Search CVE reports


Toggle filters

121 – 130 of 1750 results


CVE-2019-7221

Medium priority

Some fixes available 35 of 37

The KVM implementation in the Linux kernel through 4.20.5 has a Use-after-Free.

78 affected packages

linux, linux-goldfish, linux-aws, linux-flo, linux-aws-hwe...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux Not affected Not affected Not affected Fixed
linux-goldfish Not in release
linux-aws Not affected Not affected Not affected Fixed
linux-flo Not in release
linux-aws-hwe Not in release Not in release Not in release Not in release
linux-azure Not affected Not affected Not affected Fixed
linux-azure-edge Not in release Not in release Not in release Fixed
linux-euclid Not in release
linux-gcp Not affected Not affected Not affected Fixed
linux-gcp-edge Fixed
linux-gke Not affected Not affected Ignored Not in release
linux-grouper Not in release
linux-hwe Not in release Not in release Not in release Fixed
linux-hwe-edge Not in release Not in release Not in release Not affected
linux-kvm Not in release Not affected Not affected Fixed
linux-lts-trusty Not in release
linux-lts-utopic Not in release
linux-lts-vivid Not in release
linux-lts-wily Not in release
linux-lts-xenial Not in release Not in release Not in release Not in release
linux-maguro Not in release
linux-mako Not in release
linux-manta Not in release
linux-oem Not in release Not in release Not in release Fixed
linux-oracle Not affected Not affected Not affected Fixed
linux-raspi2 Not in release Not in release Ignored Fixed
linux-snapdragon Not in release Not in release Not in release Fixed
linux-hwe-5.4 Not in release Not in release Not in release Not affected
linux-hwe-5.15 Not in release Not in release Not affected Not in release
linux-hwe-6.8 Not in release Not affected Not in release Not in release
linux-aws-5.4 Not in release Not in release Not in release Not affected
linux-aws-5.15 Not in release Not in release Not affected Not in release
linux-azure-4.15 Not in release Not in release Not in release Not affected
linux-azure-5.4 Not in release Not in release Not in release Not affected
linux-azure-5.15 Not in release Not in release Not affected Not in release
linux-azure-fde Not in release Not affected Ignored Not in release
linux-azure-fde-5.15 Not in release Not in release Not affected Not in release
linux-bluefield Not in release Not in release Not affected Not in release
linux-fips Not in release Not affected Not affected Not affected
linux-aws-fips Not in release Not affected Not affected Not affected
linux-azure-fips Not in release Not affected Not affected Not affected
linux-gcp-fips Not in release Not affected Not affected Not affected
linux-gcp-4.15 Not in release Not in release Not in release Not affected
linux-gcp-5.4 Not in release Not in release Not in release Not affected
linux-gcp-5.15 Not in release Not in release Not affected Not in release
linux-gkeop Not affected Not affected Not affected Not in release
linux-gkeop-5.15 Not in release Not in release Not affected Not in release
linux-ibm Not affected Not affected Not affected Not in release
linux-ibm-5.4 Not in release Not in release Not in release Not affected
linux-ibm-5.15 Not in release Not in release Not affected Not in release
linux-intel Not affected Not in release Not in release Not in release
linux-intel-iotg Not in release Not affected Not in release Not in release
linux-intel-iotg-5.15 Not in release Not in release Not affected Not in release
linux-iot Not in release Not in release Not affected Not in release
linux-intel-iot-realtime Not in release Not affected Not in release Not in release
linux-lowlatency Not affected Not affected Not in release Not in release
linux-lowlatency-hwe-5.15 Not in release Not in release Not affected Not in release
linux-lowlatency-hwe-6.8 Not in release Not affected Not in release Not in release
linux-nvidia Not affected Not affected Not in release Not in release
linux-nvidia-6.5 Not in release Not affected Not in release Not in release
linux-nvidia-6.8 Not in release Not affected Not in release Not in release
linux-nvidia-lowlatency Not affected Not in release Not in release Not in release
linux-oracle-5.4 Not in release Not in release Not in release Not affected
linux-oracle-5.15 Not in release Not in release Not affected Not in release
linux-oem-6.8 Not affected Not in release Not in release Not in release
linux-raspi Not affected Not affected Not affected Not in release
linux-raspi-5.4 Not in release Not in release Not in release Not affected
linux-raspi-realtime Not affected Not in release Not in release Not in release
linux-realtime Not affected Not affected Not in release Not in release
linux-riscv Not affected Ignored Ignored Not in release
linux-riscv-5.15 Not in release Not in release Not affected Not in release
linux-riscv-6.8 Not in release Not affected Not in release Not in release
linux-xilinx-zynqmp Not in release Not affected Not affected Not in release
linux-aws-6.8 Not in release Not affected Not in release Not in release
linux-gcp-6.8 Not in release Not affected Not in release Not in release
linux-oracle-6.8 Not in release Not affected Not in release Not in release
linux-azure-6.8 Not in release Not affected Not in release Not in release
linux-oem-6.11 Not affected Not in release Not in release Not in release
Show all 78 packages Show less packages

