First published: Wed Sep 29 2021(Updated: )
It was discovered that the KVM hypervisor implementation in the Linux kernel did not properly perform reference counting in some situations, leading to a use-after-free vulnerability. An attacker who could start and control a VM could possibly use this to expose sensitive information or execute arbitrary code. (CVE-2021-22543) It was discovered that the tracing subsystem in the Linux kernel did not properly keep track of per-cpu ring buffer state. A privileged attacker could use this to cause a denial of service. (CVE-2021-3679) Alois Wohlschlager discovered that the overlay file system in the Linux kernel did not restrict private clones in some situations. An attacker could use this to expose sensitive information. (CVE-2021-3732) Alexey Kardashevskiy discovered that the KVM implementation for PowerPC systems in the Linux kernel did not properly validate RTAS arguments in some situations. An attacker in a guest vm could use this to cause a denial of service (host OS crash) or possibly execute arbitrary code. (CVE-2021-37576) It was discovered that the MAX-3421 host USB device driver in the Linux kernel did not properly handle device removal events. A physically proximate attacker could use this to cause a denial of service (system crash). (CVE-2021-38204) It was discovered that the Xilinx 10/100 Ethernet Lite device driver in the Linux kernel could report pointer addresses in some situations. An attacker could use this information to ease the exploitation of another vulnerability. (CVE-2021-38205)
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/linux-image-4.15.0-1028-dell300x | <4.15.0-1028.33 | 4.15.0-1028.33 |
=18.04 | ||
All of | ||
ubuntu/linux-image-4.15.0-1081-oracle | <4.15.0-1081.89 | 4.15.0-1081.89 |
=18.04 | ||
All of | ||
ubuntu/linux-image-4.15.0-1100-kvm | <4.15.0-1100.102 | 4.15.0-1100.102 |
=18.04 | ||
All of | ||
ubuntu/linux-image-4.15.0-1109-gcp | <4.15.0-1109.123 | 4.15.0-1109.123 |
=18.04 | ||
All of | ||
ubuntu/linux-image-4.15.0-1112-aws | <4.15.0-1112.119 | 4.15.0-1112.119 |
=18.04 | ||
All of | ||
ubuntu/linux-image-4.15.0-1113-snapdragon | <4.15.0-1113.122 | 4.15.0-1113.122 |
=18.04 | ||
All of | ||
ubuntu/linux-image-4.15.0-1124-azure | <4.15.0-1124.137 | 4.15.0-1124.137 |
=18.04 | ||
All of | ||
ubuntu/linux-image-4.15.0-159-generic | <4.15.0-159.167 | 4.15.0-159.167 |
=18.04 | ||
All of | ||
ubuntu/linux-image-4.15.0-159-generic-lpae | <4.15.0-159.167 | 4.15.0-159.167 |
=18.04 | ||
All of | ||
ubuntu/linux-image-4.15.0-159-lowlatency | <4.15.0-159.167 | 4.15.0-159.167 |
=18.04 | ||
All of | ||
ubuntu/linux-image-aws-lts-18.04 | <4.15.0.1112.115 | 4.15.0.1112.115 |
=18.04 | ||
All of | ||
ubuntu/linux-image-azure-lts-18.04 | <4.15.0.1124.97 | 4.15.0.1124.97 |
=18.04 | ||
All of | ||
ubuntu/linux-image-dell300x | <4.15.0.1028.30 | 4.15.0.1028.30 |
=18.04 | ||
All of | ||
ubuntu/linux-image-gcp-lts-18.04 | <4.15.0.1109.128 | 4.15.0.1109.128 |
=18.04 | ||
All of | ||
ubuntu/linux-image-generic | <4.15.0.159.148 | 4.15.0.159.148 |
=18.04 | ||
All of | ||
ubuntu/linux-image-generic-lpae | <4.15.0.159.148 | 4.15.0.159.148 |
=18.04 | ||
All of | ||
ubuntu/linux-image-kvm | <4.15.0.1100.96 | 4.15.0.1100.96 |
=18.04 | ||
All of | ||
ubuntu/linux-image-lowlatency | <4.15.0.159.148 | 4.15.0.159.148 |
=18.04 | ||
All of | ||
ubuntu/linux-image-oracle-lts-18.04 | <4.15.0.1081.91 | 4.15.0.1081.91 |
=18.04 | ||
All of | ||
ubuntu/linux-image-snapdragon | <4.15.0.1113.116 | 4.15.0.1113.116 |
=18.04 | ||
All of | ||
ubuntu/linux-image-virtual | <4.15.0.159.148 | 4.15.0.159.148 |
=18.04 | ||
All of | ||
ubuntu/linux-image-4.15.0-1081-oracle | <4.15.0-1081.89~16.04.1 | 4.15.0-1081.89~16.04.1 |
=16.04 | ||
All of | ||
ubuntu/linux-image-4.15.0-1109-gcp | <4.15.0-1109.123~16.04.1 | 4.15.0-1109.123~16.04.1 |
=16.04 | ||
All of | ||
ubuntu/linux-image-4.15.0-1112-aws | <4.15.0-1112.119~16.04.1 | 4.15.0-1112.119~16.04.1 |
=16.04 | ||
All of | ||
ubuntu/linux-image-4.15.0-1124-azure | <4.15.0-1124.137~16.04.1 | 4.15.0-1124.137~16.04.1 |
=16.04 | ||
All of | ||
ubuntu/linux-image-4.15.0-159-generic | <4.15.0-159.167~16.04.1 | 4.15.0-159.167~16.04.1 |
=16.04 | ||
All of | ||
ubuntu/linux-image-4.15.0-159-lowlatency | <4.15.0-159.167~16.04.1 | 4.15.0-159.167~16.04.1 |
=16.04 | ||
All of | ||
ubuntu/linux-image-aws-hwe | <4.15.0.1112.103 | 4.15.0.1112.103 |
=16.04 | ||
All of | ||
ubuntu/linux-image-azure | <4.15.0.1124.115 | 4.15.0.1124.115 |
=16.04 | ||
All of | ||
ubuntu/linux-image-gcp | <4.15.0.1109.110 | 4.15.0.1109.110 |
=16.04 | ||
All of | ||
ubuntu/linux-image-generic-hwe-16.04 | <4.15.0.159.152 | 4.15.0.159.152 |
=16.04 | ||
All of | ||
ubuntu/linux-image-gke | <4.15.0.1109.110 | 4.15.0.1109.110 |
=16.04 | ||
All of | ||
ubuntu/linux-image-lowlatency-hwe-16.04 | <4.15.0.159.152 | 4.15.0.159.152 |
=16.04 | ||
All of | ||
ubuntu/linux-image-oem | <4.15.0.159.152 | 4.15.0.159.152 |
=16.04 | ||
All of | ||
ubuntu/linux-image-oracle | <4.15.0.1081.69 | 4.15.0.1081.69 |
=16.04 | ||
All of | ||
ubuntu/linux-image-virtual-hwe-16.04 | <4.15.0.159.152 | 4.15.0.159.152 |
=16.04 | ||
All of | ||
ubuntu/linux-image-4.15.0-1124-azure | <4.15.0-1124.137~14.04.1 | 4.15.0-1124.137~14.04.1 |
=14.04 | ||
All of | ||
ubuntu/linux-image-azure | <4.15.0.1124.97 | 4.15.0.1124.97 |
=14.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Contains the following vulnerabilities)