USN-4209-1

See a problem?
Source
https://ubuntu.com/security/notices/USN-4209-1
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-4209-1.json
JSON Data
https://api.osv.dev/v1/vulns/USN-4209-1
Related
Published
2019-12-02T23:45:28.852876Z
Modified
2019-12-02T23:45:28.852876Z
Summary
linux, linux-aws, linux-aws-5.0, linux-gcp, linux-gke-5.0, linux-hwe, linux-kvm, linux-oem-osp1, linux-oracle, linux-oracle-5.0, linux-raspi2 vulnerabilities
Details

Jann Horn discovered that the OverlayFS and ShiftFS Drivers in the Linux kernel did not properly handle reference counting during memory mapping operations when used in conjunction with AUFS. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2019-15794)

It was discovered that a buffer overflow existed in the 802.11 Wi-Fi configuration interface for the Linux kernel when handling beacon settings. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2019-16746)

It was discovered that there was a memory leak in the Advanced Buffer Management functionality of the Netronome NFP4000/NFP6000 NIC Driver in the Linux kernel during certain error scenarios. A local attacker could use this to cause a denial of service (memory exhaustion). (CVE-2019-19076)

References

Affected packages

Ubuntu:18.04:LTS / linux-aws-5.0

Package

Name
linux-aws-5.0
Purl
pkg:deb/ubuntu/linux-aws-5.0@5.0.0-1022.25~18.04.1?arch=src?distro=bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.0.0-1022.25~18.04.1

Affected versions

5.*

5.0.0-1021.24~18.04.1

Ecosystem specific

{
    "availability": "No subscription required",
    "binaries": [
        {
            "linux-image-5.0.0-1022-aws-dbgsym": "5.0.0-1022.25~18.04.1",
            "linux-aws-5.0-tools-5.0.0-1022": "5.0.0-1022.25~18.04.1",
            "linux-tools-5.0.0-1022-aws": "5.0.0-1022.25~18.04.1",
            "linux-aws-headers-5.0.0-1022": "5.0.0-1022.25~18.04.1",
            "linux-headers-5.0.0-1022-aws": "5.0.0-1022.25~18.04.1",
            "linux-buildinfo-5.0.0-1022-aws": "5.0.0-1022.25~18.04.1",
            "linux-image-5.0.0-1022-aws": "5.0.0-1022.25~18.04.1",
            "linux-cloud-tools-5.0.0-1022-aws": "5.0.0-1022.25~18.04.1",
            "linux-modules-5.0.0-1022-aws": "5.0.0-1022.25~18.04.1",
            "linux-modules-extra-5.0.0-1022-aws": "5.0.0-1022.25~18.04.1"
        }
    ]
}

Ubuntu:18.04:LTS / linux-gcp

Package

Name
linux-gcp
Purl
pkg:deb/ubuntu/linux-gcp@5.0.0-1026.27~18.04.1?arch=src?distro=bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.0.0-1026.27~18.04.1

Affected versions

4.*

4.15.0-1001.1
4.15.0-1003.3
4.15.0-1005.5
4.15.0-1006.6
4.15.0-1008.8
4.15.0-1009.9
4.15.0-1010.10
4.15.0-1014.14
4.15.0-1015.15
4.15.0-1017.18
4.15.0-1018.19
4.15.0-1019.20
4.15.0-1021.22
4.15.0-1023.24
4.15.0-1024.25
4.15.0-1025.26
4.15.0-1026.27
4.15.0-1027.28
4.15.0-1028.29
4.15.0-1029.31
4.15.0-1030.32
4.15.0-1032.34
4.15.0-1033.35
4.15.0-1034.36
4.15.0-1036.38
4.15.0-1037.39
4.15.0-1040.42
4.15.0-1042.45
4.15.0-1044.70

