Your submission was sent successfully! Close

You have successfully unsubscribed! Close

Thank you for signing up for our newsletter!
In these regular emails you will find the latest updates about Ubuntu and upcoming events where you can meet our team.Close

Search CVE reports


Toggle filters

191 – 200 of 2003 results


CVE-2020-10720

Medium priority

Some fixes available 22 of 36

A flaw was found in the Linux kernel's implementation of GRO in versions before 5.2. This flaw allows an attacker with local access to crash the system.

32 affected packages

linux, linux-aws, linux-aws-5.0, linux-aws-5.3, linux-aws-hwe...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
linux Not affected Fixed Fixed
linux-aws Not affected Fixed Fixed
linux-aws-5.0 Not in release Ignored Not in release
linux-aws-5.3 Not in release Not affected Not in release
linux-aws-hwe Not in release Not in release Fixed
linux-azure Not affected Ignored Fixed
linux-azure-4.15 Not in release Not affected Not in release
linux-azure-5.3 Not in release Not affected Not in release
linux-azure-edge Not in release Ignored Not in release
linux-gcp Not affected Ignored Fixed
linux-gcp-4.15 Not in release Not affected Not in release
linux-gcp-5.3 Not in release Not affected Not in release
linux-gcp-edge Not in release Ignored Not in release
linux-gke-4.15 Not in release Fixed Not in release
linux-gke-5.0 Not in release Fixed Not in release
linux-gke-5.3 Not in release Not affected Not in release
linux-hwe Not in release Fixed Fixed
linux-hwe-edge Not in release Ignored Ignored
linux-kvm Not affected Fixed Fixed
linux-lts-trusty Not in release Not in release Not in release
linux-lts-xenial Not in release Not in release Not in release
linux-oem Not in release Fixed Ignored
linux-oem-5.6 Not affected Not in release Not in release
linux-oem-osp1 Not in release Fixed Not in release
linux-oracle Not affected Fixed Fixed
linux-oracle-5.0 Not in release Ignored Not in release
linux-oracle-5.3 Not in release Not affected Not in release
linux-raspi Not affected Not in release Not in release
linux-raspi2 Ignored Fixed Fixed
linux-raspi2-5.3 Not in release Not affected Not in release
linux-riscv Not affected Not in release Not in release
linux-snapdragon Not in release Fixed Fixed
Show all 32 packages Show less packages

CVE-2020-14356

Medium priority

Some fixes available 35 of 50

A flaw null pointer dereference in the Linux kernel cgroupv2 subsystem in versions before 5.7.10 was found in the way when reboot the system. A local user could use this flaw to crash the system or escalate their privileges on the system.

44 affected packages

linux, linux-aws, linux-aws-5.0, linux-aws-5.3, linux-aws-5.4...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
linux Fixed Fixed Not affected
linux-aws Fixed Fixed Not affected
linux-aws-5.0 Not in release Ignored Not in release
linux-aws-5.3 Not in release Fixed Not in release
linux-aws-5.4 Not in release Fixed Not in release
linux-aws-hwe Not in release Not in release Fixed
linux-azure Fixed Ignored Fixed
linux-azure-4.15 Not in release Fixed Not in release
linux-azure-5.3 Not in release Ignored Not in release
linux-azure-5.4 Not in release Fixed Not in release
linux-azure-edge Not in release Ignored Not in release
linux-dell300x Not in release Not affected Not in release
linux-gcp Fixed Ignored Fixed
linux-gcp-4.15 Not in release Fixed Not in release
linux-gcp-5.3 Not in release Ignored Not in release
linux-gcp-5.4 Not in release Fixed Not in release
linux-gcp-edge Not in release Ignored Not in release
linux-gke-4.15 Not in release Fixed Not in release
linux-gke-5.0 Not in release Ignored Not in release
linux-gke-5.3 Not in release Fixed Not in release
linux-gke-5.4 Not in release Not affected Not in release
linux-gkeop Not affected Not in release Not in release
linux-gkeop-5.4 Not in release Not affected Not in release
linux-hwe Not in release Fixed Fixed
linux-hwe-5.4 Not in release Fixed Not in release
linux-hwe-5.8 Not affected Not in release Not in release
linux-hwe-edge Not in release Ignored Ignored
linux-kvm Fixed Fixed Not affected
linux-lts-trusty Not in release Not in release Not in release
linux-lts-xenial Not in release Not in release Not in release
linux-oem Not in release Fixed Ignored
linux-oem-5.10 Not affected Not in release Not in release
linux-oem-5.6 Fixed Not in release Not in release
linux-oem-osp1 Not in release Ignored Not in release
linux-oracle Fixed Fixed Fixed
linux-oracle-5.0 Not in release Ignored Not in release
linux-oracle-5.3 Not in release Ignored Not in release
linux-oracle-5.4 Not in release Fixed Not in release
linux-raspi Fixed Not in release Not in release
linux-raspi-5.4 Not in release Fixed Not in release
linux-raspi2 Ignored Fixed Not affected
linux-raspi2-5.3 Not in release Fixed Not in release
linux-riscv Fixed Not in release Not in release
linux-snapdragon Not in release Fixed Not affected
Show all 44 packages Show less packages

