Your submission was sent successfully! Close

You have successfully unsubscribed! Close

Thank you for signing up for our newsletter!
In these regular emails you will find the latest updates about Ubuntu and upcoming events where you can meet our team.Close

Search CVE reports


Toggle filters

261 – 270 of 2003 results


CVE-2020-8992

Low priority

Some fixes available 38 of 49

ext4_protect_reserved_inode in fs/ext4/block_validity.c in the Linux kernel through 5.5.3 allows attackers to cause a denial of service (soft lockup) via a crafted journal size.

32 affected packages

linux, linux-aws, linux-aws-5.0, linux-aws-5.3, linux-aws-hwe...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
linux Not affected Fixed Fixed
linux-aws Not affected Fixed Fixed
linux-aws-5.0 Not in release Ignored Not in release
linux-aws-5.3 Not in release Fixed Not in release
linux-aws-hwe Not in release Not in release Fixed
linux-azure Not affected Ignored Fixed
linux-azure-4.15 Not in release Not affected Not in release
linux-azure-5.3 Not in release Fixed Not in release
linux-azure-edge Not in release Ignored Not in release
linux-gcp Not affected Ignored Fixed
linux-gcp-4.15 Not in release Not affected Not in release
linux-gcp-5.3 Not in release Fixed Not in release
linux-gcp-edge Not in release Ignored Not in release
linux-gke-4.15 Not in release Fixed Not in release
linux-gke-5.0 Not in release Fixed Not in release
linux-gke-5.3 Not in release Fixed Not in release
linux-hwe Not in release Fixed Fixed
linux-hwe-edge Not in release Ignored Ignored
linux-kvm Not affected Fixed Fixed
linux-lts-trusty Not in release Not in release Not in release
linux-lts-xenial Not in release Not in release Not in release
linux-oem Not in release Fixed Ignored
linux-oem-5.6 Not affected Not in release Not in release
linux-oem-osp1 Not in release Fixed Not in release
linux-oracle Not affected Fixed Fixed
linux-oracle-5.0 Not in release Ignored Not in release
linux-oracle-5.3 Not in release Fixed Not in release
linux-raspi Not affected Not in release Not in release
linux-raspi2 Ignored Fixed Fixed
linux-raspi2-5.3 Not in release Fixed Not in release
linux-riscv Not affected Not in release Not in release
linux-snapdragon Not in release Fixed Fixed
Show all 32 packages Show less packages

CVE-2020-0030

Medium priority
Ignored

In binder_thread_release of binder.c, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for...

26 affected packages

linux, linux-aws, linux-aws-5.0, linux-aws-hwe, linux-azure...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
linux Not affected Not affected
linux-aws Not affected Not affected
linux-aws-5.0 Not affected Not in release
linux-aws-hwe Not in release Not affected
linux-azure Not affected Not affected
linux-azure-5.3 Not affected Not in release
linux-azure-edge Ignored Ignored
linux-gcp Not affected Not affected
linux-gcp-5.3 Not affected Not in release
linux-gcp-edge Ignored Not in release
linux-gke-4.15 Not affected Not in release
linux-gke-5.0 Not affected Not in release
linux-gke-5.3 Not affected Not in release
linux-hwe Not affected Not affected
linux-hwe-edge Ignored Ignored
linux-kvm Not affected Not affected
linux-lts-trusty Not in release Not in release
linux-lts-xenial Not in release Not in release
linux-oem Not affected Ignored
linux-oem-5.4 Not in release Not in release
linux-oem-osp1 Not affected Not in release
linux-oracle Not affected Not affected
linux-oracle-5.0 Not affected Not in release
linux-raspi2 Not affected Not affected
linux-raspi2-5.3 Not affected Not in release
linux-snapdragon Not affected Not affected
Show all 26 packages Show less packages

CVE-2020-8649

Medium priority

Some fixes available 34 of 49

There is a use-after-free vulnerability in the Linux kernel through 5.5.2 in the vgacon_invert_region function in drivers/video/console/vgacon.c.