5.*

5.0.0-1020.20~18.04.1
5.0.0-1021.21~18.04.1
5.0.0-1025.26~18.04.1

Ecosystem specific

{
    "availability": "No subscription required",
    "binaries": [
        {
            "linux-tools-5.0.0-1026-gcp": "5.0.0-1026.27~18.04.1",
            "linux-modules-5.0.0-1026-gcp": "5.0.0-1026.27~18.04.1",
            "linux-modules-extra-5.0.0-1026-gcp": "5.0.0-1026.27~18.04.1",
            "linux-buildinfo-5.0.0-1026-gcp": "5.0.0-1026.27~18.04.1",
            "linux-image-unsigned-5.0.0-1026-gcp": "5.0.0-1026.27~18.04.1",
            "linux-image-unsigned-5.0.0-1026-gcp-dbgsym": "5.0.0-1026.27~18.04.1",
            "linux-gcp-headers-5.0.0-1026": "5.0.0-1026.27~18.04.1",
            "linux-gcp-tools-5.0.0-1026": "5.0.0-1026.27~18.04.1",
            "linux-headers-5.0.0-1026-gcp": "5.0.0-1026.27~18.04.1"
        }
    ]
}

Ubuntu:18.04:LTS / linux-gke-5.0

Package

Name
linux-gke-5.0
Purl
pkg:deb/ubuntu/linux-gke-5.0@5.0.0-1026.27~18.04.2?arch=src?distro=bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.0.0-1026.27~18.04.2

Affected versions

5.*

5.0.0-1011.11~18.04.1
5.0.0-1013.13~18.04.1
5.0.0-1015.15~18.04.1
5.0.0-1017.17~18.04.1
5.0.0-1020.20~18.04.1
5.0.0-1022.22~18.04.3
5.0.0-1023.23~18.04.2
5.0.0-1025.26~18.04.1

Ecosystem specific

{
    "availability": "No subscription required",
    "binaries": [
        {
            "linux-headers-5.0.0-1026-gke": "5.0.0-1026.27~18.04.2",
            "linux-image-unsigned-5.0.0-1026-gke": "5.0.0-1026.27~18.04.2",
            "linux-gke-5.0-tools-5.0.0-1026": "5.0.0-1026.27~18.04.2",
            "linux-image-unsigned-5.0.0-1026-gke-dbgsym": "5.0.0-1026.27~18.04.2",
            "linux-modules-5.0.0-1026-gke": "5.0.0-1026.27~18.04.2",
            "linux-modules-extra-5.0.0-1026-gke": "5.0.0-1026.27~18.04.2",
            "linux-tools-5.0.0-1026-gke": "5.0.0-1026.27~18.04.2",
            "linux-buildinfo-5.0.0-1026-gke": "5.0.0-1026.27~18.04.2",
            "linux-gke-5.0-headers-5.0.0-1026": "5.0.0-1026.27~18.04.2"
        }
    ]
}

Ubuntu:18.04:LTS / linux-hwe

Package

Name
linux-hwe
Purl
pkg:deb/ubuntu/linux-hwe@5.0.0-37.40~18.04.1?arch=src?distro=bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.0.0-37.40~18.04.1

Affected versions

4.*

4.18.0-13.14~18.04.1
4.18.0-14.15~18.04.1
4.18.0-15.16~18.04.1
4.18.0-16.17~18.04.1
4.18.0-17.18~18.04.1
4.18.0-18.19~18.04.1
4.18.0-20.21~18.04.1
4.18.0-21.22~18.04.1
4.18.0-22.23~18.04.1
4.18.0-24.25~18.04.1
4.18.0-25.26~18.04.1

5.*

5.0.0-23.24~18.04.1
5.0.0-25.26~18.04.1
5.0.0-27.28~18.04.1
5.0.0-29.31~18.04.1
5.0.0-31.33~18.04.1
5.0.0-32.34~18.04.2
5.0.0-35.38~18.04.1
5.0.0-36.39~18.04.1

