{"id":45649,"date":"2023-07-26T21:10:26","date_gmt":"2023-07-26T17:10:26","guid":{"rendered":"https:\/\/packetstormsecurity.com\/files\/173750\/USN-6247-1.txt"},"modified":"2023-07-28T00:14:02","modified_gmt":"2023-07-27T19:44:02","slug":"ubuntu-security-notice-usn-6247-1","status":"publish","type":"post","link":"https:\/\/afaghhosting.net\/blog\/ubuntu-security-notice-usn-6247-1\/","title":{"rendered":"Ubuntu Security Notice USN-6247-1"},"content":{"rendered":"<p>==========================================================================<br \/>\nUbuntu Security Notice USN-6247-1<br \/>\nJuly 25, 2023<\/p>\n<p>linux-oem-5.17 vulnerabilities<br \/>\n==========================================================================<\/p>\n<p>A security issue affects these releases of Ubuntu and its derivatives:<\/p>\n<p>&#8211; Ubuntu 22.04 LTS<\/p>\n<p>Summary:<\/p>\n<p>Several security issues were fixed in the Linux kernel.<\/p>\n<p>Software Description:<br \/>\n&#8211; linux-oem-5.17: Linux kernel for OEM systems<\/p>\n<p>Details:<\/p>\n<p>David Leadbeater discovered that the netfilter IRC protocol tracking<br \/>\nimplementation in the Linux Kernel incorrectly handled certain message<br \/>\npayloads in some situations. A remote attacker could possibly use this to<br \/>\ncause a denial of service or bypass firewall filtering. (CVE-2022-2663)<\/p>\n<p>It was discovered that the IDT 77252 ATM PCI device driver in the Linux<br \/>\nkernel did not properly remove any pending timers during device exit,<br \/>\nresulting in a use-after-free vulnerability. A local attacker could<br \/>\npossibly use this to cause a denial of service (system crash) or execute<br \/>\narbitrary code. (CVE-2022-3635)<\/p>\n<p>It was discovered that the network queuing discipline implementation in the<br \/>\nLinux kernel contained a null pointer dereference in some situations. A<br \/>\nlocal attacker could use this to cause a denial of service (system crash).<br \/>\n(CVE-2022-47929)<\/p>\n<p>Lucas Leong discovered that the IPv6 SR implementation in the Linux kernel<br \/>\ndid not properly validate SEG6 configuration attributes, leading to an out-<br \/>\nof-bounds read vulnerability. A privileged attacker could use this to<br \/>\nexpose sensitive information (kernel memory). (CVE-2023-2860)<\/p>\n<p>Mingi Cho discovered that the netfilter subsystem in the Linux kernel did<br \/>\nnot properly validate the status of a nft chain while performing a lookup<br \/>\nby id, leading to a use-after-free vulnerability. An attacker could use<br \/>\nthis to cause a denial of service (system crash) or possibly execute<br \/>\narbitrary code. (CVE-2023-31248)<\/p>\n<p>Tanguy Dubroca discovered that the netfilter subsystem in the Linux kernel<br \/>\ndid not properly handle certain pointer data type, leading to an out-of-<br \/>\nbounds write vulnerability. A privileged attacker could use this to cause a<br \/>\ndenial of service (system crash) or possibly execute arbitrary code.<br \/>\n(CVE-2023-35001)<\/p>\n<p>Update instructions:<\/p>\n<p>The problem can be corrected by updating your system to the following<br \/>\npackage versions:<\/p>\n<p>Ubuntu 22.04 LTS:<br \/>\nlinux-image-5.17.0-1035-oem 5.17.0-1035.36<br \/>\nlinux-image-oem-22.04 5.17.0.1035.33<br \/>\nlinux-image-oem-22.04a 5.17.0.1035.33<\/p>\n<p>After a standard system update you need to reboot your computer to make<br \/>\nall the necessary changes.<\/p>\n<p>ATTENTION: Due to an unavoidable ABI change the kernel updates have<br \/>\nbeen given a new version number, which requires you to recompile and<br \/>\nreinstall all third party kernel modules you might have installed.<br \/>\nUnless you manually uninstalled the standard kernel metapackages<br \/>\n(e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual,<br \/>\nlinux-powerpc), a standard system upgrade will automatically perform<br \/>\nthis as well.<\/p>\n<p>References:<br \/>\nhttps:\/\/ubuntu.com\/security\/notices\/USN-6247-1<br \/>\nCVE-2022-2663, CVE-2022-3635, CVE-2022-47929, CVE-2023-2860,<br \/>\nCVE-2023-31248, CVE-2023-35001<\/p>\n<p>Package Information:<br \/>\nhttps:\/\/launchpad.net\/ubuntu\/+source\/linux-oem-5.17\/5.17.0-1035.36<\/p>\n","protected":false},"excerpt":{"rendered":"<p>========================================================================== Ubuntu Security Notice USN-6247-1 July 25, 2023 linux-oem-5.17 vulnerabilities ========================================================================== A security issue affects these releases of Ubuntu and its derivatives: &#8211; Ubuntu 22.04 LTS Summary: Several security issues were fixed in the Linux kernel. Software Description: &#8211; linux-oem-5.17: Linux kernel for OEM systems Details: David Leadbeater discovered that the netfilter IRC protocol tracking &hellip;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[26],"tags":[],"class_list":["post-45649","post","type-post","status-publish","format-standard","hentry","category-vulnerability"],"_links":{"self":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts\/45649","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/comments?post=45649"}],"version-history":[{"count":1,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts\/45649\/revisions"}],"predecessor-version":[{"id":45703,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts\/45649\/revisions\/45703"}],"wp:attachment":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/media?parent=45649"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/categories?post=45649"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/tags?post=45649"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}