32 affected packages

linux, linux-aws, linux-aws-5.0, linux-aws-5.3, linux-aws-hwe...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
linux Not affected Fixed Fixed
linux-aws Not affected Fixed Fixed
linux-aws-5.0 Not in release Ignored Not in release
linux-aws-5.3 Not in release Fixed Not in release
linux-aws-hwe Not in release Not in release Fixed
linux-azure Not affected Ignored Fixed
linux-azure-4.15 Not in release Not affected Not in release
linux-azure-5.3 Not in release Fixed Not in release
linux-azure-edge Not in release Ignored Not in release
linux-gcp Not affected Ignored Fixed
linux-gcp-4.15 Not in release Not affected Not in release
linux-gcp-5.3 Not in release Fixed Not in release
linux-gcp-edge Not in release Ignored Not in release
linux-gke-4.15 Not in release Fixed Not in release
linux-gke-5.0 Not in release Fixed Not in release
linux-gke-5.3 Not in release Fixed Not in release
linux-hwe Not in release Fixed Fixed
linux-hwe-edge Not in release Ignored Ignored
linux-kvm Not affected Fixed Fixed
linux-lts-trusty Not in release Not in release Not in release
linux-lts-xenial Not in release Not in release Not in release
linux-oem Not in release Fixed Ignored
linux-oem-5.6 Not affected Not in release Not in release
linux-oem-osp1 Not in release Fixed Not in release
linux-oracle Not affected Fixed Fixed
linux-oracle-5.0 Not in release Ignored Not in release
linux-oracle-5.3 Not in release Fixed Not in release
linux-raspi Not affected Not in release Not in release
linux-raspi2 Ignored Fixed Fixed
linux-raspi2-5.3 Not in release Fixed Not in release
linux-riscv Not affected Not in release Not in release
linux-snapdragon Not in release Fixed Fixed
Show all 32 packages Show less packages

CVE-2020-8648

Medium priority

Some fixes available 36 of 49

There is a use-after-free vulnerability in the Linux kernel through 5.5.2 in the n_tty_receive_buf_common function in drivers/tty/n_tty.c.

32 affected packages

linux, linux-aws, linux-aws-5.0, linux-aws-5.3, linux-aws-hwe...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
linux Not affected Fixed Fixed
linux-aws Not affected Fixed Fixed
linux-aws-5.0 Not in release Ignored Not in release
linux-aws-5.3 Not in release Fixed Not in release
linux-aws-hwe Not in release Not in release Fixed
linux-azure Not affected Ignored Fixed
linux-azure-4.15 Not in release Not affected Not in release
linux-azure-5.3 Not in release Fixed Not in release
linux-azure-edge Not in release Ignored Not in release
linux-gcp Not affected Ignored Fixed
linux-gcp-4.15 Not in release Not affected Not in release
linux-gcp-5.3 Not in release Fixed Not in release
linux-gcp-edge Not in release Ignored Not in release
linux-gke-4.15 Not in release Fixed Not in release
linux-gke-5.0 Not in release Fixed Not in release
linux-gke-5.3 Not in release Fixed Not in release
linux-hwe Not in release Fixed Fixed
linux-hwe-edge Not in release Ignored Ignored
linux-kvm Not affected Fixed Fixed
linux-lts-trusty Not in release Not in release Not in release
linux-lts-xenial Not in release Not in release Not in release
linux-oem Not in release Fixed Ignored
linux-oem-5.6 Not affected Not in release Not in release
linux-oem-osp1 Not in release Fixed Not in release
linux-oracle Not affected Fixed Fixed
linux-oracle-5.0 Not in release Ignored Not in release
linux-oracle-5.3 Not in release Fixed Not in release
linux-raspi Not affected Not in release Not in release
linux-raspi2 Ignored Fixed Fixed
linux-raspi2-5.3 Not in release Fixed Not in release
linux-riscv Not affected Not in release Not in release
linux-snapdragon Not in release Fixed Fixed
Show all 32 packages Show less packages

CVE-2020-8647

Medium priority

Some fixes available 34 of 49

There is a use-after-free vulnerability in the Linux kernel through 5.5.2 in the vc_do_resize function in drivers/tty/vt/vt.c.