Ecosystem specific

{
    "availability": "No subscription required",
    "binaries": [
        {
            "mouse-modules-5.0.0-37-generic-lpae-di": "5.0.0-37.40~18.04.1",
            "nic-modules-5.0.0-37-generic-lpae-di": "5.0.0-37.40~18.04.1",
            "input-modules-5.0.0-37-generic-di": "5.0.0-37.40~18.04.1",
            "nic-modules-5.0.0-37-generic-di": "5.0.0-37.40~18.04.1",
            "parport-modules-5.0.0-37-generic-lpae-di": "5.0.0-37.40~18.04.1",
            "nic-shared-modules-5.0.0-37-generic-lpae-di": "5.0.0-37.40~18.04.1",
            "linux-modules-5.0.0-37-generic": "5.0.0-37.40~18.04.1",
            "linux-buildinfo-5.0.0-37-lowlatency": "5.0.0-37.40~18.04.1",
            "scsi-modules-5.0.0-37-generic-lpae-di": "5.0.0-37.40~18.04.1",
            "linux-hwe-udebs-generic-lpae": "5.0.0-37.40~18.04.1",
            "linux-buildinfo-5.0.0-37-generic-lpae": "5.0.0-37.40~18.04.1",
            "linux-cloud-tools-5.0.0-37-lowlatency": "5.0.0-37.40~18.04.1",
            "fs-core-modules-5.0.0-37-generic-di": "5.0.0-37.40~18.04.1",
            "multipath-modules-5.0.0-37-generic-lpae-di": "5.0.0-37.40~18.04.1",
            "fat-modules-5.0.0-37-generic-lpae-di": "5.0.0-37.40~18.04.1",
            "linux-source-5.0.0": "5.0.0-37.40~18.04.1",
            "linux-tools-5.0.0-37-generic": "5.0.0-37.40~18.04.1",
            "floppy-modules-5.0.0-37-generic-di": "5.0.0-37.40~18.04.1",
            "fb-modules-5.0.0-37-generic-di": "5.0.0-37.40~18.04.1",
            "nic-usb-modules-5.0.0-37-generic-lpae-di": "5.0.0-37.40~18.04.1",
            "linux-image-unsigned-5.0.0-37-lowlatency-dbgsym": "5.0.0-37.40~18.04.1",
            "dasd-modules-5.0.0-37-generic-di": "5.0.0-37.40~18.04.1",
            "linux-image-unsigned-5.0.0-37-generic-dbgsym": "5.0.0-37.40~18.04.1",
            "usb-modules-5.0.0-37-generic-di": "5.0.0-37.40~18.04.1",
            "ipmi-modules-5.0.0-37-generic-di": "5.0.0-37.40~18.04.1",
            "nfs-modules-5.0.0-37-generic-lpae-di": "5.0.0-37.40~18.04.1",
            "crypto-modules-5.0.0-37-generic-lpae-di": "5.0.0-37.40~18.04.1",
            "fs-core-modules-5.0.0-37-generic-lpae-di": "5.0.0-37.40~18.04.1",
            "ppp-modules-5.0.0-37-generic-lpae-di": "5.0.0-37.40~18.04.1",
            "linux-headers-5.0.0-37-lowlatency": "5.0.0-37.40~18.04.1",
            "sata-modules-5.0.0-37-generic-lpae-di": "5.0.0-37.40~18.04.1",
            "linux-modules-5.0.0-37-generic-lpae": "5.0.0-37.40~18.04.1",
            "firewire-core-modules-5.0.0-37-generic-di": "5.0.0-37.40~18.04.1",
            "serial-modules-5.0.0-37-generic-di": "5.0.0-37.40~18.04.1",
            "linux-hwe-tools-5.0.0-37": "5.0.0-37.40~18.04.1",
            "nfs-modules-5.0.0-37-generic-di": "5.0.0-37.40~18.04.1",
            "fs-secondary-modules-5.0.0-37-generic-di": "5.0.0-37.40~18.04.1",
            "parport-modules-5.0.0-37-generic-di": "5.0.0-37.40~18.04.1",
            "kernel-image-5.0.0-37-generic-di": "5.0.0-37.40~18.04.1",
            "linux-hwe-udebs-generic": "5.0.0-37.40~18.04.1",
            "linux-image-5.0.0-37-generic": "5.0.0-37.40~18.04.1",
            "block-modules-5.0.0-37-generic-lpae-di": "5.0.0-37.40~18.04.1",
            "multipath-modules-5.0.0-37-generic-di": "5.0.0-37.40~18.04.1",
            "nic-shared-modules-5.0.0-37-generic-di": "5.0.0-37.40~18.04.1",