CVE-2019-9213

Medium priority

Some fixes available 36 of 38

In the Linux kernel before 4.20.14, expand_downwards in mm/mmap.c lacks a check for the mmap minimum address, which makes it easier for attackers to exploit kernel NULL pointer dereferences on non-SMAP platforms. This is related...

78 affected packages

linux, linux-goldfish, linux-grouper, linux-lts-trusty, linux-flo...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux Not affected Not affected Not affected Fixed
linux-goldfish Not in release
linux-grouper Not in release
linux-lts-trusty Not in release
linux-flo Not in release
linux-lts-utopic Not in release
linux-aws Not affected Not affected Not affected Fixed
linux-aws-hwe Not in release Not in release Not in release Not in release
linux-oracle Not affected Not affected Not affected Fixed
linux-azure Not affected Not affected Not affected Fixed
linux-azure-edge Not in release Not in release Not in release Fixed
linux-euclid Not in release
linux-gcp Not affected Not affected Not affected Fixed
linux-gcp-edge Fixed
linux-gke Not affected Not affected Ignored Not in release
linux-hwe Not in release Not in release Not in release Fixed
linux-hwe-edge Not in release Not in release Not in release Not affected
linux-kvm Not in release Not affected Not affected Fixed
linux-lts-vivid Not in release
linux-lts-wily Not in release
linux-lts-xenial Not in release Not in release Not in release Not in release
linux-maguro Not in release
linux-mako Not in release
linux-manta Not in release
linux-oem Not in release Not in release Not in release Fixed
linux-raspi2 Not in release Not in release Ignored Fixed
linux-snapdragon Not in release Not in release Not in release Fixed
linux-hwe-5.4 Not in release Not in release Not in release Not affected
linux-hwe-5.15 Not in release Not in release Not affected Not in release
linux-hwe-6.8 Not in release Not affected Not in release Not in release
linux-aws-5.4 Not in release Not in release Not in release Not affected
linux-aws-5.15 Not in release Not in release Not affected Not in release
linux-azure-4.15 Not in release Not in release Not in release Not affected
linux-azure-5.4 Not in release Not in release Not in release Not affected
linux-azure-5.15 Not in release Not in release Not affected Not in release
linux-azure-fde Not in release Not affected Ignored Not in release
linux-azure-fde-5.15 Not in release Not in release Not affected Not in release
linux-bluefield Not in release Not in release Not affected Not in release
linux-fips Not in release Not affected Not affected Not affected
linux-aws-fips Not in release Not affected Not affected Not affected
linux-azure-fips Not in release Not affected Not affected Not affected
linux-gcp-fips Not in release Not affected Not affected Not affected
linux-gcp-4.15 Not in release Not in release Not in release Not affected
linux-gcp-5.4 Not in release Not in release Not in release Not affected
linux-gcp-5.15 Not in release Not in release Not affected Not in release
linux-gkeop Not affected Not affected Not affected Not in release
linux-gkeop-5.15 Not in release Not in release Not affected Not in release
linux-ibm Not affected Not affected Not affected Not in release
linux-ibm-5.4 Not in release Not in release Not in release Not affected
linux-ibm-5.15 Not in release Not in release Not affected Not in release
linux-intel Not affected Not in release Not in release Not in release
linux-intel-iotg Not in release Not affected Not in release Not in release
linux-intel-iotg-5.15 Not in release Not in release Not affected Not in release
linux-iot Not in release Not in release Not affected Not in release
linux-intel-iot-realtime Not in release Not affected Not in release Not in release
linux-lowlatency Not affected Not affected Not in release Not in release
linux-lowlatency-hwe-5.15 Not in release Not in release Not affected Not in release
linux-lowlatency-hwe-6.8 Not in release Not affected Not in release Not in release
linux-nvidia Not affected Not affected Not in release Not in release
linux-nvidia-6.5 Not in release Not affected Not in release Not in release
linux-nvidia-6.8 Not in release Not affected Not in release Not in release
linux-nvidia-lowlatency Not affected Not in release Not in release Not in release
linux-oracle-5.4 Not in release Not in release Not in release Not affected
linux-oracle-5.15 Not in release Not in release Not affected Not in release
linux-oem-6.8 Not affected Not in release Not in release Not in release
linux-raspi Not affected Not affected Not affected Not in release
linux-raspi-5.4 Not in release Not in release Not in release Not affected
linux-raspi-realtime Not affected Not in release Not in release Not in release
linux-realtime Not affected Not affected Not in release Not in release
linux-riscv Not affected Ignored Ignored Not in release
linux-riscv-5.15 Not in release Not in release Not affected Not in release
linux-riscv-6.8 Not in release Not affected Not in release Not in release
linux-xilinx-zynqmp Not in release Not affected Not affected Not in release
linux-aws-6.8 Not in release Not affected Not in release Not in release
linux-gcp-6.8 Not in release Not affected Not in release Not in release
linux-oracle-6.8 Not in release Not affected Not in release Not in release
linux-azure-6.8 Not in release Not affected Not in release Not in release
linux-oem-6.11 Not affected Not in release Not in release Not in release
Show all 78 packages Show less packages

