{"id":60424,"date":"2024-11-20T23:06:35","date_gmt":"2024-11-20T20:06:35","guid":{"rendered":"https:\/\/packetstormsecurity.com\/files\/182710\/USN-7123-1.txt"},"modified":"2024-11-20T23:06:35","modified_gmt":"2024-11-20T20:06:35","slug":"ubuntu-security-notice-usn-7123-1","status":"publish","type":"post","link":"https:\/\/afaghhosting.net\/blog\/ubuntu-security-notice-usn-7123-1\/","title":{"rendered":"Ubuntu Security Notice USN-7123-1"},"content":{"rendered":"<p>==========================================================================<br \/>Ubuntu Security Notice USN-7123-1<br \/>November 20, 2024<\/p>\n<p>linux-azure vulnerabilities<br \/>==========================================================================<\/p>\n<p>A security issue affects these releases of Ubuntu and its derivatives:<\/p>\n<p>&#8211; Ubuntu 22.04 LTS<\/p>\n<p>Summary:<\/p>\n<p>Several security issues were fixed in the Linux kernel.<\/p>\n<p>Software Description:<br \/>&#8211; linux-azure: Linux kernel for Microsoft Azure Cloud systems<\/p>\n<p>Details:<\/p>\n<p>It was discovered that the CIFS network file system implementation in the<br \/>Linux kernel did not properly validate certain SMB messages, leading to an<br \/>out-of-bounds read vulnerability. An attacker could use this to cause a<br \/>denial of service (system crash) or possibly expose sensitive information.<br \/>(CVE-2023-6610)<\/p>\n<p>Supraja Sridhara, Benedict Schl\u00fcter, Mark Kuhne, Andrin Bertschi, and<br \/>Shweta Shinde discovered that the Confidential Computing framework in the<br \/>Linux kernel for x86 platforms did not properly handle 32-bit emulation on<br \/>TDX and SEV. An attacker with access to the VMM could use this to cause a<br \/>denial of service (guest crash) or possibly execute arbitrary code.<br \/>(CVE-2024-25744)<\/p>\n<p>Several security issues were discovered in the Linux kernel.<br \/>An attacker could possibly use these to compromise the system.<br \/>This update corrects flaws in the following subsystems:<br \/>&#8211; ARM64 architecture;<br \/>&#8211; MIPS architecture;<br \/>&#8211; PowerPC architecture;<br \/>&#8211; RISC-V architecture;<br \/>&#8211; User-Mode Linux (UML);<br \/>&#8211; x86 architecture;<br \/>&#8211; Block layer subsystem;<br \/>&#8211; Android drivers;<br \/>&#8211; Serial ATA and Parallel ATA drivers;<br \/>&#8211; ATM drivers;<br \/>&#8211; Drivers core;<br \/>&#8211; Null block device driver;<br \/>&#8211; Character device driver;<br \/>&#8211; ARM SCMI message protocol;<br \/>&#8211; GPU drivers;<br \/>&#8211; HID subsystem;<br \/>&#8211; Hardware monitoring drivers;<br \/>&#8211; I3C subsystem;<br \/>&#8211; InfiniBand drivers;<br \/>&#8211; Input Device core drivers;<br \/>&#8211; Input Device (Miscellaneous) drivers;<br \/>&#8211; IOMMU subsystem;<br \/>&#8211; IRQ chip drivers;<br \/>&#8211; ISDN\/mISDN subsystem;<br \/>&#8211; LED subsystem;<br \/>&#8211; Multiple devices driver;<br \/>&#8211; Media drivers;<br \/>&#8211; VMware VMCI Driver;<br \/>&#8211; MMC subsystem;<br \/>&#8211; Network drivers;<br \/>&#8211; Near Field Communication (NFC) drivers;<br \/>&#8211; NVME drivers;<br \/>&#8211; Device tree and open firmware driver;<br \/>&#8211; Parport drivers;<br \/>&#8211; PCI subsystem;<br \/>&#8211; Pin controllers subsystem;<br \/>&#8211; Remote Processor subsystem;<br \/>&#8211; S\/390 drivers;<br \/>&#8211; SCSI drivers;<br \/>&#8211; QCOM SoC drivers;<br \/>&#8211; Direct Digital Synthesis drivers;<br \/>&#8211; Thunderbolt and USB4 drivers;<br \/>&#8211; TTY drivers;<br \/>&#8211; Userspace I\/O drivers;<br \/>&#8211; DesignWare USB3 driver;<br \/>&#8211; USB Gadget drivers;<br \/>&#8211; USB Host Controller drivers;<br \/>&#8211; USB Type-C Connector System Software Interface driver;<br \/>&#8211; USB over IP driver;<br \/>&#8211; VHOST drivers;<br \/>&#8211; File systems infrastructure;<br \/>&#8211; BTRFS file system;<br \/>&#8211; Ext4 file system;<br \/>&#8211; F2FS file system;<br \/>&#8211; JFS file system;<br \/>&#8211; NILFS2 file system;<br \/>&#8211; NTFS3 file system;<br \/>&#8211; Proc file system;<br \/>&#8211; SMB network file system;<br \/>&#8211; Core kernel;<br \/>&#8211; DMA mapping infrastructure;<br \/>&#8211; RCU subsystem;<br \/>&#8211; Tracing infrastructure;<br \/>&#8211; Radix Tree data structure library;<br \/>&#8211; Kernel userspace event delivery library;<br \/>&#8211; Objagg library;<br \/>&#8211; Memory management;<br \/>&#8211; Amateur Radio drivers;<br \/>&#8211; Bluetooth subsystem;<br \/>&#8211; Ethernet bridge;<br \/>&#8211; CAN network layer;<br \/>&#8211; Networking core;<br \/>&#8211; Ethtool driver;<br \/>&#8211; IPv4 networking;<br \/>&#8211; IPv6 networking;<br \/>&#8211; IUCV driver;<br \/>&#8211; KCM (Kernel Connection Multiplexor) sockets driver;<br \/>&#8211; MAC80211 subsystem;<br \/>&#8211; Multipath TCP;<br \/>&#8211; Netfilter;<br \/>&#8211; Network traffic control;<br \/>&#8211; SCTP protocol;<br \/>&#8211; Sun RPC protocol;<br \/>&#8211; TIPC protocol;<br \/>&#8211; TLS protocol;<br \/>&#8211; Wireless networking;<br \/>&#8211; AppArmor security module;<br \/>&#8211; Landlock security;<br \/>&#8211; Simplified Mandatory Access Control Kernel framework;<br \/>&#8211; FireWire sound drivers;<br \/>&#8211; SoC audio core drivers;<br \/>&#8211; USB sound devices;<br \/>(CVE-2023-52751, CVE-2024-43902, CVE-2024-46791, CVE-2024-45018,<br \/>CVE-2024-44987, CVE-2024-46763, CVE-2024-46724, CVE-2024-26893,<br \/>CVE-2024-42283, CVE-2024-46738, CVE-2024-46819, CVE-2024-44982,<br \/>CVE-2023-52889, CVE-2024-45025, CVE-2023-52918, CVE-2024-46800,<br \/>CVE-2024-46756, CVE-2024-46719, CVE-2024-39472, CVE-2024-42292,<br \/>CVE-2024-45006, CVE-2024-46675, CVE-2024-44971, CVE-2024-46731,<br \/>CVE-2024-42286, CVE-2024-44954, CVE-2024-42274, CVE-2024-46746,<br \/>CVE-2024-42276, CVE-2024-43869, CVE-2024-43830, CVE-2024-42288,<br \/>CVE-2024-41042, CVE-2024-42126, CVE-2024-43870, CVE-2024-46805,<br \/>CVE-2024-41078, CVE-2024-44966, CVE-2024-44989, CVE-2024-46795,<br \/>CVE-2024-44988, CVE-2024-38577, CVE-2024-43839, CVE-2024-43909,<br \/>CVE-2024-46745, CVE-2024-42285, CVE-2024-43871, CVE-2024-41081,<br \/>CVE-2024-42289, CVE-2024-44965, CVE-2024-42271, CVE-2024-42284,<br \/>CVE-2024-45009, CVE-2024-41068, CVE-2024-44958, CVE-2024-46759,<br \/>CVE-2024-42304, CVE-2024-43890, CVE-2024-41019, CVE-2024-43846,<br \/>CVE-2024-41012, CVE-2024-44983, CVE-2024-41072, CVE-2024-46702,<br \/>CVE-2024-26800, CVE-2024-42302, CVE-2023-52572, CVE-2024-46783,<br \/>CVE-2024-43892, CVE-2024-45028, CVE-2024-44999, CVE-2024-46814,<br \/>CVE-2024-41022, CVE-2024-42281, CVE-2024-46679, CVE-2024-42290,<br \/>CVE-2024-44960, CVE-2024-41071, CVE-2024-41091, CVE-2024-44990,<br \/>CVE-2024-46757, CVE-2024-38611, CVE-2024-47668, CVE-2024-45008,<br \/>CVE-2024-46707, CVE-2024-44935, CVE-2024-42299, CVE-2024-46771,<br \/>CVE-2024-42265, CVE-2024-43883, CVE-2024-46673, CVE-2024-46747,<br \/>CVE-2024-43875, CVE-2024-44985, CVE-2024-42311, CVE-2024-46798,<br \/>CVE-2024-43884, CVE-2024-46725, CVE-2024-42318, CVE-2024-43873,<br \/>CVE-2024-42296, CVE-2024-43907, CVE-2024-43834, CVE-2024-46721,<br \/>CVE-2024-47659, CVE-2024-45026, CVE-2024-47667, CVE-2024-44986,<br \/>CVE-2024-41020, CVE-2024-43849, CVE-2024-46744, CVE-2024-44946,<br \/>CVE-2024-43861, CVE-2024-42269, CVE-2024-46822, CVE-2024-46739,<br \/>CVE-2024-44948, CVE-2024-46804, CVE-2024-41064, CVE-2024-44995,<br \/>CVE-2024-26669, CVE-2024-46781, CVE-2024-46732, CVE-2024-42246,<br \/>CVE-2024-46780, CVE-2024-46743, CVE-2024-44947, CVE-2024-47663,<br \/>CVE-2024-46752, CVE-2024-43893, CVE-2024-45021, CVE-2024-43856,<br \/>CVE-2024-46714, CVE-2024-41011, CVE-2024-41070, CVE-2024-46832,<br \/>CVE-2024-46737, CVE-2024-43867, CVE-2024-42277, CVE-2024-44934,<br \/>CVE-2024-46723, CVE-2024-43880, CVE-2024-43860, CVE-2024-42297,<br \/>CVE-2024-45003, CVE-2024-46810, CVE-2024-43889, CVE-2024-42287,<br \/>CVE-2024-43854, CVE-2024-42313, CVE-2024-42305, CVE-2024-41077,<br \/>CVE-2024-38602, CVE-2024-46758, CVE-2024-46807, CVE-2024-43853,<br \/>CVE-2024-45007, CVE-2024-41090, CVE-2024-42280, CVE-2024-46844,<br \/>CVE-2024-45011, CVE-2024-47660, CVE-2024-47665, CVE-2024-46829,<br \/>CVE-2024-44944, CVE-2024-41015, CVE-2024-42259, CVE-2024-43914,<br \/>CVE-2024-43829, CVE-2022-48666, CVE-2024-43828, CVE-2024-46755,<br \/>CVE-2024-43858, CVE-2024-46740, CVE-2024-46689, CVE-2024-42309,<br \/>CVE-2024-42295, CVE-2024-41098, CVE-2023-52757, CVE-2024-46782,<br \/>CVE-2024-46777, CVE-2024-46685, CVE-2024-44969, CVE-2024-47669,<br \/>CVE-2024-43882, CVE-2024-42310, CVE-2024-43905, CVE-2024-44998,<br \/>CVE-2024-42306, CVE-2024-40915, CVE-2024-46713, CVE-2024-41059,<br \/>CVE-2024-41017, CVE-2024-43879, CVE-2024-46677, CVE-2024-42312,<br \/>CVE-2024-43908, CVE-2024-46750, CVE-2024-46722, CVE-2024-42267,<br \/>CVE-2024-46818, CVE-2024-26661, CVE-2024-43817, CVE-2024-42272,<br \/>CVE-2024-41065, CVE-2024-46828, CVE-2024-46840, CVE-2024-46676,<br \/>CVE-2024-43841, CVE-2024-46815, CVE-2024-26607, CVE-2023-52434,<br \/>CVE-2024-46761, CVE-2024-42114, CVE-2024-41073, CVE-2024-43894,<br \/>CVE-2024-43835, CVE-2024-46817, CVE-2024-41060, CVE-2024-36484,<br \/>CVE-2024-42301, CVE-2024-44974, CVE-2024-43863, CVE-2024-41063)<\/p>\n<p>Update instructions:<\/p>\n<p>The problem can be corrected by updating your system to the following<br \/>package versions:<\/p>\n<p>Ubuntu 22.04 LTS<br \/>linux-image-5.15.0-1075-azure 5.15.0-1075.84<br \/>linux-image-azure-lts-22.04 5.15.0.1075.73<\/p>\n<p>After a standard system update you need to reboot your computer to make<br \/>all the necessary changes.