{"id":26587,"date":"2022-07-07T17:58:43","date_gmt":"2022-07-07T13:58:43","guid":{"rendered":"https:\/\/packetstormsecurity.com\/files\/167714\/USN-5505-1.txt"},"modified":"2022-07-11T14:32:03","modified_gmt":"2022-07-11T10:02:03","slug":"ubuntu-security-notice-usn-5505-1","status":"publish","type":"post","link":"https:\/\/afaghhosting.net\/blog\/ubuntu-security-notice-usn-5505-1\/","title":{"rendered":"Ubuntu Security Notice USN-5505-1"},"content":{"rendered":"<p dir=\"ltr\">==========================================================================<br \/>\nUbuntu Security Notice USN-5505-1<br \/>\nJuly 07, 2022<\/p>\n<p dir=\"ltr\">linux-lts-xenial, linux-kvm vulnerabilities<br \/>\n==========================================================================<\/p>\n<p dir=\"ltr\">A security issue affects these releases of Ubuntu and its derivatives:<\/p>\n<p dir=\"ltr\">&#8211; Ubuntu 16.04 ESM<br \/>\n&#8211; Ubuntu 14.04 ESM<\/p>\n<p dir=\"ltr\">Summary:<\/p>\n<p dir=\"ltr\">Several security issues were fixed in the Linux kernel.<\/p>\n<p dir=\"ltr\">Software Description:<br \/>\n&#8211; linux-kvm: Linux kernel for cloud environments<br \/>\n&#8211; linux-lts-xenial: Linux hardware enablement kernel from Xenial for Trusty<\/p>\n<p dir=\"ltr\">Details:<\/p>\n<p dir=\"ltr\">Norbert Slusarek discovered a race condition in the CAN BCM networking<br \/>\nprotocol of the Linux kernel leading to multiple use-after-free<br \/>\nvulnerabilities. A local attacker could use this issue to execute arbitrary<br \/>\ncode. (CVE-2021-3609)<\/p>\n<p dir=\"ltr\">Likang Luo discovered that a race condition existed in the Bluetooth<br \/>\nsubsystem of the Linux kernel, leading to a use-after-free vulnerability. A<br \/>\nlocal attacker could use this to cause a denial of service (system crash)<br \/>\nor possibly execute arbitrary code. (CVE-2021-3752)<\/p>\n<p dir=\"ltr\">It was discovered that the NFC subsystem in the Linux kernel contained a<br \/>\nuse-after-free vulnerability in its NFC Controller Interface (NCI)<br \/>\nimplementation. A local attacker could possibly use this to cause a denial<br \/>\nof service (system crash) or execute arbitrary code. (CVE-2021-3760)<\/p>\n<p dir=\"ltr\">Szymon Heidrich discovered that the USB Gadget subsystem in the Linux<br \/>\nkernel did not properly restrict the size of control requests for certain<br \/>\ngadget types, leading to possible out of bounds reads or writes. A local<br \/>\nattacker could use this to cause a denial of service (system crash) or<br \/>\npossibly execute arbitrary code. (CVE-2021-39685)<\/p>\n<p dir=\"ltr\">It was discovered that the Ion Memory Manager subsystem in the Linux kernel<br \/>\ncontained a use-after-free vulnerability. A local attacker could possibly<br \/>\nuse this to cause a denial of service (system crash) or execute arbitrary<br \/>\ncode. (CVE-2021-39714)<\/p>\n<p dir=\"ltr\">Eric Biederman discovered that the cgroup process migration implementation<br \/>\nin the Linux kernel did not perform permission checks correctly in some<br \/>\nsituations. A local attacker could possibly use this to gain administrative<br \/>\nprivileges. (CVE-2021-4197)<\/p>\n<p dir=\"ltr\">Lin Ma discovered that the NFC Controller Interface (NCI) implementation in<br \/>\nthe Linux kernel contained a race condition, leading to a use-after-free<br \/>\nvulnerability. A local attacker could use this to cause a denial of service<br \/>\n(system crash) or possibly execute arbitrary code. (CVE-2021-4202)<\/p>\n<p dir=\"ltr\">Sushma Venkatesh Reddy discovered that the Intel i915 graphics driver in<br \/>\nthe Linux kernel did not perform a GPU TLB flush in some situations. A<br \/>\nlocal attacker could use this to cause a denial of service or possibly<br \/>\nexecute arbitrary code. (CVE-2022-0330)<\/p>\n<p dir=\"ltr\">It was discovered that the PF_KEYv2 implementation in the Linux kernel did<br \/>\nnot properly initialize kernel memory in some situations. A local attacker<br \/>\ncould use this to expose sensitive information (kernel memory).<br \/>\n(CVE-2022-1353)<\/p>\n<p dir=\"ltr\">It was discovered that the virtual graphics memory manager implementation<br \/>\nin the Linux kernel was subject to a race condition, potentially leading to<br \/>\nan information leak. (CVE-2022-1419)<\/p>\n<p dir=\"ltr\">Minh Yuan discovered that the floppy disk driver in the Linux kernel<br \/>\ncontained a race condition, leading to a use-after-free vulnerability. A<br \/>\nlocal attacker could possibly use this to cause a denial of service (system<br \/>\ncrash) or execute arbitrary code. (CVE-2022-1652)<\/p>\n<p dir=\"ltr\">It was discovered that the Atheros ath9k wireless device driver in the<br \/>\nLinux kernel did not properly handle some error conditions, leading to a<br \/>\nuse-after-free vulnerability. A local attacker could use this to cause a<br \/>\ndenial of service (system crash) or possibly execute arbitrary code.