{"cves":[{"id":"CVE-2018-19396","published":"2018-11-20T21:29:00","updated_at":"2025-08-25T22:51:39.300474+00:00","description":"\next/standard/var_unserializer.c in PHP 5.x through 7.1.24 allows attackers\nto cause a denial of service (application crash) via an unserialize call\nfor the com, dotnet, or variant class.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"this is a vulnerability in a windows-specific extension"}],"codename":null,"priority":"medium","cvss3":7.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":7.5,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2018-19396"],"bugs":["https://bugs.php.net/bug.php?id=77177"],"patches":{"php5":[],"php7.0":[],"php7.2":[]},"tags":{},"packages":[{"name":"php5","source":"https://ubuntu.com/security/cve?package=php5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=php5","debian":"https://tracker.debian.org/pkg/php5","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"windows-only","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"php7.0","source":"https://ubuntu.com/security/cve?package=php7.0","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=php7.0","debian":"https://tracker.debian.org/pkg/php7.0","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"windows-only","component":null,"pocket":"security"}]},{"name":"php7.2","source":"https://ubuntu.com/security/cve?package=php7.2","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=php7.2","debian":"https://tracker.debian.org/pkg/php7.2","statuses":[{"release_codename":"bionic","status":"not-affected","description":"windows-only","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"windows-only","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2018-19395","published":"2018-11-20T21:29:00","updated_at":"2025-08-25T22:51:39.300474+00:00","description":"\next/standard/var.c in PHP 5.x through 7.1.24 on Windows allows attackers to\ncause a denial of service (NULL pointer dereference and application crash)\nbecause com and com_safearray_proxy return NULL in com_properties_get in\next/com_dotnet/com_handlers.c, as demonstrated by a serialize call on\nCOM(\"WScript.Shell\").","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"this is a vulnerability in a windows-specific extension"}],"codename":null,"priority":"medium","cvss3":7.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":7.5,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2018-19395"],"bugs":["https://bugs.php.net/bug.php?id=77177"],"patches":{"php5":[],"php7.0":[],"php7.2":[]},"tags":{},"packages":[{"name":"php5","source":"https://ubuntu.com/security/cve?package=php5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=php5","debian":"https://tracker.debian.org/pkg/php5","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"windows-only","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"php7.0","source":"https://ubuntu.com/security/cve?package=php7.0","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=php7.0","debian":"https://tracker.debian.org/pkg/php7.0","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"windows-only","component":null,"pocket":"security"}]},{"name":"php7.2","source":"https://ubuntu.com/security/cve?package=php7.2","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=php7.2","debian":"https://tracker.debian.org/pkg/php7.2","statuses":[{"release_codename":"bionic","status":"not-affected","description":"windows-only","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"windows-only","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2018-19387","published":"2018-11-20T21:29:00","updated_at":"2025-08-04T19:27:40.307348+00:00","description":"\nRejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none.\nReason: This candidate was withdrawn by its CNA. Further investigation\nshowed that it was not a security issue. Notes: none","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://github.com/openbsd/src/commit/b32e1d34e10a0da806823f57f02a4ae6e93d756e","https://github.com/tmux/tmux/issues/1547","https://www.cve.org/CVERecord?id=CVE-2018-19387"],"bugs":[""],"patches":{"tmux":[]},"tags":{},"packages":[{"name":"tmux","source":"https://ubuntu.com/security/cve?package=tmux","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=tmux","debian":"https://tracker.debian.org/pkg/tmux","statuses":[{"release_codename":"bionic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2018-18440","published":"2018-11-20T19:29:00","updated_at":"2025-08-26T12:06:22.367266+00:00","description":"\nDENX U-Boot through 2018.09-rc1 has a locally exploitable buffer overflow\nvia a crafted kernel image because filesystem loading is mishandled.","ubuntu_description":"","notes":[],"codename":null,"priority":"negligible","cvss3":7.