32 affected packages

linux, linux-aws, linux-aws-5.0, linux-aws-5.3, linux-aws-hwe...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
linux Not affected Fixed Fixed
linux-aws Not affected Fixed Fixed
linux-aws-5.0 Not in release Ignored Not in release
linux-aws-5.3 Not in release Fixed Not in release
linux-aws-hwe Not in release Not in release Fixed
linux-azure Not affected Ignored Fixed
linux-azure-4.15 Not in release Not affected Not in release
linux-azure-5.3 Not in release Fixed Not in release
linux-azure-edge Not in release Ignored Not in release
linux-gcp Not affected Ignored Fixed
linux-gcp-4.15 Not in release Not affected Not in release
linux-gcp-5.3 Not in release Fixed Not in release
linux-gcp-edge Not in release Ignored Not in release
linux-gke-4.15 Not in release Fixed Not in release
linux-gke-5.0 Not in release Fixed Not in release
linux-gke-5.3 Not in release Fixed Not in release
linux-hwe Not in release Fixed Fixed
linux-hwe-edge Not in release Ignored Ignored
linux-kvm Not affected Fixed Fixed
linux-lts-trusty Not in release Not in release Not in release
linux-lts-xenial Not in release Not in release Not in release
linux-oem Not in release Fixed Ignored
linux-oem-5.6 Not affected Not in release Not in release
linux-oem-osp1 Not in release Fixed Not in release
linux-oracle Not affected Fixed Fixed
linux-oracle-5.0 Not in release Ignored Not in release
linux-oracle-5.3 Not in release Fixed Not in release
linux-raspi Not affected Not in release Not in release
linux-raspi2 Ignored Fixed Fixed
linux-raspi2-5.3 Not in release Fixed Not in release
linux-riscv Not affected Not in release Not in release
linux-snapdragon Not in release Fixed Fixed
Show all 32 packages Show less packages

CVE-2019-3016

Medium priority

Some fixes available 19 of 35

In a Linux KVM guest that has PV TLB enabled, a process in the guest kernel may be able to read memory locations from another process in the same guest. This problem is limit to the host running linux kernel 4.10 with a guest...

27 affected packages

linux, linux-aws, linux-aws-5.0, linux-aws-hwe, linux-azure...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
linux Not affected Not affected Not affected
linux-aws Not affected Not affected Not affected
linux-aws-5.0 Not in release Fixed Not in release
linux-aws-hwe Not in release Not in release Not affected
linux-azure Not affected Fixed Not affected
linux-azure-5.3 Not in release Fixed Not in release
linux-azure-edge Not in release Ignored Ignored
linux-gcp Not affected Fixed Not affected
linux-gcp-5.3 Not in release Fixed Not in release
linux-gcp-edge Not in release Ignored Not in release
linux-gke-4.15 Not in release Not affected Not in release
linux-gke-5.0 Not in release Fixed Not in release
linux-gke-5.3 Not in release Fixed Not in release
linux-hwe Not in release Fixed Not affected
linux-hwe-edge Not in release Ignored Ignored
linux-kvm Not affected Not affected Not affected
linux-lts-trusty Not in release Not in release Not in release
linux-lts-xenial Not in release Not in release Not in release
linux-oem Not in release Not affected Ignored
linux-oem-5.6 Not affected Not in release Not in release
linux-oem-osp1 Not in release Fixed Not in release
linux-oracle Not affected Not affected Not affected
linux-oracle-5.0 Not in release Fixed Not in release
linux-oracle-5.3 Not in release Not affected Not in release
linux-raspi2 Ignored Not affected Not affected
linux-raspi2-5.3 Not in release Fixed Not in release
linux-snapdragon Not in release Not affected Not affected
Show all 27 packages Show less packages

CVE-2020-8428

Medium priority

Some fixes available 41 of 47

fs/namei.c in the Linux kernel before 5.5 has a may_create_in_sticky use-after-free, which allows local users to cause a denial of service (OOPS) or possibly obtain sensitive information from kernel memory, aka CID-d0cb50185ae9....