            "plip-modules-5.0.0-37-generic-di": "5.0.0-37.40~18.04.1",
            "message-modules-5.0.0-37-generic-di": "5.0.0-37.40~18.04.1",
            "crypto-modules-5.0.0-37-generic-di": "5.0.0-37.40~18.04.1",
            "linux-image-5.0.0-37-lowlatency-dbgsym": "5.0.0-37.40~18.04.1",
            "nic-pcmcia-modules-5.0.0-37-generic-di": "5.0.0-37.40~18.04.1",
            "pata-modules-5.0.0-37-generic-di": "5.0.0-37.40~18.04.1",
            "linux-tools-5.0.0-37-generic-lpae": "5.0.0-37.40~18.04.1",
            "linux-image-5.0.0-37-generic-dbgsym": "5.0.0-37.40~18.04.1",
            "linux-hwe-cloud-tools-5.0.0-37": "5.0.0-37.40~18.04.1",
            "linux-buildinfo-5.0.0-37-generic": "5.0.0-37.40~18.04.1",
            "plip-modules-5.0.0-37-generic-lpae-di": "5.0.0-37.40~18.04.1",
            "linux-image-unsigned-5.0.0-37-lowlatency": "5.0.0-37.40~18.04.1",
            "linux-headers-5.0.0-37-generic": "5.0.0-37.40~18.04.1",
            "fs-secondary-modules-5.0.0-37-generic-lpae-di": "5.0.0-37.40~18.04.1",
            "pcmcia-storage-modules-5.0.0-37-generic-di": "5.0.0-37.40~18.04.1",
            "ipmi-modules-5.0.0-37-generic-lpae-di": "5.0.0-37.40~18.04.1",
            "sata-modules-5.0.0-37-generic-di": "5.0.0-37.40~18.04.1",
            "linux-cloud-tools-5.0.0-37-generic": "5.0.0-37.40~18.04.1",
            "linux-image-5.0.0-37-generic-lpae": "5.0.0-37.40~18.04.1",
            "pcmcia-modules-5.0.0-37-generic-di": "5.0.0-37.40~18.04.1",
            "linux-modules-extra-5.0.0-37-generic": "5.0.0-37.40~18.04.1",
            "linux-image-unsigned-5.0.0-37-generic": "5.0.0-37.40~18.04.1",
            "dasd-extra-modules-5.0.0-37-generic-di": "5.0.0-37.40~18.04.1",
            "nic-usb-modules-5.0.0-37-generic-di": "5.0.0-37.40~18.04.1",
            "scsi-modules-5.0.0-37-generic-di": "5.0.0-37.40~18.04.1",
            "input-modules-5.0.0-37-generic-lpae-di": "5.0.0-37.40~18.04.1",
            "md-modules-5.0.0-37-generic-di": "5.0.0-37.40~18.04.1",
            "storage-core-modules-5.0.0-37-generic-di": "5.0.0-37.40~18.04.1",
            "linux-headers-5.0.0-37-generic-lpae": "5.0.0-37.40~18.04.1",
            "linux-image-5.0.0-37-generic-lpae-dbgsym": "5.0.0-37.40~18.04.1",
            "fat-modules-5.0.0-37-generic-di": "5.0.0-37.40~18.04.1",
            "linux-image-5.0.0-37-lowlatency": "5.0.0-37.40~18.04.1",
            "block-modules-5.0.0-37-generic-di": "5.0.0-37.40~18.04.1",
            "md-modules-5.0.0-37-generic-lpae-di": "5.0.0-37.40~18.04.1",
            "mouse-modules-5.0.0-37-generic-di": "5.0.0-37.40~18.04.1",
            "vlan-modules-5.0.0-37-generic-di": "5.0.0-37.40~18.04.1",
            "kernel-image-5.0.0-37-generic-lpae-di": "5.0.0-37.40~18.04.1",
            "linux-headers-5.0.0-37": "5.0.0-37.40~18.04.1",
            "storage-core-modules-5.0.0-37-generic-lpae-di": "5.0.0-37.40~18.04.1",
            "linux-tools-5.0.0-37-lowlatency": "5.0.0-37.40~18.04.1",
            "vlan-modules-5.0.0-37-generic-lpae-di": "5.0.0-37.40~18.04.1",
            "ppp-modules-5.0.0-37-generic-di": "5.0.0-37.40~18.04.1",
            "virtio-modules-5.0.0-37-generic-di": "5.0.0-37.40~18.04.1",
            "linux-modules-5.0.0-37-lowlatency": "5.0.0-37.40~18.04.1",
            "usb-modules-5.0.0-37-generic-lpae-di": "5.0.0-37.40~18.04.1"
        }
    ]
}

