QID 198298

Date Published: 2021-03-26

QID 198298: Ubuntu Security Notification for Linux, Linux-aws, Linux-azure, Linux-gcp, Linux-hwe-5.8, Linux-kvm, (USN-4879-1)

It was discovered that the Marvell WiFi-Ex device driver in the Linux kernel did not properly validate ad-hoc SSIDs.

It was discovered that the BPF implementation in the Linux kernel did not properly validate attributes in the getsockopt BPF hook.

A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2020-36158)

A local attacker could possibly use this to cause a denial of service (system crash). (CVE-2021-20194)

  • CVSS V3 rated as High - 7.8 severity.
  • CVSS V2 rated as High - 7.2 severity.
  • Solution
    Refer to Ubuntu advisory USN-4879-1 for affected packages and patching details, or update with your package manager.
    Vendor References

    CVEs related to QID 198298

    Software Advisories
    Advisory ID Software Component Link
    USN-4879-1 20.04 (focal) on src linux-image-5.8.0-45-generic URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1025.27
    USN-4879-1 20.04 (focal) on src linux-image-5.8.0-45-generic-64k URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1025.27
    USN-4879-1 20.04 (focal) on src linux-image-5.8.0-45-generic-lpae URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1025.27
    USN-4879-1 20.04 (focal) on src linux-image-5.8.0-45-lowlatency URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1025.27
    USN-4879-1 20.04 (focal) on src linux-image-generic-64k-hwe-20.04 URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1025.27
    USN-4879-1 20.04 (focal) on src linux-image-generic-hwe-20.04 URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1025.27
    USN-4879-1 20.04 (focal) on src linux-image-generic-lpae-hwe-20.04 URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1025.27
    USN-4879-1 20.04 (focal) on src linux-image-lowlatency-hwe-20.04 URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1025.27
    USN-4879-1 20.04 (focal) on src linux-image-virtual-hwe-20.04 URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1025.27
    USN-4879-1 20.10 (groovy) on src linux-image-5.8.0-1017-raspi URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-45.51
    USN-4879-1 20.10 (groovy) on src linux-image-5.8.0-1017-raspi-nolpae URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-45.51
    USN-4879-1 20.10 (groovy) on src linux-image-5.8.0-1020-kvm URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-45.51
    USN-4879-1 20.10 (groovy) on src linux-image-5.8.0-1022-oracle URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-45.51
    USN-4879-1 20.10 (groovy) on src linux-image-5.8.0-1024-azure URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-45.51
    USN-4879-1 20.10 (groovy) on src linux-image-5.8.0-1024-gcp URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-45.51
    USN-4879-1 20.10 (groovy) on src linux-image-5.8.0-1025-aws URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-45.51
    USN-4879-1 20.10 (groovy) on src linux-image-5.8.0-45-generic URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-45.51
    USN-4879-1 20.10 (groovy) on src linux-image-5.8.0-45-generic-64k URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-45.51
    USN-4879-1 20.10 (groovy) on src linux-image-5.8.0-45-generic-lpae URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-45.51
    USN-4879-1 20.10 (groovy) on src linux-image-5.8.0-45-lowlatency URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-45.51
    USN-4879-1 20.10 (groovy) on src linux-image-aws URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-45.51
    USN-4879-1 20.10 (groovy) on src linux-image-azure URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-45.51
    USN-4879-1 20.10 (groovy) on src linux-image-gcp URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-45.51
    USN-4879-1 20.10 (groovy) on src linux-image-generic URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-45.51
    USN-4879-1 20.10 (groovy) on src linux-image-generic-64k URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-45.51
    USN-4879-1 20.10 (groovy) on src linux-image-generic-lpae URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-45.51
    USN-4879-1 20.10 (groovy) on src linux-image-gke URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-45.51
    USN-4879-1 20.10 (groovy) on src linux-image-kvm URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-45.51
    USN-4879-1 20.10 (groovy) on src linux-image-lowlatency URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-45.51
    USN-4879-1 20.10 (groovy) on src linux-image-oem-20.04 URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-45.51
    USN-4879-1 20.10 (groovy) on src linux-image-oracle URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-45.51
    USN-4879-1 20.10 (groovy) on src linux-image-raspi URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-45.51
    USN-4879-1 20.10 (groovy) on src linux-image-raspi-nolpae URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-45.51
    USN-4879-1 20.10 (groovy) on src linux-image-virtual URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-45.51