CVE-2019-2001

Low priority

Some fixes available 7 of 14

The permissions on /proc/iomem were world-readable. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions:...

93 affected packages

linux-aws, linux-azure, linux-aws-hwe, linux-azure-edge, linux-euclid...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-aws Not affected Not affected Not affected Not affected
linux-azure Not affected Not affected Not affected Not affected
linux-aws-hwe Not in release Not in release Not in release Not in release
linux-azure-edge Not in release Not in release Not in release Not affected
linux-euclid Not in release
linux Not affected Not affected Not affected Not affected
linux-flo Not in release
linux-gcp Not affected Not affected Not affected Not affected
linux-gcp-edge Not affected
linux-gke Not affected Not affected Ignored Not in release
linux-goldfish Not in release
linux-grouper Not in release
linux-hwe Not in release Not in release Not in release Not affected
linux-hwe-edge Not in release Not in release Not in release Not affected
linux-kvm Not in release Not affected Not affected Not affected
linux-lts-trusty Not in release
linux-lts-utopic Not in release
linux-lts-vivid Not in release
linux-lts-wily Not in release
linux-lts-xenial Not in release Not in release Not in release Not in release
linux-maguro Not in release
linux-mako Not in release
linux-manta Not in release
linux-oem Not in release Not in release Not in release Not affected
linux-oracle Not affected Not affected Not affected Not affected
linux-raspi2 Not in release Not in release Ignored Not affected
linux-snapdragon Not in release Not in release Not in release Not affected
linux-hwe-5.4 Not in release Not in release Not in release Not affected
linux-hwe-5.15 Not in release Not in release Not affected Not in release
linux-hwe-6.8 Not in release Not affected Not in release Not in release
linux-aws-5.4 Not in release Not in release Not in release Not affected
linux-aws-5.15 Not in release Not in release Not affected Not in release
linux-azure-4.15 Not in release Not in release Not in release Not affected
linux-azure-5.4 Not in release Not in release Not in release Not affected
linux-azure-5.15 Not in release Not in release Not affected Not in release
linux-azure-fde Not in release Not affected Ignored Not in release
linux-azure-fde-5.15 Not in release Not in release Ignored Not in release
linux-bluefield Not in release Not in release Not affected Not in release
linux-fips Not in release Not affected Not affected Not affected
linux-aws-fips Not in release Not affected Not affected Not affected
linux-azure-fips Not in release Not affected Not affected Not affected
linux-gcp-fips Not in release Not affected Not affected Not affected
linux-gcp-4.15 Not in release Not in release Not in release Not affected
linux-gcp-5.4 Not in release Not in release Not in release Not affected
linux-gcp-5.15 Not in release Not in release Not affected Not in release
linux-gkeop Not affected Not affected Not affected Not in release
linux-gkeop-5.15 Not in release Not in release Not affected Not in release
linux-ibm Not affected Not affected Not affected Not in release
linux-ibm-5.4 Not in release Not in release Not in release Not affected
linux-ibm-5.15 Not in release Not in release Not affected Not in release
linux-intel Not affected Not in release Not in release Not in release
linux-intel-iotg Not in release Not affected Not in release Not in release
linux-intel-iotg-5.15 Not in release Not in release Not affected Not in release
linux-iot Not in release Not in release Not affected Not in release
linux-intel-iot-realtime Not in release Not affected Not in release Not in release
linux-lowlatency Not affected Not affected Not in release Not in release
linux-lowlatency-hwe-5.15 Not in release Not in release Not affected Not in release
linux-lowlatency-hwe-6.8 Not in release Not affected Not in release Not in release
linux-nvidia Not affected Not affected Not in release Not in release
linux-nvidia-6.5 Not in release Not affected Not in release Not in release
linux-nvidia-6.8 Not in release Not affected Not in release Not in release
linux-nvidia-lowlatency Not affected Not in release Not in release Not in release
linux-oracle-5.4 Not in release Not in release Not in release Not affected
linux-oracle-5.15 Not in release Not in release Not affected Not in release
linux-oem-6.8 Not affected Not in release Not in release Not in release
linux-raspi Not affected Not affected Not affected Not in release
linux-raspi-5.4 Not in release Not in release Not in release Not affected
linux-raspi-realtime Not affected Not in release Not in release Not in release
linux-realtime Not affected Not affected Not in release Not in release
linux-riscv Not affected Ignored Ignored Not in release
linux-riscv-5.15 Not in release Not in release Not affected Not in release
linux-riscv-6.8 Not in release Not affected Not in release Not in release
linux-xilinx-zynqmp Not in release Not affected Not affected Not in release
linux-aws-6.8 Not in release Not affected Not in release Not in release
linux-gcp-6.8 Not in release Not affected Not in release Not in release
linux-oracle-6.8 Not in release Not affected Not in release Not in release
linux-azure-6.8 Not in release Not affected Not in release Not in release
linux-oem-6.11 Not affected Not in release Not in release Not in release
linux-hwe-6.11 Ignored Not in release Not in release Not in release
linux-hwe-6.14 Not affected Not in release Not in release Not in release
linux-aws-6.14 Not affected Not in release Not in release Not in release
linux-azure-6.11 Ignored Not in release Not in release Not in release
linux-azure-nvidia Not affected Not in release Not in release Not in release
linux-gcp-6.11 Ignored Not in release Not in release Not in release
linux-gcp-6.14 Not affected Not in release Not in release Not in release
linux-ibm-6.8 Not in release Not affected Not in release Not in release
linux-lowlatency-hwe-6.11 Ignored Not in release Not in release Not in release
linux-nvidia-tegra Not affected Not affected Not in release Not in release
linux-nvidia-tegra-5.15 Not in release Not in release Not affected Not in release
linux-nvidia-tegra-igx Not in release Not affected Not in release Not in release
linux-oracle-6.14 Not affected Not in release Not in release Not in release
linux-oem-6.14 Not affected Not in release Not in release Not in release
linux-riscv-6.14 Not affected Not in release Not in release Not in release
Show all 93 packages Show less packages