CVE-2020-24394

Medium priority

Some fixes available 36 of 47

In the Linux kernel before 5.7.8, fs/nfsd/vfs.c (in the NFS server) can set incorrect permissions on new filesystem objects when the filesystem lacks ACL support, aka CID-22cf8419f131. This occurs because the current umask is not...

44 affected packages

linux, linux-aws, linux-aws-5.0, linux-aws-5.3, linux-aws-5.4...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
linux Fixed Fixed Not affected
linux-aws Fixed Fixed Not affected
linux-aws-5.0 Not in release Ignored Not in release
linux-aws-5.3 Not in release Fixed Not in release
linux-aws-5.4 Not in release Fixed Not in release
linux-aws-hwe Not in release Not in release Fixed
linux-azure Fixed Ignored Fixed
linux-azure-4.15 Not in release Fixed Not in release
linux-azure-5.3 Not in release Fixed Not in release
linux-azure-5.4 Not in release Fixed Not in release
linux-azure-edge Not in release Ignored Not in release
linux-dell300x Not in release Not affected Not in release
linux-gcp Fixed Ignored Fixed
linux-gcp-4.15 Not in release Fixed Not in release
linux-gcp-5.3 Not in release Ignored Not in release
linux-gcp-5.4 Not in release Fixed Not in release
linux-gcp-edge Not in release Ignored Not in release
linux-gke-4.15 Not in release Fixed Not in release
linux-gke-5.0 Not in release Ignored Not in release
linux-gke-5.3 Not in release Fixed Not in release
linux-gke-5.4 Not in release Not affected Not in release
linux-gkeop Not affected Not in release Not in release
linux-gkeop-5.4 Not in release Not affected Not in release
linux-hwe Not in release Fixed Fixed
linux-hwe-5.4 Not in release Fixed Not in release
linux-hwe-5.8 Not affected Not in release Not in release
linux-hwe-edge Not in release Ignored Ignored
linux-kvm Fixed Fixed Not affected
linux-lts-trusty Not in release Not in release Not in release
linux-lts-xenial Not in release Not in release Not in release
linux-oem Not in release Fixed Ignored
linux-oem-5.10 Not affected Not in release Not in release
linux-oem-5.6 Fixed Not in release Not in release
linux-oem-osp1 Not in release Ignored Not in release
linux-oracle Fixed Fixed Fixed
linux-oracle-5.0 Not in release Ignored Not in release
linux-oracle-5.3 Not in release Ignored Not in release
linux-oracle-5.4 Not in release Fixed Not in release
linux-raspi Fixed Not in release Not in release
linux-raspi-5.4 Not in release Fixed Not in release
linux-raspi2 Ignored Fixed Not affected
linux-raspi2-5.3 Not in release Fixed Not in release
linux-riscv Fixed Not in release Not in release
linux-snapdragon Not in release Fixed Not affected
Show all 44 packages Show less packages

CVE-2020-16166

Medium priority

Some fixes available 32 of 34

The Linux kernel through 5.7.11 allows remote attackers to make observations that help to obtain sensitive information about the internal state of the network RNG, aka CID-f227e3ec3b5c. This is related to drivers/char/random.c and...