31 affected packages

linux, linux-aws, linux-aws-5.0, linux-aws-5.3, linux-aws-hwe...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
linux Not affected Fixed Fixed
linux-aws Not affected Fixed Fixed
linux-aws-5.0 Not in release Ignored Not in release
linux-aws-5.3 Not in release Not affected Not in release
linux-aws-hwe Not in release Not in release Fixed
linux-azure Not affected Fixed Fixed
linux-azure-4.15 Not in release Not affected Not in release
linux-azure-5.3 Not in release Fixed Not in release
linux-azure-edge Not in release Ignored Not in release
linux-gcp Not affected Fixed Fixed
linux-gcp-5.3 Not in release Fixed Not in release
linux-gcp-edge Not in release Ignored Not in release
linux-gke-4.15 Not in release Fixed Not in release
linux-gke-5.0 Not in release Fixed Not in release
linux-gke-5.3 Not in release Fixed Not in release
linux-hwe Not in release Fixed Fixed
linux-hwe-edge Not in release Ignored Ignored
linux-kvm Not affected Fixed Fixed
linux-lts-trusty Not in release Not in release Not in release
linux-lts-xenial Not in release Not in release Not in release
linux-oem Not in release Fixed Ignored
linux-oem-5.6 Not affected Not in release Not in release
linux-oem-osp1 Not in release Fixed Not in release
linux-oracle Not affected Fixed Fixed
linux-oracle-5.0 Not in release Fixed Not in release
linux-oracle-5.3 Not in release Fixed Not in release
linux-raspi Not affected Not in release Not in release
linux-raspi2 Ignored Fixed Fixed
linux-raspi2-5.3 Not in release Fixed Not in release
linux-riscv Not affected Not in release Not in release
linux-snapdragon Not in release Fixed Fixed
Show all 31 packages Show less packages

CVE-2019-20429

Low priority
Ignored

In the Lustre file system before 2.12.3, the ptlrpc module has an out-of-bounds read and panic (via a modified lm_bufcount field) due to the lack of validation for specific fields of packets sent by a client. This is caused by...

