QID 198307

Date Published: 2021-04-01

QID 198307: Ubuntu Security Notification for Linux, Linux-aws, Linux-aws-5.4, Linux-azure, Linux-azure-5.4, Linux-gcp, (USN-4887-1)

It was discovered that the BPF verifier in the Linux kernel did not properly handle mod32 destination register truncation when the source register was known to be 0.

It was discovered that heap overflows existed in the iSCSI subsystem in the Linux kernel.

It was discovered that the BPF subsystem in the Linux kernel did not properly compute a speculative execution limit on pointer arithmetic in some situations.

It was discovered that the BPF subsystem in the Linux kernel did not properly apply speculative execution limits on some pointer types.

It was discovered that the iSCSI subsystem in the Linux kernel did not properly restrict access to iSCSI transport handles.

It was discovered that an out-of-bounds read existed in the iSCSI subsystem in the Linux kernel.

A local attacker could use this to expose sensitive information (kernel memory) or possibly execute arbitrary code. (CVE-2021-3444)

A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2021-27365)

A local attacker could use this to expose sensitive information (kernel memory). (CVE-2020-27171)

A local attacker could use this to expose sensitive information (kernel memory). (CVE-2020-27170)

A local attacker could use this to cause a denial of service or expose sensitive information (kernel pointer addresses). (CVE-2021-27363)

A local attacker could use this to cause a denial of service (system crash) or expose sensitive information (kernel memory). (CVE-2021-27364)