132 affected packages

linux, linux-allwinner, linux-allwinner-5.19, linux-aws, linux-aws-5.0...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
linux Not affected Not affected Fixed Fixed Not affected
linux-allwinner Not in release Not in release Not in release Not in release Not in release
linux-allwinner-5.19 Not in release Not affected Not in release Not in release Not in release
linux-aws Not affected Not affected Fixed Fixed Not affected
linux-aws-5.0 Not in release Not in release Not in release Ignored Not in release
linux-aws-5.11 Not in release Not in release Not affected Not in release Not in release
linux-aws-5.13 Not in release Not in release Not affected Not in release Not in release
linux-aws-5.15 Not in release Not in release Not affected Not in release Not in release
linux-aws-5.19 Not in release Not affected Not in release Not in release Not in release
linux-aws-5.3 Not in release Not in release Not in release Ignored Not in release
linux-aws-5.4 Not in release Not in release Not in release Fixed Not in release
linux-aws-5.8 Not in release Not in release Not affected Not in release Not in release
linux-aws-6.2 Not in release Not affected Not in release Not in release Not in release
linux-aws-6.5 Not in release Not affected Not in release Not in release Not in release
linux-aws-fips Not in release Not in release Not in release Not in release Not in release
linux-aws-hwe Not in release Not in release Not in release Not in release Fixed
linux-azure Not affected Not affected Fixed Ignored Fixed
linux-azure-4.15 Not in release Not in release Not in release Fixed Not in release
linux-azure-5.11 Not in release Not in release Not affected Not in release Not in release
linux-azure-5.13 Not in release Not in release Not affected Not in release Not in release
linux-azure-5.15 Not in release Not in release Not affected Not in release Not in release
linux-azure-5.19 Not in release Not affected Not in release Not in release Not in release
linux-azure-5.3 Not in release Not in release Not in release Ignored Not in release
linux-azure-5.4 Not in release Not in release Not in release Fixed Not in release
linux-azure-5.8 Not in release Not in release Not affected Not in release Not in release
linux-azure-6.2 Not in release Not affected Not in release Not in release Not in release
linux-azure-6.5 Not in release Not affected Not in release Not in release Not in release
linux-azure-edge Not in release Not in release Not in release Ignored Not in release
linux-azure-fde Not in release Not affected Fixed Not in release Not in release
linux-azure-fde-5.15 Not in release Not in release Not affected Not in release Not in release
linux-azure-fde-5.19 Not in release Not affected Not in release Not in release Not in release
linux-azure-fde-6.2 Not in release Not affected Not in release Not in release Not in release
linux-azure-fips Not in release Not in release Not in release Not in release Not in release
linux-bluefield Not in release Not in release Not affected Not in release Not in release
linux-dell300x Not in release Not in release Not in release Not affected Not in release
linux-fips Not in release Not in release Not in release Not in release Ignored
linux-gcp Not affected Not affected Fixed Ignored Fixed
linux-gcp-4.15 Not in release Not in release Not in release Fixed Not in release
linux-gcp-5.11 Not in release Not in release Not affected Not in release Not in release
linux-gcp-5.13 Not in release Not in release Not affected Not in release Not in release
linux-gcp-5.15 Not in release Not in release Not affected Not in release Not in release
linux-gcp-5.19 Not in release Not affected Not in release Not in release Not in release
linux-gcp-5.3 Not in release Not in release Not in release Ignored Not in release
linux-gcp-5.4 Not in release Not in release Not in release Fixed Not in release
linux-gcp-5.8 Not in release Not in release Not affected Not in release Not in release
linux-gcp-6.2 Not in release Not affected Not in release Not in release Not in release
linux-gcp-6.5 Not in release Not affected Not in release Not in release Not in release
linux-gcp-edge Not in release Not in release Not in release Ignored Not in release
linux-gcp-fips Not in release Not in release Not in release Not in release Not in release
linux-gke Not affected Not affected Not affected Not in release Ignored
linux-gke-4.15 Not in release Not in release Not in release Fixed Not in release
linux-gke-5.0 Not in release Not in release Not in release Ignored Not in release
linux-gke-5.15 Not in release Not in release Not affected Not in release Not in release
linux-gke-5.3 Not in release Not in release Not in release Ignored Not in release
linux-gke-5.4 Not in release Not in release Not in release Not affected Not in release
linux-gkeop Not in release Not affected Not affected Not in release Not in release
linux-gkeop-5.15 Not in release Not in release Not affected Not in release Not in release
linux-gkeop-5.4 Not in release Not in release Not in release Not affected Not in release
linux-hwe Not in release Not in release Not in release Ignored Fixed
linux-hwe-5.11 Not in release Not in release Not affected Not in release Not in release
linux-hwe-5.13 Not in release Not in release Not affected Not in release Not in release
linux-hwe-5.15 Not in release Not in release Not affected Not in release Not in release
linux-hwe-5.19 Not in release Not affected Not in release Not in release Not in release
linux-hwe-5.4 Not in release Not in release Not in release Fixed Not in release
linux-hwe-5.8 Not in release Not in release Not affected Not in release Not in release
linux-hwe-6.2 Not in release Not affected Not in release Not in release Not in release