132 affected packages

linux, linux-allwinner, linux-allwinner-5.19, linux-aws, linux-aws-5.0...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
linux Not affected Not affected Not affected Ignored Ignored
linux-allwinner Not in release Not in release Not in release Not in release Not in release
linux-allwinner-5.19 Not in release Not affected Not in release Not in release Not in release
linux-aws Not affected Not affected Not affected Ignored Ignored
linux-aws-5.0 Not in release Not in release Not in release Ignored Not in release
linux-aws-5.11 Not in release Not in release Not affected Not in release Not in release
linux-aws-5.13 Not in release Not in release Not affected Not in release Not in release
linux-aws-5.15 Not in release Not in release Not affected Not in release Not in release
linux-aws-5.19 Not in release Not affected Not in release Not in release Not in release
linux-aws-5.3 Not in release Not in release Not in release Not affected Not in release
linux-aws-5.4 Not in release Not in release Not in release Not affected Not in release
linux-aws-5.8 Not in release Not in release Not affected Not in release Not in release
linux-aws-6.2 Not in release Not affected Not in release Not in release Not in release
linux-aws-6.5 Not in release Not affected Not in release Not in release Not in release
linux-aws-fips Not in release Not in release Not in release Not in release Not in release
linux-aws-hwe Not in release Not in release Not in release Not in release Ignored
linux-azure Not affected Not affected Not affected Not affected Ignored
linux-azure-4.15 Not in release Not in release Not in release Ignored Not in release
linux-azure-5.11 Not in release Not in release Not affected Not in release Not in release
linux-azure-5.13 Not in release Not in release Not affected Not in release Not in release
linux-azure-5.15 Not in release Not in release Not affected Not in release Not in release
linux-azure-5.19 Not in release Not affected Not in release Not in release Not in release
linux-azure-5.3 Not in release Not in release Not in release Not affected Not in release
linux-azure-5.4 Not in release Not in release Not in release Not affected Not in release
linux-azure-5.8 Not in release Not in release Not affected Not in release Not in release
linux-azure-6.2 Not in release Not affected Not in release Not in release Not in release
linux-azure-6.5 Not in release Not affected Not in release Not in release Not in release
linux-azure-edge Not in release Not in release Not in release Ignored Not in release
linux-azure-fde Not in release Not affected Not affected Not in release Not in release
linux-azure-fde-5.15 Not in release Not in release Not affected Not in release Not in release
linux-azure-fde-5.19 Not in release Not affected Not in release Not in release Not in release
linux-azure-fde-6.2 Not in release Not affected Not in release Not in release Not in release
linux-azure-fips Not in release Not in release Not in release Not in release Not in release
linux-bluefield Not in release Not in release Not affected Not in release Not in release
linux-dell300x Not in release Not in release Not in release Ignored Not in release
linux-fips Not in release Not in release Not in release Not in release Ignored
linux-gcp Not affected Not affected Not affected Not affected Ignored
linux-gcp-4.15 Not in release Not in release Not in release Ignored Not in release
linux-gcp-5.11 Not in release Not in release Not affected Not in release Not in release
linux-gcp-5.13 Not in release Not in release Not affected Not in release Not in release
linux-gcp-5.15 Not in release Not in release Not affected Not in release Not in release
linux-gcp-5.19 Not in release Not affected Not in release Not in release Not in release
linux-gcp-5.3 Not in release Not in release Not in release Not affected Not in release
linux-gcp-5.4 Not in release Not in release Not in release Not affected Not in release
linux-gcp-5.8 Not in release Not in release Not affected Not in release Not in release
linux-gcp-6.2 Not in release Not affected Not in release Not in release Not in release
linux-gcp-6.5 Not in release Not affected Not in release Not in release Not in release
linux-gcp-edge Not in release Not in release Not in release Ignored Not in release
linux-gcp-fips Not in release Not in release Not in release Not in release Not in release
linux-gke Not affected Not affected Not affected Not in release Ignored
linux-gke-4.15 Not in release Not in release Not in release Ignored Not in release
linux-gke-5.0 Not in release Not in release Not in release Not affected Not in release
linux-gke-5.15 Not in release Not in release Not affected Not in release Not in release
linux-gke-5.3 Not in release Not in release Not in release Not affected Not in release
linux-gke-5.4 Not in release Not in release Not in release Not affected Not in release
linux-gkeop Not in release Not affected Not affected Not in release Not in release
linux-gkeop-5.15 Not in release Not in release Not affected Not in release Not in release
linux-gkeop-5.4 Not in release Not in release Not in release Not affected Not in release
linux-hwe Not in release Not in release Not in release Not affected Ignored
linux-hwe-5.11 Not in release Not in release Not affected Not in release Not in release
linux-hwe-5.13 Not in release Not in release Not affected Not in release Not in release
linux-hwe-5.15 Not in release Not in release Not affected Not in release Not in release
linux-hwe-5.19 Not in release Not affected Not in release Not in release Not in release
linux-hwe-5.4 Not in release Not in release Not in release Not affected Not in release
linux-hwe-5.8 Not in release Not in release Not affected Not in release Not in release
linux-hwe-6.2 Not in release Not affected Not in release Not in release Not in release