  • CVSS V3 rated as High - 7.8 severity.
  • CVSS V2 rated as Medium - 4.6 severity.
  • Solution
    Refer to Ubuntu advisory USN-4887-1 for affected packages and patching details, or update with your package manager.
    Vendor References
    Software Advisories
    Advisory ID Software Component Link
    USN-4887-1 18.04 (bionic) on src linux-image-5.3.0-1038-raspi2 URL Logo launchpad.net/ubuntu/+source/linux-azure/5.8.0-1026.28
    USN-4887-1 18.04 (bionic) on src linux-image-5.3.0-1041-gke URL Logo launchpad.net/ubuntu/+source/linux-azure/5.8.0-1026.28
    USN-4887-1 18.04 (bionic) on src linux-image-5.3.0-72-generic URL Logo launchpad.net/ubuntu/+source/linux-azure/5.8.0-1026.28
    USN-4887-1 18.04 (bionic) on src linux-image-5.3.0-72-lowlatency URL Logo launchpad.net/ubuntu/+source/linux-azure/5.8.0-1026.28
    USN-4887-1 18.04 (bionic) on src linux-image-5.4.0-1012-gkeop URL Logo launchpad.net/ubuntu/+source/linux-azure/5.8.0-1026.28
    USN-4887-1 18.04 (bionic) on src linux-image-5.4.0-1032-raspi URL Logo launchpad.net/ubuntu/+source/linux-azure/5.8.0-1026.28
    USN-4887-1 18.04 (bionic) on src linux-image-5.4.0-1039-gke URL Logo launchpad.net/ubuntu/+source/linux-azure/5.8.0-1026.28
    USN-4887-1 18.04 (bionic) on src linux-image-5.4.0-1040-gcp URL Logo launchpad.net/ubuntu/+source/linux-azure/5.8.0-1026.28
    USN-4887-1 18.04 (bionic) on src linux-image-5.4.0-1041-aws URL Logo launchpad.net/ubuntu/+source/linux-azure/5.8.0-1026.28
    USN-4887-1 18.04 (bionic) on src linux-image-5.4.0-1041-oracle URL Logo launchpad.net/ubuntu/+source/linux-azure/5.8.0-1026.28
    USN-4887-1 18.04 (bionic) on src linux-image-5.4.0-1043-azure URL Logo launchpad.net/ubuntu/+source/linux-azure/5.8.0-1026.28
    USN-4887-1 18.04 (bionic) on src linux-image-5.4.0-70-generic URL Logo launchpad.net/ubuntu/+source/linux-azure/5.8.0-1026.28
    USN-4887-1 18.04 (bionic) on src linux-image-5.4.0-70-generic-lpae URL Logo launchpad.net/ubuntu/+source/linux-azure/5.8.0-1026.28
    USN-4887-1 18.04 (bionic) on src linux-image-5.4.0-70-lowlatency URL Logo launchpad.net/ubuntu/+source/linux-azure/5.8.0-1026.28
    USN-4887-1 18.04 (bionic) on src linux-image-aws URL Logo launchpad.net/ubuntu/+source/linux-azure/5.8.0-1026.28
    USN-4887-1 18.04 (bionic) on src linux-image-azure URL Logo launchpad.net/ubuntu/+source/linux-azure/5.8.0-1026.28
    USN-4887-1 18.04 (bionic) on src linux-image-gcp URL Logo launchpad.net/ubuntu/+source/linux-azure/5.8.0-1026.28
    USN-4887-1 18.04 (bionic) on src linux-image-generic-hwe-18.04 URL Logo launchpad.net/ubuntu/+source/linux-azure/5.8.0-1026.28
    USN-4887-1 18.04 (bionic) on src linux-image-generic-lpae-hwe-18.04 URL Logo launchpad.net/ubuntu/+source/linux-azure/5.8.0-1026.28
    USN-4887-1 18.04 (bionic) on src linux-image-gke-5.3 URL Logo launchpad.net/ubuntu/+source/linux-azure/5.8.0-1026.28
    USN-4887-1 18.04 (bionic) on src linux-image-gke-5.4 URL Logo launchpad.net/ubuntu/+source/linux-azure/5.8.0-1026.28
    USN-4887-1 18.04 (bionic) on src linux-image-gkeop-5.3 URL Logo launchpad.net/ubuntu/+source/linux-azure/5.8.0-1026.28
    USN-4887-1 18.04 (bionic) on src linux-image-gkeop-5.4 URL Logo launchpad.net/ubuntu/+source/linux-azure/5.8.0-1026.28
    USN-4887-1 18.04 (bionic) on src linux-image-lowlatency-hwe-18.04 URL Logo launchpad.net/ubuntu/+source/linux-azure/5.8.0-1026.28
    USN-4887-1 18.04 (bionic) on src linux-image-oem URL Logo launchpad.net/ubuntu/+source/linux-azure/5.8.0-1026.28
    USN-4887-1 18.04 (bionic) on src linux-image-oem-osp1 URL Logo launchpad.net/ubuntu/+source/linux-azure/5.8.0-1026.28
    USN-4887-1 18.04 (bionic) on src linux-image-oracle URL Logo launchpad.net/ubuntu/+source/linux-azure/5.8.0-1026.28
    USN-4887-1 18.04 (bionic) on src linux-image-raspi-hwe-18.04 URL Logo launchpad.net/ubuntu/+source/linux-azure/5.8.0-1026.28
    USN-4887-1 18.04 (bionic) on src linux-image-raspi2-hwe-18.04 URL Logo launchpad.net/ubuntu/+source/linux-azure/5.8.0-1026.28
    USN-4887-1 18.04 (bionic) on src linux-image-snapdragon-hwe-18.04 URL Logo launchpad.net/ubuntu/+source/linux-azure/5.8.0-1026.28
    USN-4887-1 18.04 (bionic) on src linux-image-virtual-hwe-18.04 URL Logo launchpad.net/ubuntu/+source/linux-azure/5.8.0-1026.28
    USN-4887-1 20.04 (focal) on src linux-image-5.10.0-1019-oem URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1027.29
    USN-4887-1 20.04 (focal) on src linux-image-5.4.0-1012-gkeop URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1027.29
    USN-4887-1 20.04 (focal) on src linux-image-5.4.0-1032-raspi URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1027.29
    USN-4887-1 20.04 (focal) on src linux-image-5.4.0-1036-kvm URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1027.29
    USN-4887-1 20.04 (focal) on src linux-image-5.4.0-1040-gcp URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1027.29
    USN-4887-1 20.04 (focal) on src linux-image-5.4.0-1041-aws URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1027.29
    USN-4887-1 20.04 (focal) on src linux-image-5.4.0-1041-oracle URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1027.29
    USN-4887-1 20.04 (focal) on src linux-image-5.4.0-1043-azure URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1027.29
    USN-4887-1 20.04 (focal) on src linux-image-5.4.0-70-generic URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1027.29
    USN-4887-1 20.04 (focal) on src linux-image-5.4.0-70-generic-lpae URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1027.29
    USN-4887-1 20.04 (focal) on src linux-image-5.4.0-70-lowlatency URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1027.29
    USN-4887-1 20.04 (focal) on src linux-image-5.6.0-1052-oem URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1027.29
    USN-4887-1 20.04 (focal) on src linux-image-5.8.0-48-generic URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1027.29
    USN-4887-1 20.04 (focal) on src linux-image-5.8.0-48-generic-64k URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1027.29