Ubuntu:18.04:LTS / linux-oem-osp1

Package

Name
linux-oem-osp1
Purl
pkg:deb/ubuntu/linux-oem-osp1@5.0.0-1030.34?arch=src?distro=bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.0.0-1030.34

Affected versions

5.*

5.0.0-1010.11
5.0.0-1012.13
5.0.0-1015.16
5.0.0-1018.20
5.0.0-1020.22
5.0.0-1022.24
5.0.0-1024.27
5.0.0-1025.28
5.0.0-1027.31
5.0.0-1028.32

Ecosystem specific

{
    "availability": "No subscription required",
    "binaries": [
        {
            "parport-modules-5.0.0-1030-oem-osp1-di": "5.0.0-1030.34",
            "linux-image-unsigned-5.0.0-1030-oem-osp1": "5.0.0-1030.34",
            "message-modules-5.0.0-1030-oem-osp1-di": "5.0.0-1030.34",
            "input-modules-5.0.0-1030-oem-osp1-di": "5.0.0-1030.34",
            "nic-shared-modules-5.0.0-1030-oem-osp1-di": "5.0.0-1030.34",
            "virtio-modules-5.0.0-1030-oem-osp1-di": "5.0.0-1030.34",
            "pata-modules-5.0.0-1030-oem-osp1-di": "5.0.0-1030.34",
            "mouse-modules-5.0.0-1030-oem-osp1-di": "5.0.0-1030.34",
            "pcmcia-storage-modules-5.0.0-1030-oem-osp1-di": "5.0.0-1030.34",
            "vlan-modules-5.0.0-1030-oem-osp1-di": "5.0.0-1030.34",
            "linux-headers-5.0.0-1030-oem-osp1": "5.0.0-1030.34",
            "ppp-modules-5.0.0-1030-oem-osp1-di": "5.0.0-1030.34",
            "nic-pcmcia-modules-5.0.0-1030-oem-osp1-di": "5.0.0-1030.34",
            "pcmcia-modules-5.0.0-1030-oem-osp1-di": "5.0.0-1030.34",
            "floppy-modules-5.0.0-1030-oem-osp1-di": "5.0.0-1030.34",
            "nic-modules-5.0.0-1030-oem-osp1-di": "5.0.0-1030.34",
            "plip-modules-5.0.0-1030-oem-osp1-di": "5.0.0-1030.34",
            "linux-oem-osp1-tools-host": "5.0.0-1030.34",
            "linux-oem-osp1-tools-5.0.0-1030": "5.0.0-1030.34",
            "sata-modules-5.0.0-1030-oem-osp1-di": "5.0.0-1030.34",
            "scsi-modules-5.0.0-1030-oem-osp1-di": "5.0.0-1030.34",
            "linux-oem-osp1-headers-5.0.0-1030": "5.0.0-1030.34",
            "fs-core-modules-5.0.0-1030-oem-osp1-di": "5.0.0-1030.34",
            "block-modules-5.0.0-1030-oem-osp1-di": "5.0.0-1030.34",
            "usb-modules-5.0.0-1030-oem-osp1-di": "5.0.0-1030.34",
            "firewire-core-modules-5.0.0-1030-oem-osp1-di": "5.0.0-1030.34",