<\/p>\n<p>ATTENTION: Due to an unavoidable ABI change the kernel updates have<br \/>been given a new version number, which requires you to recompile and<br \/>reinstall all third party kernel modules you might have installed.<br \/>Unless you manually uninstalled the standard kernel metapackages<br \/>(e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual,<br \/>linux-powerpc), a standard system upgrade will automatically perform<br \/>this as well.<\/p>\n<p>References:<br \/>https:\/\/ubuntu.com\/security\/notices\/USN-7123-1<br \/>CVE-2022-48666, CVE-2023-52434, CVE-2023-52572, CVE-2023-52751,<br \/>CVE-2023-52757, CVE-2023-52889, CVE-2023-52918, CVE-2023-6610,<br \/>CVE-2024-25744, CVE-2024-26607, CVE-2024-26661, CVE-2024-26669,<br \/>CVE-2024-26800, CVE-2024-26893, CVE-2024-36484, CVE-2024-38577,<br \/>CVE-2024-38602, CVE-2024-38611, CVE-2024-39472, CVE-2024-40915,<br \/>CVE-2024-41011, CVE-2024-41012, CVE-2024-41015, CVE-2024-41017,<br \/>CVE-2024-41019, CVE-2024-41020, CVE-2024-41022, CVE-2024-41042,<br \/>CVE-2024-41059, CVE-2024-41060, CVE-2024-41063, CVE-2024-41064,<br \/>CVE-2024-41065, CVE-2024-41068, CVE-2024-41070, CVE-2024-41071,<br \/>CVE-2024-41072, CVE-2024-41073, CVE-2024-41077, CVE-2024-41078,<br \/>CVE-2024-41081, CVE-2024-41090, CVE-2024-41091, CVE-2024-41098,<br \/>CVE-2024-42114, CVE-2024-42126, CVE-2024-42246, CVE-2024-42259,<br \/>CVE-2024-42265, CVE-2024-42267, CVE-2024-42269, CVE-2024-42271,<br \/>CVE-2024-42272, CVE-2024-42274, CVE-2024-42276, CVE-2024-42277,<br \/>CVE-2024-42280, CVE-2024-42281, CVE-2024-42283, CVE-2024-42284,<br \/>CVE-2024-42285, CVE-2024-42286, CVE-2024-42287, CVE-2024-42288,<br \/>CVE-2024-42289, CVE-2024-42290, CVE-2024-42292, CVE-2024-42295,<br \/>CVE-2024-42296, CVE-2024-42297, CVE-2024-42299, CVE-2024-42301,<br \/>CVE-2024-42302, CVE-2024-42304, CVE-2024-42305, CVE-2024-42306,<br \/>CVE-2024-42309, CVE-2024-42310, CVE-2024-42311, CVE-2024-42312,<br \/>CVE-2024-42313, CVE-2024-42318, CVE-2024-43817, CVE-2024-43828,<br \/>CVE-2024-43829, CVE-2024-43830, CVE-2024-43834, CVE-2024-43835,<br \/>CVE-2024-43839, CVE-2024-43841, CVE-2024-43846, CVE-2024-43849,<br \/>CVE-2024-43853, CVE-2024-43854, CVE-2024-43856, CVE-2024-43858,<br \/>CVE-2024-43860, CVE-2024-43861, CVE-2024-43863, CVE-2024-43867,<br \/>CVE-2024-43869, CVE-2024-43870, CVE-2024-43871, CVE-2024-43873,<br \/>CVE-2024-43875, CVE-2024-43879, CVE-2024-43880, CVE-2024-43882,<br \/>CVE-2024-43883, CVE-2024-43884, CVE-2024-43889, CVE-2024-43890,<br \/>CVE-2024-43892, CVE-2024-43893, CVE-2024-43894, CVE-2024-43902,<br \/>CVE-2024-43905, CVE-2024-43907, CVE-2024-43908, CVE-2024-43909,<br \/>CVE-2024-43914, CVE-2024-44934, CVE-2024-44935, CVE-2024-44944,<br \/>CVE-2024-44946, CVE-2024-44947, CVE-2024-44948, CVE-2024-44954,<br \/>CVE-2024-44958, CVE-2024-44960, CVE-2024-44965, CVE-2024-44966,<br \/>CVE-2024-44969, CVE-2024-44971, CVE-2024-44974, CVE-2024-44982,<br \/>CVE-2024-44983, CVE-2024-44985, CVE-2024-44986, CVE-2024-44987,<br \/>CVE-2024-44988, CVE-2024-44989, CVE-2024-44990, CVE-2024-44995,<br \/>CVE-2024-44998, CVE-2024-44999, CVE-2024-45003, CVE-2024-45006,<br \/>CVE-2024-45007, CVE-2024-45008, CVE-2024-45009, CVE-2024-45011,<br \/>CVE-2024-45018, CVE-2024-45021, CVE-2024-45025, CVE-2024-45026,<br \/>CVE-2024-45028, CVE-2024-46673, CVE-2024-46675, CVE-2024-46676,<br \/>CVE-2024-46677, CVE-2024-46679, CVE-2024-46685, CVE-2024-46689,<br \/>CVE-2024-46702, CVE-2024-46707, CVE-2024-46713, CVE-2024-46714,<br \/>CVE-2024-46719, CVE-2024-46721, CVE-2024-46722, CVE-2024-46723,<br \/>CVE-2024-46724, CVE-2024-46725, CVE-2024-46731, CVE-2024-46732,<br \/>CVE-2024-46737, CVE-2024-46738, CVE-2024-46739, CVE-2024-46740,<br \/>CVE-2024-46743, CVE-2024-46744, CVE-2024-46745, CVE-2024-46746,<br \/>CVE-2024-46747, CVE-2024-46750, CVE-2024-46752, CVE-2024-46755,<br \/>CVE-2024-46756, CVE-2024-46757, CVE-2024-46758, CVE-2024-46759,<br \/>CVE-2024-46761, CVE-2024-46763, CVE-2024-46771, CVE-2024-46777,<br \/>CVE-2024-46780, CVE-2024-46781, CVE-2024-46782, CVE-2024-46783,<br \/>CVE-2024-46791, CVE-2024-46795, CVE-2024-46798, CVE-2024-46800,<br \/>CVE-2024-46804, CVE-2024-46805, CVE-2024-46807, CVE-2024-46810,<br \/>CVE-2024-46814, CVE-2024-46815, CVE-2024-46817, CVE-2024-46818,<br \/>CVE-2024-46819, CVE-2024-46822, CVE-2024-46828, CVE-2024-46829,<br \/>CVE-2024-46832, CVE-2024-46840, CVE-2024-46844, CVE-2024-47659,<br \/>CVE-2024-47660, CVE-2024-47663, CVE-2024-47665, CVE-2024-47667,<br \/>CVE-2024-47668, CVE-2024-47669<\/p>\n<p>Package Information:<br \/>https:\/\/launchpad.net\/ubuntu\/+source\/linux-azure\/5.15.0-1075.84<\/p>\n","protected":false},"excerpt":{"rendered":"<p>==========================================================================Ubuntu Security Notice USN-7123-1November 20, 2024 linux-azure vulnerabilities========================================================================== A security issue affects these releases of Ubuntu and its derivatives: &#8211; Ubuntu 22.04 LTS Summary: Several security issues were fixed in the Linux kernel. Software Description:&#8211; linux-azure: Linux kernel for Microsoft Azure Cloud systems Details: It was discovered that the CIFS network file system implementation in &hellip;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[26],"tags":[],"class_list":["post-60424","post","type-post","status-publish","format-standard","hentry","category-vulnerability"],"_links":{"self":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts\/60424","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/comments?post=60424"}],"version-history":[{"count":0,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts\/60424\/revisions"}],"wp:attachment":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/media?parent=60424"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/categories?post=60424"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/tags?post=60424"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}