CVE-2019-2000

Medium priority
Fixed

In several functions of binder.c, there is possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for...

27 affected packages

linux-aws, linux-azure, linux-flo, linux-aws-hwe, linux-azure-edge...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-aws Not affected
linux-azure Not affected
linux-flo Not in release
linux-aws-hwe Not in release
linux-azure-edge Not affected
linux Not affected
linux-euclid Not in release
linux-gcp Not affected
linux-gcp-edge Not affected
linux-gke Not affected
linux-goldfish Not in release
linux-grouper Not in release
linux-hwe Not affected
linux-hwe-edge Not affected
linux-kvm Not affected
linux-lts-trusty Not in release
linux-lts-utopic Not in release
linux-lts-vivid Not in release
linux-lts-wily Not in release
linux-lts-xenial Not in release
linux-maguro Not in release
linux-mako Not in release
linux-manta Not in release
linux-oem Not affected
linux-oracle Not affected
linux-raspi2 Not affected
linux-snapdragon Not affected
Show all 27 packages Show less packages

CVE-2019-1999

Medium priority

Some fixes available 5 of 9

In binder_alloc_free_page of binder_alloc.c, there is a possible double free due to improper locking. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction...

96 affected packages

linux-aws, linux-azure, linux-aws-hwe, linux-azure-edge, linux...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-aws Not affected Not affected Not affected Not affected
linux-azure Not affected Not affected Not affected Not affected
linux-aws-hwe Not in release Not in release Not in release Not in release
linux-azure-edge Not in release Not in release Not in release Not affected
linux Not affected Not affected Not affected Not affected
linux-euclid Not in release
linux-flo Not in release
linux-gcp Not affected Not affected Not affected Not affected
linux-gcp-edge Not affected
linux-gke Not affected Not affected Ignored Not in release
linux-goldfish Not in release
linux-grouper Not in release
linux-hwe Not in release Not in release Not in release Not affected
linux-hwe-edge Not in release Not in release Not in release Not affected
linux-kvm Not in release Not affected Not affected Not affected
linux-lts-trusty Not in release
linux-lts-utopic Not in release
linux-lts-vivid Not in release
linux-lts-wily Not in release
linux-lts-xenial Not in release Not in release Not in release Not in release
linux-maguro Not in release
linux-mako Not in release
linux-manta Not in release
linux-oem Not in release Not in release Not in release Not affected
linux-oracle Not affected Not affected Not affected Not affected
linux-raspi2 Not in release Not in release Ignored Not affected
linux-snapdragon Not in release Not in release Not in release Not affected
linux-hwe-5.4 Not in release Not in release Not in release Not affected
linux-hwe-5.15 Not in release Not in release Not affected Not in release
linux-hwe-6.8 Not in release Not affected Not in release Not in release
linux-aws-5.4 Not in release Not in release Not in release Not affected
linux-aws-5.15 Not in release Not in release Not affected Not in release
linux-azure-4.15 Not in release Not in release Not in release Not affected
linux-azure-5.4 Not in release Not in release Not in release Not affected
linux-azure-5.15 Not in release Not in release Not affected Not in release
linux-azure-fde Not in release Not affected Ignored Not in release
linux-azure-fde-5.15 Not in release Not in release Ignored Not in release
linux-bluefield Not in release Not in release Not affected Not in release
linux-fips Not in release Not affected Not affected Fixed
linux-aws-fips Not in release Not affected Not affected Fixed
linux-azure-fips Not in release Not affected Not affected Fixed
linux-gcp-fips Not in release Not affected Not affected Not affected
linux-gcp-4.15 Not in release Not in release Not in release Not affected
linux-gcp-5.4 Not in release Not in release Not in release Not affected
