A use-after-free vulnerability was found in usbredir in versions prior to 0.11.0 in the usbredirparser_serialize() in usbredirparser/usbredirparser.c. This issue occurs when serializing large amounts of buffered write data in the case of a slow or blocked destination.
{
"availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro",
"binaries": [
{
"binary_name": "libusbredirhost-dev",
"binary_version": "0.6-2ubuntu1.1+esm1"
},
{
"binary_name": "libusbredirhost1",
"binary_version": "0.6-2ubuntu1.1+esm1"
},
{
"binary_name": "libusbredirparser-dev",
"binary_version": "0.6-2ubuntu1.1+esm1"
},
{
"binary_name": "libusbredirparser1",
"binary_version": "0.6-2ubuntu1.1+esm1"
},
{
"binary_name": "usbredirserver",
"binary_version": "0.6-2ubuntu1.1+esm1"
}
]
}
{
"availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro",
"binaries": [
{
"binary_name": "libusbredirhost-dev",
"binary_version": "0.7.1-1ubuntu0.16.04.1~esm1"
},
{
"binary_name": "libusbredirhost1",
"binary_version": "0.7.1-1ubuntu0.16.04.1~esm1"
},
{
"binary_name": "libusbredirparser-dev",
"binary_version": "0.7.1-1ubuntu0.16.04.1~esm1"
},
{
"binary_name": "libusbredirparser1",
"binary_version": "0.7.1-1ubuntu0.16.04.1~esm1"
},
{
"binary_name": "usbredirserver",
"binary_version": "0.7.1-1ubuntu0.16.04.1~esm1"
}
]
}
{
"availability": "No subscription required",
"binaries": [
{
"binary_name": "libusbredirhost-dev",
"binary_version": "0.7.1-1ubuntu0.18.04.1"
},
{
"binary_name": "libusbredirhost1",
"binary_version": "0.7.1-1ubuntu0.18.04.1"
},
{
"binary_name": "libusbredirparser-dev",
"binary_version": "0.7.1-1ubuntu0.18.04.1"
},
{
"binary_name": "libusbredirparser1",
"binary_version": "0.7.1-1ubuntu0.18.04.1"
},
{
"binary_name": "usbredirserver",
"binary_version": "0.7.1-1ubuntu0.18.04.1"
}
]
}
{
"availability": "No subscription required",
"binaries": [
{
"binary_name": "libusbredirhost-dev",
"binary_version": "0.8.0-1ubuntu0.1"
},
{
"binary_name": "libusbredirhost1",
"binary_version": "0.8.0-1ubuntu0.1"
},
{
"binary_name": "libusbredirparser-dev",
"binary_version": "0.8.0-1ubuntu0.1"
},
{
"binary_name": "libusbredirparser1",
"binary_version": "0.8.0-1ubuntu0.1"
},
{
"binary_name": "usbredirserver",
"binary_version": "0.8.0-1ubuntu0.1"
}
]
}