USN-5417-1

See a problem?
Source
https://ubuntu.com/security/notices/USN-5417-1
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-5417-1.json
JSON Data
https://api.osv.dev/v1/vulns/USN-5417-1
Related
Published
2022-05-12T01:17:41.593399Z
Modified
2022-05-12T01:17:41.593399Z
Summary
linux, linux-aws, linux-aws-5.13, linux-azure, linux-azure-5.13, linux-gcp, linux-gcp-5.13, linux-hwe-5.13, linux-kvm, linux-oracle, linux-raspi vulnerabilities
Details

Ke Sun, Alyssa Milburn, Henrique Kawakami, Emma Benoit, Igor Chervatyuk, Lisa Aichele, and Thais Moreira Hamasaki discovered that the Spectre Variant 2 mitigations for AMD processors on Linux were insufficient in some situations. A local attacker could possibly use this to expose sensitive information. (CVE-2021-26401)

It was discovered that the MMC/SD subsystem in the Linux kernel did not properly handle read errors from SD cards in certain situations. An attacker could possibly use this to expose sensitive information (kernel memory). (CVE-2022-20008)

It was discovered that the USB gadget subsystem in the Linux kernel did not properly validate interface descriptor requests. An attacker could possibly use this to cause a denial of service (system crash). (CVE-2022-25258)

It was discovered that the Remote NDIS (RNDIS) USB gadget implementation in the Linux kernel did not properly validate the size of the RNDISMSGSET command. An attacker could possibly use this to expose sensitive information (kernel memory). (CVE-2022-25375)

It was discovered that the ST21NFCA NFC driver in the Linux kernel did not properly validate the size of certain data in EVT_TRANSACTION events. A physically proximate attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2022-26490)

It was discovered that the USB SR9700 ethernet device driver for the Linux kernel did not properly validate the length of requests from the device. A physically proximate attacker could possibly use this to expose sensitive information (kernel memory). (CVE-2022-26966)

It was discovered that the Xilinx USB2 device gadget driver in the Linux kernel did not properly validate endpoint indices from the host. A physically proximate attacker could possibly use this to cause a denial of service (system crash). (CVE-2022-27223)

Miaoqian Lin discovered that the RDMA Transport (RTRS) client implementation in the Linux kernel contained a double-free when handling certain error conditions. An attacker could use this to cause a denial of service (system crash). (CVE-2022-29156)

References

Affected packages

Ubuntu:20.04:LTS / linux-aws-5.13

Package

Name
linux-aws-5.13
Purl
pkg:deb/ubuntu/linux-aws-5.13@5.13.0-1023.25~20.04.1?arch=src?distro=focal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.13.0-1023.25~20.04.1

Affected versions

5.*

5.13.0-1008.9~20.04.2
5.13.0-1011.12~20.04.1
5.13.0-1012.13~20.04.1
5.13.0-1014.15~20.04.1
5.13.0-1017.19~20.04.1
5.13.0-1019.21~20.04.1
5.13.0-1021.23~20.04.2
5.13.0-1022.24~20.04.1

Ecosystem specific

{
    "availability": "No subscription required",
    "binaries": [
        {
            "linux-aws-5.13-cloud-tools-5.13.0-1023": "5.13.0-1023.25~20.04.1",
            "linux-modules-extra-5.13.0-1023-aws": "5.13.0-1023.25~20.04.1",
            "linux-aws-5.13-headers-5.13.0-1023": "5.13.0-1023.25~20.04.1",
            "linux-aws-5.13-tools-5.13.0-1023": "5.13.0-1023.25~20.04.1",
            "linux-image-unsigned-5.13.0-1023-aws-dbgsym": "5.13.0-1023.25~20.04.1",
            "linux-cloud-tools-5.13.0-1023-aws": "5.13.0-1023.25~20.04.1",
            "linux-headers-5.13.0-1023-aws": "5.13.0-1023.25~20.04.1",
            "linux-buildinfo-5.13.0-1023-aws": "5.13.0-1023.25~20.04.1",
            "linux-modules-5.13.0-1023-aws": "5.13.0-1023.25~20.04.1",
            "linux-image-unsigned-5.13.0-1023-aws": "5.13.0-1023.25~20.04.1",
            "linux-tools-5.13.0-1023-aws": "5.13.0-1023.25~20.04.1"
        }
    ]
}

