{"id":60430,"date":"2024-11-21T05:35:35","date_gmt":"2024-11-21T02:35:35","guid":{"rendered":"https:\/\/packetstormsecurity.com\/files\/182704\/USN-7119-1.txt"},"modified":"2024-11-21T05:35:35","modified_gmt":"2024-11-21T02:35:35","slug":"ubuntu-security-notice-usn-7119-1","status":"publish","type":"post","link":"https:\/\/afaghhosting.net\/blog\/ubuntu-security-notice-usn-7119-1\/","title":{"rendered":"Ubuntu Security Notice USN-7119-1"},"content":{"rendered":"<p>==========================================================================<br \/>Ubuntu Security Notice USN-7119-1<br \/>November 19, 2024<\/p>\n<p>linux-iot vulnerabilities<br \/>==========================================================================<\/p>\n<p>A security issue affects these releases of Ubuntu and its derivatives:<\/p>\n<p>&#8211; Ubuntu 20.04 LTS<\/p>\n<p>Summary:<\/p>\n<p>Several security issues were fixed in the Linux kernel.<\/p>\n<p>Software Description:<br \/>&#8211; linux-iot: Linux kernel for IoT platforms<\/p>\n<p>Details:<\/p>\n<p>Ziming Zhang discovered that the VMware Virtual GPU DRM driver in the Linux<br \/>kernel contained an integer overflow vulnerability. A local attacker could<br \/>use this to cause a denial of service (system crash). (CVE-2022-36402)<\/p>\n<p>Several security issues were discovered in the Linux kernel.<br \/>An attacker could possibly use these to compromise the system.<br \/>This update corrects flaws in the following subsystems:<br \/>&#8211; ARM64 architecture;<br \/>&#8211; PowerPC architecture;<br \/>&#8211; User-Mode Linux (UML);<br \/>&#8211; x86 architecture;<br \/>&#8211; Block layer subsystem;<br \/>&#8211; Cryptographic API;<br \/>&#8211; Android drivers;<br \/>&#8211; Serial ATA and Parallel ATA drivers;<br \/>&#8211; ATM drivers;<br \/>&#8211; Drivers core;<br \/>&#8211; CPU frequency scaling framework;<br \/>&#8211; Device frequency scaling framework;<br \/>&#8211; GPU drivers;<br \/>&#8211; HID subsystem;<br \/>&#8211; Hardware monitoring drivers;<br \/>&#8211; InfiniBand drivers;<br \/>&#8211; Input Device core drivers;<br \/>&#8211; Input Device (Miscellaneous) drivers;<br \/>&#8211; IOMMU subsystem;<br \/>&#8211; IRQ chip drivers;<br \/>&#8211; ISDN\/mISDN subsystem;<br \/>&#8211; Modular ISDN driver;<br \/>&#8211; LED subsystem;<br \/>&#8211; Multiple devices driver;<br \/>&#8211; Media drivers;<br \/>&#8211; EEPROM drivers;<br \/>&#8211; VMware VMCI Driver;<br \/>&#8211; MMC subsystem;<br \/>&#8211; Network drivers;<br \/>&#8211; Near Field Communication (NFC) drivers;<br \/>&#8211; NVME drivers;<br \/>&#8211; Device tree and open firmware driver;<br \/>&#8211; Parport drivers;<br \/>&#8211; PCI subsystem;<br \/>&#8211; Pin controllers subsystem;<br \/>&#8211; Remote Processor subsystem;<br \/>&#8211; S\/390 drivers;<br \/>&#8211; SCSI drivers;<br \/>&#8211; QCOM SoC drivers;<br \/>&#8211; Direct Digital Synthesis drivers;<br \/>&#8211; TTY drivers;<br \/>&#8211; Userspace I\/O drivers;<br \/>&#8211; DesignWare USB3 driver;<br \/>&#8211; USB Gadget drivers;<br \/>&#8211; USB Host Controller drivers;<br \/>&#8211; USB Serial drivers;<br \/>&#8211; USB Type-C Connector System Software Interface driver;<br \/>&#8211; USB over IP driver;<br \/>&#8211; Watchdog drivers;<br \/>&#8211; BTRFS