USN-5634-1

Source
https://ubuntu.com/security/notices/USN-5634-1
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-5634-1.json
JSON Data
https://api.test.osv.dev/v1/vulns/USN-5634-1
Upstream
Related
Published
2022-09-22T18:02:46.232675Z
Modified
2025-10-13T04:36:05Z
Summary
linux-oem-5.17 vulnerability
Details

Domingo Dirutigliano and Nicola Guerrera discovered that the netfilter subsystem in the Linux kernel did not properly handle rules that truncated packets below the packet header size. When such rules are in place, a remote attacker could possibly use this to cause a denial of service (system crash).

References

Affected packages

Ubuntu:22.04:LTS / linux-oem-5.17

Package

Name
linux-oem-5.17
Purl
pkg:deb/ubuntu/linux-oem-5.17@5.17.0-1017.18?arch=source&distro=jammy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.17.0-1017.18

Affected versions

5.*

5.17.0-1003.3
5.17.0-1004.4
5.17.0-1006.6
5.17.0-1011.12
5.17.0-1012.13
5.17.0-1013.14
5.17.0-1014.15
5.17.0-1015.16
5.17.0-1016.17

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "5.17.0-1017.18",
            "binary_name": "linux-buildinfo-5.17.0-1017-oem"
        },
        {
            "binary_version": "5.17.0-1017.18",
            "binary_name": "linux-headers-5.17.0-1017-oem"
        },
        {
            "binary_version": "5.17.0-1017.18",
            "binary_name": "linux-image-unsigned-5.17.0-1017-oem"
        },
        {
            "binary_version": "5.17.0-1017.18",
            "binary_name": "linux-modules-5.17.0-1017-oem"
        },
        {
            "binary_version": "5.17.0-1017.18",
            "binary_name": "linux-modules-iwlwifi-5.17.0-1017-oem"
        },
        {
            "binary_version": "5.17.0-1017.18",
            "binary_name": "linux-oem-5.17-headers-5.17.0-1017"
        },
        {
            "binary_version": "5.17.0-1017.18",
            "binary_name": "linux-oem-5.17-tools-5.17.0-1017"
        },
        {
            "binary_version": "5.17.0-1017.18",
            "binary_name": "linux-oem-5.17-tools-host"
        },
        {
            "binary_version": "5.17.0-1017.18",
            "binary_name": "linux-tools-5.17.0-1017-oem"
        }
    ],
    "availability": "No subscription required"
}

Database specific

cves_map

{
    "ecosystem": "Ubuntu:22.04:LTS",
    "cves": [
        {
            "severity": [
                {
                    "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",
                    "type": "CVSS_V3"
                },
                {
                    "score": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",
                    "type": "CVSS_V3"
                },
                {
                    "score": "medium",
                    "type": "Ubuntu"
                }
            ],
            "id": "CVE-2022-36946"
        }
    ]
}