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":7.8,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://www.openwall.com/lists/oss-security/2018/11/02/2","https://www.cve.org/CVERecord?id=CVE-2018-18440"],"bugs":[""],"patches":{"u-boot":["upstream: https://github.com/u-boot/u-boot/commit/5b978dab7b8b534e9bf50b97a875dbc9c15cfb54","upstream: https://github.com/u-boot/u-boot/commit/aa3c609e2be5a837e7b81e308d47f55b67666bd6","upstream: https://github.com/u-boot/u-boot/commit/d67f33cf4ee72fd9bc64d68cb51a77798b65cf3a","upstream: https://github.com/u-boot/u-boot/commit/0f7c51a676ca73f7950a7e4f9d8454e57324270c","upstream: https://github.com/u-boot/u-boot/commit/4cc8af8037ebabd674d0a6bed202b0c711dc7699","upstream: https://github.com/u-boot/u-boot/commit/aa3c609e2be5a837e7b81e308d47f55b67666bd6"]},"tags":{},"packages":[{"name":"u-boot","source":"https://ubuntu.com/security/cve?package=u-boot","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=u-boot","debian":"https://tracker.debian.org/pkg/u-boot","statuses":[{"release_codename":"bionic","status":"not-affected","description":"2019.07+dfsg-1ubuntu4~18.04.1","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"2019.07+dfsg-1ubuntu6","component":null,"pocket":"security"},{"release_codename":"disco","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"eoan","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"xenial","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"2020.04+dfsg-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"groovy","status":"not-affected","description":"2020.04+dfsg-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"not-affected","description":"2020.04+dfsg-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"impish","status":"not-affected","description":"2020.04+dfsg-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"not-affected","description":"2020.04+dfsg-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"lunar","status":"not-affected","description":"2020.04+dfsg-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2019.04","component":null,"pocket":"security"},{"release_codename":"mantic","status":"not-affected","description":"2020.04+dfsg-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"2020.04+dfsg-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"2020.04+dfsg-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"resolute","status":"not-affected","description":"2020.04+dfsg-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needed","component":null,"pocket":"security"},{"release_codename":"plucky","status":"not-affected","description":"2020.04+dfsg-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"questing","status":"not-affected","description":"2020.04+dfsg-2ubuntu1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2018-18439","published":"2018-11-20T19:29:00","updated_at":"2025-08-26T12:06:22.367266+00:00","description":"\nDENX U-Boot through 2018.09-rc1 has a remotely exploitable buffer overflow\nvia a malicious TFTP server because TFTP traffic is mishandled. Also, local\nexploitation can occur via a crafted kernel image.","ubuntu_description":"","notes":[],"codename":null,"priority":"negligible","cvss3":9.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":9.8,"baseSeverity":"CRITICAL"}}},"status":"active","mitigation":"","references":["https://www.openwall.com/lists/oss-security/2018/11/02/2","https://www.cve.org/CVERecord?id=CVE-2018-18439"],"bugs":[""],"patches":{"u-boot":[]},"tags":{},"packages":[{"name":"u-boot","source":"https://ubuntu.com/security/cve?package=u-boot","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=u-boot","debian":"https://tracker.debian.org/pkg/u-boot","statuses":[{"release_codename":"bionic","status":"not-affected","description":"2019.07+dfsg-1ubuntu4~18.04.1","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"2019.07+dfsg-1ubuntu6","component":null,"pocket":"security"},{"release_codename":"groovy","status":"not-affected","description":"2020.04+dfsg-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2019.04","component":null,"pocket":"security"},{"release_codename":"xenial","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"2020.04+dfsg-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"disco","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"eoan","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"not-affected","description":"2020.04+dfsg-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"impish","status":"not-affected","description":"2020.04+dfsg-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"not-affected","description":"2020.04+dfsg-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"lunar","status":"not-affected","description":"2020.04+dfsg-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"mantic","status":"not-affected","description":"2020.04+dfsg-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"2020.04+dfsg-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"2020.04+dfsg-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needed","component":null,"pocket":"security"},{"release_codename":"plucky","status":"not-affected","description":"2020.04+dfsg-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"resolute","status":"not-affected","description":"2020.04+dfsg-2ubuntu1","component":null,"pocket":"security"},{"release_codename":"questing","status":"not-affected","description":"2020.04+dfsg-2ubuntu1","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2018-19407","published":"2018-11-20T00:00:00","updated_at":"2026-07-04T07:47:12.674104+00:00","description":"\nThe