linux-hwe-6.5 Not in release Not affected Not in release Not in release Not in release
linux-hwe-6.8 Not in release Not affected Not in release Not in release Not in release
linux-hwe-edge Not in release Not in release Not in release Ignored Ignored
linux-ibm Not affected Not affected Not affected Not in release Not in release
linux-ibm-5.15 Not in release Not in release Not affected Not in release Not in release
linux-ibm-5.4 Not in release Not in release Not in release Not affected Not in release
linux-intel Not affected Not in release Not in release Not in release Not in release
linux-intel-5.13 Not in release Not in release Not affected Not in release Not in release
linux-intel-iot-realtime Not in release Not in release Not in release Not in release Not in release
linux-intel-iotg Not in release Not affected Not in release Not in release Not in release
linux-intel-iotg-5.15 Not in release Not in release Not affected Not in release Not in release
linux-iot Not in release Not in release Not affected Not in release Not in release
linux-kvm Not in release Not affected Fixed Fixed Not affected
linux-laptop Not in release Not in release Not in release Not in release Not in release
linux-lowlatency Not affected Not affected Not in release Not in release Not in release
linux-lowlatency-hwe-5.15 Not in release Not in release Not affected Not in release Not in release
linux-lowlatency-hwe-5.19 Not in release Not affected Not in release Not in release Not in release
linux-lowlatency-hwe-6.2 Not in release Not affected Not in release Not in release Not in release
linux-lowlatency-hwe-6.5 Not in release Not affected Not in release Not in release Not in release
linux-lowlatency-hwe-6.8 Not in release Not affected Not in release Not in release Not in release
linux-lts-trusty Not in release Not in release Not in release Not in release Not in release
linux-lts-xenial Not in release Not in release Not in release Not in release Not in release
linux-nvidia Not affected Not affected Not in release Not in release Not in release
linux-nvidia-6.2 Not in release Not affected Not in release Not in release Not in release
linux-nvidia-6.5 Not in release Not affected Not in release Not in release Not in release
linux-nvidia-6.8 Not in release Not affected Not in release Not in release Not in release
linux-nvidia-lowlatency Not affected Not in release Not in release Not in release Not in release
linux-oem Not in release Not in release Not in release Fixed Ignored
linux-oem-5.10 Not in release Not in release Not affected Not in release Not in release
linux-oem-5.13 Not in release Not in release Not affected Not in release Not in release
linux-oem-5.14 Not in release Not in release Not affected Not in release Not in release
linux-oem-5.17 Not in release Not affected Not in release Not in release Not in release
linux-oem-5.6 Not in release Not in release Fixed Not in release Not in release
linux-oem-6.0 Not in release Not affected Not in release Not in release Not in release
linux-oem-6.1 Not in release Not affected Not in release Not in release Not in release
linux-oem-6.5 Not in release Not affected Not in release Not in release Not in release
linux-oem-6.8 Not affected Not in release Not in release Not in release Not in release
linux-oem-osp1 Not in release Not in release Not in release Ignored Not in release
linux-oracle Not affected Not affected Fixed Fixed Fixed
linux-oracle-5.0 Not in release Not in release Not in release Ignored Not in release
linux-oracle-5.11 Not in release Not in release Not affected Not in release Not in release
linux-oracle-5.13 Not in release Not in release Not affected Not in release Not in release
linux-oracle-5.15 Not in release Not in release Not affected Not in release Not in release
linux-oracle-5.3 Not in release Not in release Not in release Ignored Not in release
linux-oracle-5.4 Not in release Not in release Not in release Fixed Not in release
linux-oracle-5.8 Not in release Not in release Not affected Not in release Not in release
linux-oracle-6.5 Not in release Not affected Not in release Not in release Not in release
linux-raspi Not affected Not affected Fixed Not in release Not in release
linux-raspi-5.4 Not in release Not in release Not in release Fixed Not in release
linux-raspi-realtime Not in release Not in release Not in release Not in release Not in release
linux-raspi2 Not in release Not in release Ignored Fixed Not affected
linux-raspi2-5.3 Not in release Not in release Not in release Ignored Not in release
linux-realtime Not in release Ignored Not in release Not in release Not in release
linux-riscv Not affected Not affected Fixed Not in release Not in release
linux-riscv-5.11 Not in release Not in release Not affected Not in release Not in release
linux-riscv-5.15 Not in release Not in release Not affected Not in release Not in release
linux-riscv-5.19 Not in release Not affected Not in release Not in release Not in release
linux-riscv-5.8 Not in release Not in release Not affected Not in release Not in release
linux-riscv-6.5 Not in release Not affected Not in release Not in release Not in release
linux-riscv-6.8 Not in release Not affected Not in release Not in release Not in release
linux-snapdragon Not in release Not in release Not in release Fixed Not affected
linux-starfive Not in release Not in release Not in release Not in release Not in release
linux-starfive-5.19 Not in release Not affected Not in release Not in release Not in release
linux-starfive-6.2 Not in release Not affected Not in release Not in release Not in release
linux-starfive-6.5 Not in release Not affected Not in release Not in release Not in release
linux-xilinx-zynqmp Not in release Not affected Not affected Not in release Not in release
Show all 132 packages Show less packages