    USN-4887-1 20.04 (focal) on src linux-image-5.8.0-48-generic-lpae URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1027.29
    USN-4887-1 20.04 (focal) on src linux-image-5.8.0-48-lowlatency URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1027.29
    USN-4887-1 20.04 (focal) on src linux-image-aws URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1027.29
    USN-4887-1 20.04 (focal) on src linux-image-azure URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1027.29
    USN-4887-1 20.04 (focal) on src linux-image-gcp URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1027.29
    USN-4887-1 20.04 (focal) on src linux-image-generic URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1027.29
    USN-4887-1 20.04 (focal) on src linux-image-generic-64k-hwe-20.04 URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1027.29
    USN-4887-1 20.04 (focal) on src linux-image-generic-hwe-20.04 URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1027.29
    USN-4887-1 20.04 (focal) on src linux-image-generic-lpae URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1027.29
    USN-4887-1 20.04 (focal) on src linux-image-generic-lpae-hwe-20.04 URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1027.29
    USN-4887-1 20.04 (focal) on src linux-image-gkeop URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1027.29
    USN-4887-1 20.04 (focal) on src linux-image-gkeop-5.4 URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1027.29
    USN-4887-1 20.04 (focal) on src linux-image-kvm URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1027.29
    USN-4887-1 20.04 (focal) on src linux-image-lowlatency URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1027.29
    USN-4887-1 20.04 (focal) on src linux-image-lowlatency-hwe-20.04 URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1027.29
    USN-4887-1 20.04 (focal) on src linux-image-oem URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1027.29
    USN-4887-1 20.04 (focal) on src linux-image-oem-20.04 URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1027.29
    USN-4887-1 20.04 (focal) on src linux-image-oem-20.04b URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1027.29
    USN-4887-1 20.04 (focal) on src linux-image-oem-osp1 URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1027.29
    USN-4887-1 20.04 (focal) on src linux-image-oracle URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1027.29
    USN-4887-1 20.04 (focal) on src linux-image-raspi URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1027.29
    USN-4887-1 20.04 (focal) on src linux-image-raspi2 URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1027.29
    USN-4887-1 20.04 (focal) on src linux-image-virtual URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1027.29
    USN-4887-1 20.04 (focal) on src linux-image-virtual-hwe-20.04 URL Logo launchpad.net/ubuntu/+source/linux-aws/5.8.0-1027.29
    USN-4887-1 20.10 (groovy) on src linux-image-5.8.0-1019-raspi URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-48.54
    USN-4887-1 20.10 (groovy) on src linux-image-5.8.0-1019-raspi-nolpae URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-48.54
    USN-4887-1 20.10 (groovy) on src linux-image-5.8.0-1022-kvm URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-48.54
    USN-4887-1 20.10 (groovy) on src linux-image-5.8.0-1024-oracle URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-48.54
    USN-4887-1 20.10 (groovy) on src linux-image-5.8.0-1026-azure URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-48.54
    USN-4887-1 20.10 (groovy) on src linux-image-5.8.0-1026-gcp URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-48.54
    USN-4887-1 20.10 (groovy) on src linux-image-5.8.0-1027-aws URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-48.54
    USN-4887-1 20.10 (groovy) on src linux-image-5.8.0-48-generic URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-48.54
    USN-4887-1 20.10 (groovy) on src linux-image-5.8.0-48-generic-64k URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-48.54
    USN-4887-1 20.10 (groovy) on src linux-image-5.8.0-48-generic-lpae URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-48.54
    USN-4887-1 20.10 (groovy) on src linux-image-5.8.0-48-lowlatency URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-48.54
    USN-4887-1 20.10 (groovy) on src linux-image-aws URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-48.54
    USN-4887-1 20.10 (groovy) on src linux-image-azure URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-48.54
    USN-4887-1 20.10 (groovy) on src linux-image-gcp URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-48.54
    USN-4887-1 20.10 (groovy) on src linux-image-generic URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-48.54
    USN-4887-1 20.10 (groovy) on src linux-image-generic-64k URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-48.54
    USN-4887-1 20.10 (groovy) on src linux-image-generic-lpae URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-48.54
    USN-4887-1 20.10 (groovy) on src linux-image-gke URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-48.54
    USN-4887-1 20.10 (groovy) on src linux-image-kvm URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-48.54
    USN-4887-1 20.10 (groovy) on src linux-image-lowlatency URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-48.54
    USN-4887-1 20.10 (groovy) on src linux-image-oem-20.04 URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-48.54
    USN-4887-1 20.10 (groovy) on src linux-image-oracle URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-48.54
    USN-4887-1 20.10 (groovy) on src linux-image-raspi URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-48.54
    USN-4887-1 20.10 (groovy) on src linux-image-raspi-nolpae URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-48.54
    USN-4887-1 20.10 (groovy) on src linux-image-virtual URL Logo launchpad.net/ubuntu/+source/linux/5.8.0-48.54