QID 198366
Date Published: 2021-05-17
QID 198366: Ubuntu Security Notification for Linux kernel vulnerabilities (USN-4949-1)
The ebpf implementation in the linux kernel did not properly verify that a bpf program only reserved as much memory for a ring buffer as was allocated
A local attacker could use this to cause a
denial of service (system crash) or execute arbitrary code
(CVE-2021-3489)
Solution
Refer to Ubuntu advisory: USN-4949-1 for affected packages and patching details, or update with your package manager.
Vendor References
- USN-4949-1 -
usn.ubuntu.com/4949-1
CVEs related to QID 198366
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| USN-4949-1 | Ubuntu Linux |
|