USN-4949-1

See a problem?
Source
https://ubuntu.com/security/notices/USN-4949-1
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-4949-1.json
JSON Data
https://api.osv.dev/v1/vulns/USN-4949-1
Related
Published
2021-05-11T22:37:17.212775Z
Modified
2021-05-11T22:37:17.212775Z
Summary
linux, linux-aws, linux-azure, linux-gcp, linux-hwe-5.8, linux-kvm, linux-oracle, linux-raspi vulnerabilities
Details

Ryota Shiga discovered that the eBPF implementation in the Linux kernel did not properly verify that a BPF program only reserved as much memory for a ring buffer as was allocated. A local attacker could use this to cause a denial of service (system crash) or execute arbitrary code. (CVE-2021-3489)

Manfred Paul discovered that the eBPF implementation in the Linux kernel did not properly track bounds on bitwise operations. A local attacker could use this to cause a denial of service (system crash) or execute arbitrary code. (CVE-2021-3490)

Billy Jheng Bing-Jhong discovered that the iouring implementation of the Linux kernel did not properly enforce the MAXRW_COUNT limit in some situations. A local attacker could use this to cause a denial of service (system crash) or execute arbitrary code. (CVE-2021-3491)

It was discovered that the Nouveau GPU driver in the Linux kernel did not properly handle error conditions in some situations. A local attacker could use this to cause a denial of service (system crash). (CVE-2020-25639)

Olivier Benjamin, Norbert Manthey, Martin Mazein, and Jan H. Schönherr discovered that the Xen paravirtualization backend in the Linux kernel did not properly propagate errors to frontend drivers in some situations. An attacker in a guest VM could possibly use this to cause a denial of service (host domain crash). (CVE-2021-26930)

Jan Beulich discovered that multiple Xen backends in the Linux kernel did not properly handle certain error conditions under paravirtualization. An attacker in a guest VM could possibly use this to cause a denial of service (host domain crash). (CVE-2021-26931)

It was discovered that the fastrpc driver in the Linux kernel did not prevent user space applications from sending kernel RPC messages. A local attacker could possibly use this to gain elevated privileges. (CVE-2021-28375)

It was discovered that the Freescale Gianfar Ethernet driver for the Linux kernel did not properly handle receive queue overrun when jumbo frames were enabled in some situations. An attacker could use this to cause a denial of service (system crash). (CVE-2021-29264)

It was discovered that the USB/IP driver in the Linux kernel contained race conditions during the update of local and shared status. An attacker could use this to cause a denial of service (system crash). (CVE-2021-29265)

It was discovered that the vDPA backend virtio driver in the Linux kernel contained a use-after-free vulnerability. An attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2021-29266)

It was discovered that the TIPC protocol implementation in the Linux kernel did not properly validate passed encryption key sizes. A local attacker could use this to cause a denial of service (system crash). (CVE-2021-29646)

It was discovered that a race condition existed in the netfilter subsystem of the Linux kernel when replacing tables. A local attacker could use this to cause a denial of service (system crash). (CVE-2021-29650)

References

Affected packages

Ubuntu:20.04:LTS / linux-hwe-5.8

Package

Name
linux-hwe-5.8
Purl
pkg:deb/ubuntu/linux-hwe-5.8@5.8.0-53.60~20.04.1?arch=src?distro=focal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.8.0-53.60~20.04.1

Affected versions

5.*

5.8.0-23.24~20.04.1
5.8.0-25.26~20.04.1
5.8.0-28.30~20.04.1
5.8.0-29.31~20.04.1
5.8.0-31.33~20.04.1
5.8.0-33.36~20.04.1
5.8.0-34.37~20.04.2
5.8.0-36.40~20.04.1
5.8.0-38.43~20.04.1
5.8.0-40.45~20.04.1
5.8.0-41.46~20.04.1
5.8.0-43.49~20.04.1
5.8.0-44.50~20.04.1
5.8.0-45.51~20.04.1
5.8.0-48.54~20.04.1
5.8.0-49.55~20.04.1
5.8.0-50.56~20.04.1