CVE-2020-15852

Medium priority

Some fixes available 1 of 16

An issue was discovered in the Linux kernel 5.5 through 5.7.9, as used in Xen through 4.13.x for x86 PV guests. An attacker may be granted the I/O port permissions of an unrelated task. This occurs because tss_invalidate_io_bitmap...

41 affected packages

linux, linux-aws, linux-aws-5.0, linux-aws-5.3, linux-aws-5.4...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
linux Not affected Not affected Not affected
linux-aws Not affected Not affected Not affected
linux-aws-5.0 Not in release Ignored Not in release
linux-aws-5.3 Not in release Not affected Not in release
linux-aws-5.4 Not in release Not affected Not in release
linux-aws-hwe Not in release Not in release Not affected
linux-azure Not affected Ignored Not affected
linux-azure-4.15 Not in release Not affected Not in release
linux-azure-5.3 Not in release Not affected Not in release
linux-azure-5.4 Not in release Not affected Not in release
linux-azure-edge Not in release Ignored Not in release
linux-gcp Not affected Ignored Not affected
linux-gcp-4.15 Not in release Not affected Not in release
linux-gcp-5.3 Not in release Ignored Not in release
linux-gcp-5.4 Not in release Not affected Not in release
linux-gcp-edge Not in release Ignored Not in release
linux-gke-4.15 Not in release Not affected Not in release
linux-gke-5.0 Not in release Not affected Not in release
linux-gke-5.3 Not in release Not affected Not in release
linux-gke-5.4 Not in release Not affected Not in release
linux-gkeop-5.4 Not in release Not affected Not in release
linux-hwe Not in release Not affected Not affected
linux-hwe-5.4 Not in release Not affected Not in release
linux-hwe-5.8 Not affected Not in release Not in release
linux-hwe-edge Not in release Ignored Ignored
linux-kvm Not affected Not affected Not affected
linux-lts-trusty Not in release Not in release Not in release
linux-lts-xenial Not in release Not in release Not in release
linux-oem Not in release Not affected Ignored
linux-oem-5.6 Fixed Not in release Not in release
linux-oem-osp1 Not in release Not affected Not in release
linux-oracle Not affected Not affected Not affected
linux-oracle-5.0 Not in release Ignored Not in release
linux-oracle-5.3 Not in release Ignored Not in release
linux-oracle-5.4 Not in release Not affected Not in release
linux-raspi Not affected Not in release Not in release
linux-raspi-5.4 Not in release Not affected Not in release
linux-raspi2 Ignored Not affected Not affected
linux-raspi2-5.3 Not in release Not affected Not in release
linux-riscv Not affected Not in release Not in release
linux-snapdragon Not in release Not affected Not affected
Show all 41 packages Show less packages

CVE-2020-0305

Medium priority

Some fixes available 21 of 37

In cdev_get of char_dev.c, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed...

