QID 198638

Date Published: 2022-01-24

QID 198638: Ubuntu Security Notification for Linux kernel Vulnerability (USN-5240-1)

The file system contextfunctionality in the linux kernel contained an integer underflowvulnerability, leading to an out-of-bounds write.

A local attacker coulduse this to cause a denial of service (system crash) or execute arbitrarycode.

  • CVSS V3 rated as Medium - 4.2 severity.
  • CVSS V2 rated as Medium - 5.4 severity.
  • Solution
    Refer to Ubuntu security advisory USN-5240-1 for updates and patch information.
    Vendor References

    CVEs related to QID 198638

    Software Advisories
    Advisory ID Software Component Link
    USN-5240-1 Ubuntu Linux URL Logo ubuntu.com/security/notices/USN-5240-1