Ecosystem specific

{
    "availability": "No subscription required",
    "binaries": [
        {
            "md-modules-5.8.0-53-generic-di": "5.8.0-53.60~20.04.1",
            "kernel-image-5.8.0-53-generic-di": "5.8.0-53.60~20.04.1",
            "linux-hwe-5.8-headers-5.8.0-53": "5.8.0-53.60~20.04.1",
            "linux-hwe-5.8-cloud-tools-5.8.0-53": "5.8.0-53.60~20.04.1",
            "linux-modules-5.8.0-53-generic-lpae": "5.8.0-53.60~20.04.1",
            "linux-modules-extra-5.8.0-53-generic": "5.8.0-53.60~20.04.1",
            "message-modules-5.8.0-53-generic-di": "5.8.0-53.60~20.04.1",
            "nic-usb-modules-5.8.0-53-generic-lpae-di": "5.8.0-53.60~20.04.1",
            "linux-image-unsigned-5.8.0-53-generic": "5.8.0-53.60~20.04.1",
            "fs-core-modules-5.8.0-53-generic-64k-di": "5.8.0-53.60~20.04.1",
            "plip-modules-5.8.0-53-generic-lpae-di": "5.8.0-53.60~20.04.1",
            "linux-hwe-5.8-cloud-tools-common": "5.8.0-53.60~20.04.1",
            "linux-headers-5.8.0-53-generic": "5.8.0-53.60~20.04.1",
            "usb-modules-5.8.0-53-generic-di": "5.8.0-53.60~20.04.1",
            "vlan-modules-5.8.0-53-generic-lpae-di": "5.8.0-53.60~20.04.1",
            "linux-hwe-5.8-udebs-generic": "5.8.0-53.60~20.04.1",
            "ppp-modules-5.8.0-53-generic-lpae-di": "5.8.0-53.60~20.04.1",
            "fb-modules-5.8.0-53-generic-di": "5.8.0-53.60~20.04.1",
            "linux-image-5.8.0-53-generic": "5.8.0-53.60~20.04.1",
            "linux-modules-5.8.0-53-lowlatency": "5.8.0-53.60~20.04.1",
            "usb-modules-5.8.0-53-generic-64k-di": "5.8.0-53.60~20.04.1",
            "linux-image-5.8.0-53-generic-lpae": "5.8.0-53.60~20.04.1",
            "linux-headers-5.8.0-53-generic-lpae": "5.8.0-53.60~20.04.1",
            "pcmcia-modules-5.8.0-53-generic-di": "5.8.0-53.60~20.04.1",
            "usb-modules-5.8.0-53-generic-lpae-di": "5.8.0-53.60~20.04.1",
            "parport-modules-5.8.0-53-generic-64k-di": "5.8.0-53.60~20.04.1",
            "mouse-modules-5.8.0-53-generic-64k-di": "5.8.0-53.60~20.04.1",
            "nic-usb-modules-5.8.0-53-generic-64k-di": "5.8.0-53.60~20.04.1",
            "ppp-modules-5.8.0-53-generic-64k-di": "5.8.0-53.60~20.04.1",
            "block-modules-5.8.0-53-generic-lpae-di": "5.8.0-53.60~20.04.1",
            "serial-modules-5.8.0-53-generic-di": "5.8.0-53.60~20.04.1",
            "pata-modules-5.8.0-53-generic-di": "5.8.0-53.60~20.04.1",
            "fat-modules-5.8.0-53-generic-di": "5.8.0-53.60~20.04.1",
            "floppy-modules-5.8.0-53-generic-di": "5.8.0-53.60~20.04.1",
            "storage-core-modules-5.8.0-53-generic-64k-di": "5.8.0-53.60~20.04.1",
            "linux-tools-5.8.0-53-generic": "5.8.0-53.60~20.04.1",
            "nic-shared-modules-5.8.0-53-generic-64k-di": "5.8.0-53.60~20.04.1",
            "linux-cloud-tools-5.8.0-53-generic": "5.8.0-53.60~20.04.1",
            "linux-buildinfo-5.8.0-53-generic-64k": "5.8.0-53.60~20.04.1",
            "ipmi-modules-5.8.0-53-generic-di": "5.8.0-53.60~20.04.1",
