QID 198676

Date Published: 2022-02-28

QID 198676: Ubuntu Security Notification for Linux kernel (GKE) Vulnerabilities (USN-5297-1)

The usb gadget subsystem in the linuxkernel did not properly restrict the size of control requests for certaingadget types, leading to possible out of bounds reads or writes.
Race condition in the unix domain socketimplementation in the linux kernel that could result in a read-after-free.
The xfs file system implementation in thelinux kernel did not calculate size correctly when pre-allocating space insome situations.
The nfc controller interface (nci) implementation inthe linux kernel contained a race condition, leading to a use-after-freevulnerability.
The aquantia aqtion ethernet devicedriver in the linux kernel did not properly validate meta-data coming fromthe device.
The intel i915 graphics driver inthe linux kernel did not perform a gpu tlb flush in some situations.
The vmware virtual gpu driver in the linux kerneldid not properly handle certain failure conditions, leading to a staleentry in the file descriptor table.

A localattacker could use this to cause a denial of service (system crash) orpossibly execute arbitrary code.
A local attacker could use this to cause a denial of service (system crash)or possibly execute arbitrary code.
A local attacker could use this to expose sensitiveinformation.
A local attacker could use this to cause a denial of service(system crash) or possibly execute arbitrary code.
A local attacker who can control an emulated device can usethis to cause a denial of service (system crash) or possibly executearbitrary code.
Alocal attacker could use this to cause a denial of service or possiblyexecute arbitrary code.
A local attacker could use this toexpose sensitive information or possibly gain administrative privileges.

  • CVSS V3 rated as High - 7 severity.
  • CVSS V2 rated as Medium - 4.6 severity.
  • Solution
    Refer to Ubuntu security advisory USN-5297-1 for updates and patch information.
    Vendor References
    Software Advisories
    Advisory ID Software Component Link
    USN-5297-1 Ubuntu Linux URL Logo ubuntu.com/security/notices/USN-5297-1