38 affected packages

linux, linux-aws, linux-aws-5.0, linux-aws-5.3, linux-aws-5.4...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
linux Not affected Fixed Fixed
linux-aws Not affected Fixed Fixed
linux-aws-5.0 Not in release Ignored Not in release
linux-aws-5.3 Not in release Ignored Not in release
linux-aws-5.4 Not in release Not affected Not in release
linux-aws-hwe Not in release Not in release Fixed
linux-azure Not affected Ignored Fixed
linux-azure-4.15 Not in release Not affected Not in release
linux-azure-5.3 Not in release Ignored Not in release
linux-azure-5.4 Not in release Not affected Not in release
linux-azure-edge Not in release Ignored Not in release
linux-gcp Not affected Ignored Fixed
linux-gcp-4.15 Not in release Not affected Not in release
linux-gcp-5.3 Not in release Ignored Not in release
linux-gcp-5.4 Not in release Not affected Not in release
linux-gcp-edge Not in release Ignored Not in release
linux-gke-4.15 Not in release Fixed Not in release
linux-gke-5.0 Not in release Fixed Not in release
linux-gke-5.3 Not in release Fixed Not in release
linux-hwe Not in release Ignored Fixed
linux-hwe-5.4 Not in release Not affected Not in release
linux-hwe-edge Not in release Ignored Ignored
linux-kvm Not affected Fixed Fixed
linux-lts-trusty Not in release Not in release Not in release
linux-lts-xenial Not in release Not in release Not in release
linux-oem Not in release Fixed Ignored
linux-oem-5.6 Not affected Not in release Not in release
linux-oem-osp1 Not in release Ignored Not in release
linux-oracle Not affected Fixed Fixed
linux-oracle-5.0 Not in release Ignored Not in release
linux-oracle-5.3 Not in release Ignored Not in release
linux-oracle-5.4 Not in release Not affected Not in release
linux-raspi Not affected Not in release Not in release
linux-raspi-5.4 Not in release Not affected Not in release
linux-raspi2 Ignored Fixed Fixed
linux-raspi2-5.3 Not in release Fixed Not in release
linux-riscv Not affected Not in release Not in release
linux-snapdragon Not in release Fixed Fixed
Show all 38 packages Show less packages

CVE-2020-15780

Medium priority

Some fixes available 40 of 58

An issue was discovered in drivers/acpi/acpi_configfs.c in the Linux kernel before 5.7.7. Injection of malicious ACPI tables via configfs could be used by attackers to bypass lockdown and secure boot restrictions, aka CID-75b0cea7bf30.