linux-gcp-5.15 Not in release Not in release Not affected Not in release
linux-gkeop Not affected Not affected Not affected Not in release
linux-gkeop-5.15 Not in release Not in release Not affected Not in release
linux-ibm Not affected Not affected Not affected Not in release
linux-ibm-5.4 Not in release Not in release Not in release Not affected
linux-ibm-5.15 Not in release Not in release Not affected Not in release
linux-intel Not affected Not in release Not in release Not in release
linux-intel-iotg Not in release Not affected Not in release Not in release
linux-intel-iotg-5.15 Not in release Not in release Not affected Not in release
linux-iot Not in release Not in release Not affected Not in release
linux-intel-iot-realtime Not in release Not affected Not in release Not in release
linux-lowlatency Not affected Not affected Not in release Not in release
linux-lowlatency-hwe-5.15 Not in release Not in release Not affected Not in release
linux-lowlatency-hwe-6.8 Not in release Not affected Not in release Not in release
linux-nvidia Not affected Not affected Not in release Not in release
linux-nvidia-6.5 Not in release Not affected Not in release Not in release
linux-nvidia-6.8 Not in release Not affected Not in release Not in release
linux-nvidia-lowlatency Not affected Not in release Not in release Not in release
linux-oracle-5.4 Not in release Not in release Not in release Not affected
linux-oracle-5.15 Not in release Not in release Not affected Not in release
linux-oem-6.8 Not affected Not in release Not in release Not in release
linux-raspi Not affected Not affected Not affected Not in release
linux-raspi-5.4 Not in release Not in release Not in release Not affected
linux-raspi-realtime Not affected Not in release Not in release Not in release
linux-realtime Not affected Not affected Not in release Not in release
linux-riscv Not affected Ignored Ignored Not in release
linux-riscv-5.15 Not in release Not in release Not affected Not in release
linux-riscv-6.8 Not in release Not affected Not in release Not in release
linux-xilinx-zynqmp Not in release Not affected Not affected Not in release
linux-aws-6.8 Not in release Not affected Not in release Not in release
linux-gcp-6.8 Not in release Not affected Not in release Not in release
linux-oracle-6.8 Not in release Not affected Not in release Not in release
linux-azure-6.8 Not in release Not affected Not in release Not in release
linux-oem-6.11 Not affected Not in release Not in release Not in release
linux-hwe-6.11 Not affected Not in release Not in release Not in release
linux-lowlatency-hwe-6.11 Not affected Not in release Not in release Not in release
linux-nvidia-tegra Not affected Not affected Not in release Not in release
linux-nvidia-tegra-igx Not in release Not affected Not in release Not in release
linux-azure-nvidia Not affected Not in release Not in release Not in release
linux-azure-6.11 Not affected Not in release Not in release Not in release
linux-gcp-6.11 Not affected Not in release Not in release Not in release
linux-nvidia-tegra-5.15 Not in release Not in release Not affected Not in release
linux-oem-6.14 Not affected Not in release Not in release Not in release
linux-riscv-6.14 Not affected Not in release Not in release Not in release
linux-ibm-6.8 Not in release Not affected Not in release Not in release
linux-aws-6.14 Not affected Not in release Not in release Not in release
linux-gcp-6.14 Not affected Not in release Not in release Not in release
linux-hwe-6.14 Not affected Not in release Not in release Not in release
linux-oracle-6.14 Not affected Not in release Not in release Not in release
linux-nvidia-6.11 Not affected Not in release Not in release Not in release
linux-realtime-6.14 Not affected Not in release Not in release Not in release
linux-realtime-6.8 Not in release Not affected Not in release Not in release
Show all 96 packages Show less packages