Ubuntu:20.04:LTS / linux-azure-5.13

Package

Name
linux-azure-5.13
Purl
pkg:deb/ubuntu/linux-azure-5.13@5.13.0-1023.27~20.04.1?arch=src?distro=focal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.13.0-1023.27~20.04.1

Affected versions

5.*

5.13.0-1009.10~20.04.2
5.13.0-1012.14~20.04.1
5.13.0-1013.15~20.04.1
5.13.0-1014.16~20.04.1
5.13.0-1017.19~20.04.1
5.13.0-1021.24~20.04.1
5.13.0-1022.26~20.04.1

Ecosystem specific

{
    "availability": "No subscription required",
    "binaries": [
        {
            "linux-azure-5.13-tools-5.13.0-1023": "5.13.0-1023.27~20.04.1",
            "linux-buildinfo-5.13.0-1023-azure": "5.13.0-1023.27~20.04.1",
            "linux-image-unsigned-5.13.0-1023-azure-dbgsym": "5.13.0-1023.27~20.04.1",
            "linux-modules-extra-5.13.0-1023-azure": "5.13.0-1023.27~20.04.1",
            "linux-cloud-tools-5.13.0-1023-azure": "5.13.0-1023.27~20.04.1",
            "linux-image-unsigned-5.13.0-1023-azure": "5.13.0-1023.27~20.04.1",
            "linux-azure-5.13-cloud-tools-5.13.0-1023": "5.13.0-1023.27~20.04.1",
            "linux-headers-5.13.0-1023-azure": "5.13.0-1023.27~20.04.1",
            "linux-modules-5.13.0-1023-azure": "5.13.0-1023.27~20.04.1",
            "linux-azure-5.13-headers-5.13.0-1023": "5.13.0-1023.27~20.04.1",
            "linux-tools-5.13.0-1023-azure": "5.13.0-1023.27~20.04.1"
        }
    ]
}

Ubuntu:20.04:LTS / linux-gcp-5.13

Package

Name
linux-gcp-5.13
Purl
pkg:deb/ubuntu/linux-gcp-5.13@5.13.0-1025.30~20.04.1?arch=src?distro=focal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.13.0-1025.30~20.04.1

Affected versions

5.*

5.13.0-1008.9~20.04.3
5.13.0-1012.15~20.04.1
5.13.0-1013.16~20.04.1
5.13.0-1015.18~20.04.1
5.13.0-1019.23~20.04.1
5.13.0-1021.25~20.04.1
5.13.0-1023.28~20.04.1
5.13.0-1024.29~20.04.1

Ecosystem specific

{
    "availability": "No subscription required",
    "binaries": [
        {
            "linux-image-unsigned-5.13.0-1025-gcp": "5.13.0-1025.30~20.04.1",
            "linux-modules-extra-5.13.0-1025-gcp": "5.13.0-1025.30~20.04.1",
            "linux-gcp-5.13-headers-5.13.0-1025": "5.13.0-1025.30~20.04.1",
            "linux-gcp-5.13-tools-5.13.0-1025": "5.13.0-1025.30~20.04.1",
            "linux-buildinfo-5.13.0-1025-gcp": "5.13.0-1025.30~20.04.1",
            "linux-headers-5.13.0-1025-gcp": "5.13.0-1025.30~20.04.1",
            "linux-modules-5.13.0-1025-gcp": "5.13.0-1025.30~20.04.1",
            "linux-tools-5.13.0-1025-gcp": "5.13.0-1025.30~20.04.1",
            "linux-image-unsigned-5.13.0-1025-gcp-dbgsym": "5.13.0-1025.30~20.04.1"
        }
    ]
}

Ubuntu:20.04:LTS / linux-hwe-5.13

Package

Name
linux-hwe-5.13
Purl
pkg:deb/ubuntu/linux-hwe-5.13@5.13.0-41.46~20.04.1?arch=src?distro=focal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.13.0-41.46~20.04.1

Affected versions

5.*

5.13.0-21.21~20.04.1
5.13.0-22.22~20.04.1
5.13.0-23.23~20.04.2
5.13.0-25.26~20.04.1
5.13.0-27.29~20.04.1
5.13.0-28.31~20.04.1
5.13.0-30.33~20.04.1
5.13.0-35.40~20.04.1
5.13.0-37.42~20.04.1
5.13.0-39.44~20.04.1
5.13.0-40.45~20.04.1