44 affected packages

linux, linux-aws, linux-aws-5.0, linux-aws-5.3, linux-aws-5.4...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
linux Fixed Fixed Not affected
linux-aws Fixed Fixed Not affected
linux-aws-5.0 Not in release Ignored Not in release
linux-aws-5.3 Not in release Fixed Not in release
linux-aws-5.4 Not in release Fixed Not in release
linux-aws-hwe Not in release Not in release Fixed
linux-azure Fixed Ignored Fixed
linux-azure-4.15 Not in release Fixed Not in release
linux-azure-5.3 Not in release Fixed Not in release
linux-azure-5.4 Not in release Fixed Not in release
linux-azure-edge Not in release Ignored Not in release
linux-dell300x Not in release Not affected Not in release
linux-gcp Fixed Ignored Fixed
linux-gcp-4.15 Not in release Fixed Not in release
linux-gcp-5.3 Not in release Fixed Not in release
linux-gcp-5.4 Not in release Fixed Not in release
linux-gcp-edge Not in release Ignored Not in release
linux-gke-4.15 Not in release Fixed Not in release
linux-gke-5.0 Not in release Fixed Not in release
linux-gke-5.3 Not in release Fixed Not in release
linux-gke-5.4 Not in release Not affected Not in release
linux-gkeop Not affected Not in release Not in release
linux-gkeop-5.4 Not in release Not affected Not in release
linux-hwe Not in release Fixed Fixed
linux-hwe-5.4 Not in release Fixed Not in release
linux-hwe-5.8 Not affected Not in release Not in release
linux-hwe-edge Not in release Ignored Ignored
linux-kvm Fixed Fixed Not affected
linux-lts-trusty Not in release Not in release Not in release
linux-lts-xenial Not in release Not in release Not in release
linux-oem Not in release Fixed Ignored
linux-oem-5.10 Not affected Not in release Not in release
linux-oem-5.6 Fixed Not in release Not in release
linux-oem-osp1 Not in release Fixed Not in release
linux-oracle Fixed Fixed Fixed
linux-oracle-5.0 Not in release Ignored Not in release
linux-oracle-5.3 Not in release Fixed Not in release
linux-oracle-5.4 Not in release Fixed Not in release
linux-raspi Fixed Not in release Not in release
linux-raspi-5.4 Not in release Fixed Not in release
linux-raspi2 Ignored Fixed Not affected
linux-raspi2-5.3 Not in release Fixed Not in release
linux-riscv Fixed Not in release Not in release
linux-snapdragon Not in release Fixed Not affected
Show all 44 packages Show less packages

CVE-2019-20908

Medium priority

Some fixes available 25 of 43

An issue was discovered in drivers/firmware/efi/efi.c in the Linux kernel before 5.4. Incorrect access permissions for the efivar_ssdt ACPI variable could be used by attackers to bypass lockdown or secure boot restrictions, aka...

44 affected packages

linux, linux-aws, linux-aws-5.0, linux-aws-5.3, linux-aws-5.4...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
linux Not affected Fixed Not affected
linux-aws Not affected Fixed Not affected
linux-aws-5.0 Not in release Ignored Not in release
linux-aws-5.3 Not in release Fixed Not in release
linux-aws-5.4 Not in release Not affected Not in release
linux-aws-hwe Not in release Not in release Fixed
linux-azure Not affected Ignored Fixed
linux-azure-4.15 Not in release Fixed Not in release
linux-azure-5.3 Not in release Fixed Not in release
linux-azure-5.4 Not in release Not affected Not in release
linux-azure-edge Not in release Ignored Not in release
linux-dell300x Not in release Not affected Not in release
linux-gcp Not affected Ignored Fixed
linux-gcp-4.15 Not in release Fixed Not in release
linux-gcp-5.3 Not in release Fixed Not in release
linux-gcp-5.4 Not in release Not affected Not in release
linux-gcp-edge Not in release Ignored Not in release
linux-gke-4.15 Not in release Fixed Not in release
linux-gke-5.0 Not in release Fixed Not in release
linux-gke-5.3 Not in release Fixed Not in release
linux-gke-5.4 Not in release Not affected Not in release
linux-gkeop Not affected Not in release Not in release
linux-gkeop-5.4 Not in release Not affected Not in release
linux-hwe Not in release Fixed Fixed
linux-hwe-5.4 Not in release Not affected Not in release
linux-hwe-5.8 Not affected Not in release Not in release
linux-hwe-edge Not in release Ignored Ignored
linux-kvm Not affected Fixed Not affected
linux-lts-trusty Not in release Not in release Not in release
linux-lts-xenial Not in release Not in release Not in release
linux-oem Not in release Fixed Ignored
linux-oem-5.10 Not affected Not in release Not in release
linux-oem-5.6 Not affected Not in release Not in release
linux-oem-osp1 Not in release Fixed Not in release
linux-oracle Not affected Fixed Fixed
linux-oracle-5.0 Not in release Ignored Not in release
linux-oracle-5.3 Not in release Fixed Not in release
linux-oracle-5.4 Not in release Not affected Not in release
linux-raspi Not affected Not in release Not in release
linux-raspi-5.4 Not in release Not affected Not in release
linux-raspi2 Ignored Fixed Not affected
linux-raspi2-5.3 Not in release Fixed Not in release
linux-riscv Not affected Not in release Not in release
linux-snapdragon Not in release Fixed Not affected
Show all 44 packages Show less packages

CVE-2019-19338

Medium priority
Ignored

A flaw was found in the fix for CVE-2019-11135, in the Linux upstream kernel versions before 5.5 where, the way Intel CPUs handle speculative execution of instructions when a TSX Asynchronous Abort (TAA) error occurs. When a guest...