CVE-2019-9162

Medium priority
Fixed

In the Linux kernel before 4.20.12, net/ipv4/netfilter/nf_nat_snmp_basic_main.c in the SNMP NAT module has insufficient ASN.1 length checks (aka an array index error), making out-of-bounds read and write operations possible,...

27 affected packages

linux, linux-goldfish, linux-grouper, linux-aws, linux-azure...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux Not affected
linux-goldfish Not in release
linux-grouper Not in release
linux-aws Not affected
linux-azure Fixed
linux-azure-edge Fixed
linux-aws-hwe Not in release
linux-euclid Not in release
linux-gcp Not affected
linux-flo Not in release
linux-gcp-edge Fixed
linux-gke Not in release
linux-hwe Fixed
linux-hwe-edge Not affected
linux-kvm Not affected
linux-lts-trusty Not in release
linux-lts-utopic Not in release
linux-lts-vivid Not in release
linux-lts-wily Not in release
linux-lts-xenial Not in release
linux-maguro Not in release
linux-mako Not in release
linux-manta Not in release
linux-oem Not affected
linux-oracle Not affected
linux-raspi2 Not affected
linux-snapdragon Not affected
Show all 27 packages Show less packages

CVE-2019-9003

Medium priority
Fixed

In the Linux kernel before 4.20.5, attackers can trigger a drivers/char/ipmi/ipmi_msghandler.c use-after-free and OOPS by arranging for certain simultaneous execution of the code, as demonstrated by a "service ipmievd restart" loop.

27 affected packages

linux, linux-aws, linux-flo, linux-goldfish, linux-grouper...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux Not affected
linux-aws Not affected
linux-flo Not in release
linux-goldfish Not in release
linux-grouper Not in release
linux-aws-hwe Not in release
linux-azure Fixed
linux-azure-edge Fixed
linux-euclid Not in release
linux-gcp Not affected
linux-gcp-edge Fixed
linux-gke Not in release
linux-hwe Fixed
linux-hwe-edge Not affected
linux-kvm Not affected
linux-lts-trusty Not in release
linux-lts-utopic Not in release
linux-lts-vivid Not in release
linux-lts-wily Not in release
linux-lts-xenial Not in release
linux-maguro Not in release
linux-mako Not in release
linux-manta Not in release
linux-oem Not affected
linux-oracle Not affected
linux-raspi2 Not affected
linux-snapdragon Not affected
Show all 27 packages Show less packages

CVE-2019-8956

Medium priority
Fixed

In the Linux Kernel before versions 4.20.8 and 4.19.21 a use-after-free error in the "sctp_sendmsg()" function (net/sctp/socket.c) when handling SCTP_SENDALL flag can be exploited to corrupt memory.