file system;<br \/>&#8211; File systems infrastructure;<br \/>&#8211; Ext4 file system;<br \/>&#8211; F2FS file system;<br \/>&#8211; GFS2 file system;<br \/>&#8211; JFS file system;<br \/>&#8211; NILFS2 file system;<br \/>&#8211; Netfilter;<br \/>&#8211; BPF subsystem;<br \/>&#8211; Core kernel;<br \/>&#8211; DMA mapping infrastructure;<br \/>&#8211; Tracing infrastructure;<br \/>&#8211; Radix Tree data structure library;<br \/>&#8211; Kernel userspace event delivery library;<br \/>&#8211; Objagg library;<br \/>&#8211; Memory management;<br \/>&#8211; Amateur Radio drivers;<br \/>&#8211; Bluetooth subsystem;<br \/>&#8211; CAN network layer;<br \/>&#8211; Networking core;<br \/>&#8211; Ethtool driver;<br \/>&#8211; IPv4 networking;<br \/>&#8211; IPv6 networking;<br \/>&#8211; IUCV driver;<br \/>&#8211; KCM (Kernel Connection Multiplexor) sockets driver;<br \/>&#8211; MAC80211 subsystem;<br \/>&#8211; RxRPC session sockets;<br \/>&#8211; Network traffic control;<br \/>&#8211; SCTP protocol;<br \/>&#8211; Sun RPC protocol;<br \/>&#8211; TIPC protocol;<br \/>&#8211; TLS protocol;<br \/>&#8211; Wireless networking;<br \/>&#8211; AppArmor security module;<br \/>&#8211; Integrity Measurement Architecture(IMA) framework;<br \/>&#8211; Simplified Mandatory Access Control Kernel framework;<br \/>&#8211; SoC audio core drivers;<br \/>&#8211; USB sound devices;<br \/>(CVE-2024-46750, CVE-2024-43853, CVE-2024-46722, CVE-2024-42311,<br \/>CVE-2024-46679, CVE-2023-52918, CVE-2024-42309, CVE-2024-42160,<br \/>CVE-2024-26668, CVE-2024-42271, CVE-2024-40929, CVE-2024-46747,<br \/>CVE-2024-41064, CVE-2024-43839, CVE-2024-46757, CVE-2024-41059,<br \/>CVE-2024-42301, CVE-2024-46737, CVE-2024-42297, CVE-2024-41015,<br \/>CVE-2024-43854, CVE-2024-42289, CVE-2024-41017, CVE-2024-26787,<br \/>CVE-2024-47667, CVE-2024-46675, CVE-2024-42246, CVE-2024-46723,<br \/>CVE-2024-46817, CVE-2024-43841, CVE-2024-26800, CVE-2024-41098,<br \/>CVE-2022-48863, CVE-2023-52531, CVE-2024-42265, CVE-2024-46828,<br \/>CVE-2024-41020, CVE-2024-42305, CVE-2024-46755, CVE-2024-46744,<br \/>CVE-2024-43871, CVE-2024-43884, CVE-2024-41042, CVE-2024-43914,<br \/>CVE-2024-43856, CVE-2024-27397, CVE-2024-26607, CVE-2024-42228,<br \/>CVE-2024-41091, CVE-2024-26677, CVE-2024-38611, CVE-2024-43867,<br \/>CVE-2024-46829, CVE-2021-47188, CVE-2024-46756, CVE-2024-45025,<br \/>CVE-2024-42313, CVE-2024-44947, CVE-2024-26669, CVE-2024-47668,<br \/>CVE-2024-44987, CVE-2024-42295, CVE-2024-42281, CVE-2024-43880,<br \/>CVE-2024-46777, CVE-2024-46780, CVE-2024-42285, CVE-2024-26891,<br \/>CVE-2024-46714, CVE-2024-44999, CVE-2024-41068, CVE-2024-44944,<br \/>CVE-2024-43882, CVE-2024-27051, CVE-2024-41072, CVE-2024-46783,<br \/>CVE-2024-46781, CVE-2024-26885, CVE-2024-46844, CVE-2024-47669,<br \/>CVE-2024-45008, CVE-2024-46758, CVE-2024-44954, CVE-2024-45021,<br \/>CVE-2024-42304, CVE-2024-41081, CVE-2024-46798, CVE-2024-43890,<br \/>CVE-2024-46840, CVE-2024-44960, CVE-2024-41012, CVE-2022-48791,<br \/>CVE-2024-43908, CVE-2024-46721, CVE-2024-43829, CVE-2024-41073,<br \/>CVE-2024-42306, CVE-2024-46745, CVE-2024-43858, CVE-2024-47663,<br \/>CVE-2024-46782, CVE-2024-42244, CVE-2024-41090, CVE-2024-38602,<br \/>CVE-2024-45003, CVE-2024-35848, CVE-2024-43883, CVE-2024-46677,<br \/>CVE-2024-42280, CVE-2024-43846, CVE-2024-47659, CVE-2024-44965,<br \/>CVE-2024-43893, CVE-2024-26960, CVE-2024-46676, CVE-2024-45016,<br \/>CVE-2024-46689, CVE-2024-44998, CVE-2024-44995, CVE-2024-41022,<br \/>CVE-2024-45026, CVE-2024-46739, CVE-2024-43830, CVE-2024-42286,<br \/>CVE-2024-26640, CVE-2024-27012, CVE-2024-45006, CVE-2024-42276,<br \/>CVE-2024-46818, CVE-2024-39494, CVE-2024-43860, CVE-2024-41070,<br \/>CVE-2023-52614, CVE-2024-42283, CVE-2024-44969, CVE-2024-42229,<br \/>CVE-2024-46740, CVE-2024-44948, CVE-2024-46822, CVE-2024-46738,<br \/>CVE-2024-36484, CVE-2024-41065, CVE-2024-46685, CVE-2024-44935,<br \/>CVE-2024-46759, CVE-2024-42292, CVE-2024-43879, CVE-2024-42287,<br \/>CVE-2024-42288, CVE-2024-41063, CVE-2024-41011, CVE-2024-44946,<br \/>CVE-2024-42290, CVE-2024-38570, CVE-2024-42310, CVE-2024-46743,<br \/>CVE-2024-43861, CVE-2024-42131, CVE-2021-47212, CVE-2024-46719,<br \/>CVE-2024-46815, CVE-2024-26641, CVE-2024-43894, CVE-2024-44988,<br \/>CVE-2024-42259, CVE-2024-46771, CVE-2024-46673, CVE-2024-45028,<br \/>CVE-2024-46761, CVE-2024-41071, CVE-2024-38630, CVE-2024-43835,<br \/>CVE-2024-46800, CVE-2024-42284)<\/p>\n<p>Update instructions:<\/p>\n<p>The problem can be corrected by updating your system to the following<br \/>package versions:<\/p>\n<p>Ubuntu 20.04 LTS<br \/>linux-image-5.4.0-1044-iot 5.4.0-1044.45<\/p>\n<p>After a standard system update you need to reboot your computer to make<br \/>all the necessary changes.<\/p>\n<p>ATTENTION: Due to an unavoidable ABI change the kernel updates have<br \/>been given a new version number, which requires you to recompile and<br \/>reinstall all third party kernel modules you might have installed.<br \/>Unless you manually uninstalled the standard kernel metapackages<br \/>(e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual,<br \/>linux-powerpc), a standard system upgrade will automatically perform<br \/>this as well.<\/p>\n<p>References:<br \/>https:\/\/ubuntu.com\/security\/notices\/USN-7119-1<br \/>CVE-2021-47188, CVE-2021-47212, CVE-2022-36402, CVE-2022-48791,<br \/>CVE-2022-48863, CVE-2023-52531, CVE-2023-52614, CVE-2023-52918,<br \/>CVE-2024-26607, CVE-2024-26640, CVE-2024-26641, CVE-2024-26668,<br \/>CVE-2024-26669, CVE-2024-26677, CVE-2024-26787, CVE-2024-26800,<br \/>CVE-2024-26885, CVE-2024-26891, CVE-2024-26960, CVE-2024-27012,<br \/>CVE-2024-27051, CVE-2024-27397, CVE-2024-35848, CVE-2024-36484,<br \/>CVE-2024-38570, CVE-2024-38602, CVE-2024-38611, CVE-2024-38630,<br \/>CVE-2024-39494, CVE-2024-40929, CVE-2024-41011, CVE-2024-41012,<br \/>CVE-2024-41015, CVE-2024-41017, CVE-2024-41020, CVE-2024-41022,<br \/>CVE-2024-41042, CVE-2024-41059, CVE-2024-41063, CVE-2024-41064,<br \/>CVE-2024-41065, CVE-2024-41068, CVE-2024-41070, CVE-2024-41071,<br \/>CVE-2024-41072, CVE-2024-41073, CVE-2024-41081, CVE-2024-41090,<br \/>CVE-2024-41091, CVE-2024-41098, CVE-2024-42131, CVE-2024-42160,<br \/>CVE-2024-42228, CVE-2024-42229, CVE-2024-42244, CVE-2024-42246,<br \/>CVE-2024-42259, CVE-2024-42265, CVE-2024-42271, CVE-2024-42276,<br \/>CVE-2024-42280, CVE-2024-42281, CVE-2024-42283, CVE-2024-42284,<br \/>CVE-2024-42285, CVE-2024-42286, CVE-2024-42287, CVE-2024-42288,<br \/>CVE-2024-42289, CVE-2024-42290, CVE-2024-42292, CVE-2024-42295,<br \/>CVE-2024-42297, CVE-2024-42301, CVE-2024-42304, CVE-2024-42305,<br \/>CVE-2024-42306, CVE-2024-42309, CVE-2024-42310, CVE-2024-42311,<br \/>CVE-2024-42313, CVE-2024-43829, CVE-2024-43830, CVE-2024-43835,<br \/>CVE-2024-43839, CVE-2024-43841, CVE-2024-43846, CVE-2024-43853,<br \/>CVE-2024-43854, CVE-2024-43856, CVE-2024-43858, CVE-2024-43860,<br \/>CVE-2024-43861, CVE-2024-43867, CVE-2024-43871, CVE-2024-43879,<br \/>CVE-2024-43880, CVE-2024-43882, CVE-2024-43883, CVE-2024-43884,<br \/>CVE-2024-43890, CVE-2024-43893, CVE-2024-43894, CVE-2024-43908,<br \/>CVE-2024-43914, CVE-2024-44935, CVE-2024-44944, CVE-2024-44946,<br \/>CVE-2024-44947, CVE-2024-44948, CVE-2024-44954, CVE-2024-44960,<br \/>CVE-2024-44965, CVE-2024-44969, CVE-2024-44987, CVE-2024-44988,<br \/>CVE-2024-44995, CVE-2024-44998, CVE-2024-44999, CVE-2024-45003,<br \/>CVE-2024-45006, CVE-2024-45008, CVE-2024-45016, CVE-2024-45021,<br \/>CVE-2024-45025, CVE-2024-45026, CVE-2024-45028, CVE-2024-46673,<br \/>CVE-2024-46675, CVE-2024-46676, CVE-2024-46677, CVE-2024-46679,<br \/>CVE-2024-46685, CVE-2024-46689, CVE-2024-46714, CVE-2024-46719,<br \/>CVE-2024-46721, CVE-2024-46722, CVE-2024-46723, CVE-2024-46737,<br \/>CVE-2024-46738, CVE-2024-46739, CVE-2024-46740, CVE-2024-46743,<br \/>CVE-2024-46744, CVE-2024-46745, CVE-2024-46747, CVE-2024-46750,<br \/>CVE-2024-46755, CVE-2024-46756, CVE-2024-46757, CVE-2024-46758,<br \/>CVE-2024-46759, CVE-2024-46761, CVE-2024-46771, CVE-2024-46777,<br \/>CVE-2024-46780, CVE-2024-46781, CVE-2024-46782, CVE-2024-46783,<br \/>CVE-2024-46798, CVE-2024-46800, CVE-2024-46815, CVE-2024-46817,<br \/>CVE-2024-46818, CVE-2024-46822, CVE-2024-46828, CVE-2024-46829,<br \/>CVE-2024-46840, CVE-2024-46844, CVE-2024-47659, CVE-2024-47663,<br \/>CVE-2024-47667, CVE-2024-47668, CVE-2024-47669<\/p>\n<p>Package Information:<br \/>https:\/\/launchpad.net\/ubuntu\/+source\/linux-iot\/5.4.0-1044.45<\/p>\n","protected":false},"excerpt":{"rendered":"<p>==========================================================================Ubuntu Security Notice USN-7119-1November 19, 2024 linux-iot vulnerabilities========================================================================== A security issue affects these releases of Ubuntu and its derivatives: &#8211; Ubuntu 20.04 LTS Summary: Several security issues were fixed in the Linux kernel. Software Description:&#8211; linux-iot: Linux kernel for IoT platforms Details: Ziming Zhang discovered that the VMware Virtual GPU DRM driver in the Linuxkernel &hellip;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[26],"tags":[],"class_list":["post-60430","post","type-post","status-publish","format-standard","hentry","category-vulnerability"],"_links":{"self":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts\/60430","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/comments?post=60430"}],"version-history":[{"count":0,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/posts\/60430\/revisions"}],"wp:attachment":[{"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/media?parent=60430"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/categories?post=60430"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/afaghhosting.net\/blog\/wp-json\/wp\/v2\/tags?post=60430"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}