USN-6605-1: Linux kernel vulnerabilities
Lin Ma discovered that the netfilter subsystem in the Linux kernel did not properly validate network family support while creating a new netfilter table. A local attacker could use this to cause a denial of service or possibly execute arbitrary code. (CVE-2023-6040) It was discovered that the CIFS network file system implementation in the Linux kernel did not properly validate the server frame size in certain situation, leading to an out-of-bounds read vulnerability. An attacker could use this to construct a malicious CIFS image that, when operated on, could cause a denial of service (system crash) or possibly expose sensitive information. (CVE-2023-6606) Budimir Markovic, Lucas De Marchi, and Pengfei Xu discovered that the perf subsystem in the Linux kernel did not properly validate all event sizes when attaching new events, leading to an out-of-bounds write vulnerability. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2023-6931) It was discovered that the IGMP protocol implementation in the Linux kernel contained a race condition, leading to a use-after-free vulnerability. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2023-6932)
Affected Software
Event History
Child vulnerabilities
Contains the following vulnerabilities.
Frequently Asked Questions
What is the severity of USN-6605-1?
USN-6605-1 is classified as a critical vulnerability due to its potential for denial of service and arbitrary code execution.
How do I fix USN-6605-1?
To fix USN-6605-1, upgrade your kernel to the recommended version provided by Ubuntu.
Which systems are affected by USN-6605-1?
USN-6605-1 affects Ubuntu 20.04 systems running specific kernel versions detailed in the advisory.
What specific attack vectors are associated with USN-6605-1?
The vulnerability in USN-6605-1 allows local attackers to exploit netfilter table creation issues.
Can USN-6605-1 be exploited remotely?
No, USN-6605-1 requires local access for exploitation, making remote attacks unlikely.