27 affected packages

linux, linux-goldfish, linux-grouper, linux-lts-trusty, linux-maguro...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux Not affected
linux-goldfish Not in release
linux-grouper Not in release
linux-lts-trusty Not in release
linux-maguro Not in release
linux-mako Not in release
linux-aws Not affected
linux-flo Not in release
linux-hwe Fixed
linux-aws-hwe Not in release
linux-azure Fixed
linux-azure-edge Fixed
linux-euclid Not in release
linux-gcp Not affected
linux-gcp-edge Fixed
linux-gke Not in release
linux-hwe-edge Not affected
linux-kvm Not affected
linux-lts-utopic Not in release
linux-lts-vivid Not in release
linux-lts-wily Not in release
linux-lts-xenial Not in release
linux-manta Not in release
linux-oem Not affected
linux-oracle Not affected
linux-raspi2 Not affected
linux-snapdragon Not affected
Show all 27 packages Show less packages

CVE-2018-20784

Medium priority

Some fixes available 33 of 44

In the Linux kernel before 4.20.2, kernel/sched/fair.c mishandles leaf cfs_rq's, which allows attackers to cause a denial of service (infinite loop in update_blocked_averages) or possibly have unspecified other impact by inducing...

104 affected packages

linux-aws, linux-azure, linux-aws-5.0, linux-aws-hwe, linux-oracle-5.0...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-aws Not affected Not affected Not affected Fixed
linux-azure Not affected Not affected Not affected Fixed
linux-aws-5.0 Not in release Not in release Not in release Not affected
linux-aws-hwe Not in release Not in release Not in release Not in release
linux-oracle-5.0 Not in release Not in release Not in release Not affected
linux Not affected Not affected Not affected Fixed
linux-azure-5.3 Not in release Not in release Not in release Not affected
linux-azure-edge Not in release Not in release Not in release Fixed
linux-euclid Not in release Not in release
linux-flo Not in release Not in release
linux-gcp Not affected Not affected Not affected Fixed
linux-gcp-5.3 Not in release Not in release Not in release Not affected
linux-gcp-edge Not in release Fixed
linux-gke Not affected Not affected Ignored Not in release
linux-gke-4.15 Not in release Not in release Not in release Fixed
linux-gke-5.0 Not in release Not in release Not in release Not affected
linux-goldfish Not in release Not in release
linux-grouper Not in release Not in release
linux-hwe Not in release Not in release Not in release Fixed
linux-hwe-edge Not in release Not in release Not in release Not affected
linux-kvm Not in release Not affected Not affected Fixed
linux-lts-trusty Not in release Not in release
linux-lts-utopic Not in release Not in release
linux-lts-vivid Not in release Not in release
linux-lts-wily Not in release Not in release
linux-lts-xenial Not in release Not in release Not in release Not in release
linux-maguro Not in release Not in release
linux-mako Not in release Not in release
linux-manta Not in release Not in release
linux-oem Not in release Not in release Not in release Fixed
linux-oem-osp1 Not in release Not in release Not in release Not affected
linux-oracle Not affected Not affected Not affected Fixed
linux-raspi2 Not in release Not in release Ignored Fixed
linux-raspi2-5.3 Not in release Not in release Not in release Not affected
linux-snapdragon Not in release Not in release Not in release Fixed
linux-hwe-5.4 Not in release Not in release Not in release Not affected
linux-hwe-5.15 Not in release Not in release Not affected Not in release
linux-hwe-6.8 Not in release Not affected Not in release Not in release
linux-aws-5.4 Not in release Not in release Not in release Not affected
linux-aws-5.15 Not in release Not in release Not affected Not in release
linux-azure-4.15 Not in release Not in release Not in release Not affected
linux-azure-5.4 Not in release Not in release Not in release Not affected
linux-azure-5.15 Not in release Not in release Not affected Not in release
linux-azure-fde Not in release Not affected Ignored Not in release
linux-azure-fde-5.15 Not in release Not in release Not affected Not in release
linux-bluefield Not in release Not in release Not affected Not in release
linux-fips Not in release Not affected Not affected Fixed
linux-aws-fips Not in release Not affected Not affected Fixed
linux-azure-fips Not in release Not affected Not affected Fixed
linux-gcp-fips Not in release Not affected Not affected Not affected
linux-gcp-4.15 Not in release Not in release Not in release Not affected
linux-gcp-5.4 Not in release Not in release Not in release Not affected
linux-gcp-5.15 Not in release Not in release Not affected Not in release
linux-gkeop Not affected Not affected Not affected Not in release
linux-gkeop-5.15 Not in release Not in release Not affected Not in release