            "multipath-modules-5.8.0-53-generic-lpae-di": "5.8.0-53.60~20.04.1",
            "fs-core-modules-5.8.0-53-generic-lpae-di": "5.8.0-53.60~20.04.1",
            "crypto-modules-5.8.0-53-generic-64k-di": "5.8.0-53.60~20.04.1",
            "fs-secondary-modules-5.8.0-53-generic-lpae-di": "5.8.0-53.60~20.04.1",
            "md-modules-5.8.0-53-generic-64k-di": "5.8.0-53.60~20.04.1",
            "linux-hwe-5.8-tools-host": "5.8.0-53.60~20.04.1",
            "linux-image-5.8.0-53-generic-lpae-dbgsym": "5.8.0-53.60~20.04.1",
            "linux-cloud-tools-5.8.0-53-lowlatency": "5.8.0-53.60~20.04.1",
            "md-modules-5.8.0-53-generic-lpae-di": "5.8.0-53.60~20.04.1",
            "ipmi-modules-5.8.0-53-generic-64k-di": "5.8.0-53.60~20.04.1",
            "linux-hwe-5.8-source-5.8.0": "5.8.0-53.60~20.04.1",
            "storage-core-modules-5.8.0-53-generic-lpae-di": "5.8.0-53.60~20.04.1",
            "nic-modules-5.8.0-53-generic-64k-di": "5.8.0-53.60~20.04.1",
            "sata-modules-5.8.0-53-generic-64k-di": "5.8.0-53.60~20.04.1",
            "scsi-modules-5.8.0-53-generic-lpae-di": "5.8.0-53.60~20.04.1",
            "virtio-modules-5.8.0-53-generic-di": "5.8.0-53.60~20.04.1",
            "crypto-modules-5.8.0-53-generic-lpae-di": "5.8.0-53.60~20.04.1",
            "sata-modules-5.8.0-53-generic-di": "5.8.0-53.60~20.04.1",
            "plip-modules-5.8.0-53-generic-64k-di": "5.8.0-53.60~20.04.1",
            "linux-headers-5.8.0-53-lowlatency": "5.8.0-53.60~20.04.1",
            "nic-modules-5.8.0-53-generic-lpae-di": "5.8.0-53.60~20.04.1",
            "input-modules-5.8.0-53-generic-di": "5.8.0-53.60~20.04.1",
            "nic-shared-modules-5.8.0-53-generic-di": "5.8.0-53.60~20.04.1",
            "nfs-modules-5.8.0-53-generic-64k-di": "5.8.0-53.60~20.04.1",
            "vlan-modules-5.8.0-53-generic-di": "5.8.0-53.60~20.04.1",
            "linux-headers-5.8.0-53-generic-64k": "5.8.0-53.60~20.04.1",
            "dasd-modules-5.8.0-53-generic-di": "5.8.0-53.60~20.04.1",
            "sata-modules-5.8.0-53-generic-lpae-di": "5.8.0-53.60~20.04.1",
            "linux-hwe-5.8-tools-5.8.0-53": "5.8.0-53.60~20.04.1",
            "storage-core-modules-5.8.0-53-generic-di": "5.8.0-53.60~20.04.1",
            "linux-tools-5.8.0-53-lowlatency": "5.8.0-53.60~20.04.1",
            "linux-image-unsigned-5.8.0-53-lowlatency-dbgsym": "5.8.0-53.60~20.04.1",
            "linux-buildinfo-5.8.0-53-generic-lpae": "5.8.0-53.60~20.04.1",
            "linux-image-5.8.0-53-generic-dbgsym": "5.8.0-53.60~20.04.1",
            "linux-modules-5.8.0-53-generic": "5.8.0-53.60~20.04.1",
            "scsi-modules-5.8.0-53-generic-64k-di": "5.8.0-53.60~20.04.1",
            "ppp-modules-5.8.0-53-generic-di": "5.8.0-53.60~20.04.1",
            "fs-secondary-modules-5.8.0-53-generic-64k-di": "5.8.0-53.60~20.04.1",
            "nic-modules-5.8.0-53-generic-di": "5.8.0-53.60~20.04.1",
            "nic-pcmcia-modules-5.8.0-53-generic-di": "5.8.0-53.60~20.04.1",
            "nic-usb-modules-5.8.0-53-generic-di": "5.8.0-53.60~20.04.1",
            "pcmcia-storage-modules-5.8.0-53-generic-di": "5.8.0-53.60~20.04.1",