linux-hwe-6.5 Not in release Not affected Not in release Not in release Not in release
linux-hwe-6.8 Not in release Not affected Not in release Not in release Not in release
linux-hwe-edge Not in release Not in release Not in release Ignored Ignored
linux-ibm Not affected Not affected Not affected Not in release Not in release
linux-ibm-5.15 Not in release Not in release Not affected Not in release Not in release
linux-ibm-5.4 Not in release Not in release Not in release Not affected Not in release
linux-intel Not affected Not in release Not in release Not in release Not in release
linux-intel-5.13 Not in release Not in release Not affected Not in release Not in release
linux-intel-iot-realtime Not in release Not in release Not in release Not in release Not in release
linux-intel-iotg Not in release Not affected Not in release Not in release Not in release
linux-intel-iotg-5.15 Not in release Not in release Not affected Not in release Not in release
linux-iot Not in release Not in release Not affected Not in release Not in release
linux-kvm Not in release Not affected Not affected Ignored Ignored
linux-laptop Not in release Not in release Not in release Not in release Not in release
linux-lowlatency Not affected Not affected Not in release Not in release Not in release
linux-lowlatency-hwe-5.15 Not in release Not in release Not affected Not in release Not in release
linux-lowlatency-hwe-5.19 Not in release Not affected Not in release Not in release Not in release
linux-lowlatency-hwe-6.2 Not in release Not affected Not in release Not in release Not in release
linux-lowlatency-hwe-6.5 Not in release Not affected Not in release Not in release Not in release
linux-lowlatency-hwe-6.8 Not in release Not affected Not in release Not in release Not in release
linux-lts-trusty Not in release Not in release Not in release Not in release Not in release
linux-lts-xenial Not in release Not in release Not in release Not in release Not in release
linux-nvidia Not affected Not affected Not in release Not in release Not in release
linux-nvidia-6.2 Not in release Not affected Not in release Not in release Not in release
linux-nvidia-6.5 Not in release Not affected Not in release Not in release Not in release
linux-nvidia-6.8 Not in release Not affected Not in release Not in release Not in release
linux-nvidia-lowlatency Not affected Not in release Not in release Not in release Not in release
linux-oem Not in release Not in release Not in release Ignored Ignored
linux-oem-5.10 Not in release Not in release Not affected Not in release Not in release
linux-oem-5.13 Not in release Not in release Not affected Not in release Not in release
linux-oem-5.14 Not in release Not in release Not affected Not in release Not in release
linux-oem-5.17 Not in release Not affected Not in release Not in release Not in release
linux-oem-5.6 Not in release Not in release Not affected Not in release Not in release
linux-oem-6.0 Not in release Not affected Not in release Not in release Not in release
linux-oem-6.1 Not in release Not affected Not in release Not in release Not in release
linux-oem-6.5 Not in release Not affected Not in release Not in release Not in release
linux-oem-6.8 Not affected Not in release Not in release Not in release Not in release
linux-oem-osp1 Not in release Not in release Not in release Not affected Not in release
linux-oracle Not affected Not affected Not affected Ignored Ignored
linux-oracle-5.0 Not in release Not in release Not in release Not affected Not in release
linux-oracle-5.11 Not in release Not in release Not affected Not in release Not in release
linux-oracle-5.13 Not in release Not in release Not affected Not in release Not in release
linux-oracle-5.15 Not in release Not in release Not affected Not in release Not in release
linux-oracle-5.3 Not in release Not in release Not in release Not affected Not in release
linux-oracle-5.4 Not in release Not in release Not in release Not affected Not in release
linux-oracle-5.8 Not in release Not in release Not affected Not in release Not in release
linux-oracle-6.5 Not in release Not affected Not in release Not in release Not in release
linux-raspi Not affected Not affected Not affected Not in release Not in release
linux-raspi-5.4 Not in release Not in release Not in release Not affected Not in release
linux-raspi-realtime Not in release Not in release Not in release Not in release Not in release
linux-raspi2 Not in release Not in release Not affected Ignored Ignored
linux-raspi2-5.3 Not in release Not in release Not in release Not affected Not in release
linux-realtime Not in release Ignored Not in release Not in release Not in release
linux-riscv Not affected Not affected Not affected Not in release Not in release
linux-riscv-5.11 Not in release Not in release Not affected Not in release Not in release
linux-riscv-5.15 Not in release Not in release Not affected Not in release Not in release
linux-riscv-5.19 Not in release Not affected Not in release Not in release Not in release
linux-riscv-5.8 Not in release Not in release Not affected Not in release Not in release
linux-riscv-6.5 Not in release Not affected Not in release Not in release Not in release
linux-riscv-6.8 Not in release Not affected Not in release Not in release Not in release
linux-snapdragon Not in release Not in release Not in release Ignored Ignored
linux-starfive Not in release Not in release Not in release Not in release Not in release
linux-starfive-5.19 Not in release Not affected Not in release Not in release Not in release
linux-starfive-6.2 Not in release Not affected Not in release Not in release Not in release
linux-starfive-6.5 Not in release Not affected Not in release Not in release Not in release
linux-xilinx-zynqmp Not in release Not affected Not affected Not in release Not in release
Show all 132 packages Show less packages