linux-ibm Not affected Not affected Not affected Not in release
linux-ibm-5.4 Not in release Not in release Not in release Not affected
linux-ibm-5.15 Not in release Not in release Not affected Not in release
linux-intel Not affected Not in release Not in release Not in release
linux-intel-iotg Not in release Not affected Not in release Not in release
linux-intel-iotg-5.15 Not in release Not in release Not affected Not in release
linux-iot Not in release Not in release Not affected Not in release
linux-intel-iot-realtime Not in release Not affected Not in release Not in release
linux-lowlatency Not affected Not affected Not in release Not in release
linux-lowlatency-hwe-5.15 Not in release Not in release Not affected Not in release
linux-lowlatency-hwe-6.8 Not in release Not affected Not in release Not in release
linux-nvidia Not affected Not affected Not in release Not in release
linux-nvidia-6.5 Not in release Not affected Not in release Not in release
linux-nvidia-6.8 Not in release Not affected Not in release Not in release
linux-nvidia-lowlatency Not affected Not in release Not in release Not in release
linux-oracle-5.4 Not in release Not in release Not in release Not affected
linux-oracle-5.15 Not in release Not in release Not affected Not in release
linux-oem-6.8 Not affected Not in release Not in release Not in release
linux-raspi Not affected Not affected Not affected Not in release
linux-raspi-5.4 Not in release Not in release Not in release Not affected
linux-raspi-realtime Not affected Not in release Not in release Not in release
linux-realtime Not affected Not affected Not in release Not in release
linux-riscv Not affected Ignored Ignored Not in release
linux-riscv-5.15 Not in release Not in release Not affected Not in release
linux-riscv-6.8 Not in release Not affected Not in release Not in release
linux-xilinx-zynqmp Not in release Not affected Not affected Not in release
linux-aws-6.8 Not in release Not affected Not in release Not in release
linux-gcp-6.8 Not in release Not affected Not in release Not in release
linux-oracle-6.8 Not in release Not affected Not in release Not in release
linux-azure-6.8 Not in release Not affected Not in release Not in release
linux-oem-6.11 Not affected Not in release Not in release Not in release
linux-hwe-6.11 Not affected Not in release Not in release Not in release
linux-lowlatency-hwe-6.11 Not affected Not in release Not in release Not in release
linux-nvidia-tegra Not affected Not affected Not in release Not in release
linux-nvidia-tegra-igx Not in release Not affected Not in release Not in release
linux-azure-nvidia Not affected Not in release Not in release Not in release
linux-azure-6.11 Not affected Not in release Not in release Not in release
linux-gcp-6.11 Not affected Not in release Not in release Not in release
linux-nvidia-tegra-5.15 Not in release Not in release Not affected Not in release
linux-oem-6.14 Not affected Not in release Not in release Not in release
linux-riscv-6.14 Not affected Not in release Not in release Not in release
linux-ibm-6.8 Not in release Not affected Not in release Not in release
linux-aws-6.14 Not affected Not in release Not in release Not in release
linux-gcp-6.14 Not affected Not in release Not in release Not in release
linux-hwe-6.14 Not affected Not in release Not in release Not in release
linux-oracle-6.14 Not affected Not in release Not in release Not in release
linux-nvidia-6.11 Not affected Not in release Not in release Not in release
linux-realtime-6.14 Not affected Not in release Not in release Not in release
linux-realtime-6.8 Not in release Not affected Not in release Not in release
Show all 104 packages Show less packages

CVE-2019-8980

Medium priority
Fixed

A memory leak in the kernel_read_file function in fs/exec.c in the Linux kernel through 4.20.11 allows attackers to cause a denial of service (memory consumption) by triggering vfs_read failures.

27 affected packages

linux-aws, linux-flo, linux-goldfish, linux-aws-hwe, linux-azure...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-aws Fixed
linux-flo Not in release
linux-goldfish Not in release
linux-aws-hwe Not in release
linux-azure Fixed
linux Fixed
linux-azure-edge Fixed
linux-euclid Not in release
linux-gcp Fixed
linux-gcp-edge Fixed
linux-gke Not affected
linux-grouper Not in release
linux-hwe Fixed
linux-hwe-edge Not affected
linux-kvm Fixed
linux-lts-trusty Not in release
linux-lts-utopic Not in release
linux-lts-vivid Not in release
linux-lts-wily Not in release
linux-lts-xenial Not in release
linux-maguro Not in release
linux-mako Not in release
linux-manta Not in release
linux-oem Fixed
linux-oracle Fixed
linux-raspi2 Fixed
linux-snapdragon Not affected
Show all 27 packages Show less packages