23 affected packages

linux, linux-aws, linux-aws-5.0, linux-aws-hwe, linux-azure...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
linux Not affected Not affected
linux-aws Not affected Not affected
linux-aws-5.0 Not affected Not in release
linux-aws-hwe Not in release Not affected
linux-azure Not affected Not affected
linux-azure-5.3 Not affected Not in release
linux-azure-edge Not affected Ignored
linux-gcp Not affected Not affected
linux-gcp-5.3 Not affected Not in release
linux-gcp-edge Not affected Not in release
linux-gke-4.15 Not affected Not in release
linux-gke-5.0 Not affected Not in release
linux-hwe Not affected Not affected
linux-hwe-edge Ignored Not affected
linux-kvm Not affected Not affected
linux-lts-trusty Not in release Not in release
linux-lts-xenial Not in release Not in release
linux-oem Not affected Ignored
linux-oem-osp1 Not affected Not in release
linux-oracle Not affected Not affected
linux-oracle-5.0 Not affected Not in release
linux-raspi2 Not affected Not affected
linux-snapdragon Not affected Not affected
Show all 23 packages Show less packages

CVE-2020-15393

Low priority

Some fixes available 43 of 64

In the Linux kernel 4.4 through 5.7.6, usbtest_disconnect in drivers/usb/misc/usbtest.c has a memory leak, aka CID-28ebeb8db770.

44 affected packages

linux, linux-aws, linux-aws-5.0, linux-aws-5.3, linux-aws-5.4...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
linux Fixed Fixed Fixed
linux-aws Fixed Fixed Fixed
linux-aws-5.0 Not in release Ignored Not in release
linux-aws-5.3 Not in release Fixed Not in release
linux-aws-5.4 Not in release Fixed Not in release
linux-aws-hwe Not in release Not in release Fixed
linux-azure Fixed Ignored Fixed
linux-azure-4.15 Not in release Fixed Not in release
linux-azure-5.3 Not in release Fixed Not in release
linux-azure-5.4 Not in release Fixed Not in release
linux-azure-edge Not in release Ignored Not in release
linux-dell300x Not in release Not affected Not in release
linux-gcp Fixed Ignored Fixed
linux-gcp-4.15 Not in release Fixed Not in release
linux-gcp-5.3 Not in release Ignored Not in release
linux-gcp-5.4 Not in release Fixed Not in release
linux-gcp-edge Not in release Ignored Not in release
linux-gke-4.15 Not in release Fixed Not in release
linux-gke-5.0 Not in release Ignored Not in release
linux-gke-5.3 Not in release Fixed Not in release
linux-gke-5.4 Not in release Not affected Not in release
linux-gkeop Not affected Not in release Not in release
linux-gkeop-5.4 Not in release Not affected Not in release
linux-hwe Not in release Fixed Fixed
linux-hwe-5.4 Not in release Fixed Not in release
linux-hwe-5.8 Not affected Not in release Not in release
linux-hwe-edge Not in release Ignored Ignored
linux-kvm Fixed Fixed Fixed
linux-lts-trusty Not in release Not in release Not in release
linux-lts-xenial Not in release Not in release Not in release
linux-oem Not in release Fixed Ignored
linux-oem-5.10 Not affected Not in release Not in release
linux-oem-5.6 Fixed Not in release Not in release
linux-oem-osp1 Not in release Ignored Not in release
linux-oracle Fixed Fixed Fixed
linux-oracle-5.0 Not in release Ignored Not in release
linux-oracle-5.3 Not in release Ignored Not in release
linux-oracle-5.4 Not in release Fixed Not in release
linux-raspi Fixed Not in release Not in release
linux-raspi-5.4 Not in release Fixed Not in release
linux-raspi2 Ignored Fixed Fixed
linux-raspi2-5.3 Not in release Fixed Not in release
linux-riscv Fixed Not in release Not in release
linux-snapdragon Not in release Fixed Fixed
Show all 44 packages Show less packages