux-buildinfo-4.15.0-1148-aws?distro=bionic < 4.15.0-1148.160
pkg:deb/ubuntu/linux-buildinfo-4.15.0-1143-gcp?distro=bionic < 4.15.0-1143.159
pkg:deb/ubuntu/linux-aws-tools-4.15.0-1148?distro=bionic < 4.15.0-1148.160
pkg:deb/ubuntu/linux-aws-lts-18.04?distro=bionic < 4.15.0.1148.146
pkg:deb/ubuntu/linux-aws-headers-4.15.0-1148?distro=bionic < 4.15.0-1148.160
pkg:deb/ubuntu/linux-aws-cloud-tools-4.15.0-1148?distro=bionic < 4.15.0-1148.160
ID
USN-5804-2
Severity
high
Severity from
CVE-2022-42896
URL
https://ubuntu.com/security/notices/USN-5804-2
Published
2023-01-13T19:11:37
(20 months ago)
Modified
2023-01-13T19:11:37
(20 months ago)
Other Advisories
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:deb/ubuntu/linux-tools-gcp-lts-18.04?distro=bionic ubuntu linux-tools-gcp-lts-18.04 < 4.15.0.1143.157 bionic
Affected pkg:deb/ubuntu/linux-tools-aws-lts-18.04?distro=bionic ubuntu linux-tools-aws-lts-18.04 < 4.15.0.1148.146 bionic
Affected pkg:deb/ubuntu/linux-tools-4.15.0-1148-aws?distro=bionic ubuntu linux-tools-4.15.0-1148-aws < 4.15.0-1148.160 bionic
Affected pkg:deb/ubuntu/linux-tools-4.15.0-1143-gcp?distro=bionic ubuntu linux-tools-4.15.0-1143-gcp < 4.15.0-1143.159 bionic
Affected pkg:deb/ubuntu/linux-modules-extra-gcp-lts-18.04?distro=bionic ubuntu linux-modules-extra-gcp-lts-18.04 < 4.15.0.1143.157 bionic
Affected pkg:deb/ubuntu/linux-modules-extra-aws-lts-18.04?distro=bionic ubuntu linux-modules-extra-aws-lts-18.04 < 4.15.0.1148.146 bionic
Affected pkg:deb/ubuntu/linux-modules-extra-4.15.0-1148-aws?distro=bionic ubuntu linux-modules-extra-4.15.0-1148-aws < 4.15.0-1148.160 bionic
Affected pkg:deb/ubuntu/linux-modules-extra-4.15.0-1143-gcp?distro=bionic ubuntu linux-modules-extra-4.15.0-1143-gcp < 4.15.0-1143.159 bionic
Affected pkg:deb/ubuntu/linux-modules-4.15.0-1148-aws?distro=bionic ubuntu linux-modules-4.15.0-1148-aws < 4.15.0-1148.160 bionic
Affected pkg:deb/ubuntu/linux-modules-4.15.0-1143-gcp?distro=bionic ubuntu linux-modules-4.15.0-1143-gcp < 4.15.0-1143.159 bionic
Affected pkg:deb/ubuntu/linux-image-unsigned-4.15.0-1148-aws?distro=bionic ubuntu linux-image-unsigned-4.15.0-1148-aws < 4.15.0-1148.160 bionic
Affected pkg:deb/ubuntu/linux-image-unsigned-4.15.0-1143-gcp?distro=bionic ubuntu linux-image-unsigned-4.15.0-1143-gcp < 4.15.0-1143.159 bionic
Affected pkg:deb/ubuntu/linux-image-gcp-lts-18.04?distro=bionic ubuntu linux-image-gcp-lts-18.04 < 4.15.0.1143.157 bionic
Affected pkg:deb/ubuntu/linux-image-aws-lts-18.04?distro=bionic ubuntu linux-image-aws-lts-18.04 < 4.15.0.1148.146 bionic
Affected pkg:deb/ubuntu/linux-image-4.15.0-1148-aws?distro=bionic ubuntu linux-image-4.15.0-1148-aws < 4.15.0-1148.160 bionic
Affected pkg:deb/ubuntu/linux-image-4.15.0-1143-gcp?distro=bionic ubuntu linux-image-4.15.0-1143-gcp < 4.15.0-1143.159 bionic
Affected pkg:deb/ubuntu/linux-headers-gcp-lts-18.04?distro=bionic ubuntu linux-headers-gcp-lts-18.04 < 4.15.0.1143.157 bionic
Affected pkg:deb/ubuntu/linux-headers-aws-lts-18.04?distro=bionic ubuntu linux-headers-aws-lts-18.04 < 4.15.0.1148.146 bionic
Affected pkg:deb/ubuntu/linux-headers-4.15.0-1148-aws?distro=bionic ubuntu linux-headers-4.15.0-1148-aws < 4.15.0-1148.160 bionic
Affected pkg:deb/ubuntu/linux-headers-4.15.0-1143-gcp?distro=bionic ubuntu linux-headers-4.15.0-1143-gcp < 4.15.0-1143.159 bionic
Affected pkg:deb/ubuntu/linux-gcp-lts-18.04?distro=bionic ubuntu linux-gcp-lts-18.04 < 4.15.0.1143.157 bionic
Affected pkg:deb/ubuntu/linux-gcp-4.15-tools-4.15.0-1143?distro=bionic ubuntu linux-gcp-4.15-tools-4.15.0-1143 < 4.15.0-1143.159 bionic
Affected pkg:deb/ubuntu/linux-gcp-4.15-headers-4.15.0-1143?distro=bionic ubuntu linux-gcp-4.15-headers-4.15.0-1143 < 4.15.0-1143.159 bionic
Affected pkg:deb/ubuntu/linux-cloud-tools-4.15.0-1148-aws?distro=bionic ubuntu linux-cloud-tools-4.15.0-1148-aws < 4.15.0-1148.160 bionic
Affected pkg:deb/ubuntu/linux-buildinfo-4.15.0-1148-aws?distro=bionic ubuntu linux-buildinfo-4.15.0-1148-aws < 4.15.0-1148.160 bionic
Affected pkg:deb/ubuntu/linux-buildinfo-4.15.0-1143-gcp?distro=bionic ubuntu linux-buildinfo-4.15.0-1143-gcp < 4.15.0-1143.159 bionic
Affected pkg:deb/ubuntu/linux-aws-tools-4.15.0-1148?distro=bionic ubuntu linux-aws-tools-4.15.0-1148 < 4.15.0-1148.160 bionic
Affected pkg:deb/ubuntu/linux-aws-lts-18.04?distro=bionic ubuntu linux-aws-lts-18.04 < 4.15.0.1148.146 bionic
Affected pkg:deb/ubuntu/linux-aws-headers-4.15.0-1148?distro=bionic ubuntu linux-aws-headers-4.15.0-1148 < 4.15.0-1148.160 bionic
Affected pkg:deb/ubuntu/linux-aws-cloud-tools-4.15.0-1148?distro=bionic ubuntu linux-aws-cloud-tools-4.15.0-1148 < 4.15.0-1148.160 bionic
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...