Description
[tr3e wang discovered that an OOB write existed in the eBPF subsystem in
the Linux kernel on BPF_RINGBUF.]
Ubuntu-Description
It was discovered that the eBPF implementation in the Linux kernel did not
properly validate the memory size of certain ring buffer operation
arguments. A local attacker could use this to cause a denial of service
(system crash) or possibly execute arbitrary code.
Mitigation
Disable unprivileged ebpf with:
sudo sysctl kernel.unprivileged_bpf_disabled=1
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | ignored
(superseded by linux-aws-5.3)
|
Ubuntu 20.04 LTS: | DNE
|
Ubuntu 21.10: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | DNE
|
Ubuntu 20.04 LTS: | released
(5.11.0-1025.27~20.04.1)
|
Ubuntu 21.10: | DNE
|
Ubuntu 16.04 ESM: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | DNE
|
Ubuntu 20.04 LTS: | released
(5.13.0-1011.12~20.04.1)
|
Ubuntu 21.10: | DNE
|
Ubuntu 16.04 ESM: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | ignored
(superseded by linux-aws-5.4)
|
Ubuntu 20.04 LTS: | DNE
|
Ubuntu 21.10: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | not-affected
(5.4.0-1018.18~18.04.1)
|
Ubuntu 20.04 LTS: | DNE
|
Ubuntu 21.10: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | DNE
|
Ubuntu 20.04 LTS: | ignored
(was needs-triage now end-of-life)
|
Ubuntu 21.10: | DNE
|
Ubuntu 16.04 ESM: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | DNE
|
Ubuntu 20.04 LTS: | DNE
|
Ubuntu 21.10: | DNE
|
Ubuntu 16.04 ESM: | not-affected
(4.15.0-1030.31~16.04.1)
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | ignored
(superseded by linux-azure-5.3)
|
Ubuntu 20.04 LTS: | not-affected
(5.4.0-1006.6)
|
Ubuntu 21.10: | released
(5.13.0-1010.11)
|
Ubuntu 16.04 ESM: | not-affected
(4.11.0-1009.9)
|
Ubuntu 22.04 LTS: | not-affected
(5.15.0-1001.2)
|
Ubuntu 14.04 ESM: | not-affected
(4.15.0-1023.24~14.04.1)
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | not-affected
(4.15.0-1082.92)
|
Ubuntu 20.04 LTS: | DNE
|
Ubuntu 21.10: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | DNE
|
Ubuntu 20.04 LTS: | released
(5.11.0-1025.27~20.04.1)
|
Ubuntu 21.10: | DNE
|
Ubuntu 16.04 ESM: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | DNE
|
Ubuntu 20.04 LTS: | released
(5.13.0-1012.14~20.04.1)
|
Ubuntu 21.10: | DNE
|
Ubuntu 16.04 ESM: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | ignored
(superseded by linux-azure-5.4)
|
Ubuntu 20.04 LTS: | DNE
|
Ubuntu 21.10: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | not-affected
(5.4.0-1020.20~18.04.1)
|
Ubuntu 20.04 LTS: | DNE
|
Ubuntu 21.10: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | DNE
|
Ubuntu 20.04 LTS: | ignored
(was needs-triage now end-of-life)
|
Ubuntu 21.10: | DNE
|
Ubuntu 16.04 ESM: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | ignored
(superseded by linux-azure-5.3)
|
Ubuntu 20.04 LTS: | DNE
|
Ubuntu 21.10: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | DNE
|
Ubuntu 20.04 LTS: | not-affected
(5.4.0-1063.66+cvm2.2)
|
Ubuntu 21.10: | DNE
|
Ubuntu 16.04 ESM: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | DNE
|
Ubuntu 20.04 LTS: | not-affected
(5.4.0-1007.10)
|
Ubuntu 21.10: | DNE
|
Ubuntu 16.04 ESM: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | not-affected
(4.15.0-1005.8)
|
Ubuntu 20.04 LTS: | DNE
|
Ubuntu 21.10: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | DNE
|
Ubuntu 16.04 FIPS Compliant: | needs-triage
|
Ubuntu 20.04 LTS: | DNE
|
Ubuntu 16.04 FIPS Certified: | needs-triage
|
Ubuntu 21.10: | DNE
|
Ubuntu 16.04 ESM: | not-affected
(4.4.0-1074.80)
|