Ecosystem specific

{
    "availability": "No subscription required",
    "binaries": [
        {
            "fs-core-modules-5.13.0-41-generic-di": "5.13.0-41.46~20.04.1",
            "scsi-modules-5.13.0-41-generic-64k-di": "5.13.0-41.46~20.04.1",
            "ipmi-modules-5.13.0-41-generic-64k-di": "5.13.0-41.46~20.04.1",
            "serial-modules-5.13.0-41-generic-di": "5.13.0-41.46~20.04.1",
            "fat-modules-5.13.0-41-generic-di": "5.13.0-41.46~20.04.1",
            "storage-core-modules-5.13.0-41-generic-lpae-di": "5.13.0-41.46~20.04.1",
            "linux-buildinfo-5.13.0-41-lowlatency": "5.13.0-41.46~20.04.1",
            "linux-image-unsigned-5.13.0-41-lowlatency": "5.13.0-41.46~20.04.1",
            "linux-tools-5.13.0-41-generic-64k": "5.13.0-41.46~20.04.1",
            "nfs-modules-5.13.0-41-generic-lpae-di": "5.13.0-41.46~20.04.1",
            "nic-pcmcia-modules-5.13.0-41-generic-di": "5.13.0-41.46~20.04.1",
            "sata-modules-5.13.0-41-generic-lpae-di": "5.13.0-41.46~20.04.1",
            "storage-core-modules-5.13.0-41-generic-di": "5.13.0-41.46~20.04.1",
            "scsi-modules-5.13.0-41-generic-di": "5.13.0-41.46~20.04.1",
            "multipath-modules-5.13.0-41-generic-lpae-di": "5.13.0-41.46~20.04.1",
            "linux-modules-5.13.0-41-generic-64k": "5.13.0-41.46~20.04.1",
            "parport-modules-5.13.0-41-generic-di": "5.13.0-41.46~20.04.1",
            "linux-headers-5.13.0-41-lowlatency": "5.13.0-41.46~20.04.1",
            "pcmcia-storage-modules-5.13.0-41-generic-di": "5.13.0-41.46~20.04.1",
            "parport-modules-5.13.0-41-generic-64k-di": "5.13.0-41.46~20.04.1",
            "message-modules-5.13.0-41-generic-64k-di": "5.13.0-41.46~20.04.1",
            "input-modules-5.13.0-41-generic-lpae-di": "5.13.0-41.46~20.04.1",
            "nic-modules-5.13.0-41-generic-lpae-di": "5.13.0-41.46~20.04.1",
            "usb-modules-5.13.0-41-generic-64k-di": "5.13.0-41.46~20.04.1",
            "fat-modules-5.13.0-41-generic-lpae-di": "5.13.0-41.46~20.04.1",
            "fs-core-modules-5.13.0-41-generic-lpae-di": "5.13.0-41.46~20.04.1",
            "ppp-modules-5.13.0-41-generic-di": "5.13.0-41.46~20.04.1",
            "md-modules-5.13.0-41-generic-di": "5.13.0-41.46~20.04.1",
            "linux-hwe-5.13-source-5.13.0": "5.13.0-41.46~20.04.1",
            "md-modules-5.13.0-41-generic-64k-di": "5.13.0-41.46~20.04.1",
            "linux-headers-5.13.0-41-generic-64k": "5.13.0-41.46~20.04.1",
            "linux-headers-5.13.0-41-generic": "5.13.0-41.46~20.04.1",
            "kernel-image-5.13.0-41-generic-lpae-di": "5.13.0-41.46~20.04.1",
            "linux-hwe-5.13-cloud-tools-5.13.0-41": "5.13.0-41.46~20.04.1",
            "linux-image-unsigned-5.13.0-41-generic": "5.13.0-41.46~20.04.1",
            "nic-usb-modules-5.13.0-41-generic-lpae-di": "5.13.0-41.46~20.04.1",
            "linux-buildinfo-5.13.0-41-generic": "5.13.0-41.46~20.04.1",
            "fat-modules-5.13.0-41-generic-64k-di": "5.13.0-41.46~20.04.1",
            "parport-modules-5.13.0-41-generic-lpae-di": "5.13.0-41.46~20.04.1",
            "nic-shared-modules-5.13.0-41-generic-64k-di": "5.13.0-41.46~20.04.1",