            "storage-core-modules-5.0.0-1030-oem-osp1-di": "5.0.0-1030.34",
            "fb-modules-5.0.0-1030-oem-osp1-di": "5.0.0-1030.34",
            "serial-modules-5.0.0-1030-oem-osp1-di": "5.0.0-1030.34",
            "md-modules-5.0.0-1030-oem-osp1-di": "5.0.0-1030.34",
            "linux-modules-5.0.0-1030-oem-osp1": "5.0.0-1030.34",
            "linux-tools-5.0.0-1030-oem-osp1": "5.0.0-1030.34",
            "fs-secondary-modules-5.0.0-1030-oem-osp1-di": "5.0.0-1030.34",
            "linux-udebs-oem-osp1": "5.0.0-1030.34",
            "linux-image-unsigned-5.0.0-1030-oem-osp1-dbgsym": "5.0.0-1030.34",
            "fat-modules-5.0.0-1030-oem-osp1-di": "5.0.0-1030.34",
            "kernel-image-5.0.0-1030-oem-osp1-di": "5.0.0-1030.34",
            "nfs-modules-5.0.0-1030-oem-osp1-di": "5.0.0-1030.34",
            "linux-buildinfo-5.0.0-1030-oem-osp1": "5.0.0-1030.34",
            "nic-usb-modules-5.0.0-1030-oem-osp1-di": "5.0.0-1030.34",
            "multipath-modules-5.0.0-1030-oem-osp1-di": "5.0.0-1030.34",
            "crypto-modules-5.0.0-1030-oem-osp1-di": "5.0.0-1030.34",
            "ipmi-modules-5.0.0-1030-oem-osp1-di": "5.0.0-1030.34"
        }
    ]
}

Ubuntu:18.04:LTS / linux-oracle-5.0

Package

Name
linux-oracle-5.0
Purl
pkg:deb/ubuntu/linux-oracle-5.0@5.0.0-1008.13~18.04.1?arch=src?distro=bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.0.0-1008.13~18.04.1

Affected versions

5.*

5.0.0-1007.12~18.04.1

Ecosystem specific

{
    "availability": "No subscription required",
    "binaries": [
        {
            "linux-buildinfo-5.0.0-1008-oracle": "5.0.0-1008.13~18.04.1",
            "linux-image-unsigned-5.0.0-1008-oracle": "5.0.0-1008.13~18.04.1",
            "linux-modules-5.0.0-1008-oracle": "5.0.0-1008.13~18.04.1",
            "linux-tools-5.0.0-1008-oracle": "5.0.0-1008.13~18.04.1",
            "linux-image-unsigned-5.0.0-1008-oracle-dbgsym": "5.0.0-1008.13~18.04.1",
            "linux-headers-5.0.0-1008-oracle": "5.0.0-1008.13~18.04.1",
            "linux-modules-extra-5.0.0-1008-oracle": "5.0.0-1008.13~18.04.1",
            "linux-oracle-5.0-tools-5.0.0-1008": "5.0.0-1008.13~18.04.1",
            "linux-oracle-5.0-headers-5.0.0-1008": "5.0.0-1008.13~18.04.1"
        }
    ]
}