Ubuntu 18.04 FIPS Certified: | needs-triage
|
Ubuntu 20.04 FIPS Certified: | needs-triage
|
Ubuntu 18.04 FIPS Compliant: | needs-triage
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Ubuntu 20.04 FIPS Compliant: | needs-triage
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | not-affected
(4.15.0-1071.81)
|
Ubuntu 20.04 LTS: | DNE
|
Ubuntu 21.10: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | DNE
|
Ubuntu 20.04 LTS: | released
(5.11.0-1026.29~20.04.1)
|
Ubuntu 21.10: | DNE
|
Ubuntu 16.04 ESM: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | DNE
|
Ubuntu 20.04 LTS: | released
(5.13.0-1012.15~20.04.1)
|
Ubuntu 21.10: | DNE
|
Ubuntu 16.04 ESM: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | ignored
(superseded by linux-gcp-5.4)
|
Ubuntu 20.04 LTS: | DNE
|
Ubuntu 21.10: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | not-affected
(5.4.0-1019.19~18.04.2)
|
Ubuntu 20.04 LTS: | DNE
|
Ubuntu 21.10: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | DNE
|
Ubuntu 20.04 LTS: | ignored
(was needs-triage now end-of-life)
|
Ubuntu 21.10: | DNE
|
Ubuntu 16.04 ESM: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | DNE
|
Ubuntu 20.04 LTS: | not-affected
(5.4.0-1033.35)
|
Ubuntu 21.10: | DNE
|
Ubuntu 22.04 LTS: | not-affected
(5.15.0-1002.2)
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | ignored
(was needs-triage now end-of-life)
|
Ubuntu 20.04 LTS: | DNE
|
Ubuntu 21.10: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | ignored
(was needs-triage now end-of-life)
|
Ubuntu 20.04 LTS: | DNE
|
Ubuntu 21.10: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | ignored
(was needs-triage now end-of-life)
|
Ubuntu 20.04 LTS: | DNE
|
Ubuntu 21.10: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | not-affected
(5.4.0-1025.25~18.04.1)
|
Ubuntu 20.04 LTS: | DNE
|
Ubuntu 21.10: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | DNE
|
Ubuntu 20.04 LTS: | not-affected
(5.4.0-1008.9)
|
Ubuntu 21.10: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | not-affected
(5.4.0-1001.1)
|
Ubuntu 20.04 LTS: | DNE
|
Ubuntu 21.10: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | ignored
(replaced by linux-hwe-5.4)
|
Ubuntu 20.04 LTS: | DNE
|
Ubuntu 21.10: | DNE
|
Ubuntu 16.04 ESM: | not-affected
(4.8.0-39.42~16.04.1)
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | DNE
|
Ubuntu 20.04 LTS: | released
(5.11.0-46.51~20.04.1)
|
Ubuntu 21.10: | DNE
|
Ubuntu 16.04 ESM: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | DNE
|
Ubuntu 20.04 LTS: | released
(5.13.0-25.26~20.04.1)
|
Ubuntu 21.10: | DNE
|
Ubuntu 16.04 ESM: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | not-affected
(5.4.0-37.41~18.04.1)
|
Ubuntu 20.04 LTS: | DNE
|
Ubuntu 21.10: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | DNE
|
Ubuntu 20.04 LTS: | ignored
(was needs-triage now end-of-life)
|
Ubuntu 21.10: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | ignored
(superseded by linux-hwe-5.4)
|
Ubuntu 20.04 LTS: | DNE
|
Ubuntu 21.10: | DNE
|
Ubuntu 16.04 ESM: | ignored
(superseded by linux-hwe)
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | DNE
|
Ubuntu 20.04 LTS: | not-affected
(5.4.0-1003.4)
|
Ubuntu 21.10: | DNE
|
Ubuntu 16.04 ESM: | DNE
|
Ubuntu 22.04 LTS: | not-affected
(5.15.0-1002.2)
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | not-affected
(5.4.0-1010.11~18.04.2)
|
Ubuntu 20.04 LTS: | DNE
|
Ubuntu 21.10: | DNE
|
Ubuntu 16.04 ESM: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | DNE
|
Ubuntu 20.04 LTS: | ignored
(was needs-triage now end-of-life)
|
Ubuntu 21.10: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needs-triage