CVE-2019-20427

Low priority
Ignored

In the Lustre file system before 2.12.3, the ptlrpc module has a buffer overflow and panic, and possibly remote code execution, due to the lack of validation for specific fields of packets sent by a client. Interaction between...

26 affected packages

linux, linux-aws, linux-aws-5.0, linux-aws-hwe, linux-azure...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
linux Not affected Not affected
linux-aws Not affected Not affected
linux-aws-5.0 Not affected Not in release
linux-aws-hwe Not in release Not affected
linux-azure Not affected Not affected
linux-azure-5.3 Not affected Not in release
linux-azure-edge Ignored Ignored
linux-gcp Not affected Not affected
linux-gcp-5.3 Not affected Not in release
linux-gcp-edge Ignored Not in release
linux-gke-4.15 Not affected Not in release
linux-gke-5.0 Not affected Not in release
linux-gke-5.3 Not affected Not in release
linux-hwe Not affected Not affected
linux-hwe-edge Ignored Ignored
linux-kvm Not affected Not affected
linux-lts-trusty Not in release Not in release
linux-lts-xenial Not in release Not in release
linux-oem Not affected Ignored
linux-oem-5.4 Not in release Not in release
linux-oem-osp1 Not affected Not in release
linux-oracle Not affected Not affected
linux-oracle-5.0 Not affected Not in release
linux-raspi2 Not affected Not affected
linux-raspi2-5.3 Not affected Not in release
linux-snapdragon Not affected Not affected
Show all 26 packages Show less packages

CVE-2019-20426

Low priority
Ignored

In the Lustre file system before 2.12.3, the ptlrpc module has an out-of-bounds access and panic due to the lack of validation for specific fields of packets sent by a client. In the function ldlm_cancel_hpreq_check, there is no...

26 affected packages

linux, linux-aws, linux-aws-5.0, linux-aws-hwe, linux-azure...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
linux Not affected Not affected
linux-aws Not affected Not affected
linux-aws-5.0 Not affected Not in release
linux-aws-hwe Not in release Not affected
linux-azure Not affected Not affected
linux-azure-5.3 Not affected Not in release
linux-azure-edge Ignored Ignored
linux-gcp Not affected Not affected
linux-gcp-5.3 Not affected Not in release
linux-gcp-edge Ignored Not in release
linux-gke-4.15 Not affected Not in release
linux-gke-5.0 Not affected Not in release
linux-gke-5.3 Not affected Not in release
linux-hwe Not affected Not affected
linux-hwe-edge Ignored Ignored
linux-kvm Not affected Not affected
linux-lts-trusty Not in release Not in release
linux-lts-xenial Not in release Not in release
linux-oem Not affected Ignored
linux-oem-5.4 Not in release Not in release
linux-oem-osp1 Not affected Not in release
linux-oracle Not affected Not affected
linux-oracle-5.0 Not affected Not in release
linux-raspi2 Not affected Not affected
linux-raspi2-5.3 Not affected Not in release
linux-snapdragon Not affected Not affected
Show all 26 packages Show less packages