QID 198365
Date Published: 2021-05-17
QID 198365: Ubuntu Security Notification for Linux kernel (OEM) vulnerabilities (USN-4948-1)
The ebpf implementation in the linux kernel did not properly verify that a bpf program only reserved as much memory for a ring buffer as was allocated
A local attacker could use this to cause a
denial of service (system crash) or execute arbitrary code
(CVE-2021-3489)
Solution
Refer to Ubuntu advisory: USN-4948-1 for affected packages and patching details, or update with your package manager.
Vendor References
- USN-4948-1 -
usn.ubuntu.com/4948-1
CVEs related to QID 198365
CVE-2021-28951 | CVE-2021-28964 | CVE-2021-29646 | CVE-2021-28971 | CVE-2021-29264 | CVE-2021-29266 | CVE-2021-3489 | CVE-2021-28972 | CVE-2021-28952 | CVE-2020-25672 | CVE-2021-29647 | CVE-2021-29650 | CVE-2021-31916 | CVE-2020-25670 | CVE-2021-3490 | CVE-2021-29649 | CVE-2021-3483 | CVE-2021-28688 | CVE-2020-25671 | CVE-2021-3491 | CVE-2021-29657 |
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| USN-4948-1 | Ubuntu Linux |
|