[USN-5856-1] Linux kernel (OEM) vulnerabilities

Severity High
Affected Packages 17
CVEs 3

Several security issues were fixed in the Linux kernel.

Davide Ornaghi discovered that the netfilter subsystem in the Linux kernel
did not properly handle VLAN headers in some situations. A local attacker
could use this to cause a denial of service (system crash) or possibly
execute arbitrary code. (CVE-2023-0179)

Hu Jiahui discovered that multiple race conditions existed in the Advanced
Linux Sound Architecture (ALSA) framework, leading to use-after-free
vulnerabilities. A local attacker could use these to cause a denial of
service (system crash) or possibly execute arbitrary code. (CVE-2022-1048)

It was discovered that a use-after-free vulnerability existed in the SGI
GRU driver in the Linux kernel. A local attacker could possibly use this to
cause a denial of service (system crash) or possibly execute arbitrary
code. (CVE-2022-3424)

ID
USN-5856-1
Severity
high
Severity from
CVE-2022-3424
URL
https://ubuntu.com/security/notices/USN-5856-1
Published
2023-02-09T21:23:44
(19 months ago)
Modified
2023-02-09T21:23:44
(19 months ago)
Other Advisories
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:deb/ubuntu/linux-tools-oem-22.04c?distro=jammy ubuntu linux-tools-oem-22.04c < 6.1.0.1006.6 jammy
Affected pkg:deb/ubuntu/linux-tools-6.1.0-1006-oem?distro=jammy ubuntu linux-tools-6.1.0-1006-oem < 6.1.0-1006.6 jammy
Affected pkg:deb/ubuntu/linux-oem-6.1-tools-host?distro=jammy ubuntu linux-oem-6.1-tools-host < 6.1.0-1006.6 jammy
Affected pkg:deb/ubuntu/linux-oem-6.1-tools-6.1.0-1006?distro=jammy ubuntu linux-oem-6.1-tools-6.1.0-1006 < 6.1.0-1006.6 jammy
Affected pkg:deb/ubuntu/linux-oem-6.1-headers-6.1.0-1006?distro=jammy ubuntu linux-oem-6.1-headers-6.1.0-1006 < 6.1.0-1006.6 jammy
Affected pkg:deb/ubuntu/linux-oem-22.04c?distro=jammy ubuntu linux-oem-22.04c < 6.1.0.1006.6 jammy
Affected pkg:deb/ubuntu/linux-modules-ivsc-oem-22.04c?distro=jammy ubuntu linux-modules-ivsc-oem-22.04c < 6.1.0.1006.6 jammy
Affected pkg:deb/ubuntu/linux-modules-ivsc-6.1.0-1006-oem?distro=jammy ubuntu linux-modules-ivsc-6.1.0-1006-oem < 6.1.0-1006.6 jammy
Affected pkg:deb/ubuntu/linux-modules-ipu6-oem-22.04c?distro=jammy ubuntu linux-modules-ipu6-oem-22.04c < 6.1.0.1006.6 jammy
Affected pkg:deb/ubuntu/linux-modules-ipu6-6.1.0-1006-oem?distro=jammy ubuntu linux-modules-ipu6-6.1.0-1006-oem < 6.1.0-1006.6 jammy
Affected pkg:deb/ubuntu/linux-modules-6.1.0-1006-oem?distro=jammy ubuntu linux-modules-6.1.0-1006-oem < 6.1.0-1006.6 jammy
Affected pkg:deb/ubuntu/linux-image-unsigned-6.1.0-1006-oem?distro=jammy ubuntu linux-image-unsigned-6.1.0-1006-oem < 6.1.0-1006.6 jammy
Affected pkg:deb/ubuntu/linux-image-oem-22.04c?distro=jammy ubuntu linux-image-oem-22.04c < 6.1.0.1006.6 jammy
Affected pkg:deb/ubuntu/linux-image-6.1.0-1006-oem?distro=jammy ubuntu linux-image-6.1.0-1006-oem < 6.1.0-1006.6 jammy
Affected pkg:deb/ubuntu/linux-headers-oem-22.04c?distro=jammy ubuntu linux-headers-oem-22.04c < 6.1.0.1006.6 jammy
Affected pkg:deb/ubuntu/linux-headers-6.1.0-1006-oem?distro=jammy ubuntu linux-headers-6.1.0-1006-oem < 6.1.0-1006.6 jammy
Affected pkg:deb/ubuntu/linux-buildinfo-6.1.0-1006-oem?distro=jammy ubuntu linux-buildinfo-6.1.0-1006-oem < 6.1.0-1006.6 jammy
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...