|
Ubuntu 18.04 LTS: | DNE
|
Ubuntu 20.04 LTS: | DNE
|
Ubuntu 21.10: | DNE
|
Ubuntu 16.04 ESM: | DNE
|
Ubuntu 22.04 LTS: | not-affected
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needs-triage
|
Ubuntu 18.04 LTS: | DNE
|
Ubuntu 20.04 LTS: | not-affected
|
Ubuntu 21.10: | DNE
|
Ubuntu 16.04 ESM: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | DNE
|
Ubuntu 20.04 LTS: | DNE
|
Ubuntu 21.10: | DNE
|
Ubuntu 16.04 ESM: | DNE
|
Ubuntu 22.04 LTS: | not-affected
(5.15.0-22.22)
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | DNE
|
Ubuntu 20.04 LTS: | DNE
|
Ubuntu 21.10: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | not-affected
(4.4.0-13.29~14.04.1)
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | ignored
(was needs-triage now end-of-life)
|
Ubuntu 20.04 LTS: | DNE
|
Ubuntu 21.10: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | DNE
|
Ubuntu 20.04 LTS: | released
(5.10.0-1055.58)
|
Ubuntu 21.10: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | DNE
|
Ubuntu 20.04 LTS: | released
(5.13.0-1026.32)
|
Ubuntu 21.10: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | DNE
|
Ubuntu 20.04 LTS: | released
(5.14.0-1018.19)
|
Ubuntu 21.10: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | DNE
|
Ubuntu 20.04 LTS: | DNE
|
Ubuntu 21.10: | DNE
|
Ubuntu 16.04 ESM: | DNE
|
Ubuntu 22.04 LTS: | not-affected
(5.17.0-1003.3)
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | DNE
|
Ubuntu 20.04 LTS: | ignored
(was needs-triage now end-of-life)
|
Ubuntu 21.10: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | ignored
(was needs-triage now end-of-life)
|
Ubuntu 20.04 LTS: | DNE
|
Ubuntu 21.10: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | ignored
(superseded by linux-oracle-5.3)
|
Ubuntu 20.04 LTS: | DNE
|
Ubuntu 21.10: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | DNE
|
Ubuntu 20.04 LTS: | released
(5.11.0-1025.27~20.04.1)
|
Ubuntu 21.10: | DNE
|
Ubuntu 16.04 ESM: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | DNE
|
Ubuntu 20.04 LTS: | released
(5.13.0-1015.19~20.04.1)
|
Ubuntu 21.10: | DNE
|
Ubuntu 16.04 ESM: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | ignored
(superseded by linux-oracle-5.4)
|
Ubuntu 20.04 LTS: | DNE
|
Ubuntu 21.10: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | not-affected
(5.4.0-1019.19~18.04.1)
|
Ubuntu 20.04 LTS: | DNE
|
Ubuntu 21.10: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | DNE
|
Ubuntu 20.04 LTS: | ignored
(was needs-triage now end-of-life)
|
Ubuntu 21.10: | DNE
|
Ubuntu 16.04 ESM: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | not-affected
(5.4.0-1013.13~18.04.1)
|
Ubuntu 20.04 LTS: | DNE
|
Ubuntu 21.10: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | not-affected
(4.13.0-1005.5)
|
Ubuntu 20.04 LTS: | ignored
(replaced by linux-raspi)
|
Ubuntu 21.10: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | ignored
(was needs-triage now end-of-life)
|
Ubuntu 20.04 LTS: | DNE
|
Ubuntu 21.10: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | DNE
|
Ubuntu 20.04 LTS: | released
(5.11.0-1026.28~20.04.1)
|
Ubuntu 21.10: | DNE
|
Ubuntu 16.04 ESM: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | DNE
|
Ubuntu 20.04 LTS: | ignored
(was needs-triage now end-of-life)
|
Ubuntu 21.10: | DNE
|
Ubuntu 16.04 ESM: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Package
Upstream: | needed
|
Ubuntu 18.04 LTS: | not-affected
(4.4.0-1077.82)
|
Ubuntu 20.04 LTS: | DNE
|
Ubuntu 21.10: | DNE
|
Ubuntu 22.04 LTS: | DNE
|
Ubuntu 14.04 ESM: | DNE
|
Patches:
Updated: 2022-06-07 04:18:01 UTC (commit 9d84536e7e8b5e2093ce8097d67faec7c99e03d7)