<br \/>\n(CVE-2022-1679)<\/p>\n<p dir=\"ltr\">It was discovered that the Marvell NFC device driver implementation in the<br \/>\nLinux kernel did not properly perform memory cleanup operations in some<br \/>\nsituations, leading to a use-after-free vulnerability. A local attacker<br \/>\ncould possibly use this to cause a denial of service (system) or execute<br \/>\narbitrary code. (CVE-2022-1734)<\/p>\n<p dir=\"ltr\">It was discovered that some Intel processors did not completely perform<br \/>\ncleanup actions on multi-core shared buffers. A local attacker could<br \/>\npossibly use this to expose sensitive information. (CVE-2022-21123)<\/p>\n<p dir=\"ltr\">It was discovered that some Intel processors did not completely perform<br \/>\ncleanup actions on microarchitectural fill buffers. A local attacker could<br \/>\npossibly use this to expose sensitive information. (CVE-2022-21125)<\/p>\n<p dir=\"ltr\">It was discovered that some Intel processors did not properly perform<br \/>\ncleanup during specific special register write operations. A local attacker<br \/>\ncould possibly use this to expose sensitive information. (CVE-2022-21166)<\/p>\n<p dir=\"ltr\">It was discovered that the USB Gadget file system interface in the Linux<br \/>\nkernel contained a use-after-free vulnerability. A local attacker could use<br \/>\nthis to cause a denial of service (system crash) or possibly execute<br \/>\narbitrary code. (CVE-2022-24958)<\/p>\n<p dir=\"ltr\">\u8d75\u5b50\u8f69 discovered that the 802.2 LLC type 2 driver in the Linux kernel did not<br \/>\nproperly perform reference counting in some error conditions. A local<br \/>\nattacker could use this to cause a denial of service. (CVE-2022-28356)<\/p>\n<p dir=\"ltr\">It was discovered that the 8 Devices USB2CAN interface implementation in<br \/>\nthe Linux kernel did not properly handle certain error conditions, leading<br \/>\nto a double-free. A local attacker could possibly use this to cause a<br \/>\ndenial of service (system crash). (CVE-2022-28388)<\/p>\n<p dir=\"ltr\">Update instructions:<\/p>\n<p dir=\"ltr\">The problem can be corrected by updating your system to the following<br \/>\npackage versions:<\/p>\n<p dir=\"ltr\">Ubuntu 16.04 ESM:<br \/>\nlinux-image-4.4.0-1110-kvm 4.4.0-1110.120<br \/>\nlinux-image-kvm 4.4.0.1110.107<\/p>\n<p dir=\"ltr\">Ubuntu 14.04 ESM:<br \/>\nlinux-image-4.4.0-229-generic 4.4.0-229.263~14.04.1<br \/>\nlinux-image-4.4.0-229-lowlatency 4.4.0-229.263~14.04.1<br \/>\nlinux-image-generic-lts-xenial 4.4.0.229.199<br \/>\nlinux-image-lowlatency-lts-xenial 4.4.0.229.199<br \/>\nlinux-image-virtual-lts-xenial 4.4.0.229.199<\/p>\n<p dir=\"ltr\">After a standard system update you need to reboot your computer to make<br \/>\nall the necessary changes.<\/p>\n<p dir=\"ltr\">ATTENTION: Due to an unavoidable ABI change the kernel updates have<br \/>\nbeen given a new version number, which requires you to recompile and<br \/>\nreinstall all third party kernel modules you might have installed.<br \/>\nUnless you manually uninstalled the standard kernel metapackages<br \/>\n(e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual,<br \/>\nlinux-powerpc), a standard system upgrade will automatically perform<br \/>\nthis as well.<\/p>\n<p dir=\"ltr\">References:<br \/>\nhttps:\/\/ubuntu.com\/security\/notices\/USN-5505-1<br \/>\nCVE-2021-3609, CVE-2021-3752, CVE-2021-3760, CVE-2021-39685,<br \/>\nCVE-2021-39714, CVE-2021-4197, CVE-2021-4202, CVE-2022-0330,<br \/>\nCVE-2022-1353, CVE-2022-1419, CVE-2022-1652, CVE-2022-1679,<br \/>\nCVE-2022-1734, CVE-2022-21123, CVE-2022-21125, CVE-2022-21166,<br \/>\nCVE-2022-24958, CVE-2022-28356, CVE-2022-28388<\/p>\n","protected":false},"excerpt":{"rendered":"<p>========================================================================== Ubuntu Security Notice USN-5505-1 July 07, 2022 linux-lts-xenial, linux-kvm vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: &#8211; Ubuntu 16.04 ESM &#8211; Ubuntu 14.04 ESM Summary: Several security issues were fixed in the Linux kernel. Software Description: &#8211; linux-kvm: Linux kernel for cloud environments &#8211; linux-lts-xenial: Linux hardware enablement &hellip;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[26],"tags":[],"class_list":["post-26587","post","type-post","status-publish","format-standard","hentry","category-vulnerability"],"_links":{"self":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts\/26587","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/comments?post=26587"}],"version-history":[{"count":0,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts\/26587\/revisions"}],"wp:attachment":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/media?parent=26587"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/categories?post=26587"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/tags?post=26587"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}