            "vlan-modules-5.8.0-53-generic-64k-di": "5.8.0-53.60~20.04.1",
            "linux-tools-5.8.0-53-generic-lpae": "5.8.0-53.60~20.04.1",
            "block-modules-5.8.0-53-generic-di": "5.8.0-53.60~20.04.1",
            "linux-hwe-5.8-udebs-generic-lpae": "5.8.0-53.60~20.04.1",
            "input-modules-5.8.0-53-generic-lpae-di": "5.8.0-53.60~20.04.1",
            "firewire-core-modules-5.8.0-53-generic-di": "5.8.0-53.60~20.04.1",
            "nfs-modules-5.8.0-53-generic-lpae-di": "5.8.0-53.60~20.04.1",
            "nfs-modules-5.8.0-53-generic-di": "5.8.0-53.60~20.04.1",
            "linux-modules-5.8.0-53-generic-64k": "5.8.0-53.60~20.04.1",
            "ipmi-modules-5.8.0-53-generic-lpae-di": "5.8.0-53.60~20.04.1",
            "linux-image-unsigned-5.8.0-53-generic-64k": "5.8.0-53.60~20.04.1",
            "dasd-extra-modules-5.8.0-53-generic-di": "5.8.0-53.60~20.04.1",
            "linux-image-unsigned-5.8.0-53-lowlatency": "5.8.0-53.60~20.04.1",
            "plip-modules-5.8.0-53-generic-di": "5.8.0-53.60~20.04.1",
            "linux-image-unsigned-5.8.0-53-generic-dbgsym": "5.8.0-53.60~20.04.1",
            "fat-modules-5.8.0-53-generic-lpae-di": "5.8.0-53.60~20.04.1",
            "linux-image-unsigned-5.8.0-53-generic-64k-dbgsym": "5.8.0-53.60~20.04.1",
            "kernel-image-5.8.0-53-generic-lpae-di": "5.8.0-53.60~20.04.1",
            "scsi-modules-5.8.0-53-generic-di": "5.8.0-53.60~20.04.1",
            "fat-modules-5.8.0-53-generic-64k-di": "5.8.0-53.60~20.04.1",
            "fs-core-modules-5.8.0-53-generic-di": "5.8.0-53.60~20.04.1",
            "message-modules-5.8.0-53-generic-64k-di": "5.8.0-53.60~20.04.1",
            "parport-modules-5.8.0-53-generic-di": "5.8.0-53.60~20.04.1",
            "fs-secondary-modules-5.8.0-53-generic-di": "5.8.0-53.60~20.04.1",
            "multipath-modules-5.8.0-53-generic-di": "5.8.0-53.60~20.04.1",
            "input-modules-5.8.0-53-generic-64k-di": "5.8.0-53.60~20.04.1",
            "block-modules-5.8.0-53-generic-64k-di": "5.8.0-53.60~20.04.1",
            "mouse-modules-5.8.0-53-generic-lpae-di": "5.8.0-53.60~20.04.1",
            "crypto-modules-5.8.0-53-generic-di": "5.8.0-53.60~20.04.1",
            "linux-hwe-5.8-tools-common": "5.8.0-53.60~20.04.1",
            "kernel-image-5.8.0-53-generic-64k-di": "5.8.0-53.60~20.04.1",
            "linux-buildinfo-5.8.0-53-generic": "5.8.0-53.60~20.04.1",
            "nic-shared-modules-5.8.0-53-generic-lpae-di": "5.8.0-53.60~20.04.1",
            "linux-tools-5.8.0-53-generic-64k": "5.8.0-53.60~20.04.1",
            "linux-hwe-5.8-udebs-generic-64k": "5.8.0-53.60~20.04.1",
            "mouse-modules-5.8.0-53-generic-di": "5.8.0-53.60~20.04.1",
            "virtio-modules-5.8.0-53-generic-64k-di": "5.8.0-53.60~20.04.1",
            "linux-buildinfo-5.8.0-53-lowlatency": "5.8.0-53.60~20.04.1",
            "multipath-modules-5.8.0-53-generic-64k-di": "5.8.0-53.60~20.04.1",
            "parport-modules-5.8.0-53-generic-lpae-di": "5.8.0-53.60~20.04.1"
        }
    ]
}