            "plip-modules-5.13.0-41-generic-di": "5.13.0-41.46~20.04.1",
            "vlan-modules-5.13.0-41-generic-di": "5.13.0-41.46~20.04.1",
            "mouse-modules-5.13.0-41-generic-64k-di": "5.13.0-41.46~20.04.1",
            "linux-hwe-5.13-tools-host": "5.13.0-41.46~20.04.1",
            "linux-cloud-tools-5.13.0-41-lowlatency": "5.13.0-41.46~20.04.1",
            "input-modules-5.13.0-41-generic-di": "5.13.0-41.46~20.04.1",
            "pcmcia-modules-5.13.0-41-generic-di": "5.13.0-41.46~20.04.1",
            "nic-usb-modules-5.13.0-41-generic-64k-di": "5.13.0-41.46~20.04.1",
            "fs-secondary-modules-5.13.0-41-generic-di": "5.13.0-41.46~20.04.1",
            "linux-tools-5.13.0-41-lowlatency": "5.13.0-41.46~20.04.1",
            "floppy-modules-5.13.0-41-generic-di": "5.13.0-41.46~20.04.1",
            "linux-headers-5.13.0-41-generic-lpae": "5.13.0-41.46~20.04.1",
            "linux-hwe-5.13-headers-5.13.0-41": "5.13.0-41.46~20.04.1",
            "linux-tools-5.13.0-41-generic-lpae": "5.13.0-41.46~20.04.1",
            "multipath-modules-5.13.0-41-generic-64k-di": "5.13.0-41.46~20.04.1",
            "nic-modules-5.13.0-41-generic-64k-di": "5.13.0-41.46~20.04.1",
            "linux-modules-extra-5.13.0-41-generic": "5.13.0-41.46~20.04.1",
            "nic-shared-modules-5.13.0-41-generic-lpae-di": "5.13.0-41.46~20.04.1",
            "plip-modules-5.13.0-41-generic-64k-di": "5.13.0-41.46~20.04.1",
            "nic-modules-5.13.0-41-generic-di": "5.13.0-41.46~20.04.1",
            "linux-modules-5.13.0-41-generic-lpae": "5.13.0-41.46~20.04.1",
            "ppp-modules-5.13.0-41-generic-64k-di": "5.13.0-41.46~20.04.1",
            "ppp-modules-5.13.0-41-generic-lpae-di": "5.13.0-41.46~20.04.1",
            "usb-modules-5.13.0-41-generic-di": "5.13.0-41.46~20.04.1",
            "crypto-modules-5.13.0-41-generic-64k-di": "5.13.0-41.46~20.04.1",
            "linux-hwe-5.13-udebs-generic": "5.13.0-41.46~20.04.1",
            "block-modules-5.13.0-41-generic-lpae-di": "5.13.0-41.46~20.04.1",
            "linux-image-unsigned-5.13.0-41-lowlatency-dbgsym": "5.13.0-41.46~20.04.1",
            "dasd-extra-modules-5.13.0-41-generic-di": "5.13.0-41.46~20.04.1",
            "linux-image-unsigned-5.13.0-41-generic-dbgsym": "5.13.0-41.46~20.04.1",
            "ipmi-modules-5.13.0-41-generic-di": "5.13.0-41.46~20.04.1",
            "plip-modules-5.13.0-41-generic-lpae-di": "5.13.0-41.46~20.04.1",
            "fs-core-modules-5.13.0-41-generic-64k-di": "5.13.0-41.46~20.04.1",
            "mouse-modules-5.13.0-41-generic-lpae-di": "5.13.0-41.46~20.04.1",
            "vlan-modules-5.13.0-41-generic-lpae-di": "5.13.0-41.46~20.04.1",
            "sata-modules-5.13.0-41-generic-64k-di": "5.13.0-41.46~20.04.1",
            "crypto-modules-5.13.0-41-generic-lpae-di": "5.13.0-41.46~20.04.1",
            "nfs-modules-5.13.0-41-generic-di": "5.13.0-41.46~20.04.1",
            "linux-buildinfo-5.13.0-41-generic-lpae": "5.13.0-41.46~20.04.1",
            "nic-usb-modules-5.13.0-41-generic-di": "5.13.0-41.46~20.04.1",
            "virtio-modules-5.13.0-41-generic-64k-di": "5.13.0-41.46~20.04.1",
