QID 198619

Date Published: 2022-01-10

QID 198619: Ubuntu Security Notification for Linux kernel (OEM) Vulnerability (USN-5206-1)

The hugetlb implementation in the linux kerneldid not perform tlb flushes under certain conditions.

A local attackercould use this to leak or alter data from other processes that use hugepages.

  • CVSS V3 rated as Medium - 4.2 severity.
  • CVSS V2 rated as Medium - 5.4 severity.
  • Solution
    Refer to Ubuntu security advisory USN-5206-1 for updates and patch information.
    Vendor References

    CVEs related to QID 198619

    Software Advisories
    Advisory ID Software Component Link
    USN-5206-1 Ubuntu Linux URL Logo ubuntu.com/security/notices/USN-5206-1