            "fs-secondary-modules-5.13.0-41-generic-lpae-di": "5.13.0-41.46~20.04.1",
            "linux-image-5.13.0-41-generic-lpae-dbgsym": "5.13.0-41.46~20.04.1",
            "fs-secondary-modules-5.13.0-41-generic-64k-di": "5.13.0-41.46~20.04.1",
            "storage-core-modules-5.13.0-41-generic-64k-di": "5.13.0-41.46~20.04.1",
            "linux-image-unsigned-5.13.0-41-generic-64k-dbgsym": "5.13.0-41.46~20.04.1",
            "usb-modules-5.13.0-41-generic-lpae-di": "5.13.0-41.46~20.04.1",
            "linux-hwe-5.13-cloud-tools-common": "5.13.0-41.46~20.04.1",
            "multipath-modules-5.13.0-41-generic-di": "5.13.0-41.46~20.04.1",
            "linux-hwe-5.13-udebs-generic-lpae": "5.13.0-41.46~20.04.1",
            "kernel-image-5.13.0-41-generic-64k-di": "5.13.0-41.46~20.04.1",
            "kernel-image-5.13.0-41-generic-di": "5.13.0-41.46~20.04.1",
            "virtio-modules-5.13.0-41-generic-di": "5.13.0-41.46~20.04.1",
            "linux-hwe-5.13-tools-5.13.0-41": "5.13.0-41.46~20.04.1",
            "input-modules-5.13.0-41-generic-64k-di": "5.13.0-41.46~20.04.1",
            "md-modules-5.13.0-41-generic-lpae-di": "5.13.0-41.46~20.04.1",
            "linux-hwe-5.13-udebs-generic-64k": "5.13.0-41.46~20.04.1",
            "linux-modules-5.13.0-41-generic": "5.13.0-41.46~20.04.1",
            "nic-shared-modules-5.13.0-41-generic-di": "5.13.0-41.46~20.04.1",
            "mouse-modules-5.13.0-41-generic-di": "5.13.0-41.46~20.04.1",
            "block-modules-5.13.0-41-generic-di": "5.13.0-41.46~20.04.1",
            "linux-cloud-tools-5.13.0-41-generic": "5.13.0-41.46~20.04.1",
            "linux-image-5.13.0-41-generic-lpae": "5.13.0-41.46~20.04.1",
            "vlan-modules-5.13.0-41-generic-64k-di": "5.13.0-41.46~20.04.1",
            "linux-tools-5.13.0-41-generic": "5.13.0-41.46~20.04.1",
            "crypto-modules-5.13.0-41-generic-di": "5.13.0-41.46~20.04.1",
            "linux-image-unsigned-5.13.0-41-generic-64k": "5.13.0-41.46~20.04.1",
            "linux-modules-5.13.0-41-lowlatency": "5.13.0-41.46~20.04.1",
            "scsi-modules-5.13.0-41-generic-lpae-di": "5.13.0-41.46~20.04.1",
            "linux-hwe-5.13-tools-common": "5.13.0-41.46~20.04.1",
            "linux-image-5.13.0-41-generic-dbgsym": "5.13.0-41.46~20.04.1",
            "dasd-modules-5.13.0-41-generic-di": "5.13.0-41.46~20.04.1",
            "linux-buildinfo-5.13.0-41-generic-64k": "5.13.0-41.46~20.04.1",
            "pata-modules-5.13.0-41-generic-di": "5.13.0-41.46~20.04.1",
            "message-modules-5.13.0-41-generic-di": "5.13.0-41.46~20.04.1",
            "linux-image-5.13.0-41-generic": "5.13.0-41.46~20.04.1",
            "block-modules-5.13.0-41-generic-64k-di": "5.13.0-41.46~20.04.1",
            "nfs-modules-5.13.0-41-generic-64k-di": "5.13.0-41.46~20.04.1",
            "firewire-core-modules-5.13.0-41-generic-di": "5.13.0-41.46~20.04.1",
            "ipmi-modules-5.13.0-41-generic-lpae-di": "5.13.0-41.46~20.04.1",
            "fb-modules-5.13.0-41-generic-di": "5.13.0-41.46~20.04.1",
            "sata-modules-5.13.0-41-generic-di": "5.13.0-41.46~20.04.1"
        }
    ]
}