vcpu_scan_ioapic function in arch/x86/kvm/x86.c in the Linux kernel\nthrough 4.19.2 allows local users to cause a denial of service (NULL\npointer dereference and BUG) via crafted system calls that reach a\nsituation where ioapic is uninitialized.","ubuntu_description":"\nWei Wu discovered that the KVM implementation in the Linux kernel did not\nproperly ensure that ioapics were initialized. A local attacker could use\nthis to cause a denial of service (system crash).","notes":[],"codename":null,"priority":"medium","cvss3":5.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":5.5,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://lore.kernel.org/lkml/1542702858-4318-1-git-send-email-wanpengli@tencent.com/","https://ubuntu.com/security/notices/USN-3871-1","https://ubuntu.com/security/notices/USN-3872-1","https://ubuntu.com/security/notices/USN-3871-3","https://ubuntu.com/security/notices/USN-3871-4","https://ubuntu.com/security/notices/USN-3878-1","https://ubuntu.com/security/notices/USN-3879-1","https://ubuntu.com/security/notices/USN-3879-2","https://ubuntu.com/security/notices/USN-3871-5","https://ubuntu.com/security/notices/USN-3878-2","https://www.cve.org/CVERecord?id=CVE-2018-19407"],"bugs":[""],"patches":{"linux":["break-fix: 5c919412fe61c35947816fdbd5f7bd09fe0dd073 e97f852fd4561e77721bb9a4e0ea9d98305b1e93"],"linux-lts-trusty":[],"linux-goldfish":[],"linux-grouper":[],"linux-maguro":[],"linux-mako":[],"linux-manta":[],"linux-flo":[],"linux-raspi2":[],"linux-lts-utopic":[],"linux-lts-vivid":[],"linux-lts-wily":[],"linux-lts-xenial":[],"linux-snapdragon":[],"linux-aws":[],"linux-hwe":[],"linux-hwe-edge":[],"linux-gke":[],"linux-azure":[],"linux-azure-edge":[],"linux-gcp":[],"linux-kvm":[],"linux-euclid":[],"linux-oem":[],"linux-gcp-edge":[],"linux-aws-hwe":[],"linux-oracle":[],"linux-hwe-5.4":[],"linux-hwe-5.15":[],"linux-hwe-6.8":[],"linux-aws-5.4":[],"linux-aws-5.15":[],"linux-azure-4.15":[],"linux-azure-5.4":[],"linux-azure-5.15":[],"linux-azure-fde":[],"linux-azure-fde-5.15":[],"linux-bluefield":[],"linux-fips":[],"linux-aws-fips":[],"linux-azure-fips":[],"linux-gcp-fips":[],"linux-gcp-4.15":[],"linux-gcp-5.4":[],"linux-gcp-5.15":[],"linux-gkeop":[],"linux-gkeop-5.15":[],"linux-ibm":[],"linux-ibm-5.4":[],"linux-ibm-5.15":[],"linux-intel":[],"linux-intel-iotg":[],"linux-intel-iotg-5.15":[],"linux-iot":[],"linux-intel-iot-realtime":[],"linux-lowlatency":[],"linux-lowlatency-hwe-5.15":[],"linux-lowlatency-hwe-6.8":[],"linux-nvidia":[],"linux-nvidia-6.5":[],"linux-nvidia-6.8":[],"linux-nvidia-lowlatency":[],"linux-oracle-5.4":[],"linux-oracle-5.15":[],"linux-oem-6.8":[],"linux-raspi":[],"linux-raspi-5.4":[],"linux-raspi-realtime":[],"linux-realtime":[],"linux-riscv":[],"linux-riscv-5.15":[],"linux-riscv-6.8":[],"linux-xilinx-zynqmp":[],"linux-aws-6.8":[],"linux-gcp-6.8":[],"linux-oracle-6.8":[],"linux-azure-6.8":[],"linux-oem-6.11":[]},"tags":{"linux":["binary-exclude:linux-libc-dev"]},"packages":[{"name":"linux-aws-fips","source":"https://ubuntu.com/security/cve?package=linux-aws-fips","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-aws-fips","debian":"https://tracker.debian.org/pkg/linux-aws-fips","statuses":[{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"5.15.0-1052.57+fips1","component":null,"pocket":"fips-updates"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"4.15.0-2000.4","component":null,"pocket":"fips"},{"release_codename":"focal","status":"not-affected","description":"5.4.0-1021.21+fips2","component":null,"pocket":"fips"}]},{"name":"linux-azure-fips","source":"https://ubuntu.com/security/cve?package=linux-azure-fips","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-azure-fips","debian":"https://tracker.debian.org/pkg/linux-azure-fips","statuses":[{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"5.15.0-1058.66+fips1","component":null,"pocket":"fips-updates"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"4.15.0-1002.2","component":null,"pocket":"fips"},{"release_codename":"focal","status":"not-affected","description":"5.4.0-1022.22+fips1","component":null,"pocket":"fips"}]},{"name":"linux-gcp-fips","source":"https://ubuntu.com/security/cve?package=linux-gcp-fips","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-gcp-fips","debian":"https://tracker.debian.org/pkg/linux-gcp-fips","statuses":[{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"5.15.0-1048.56+fips1","component":null,"pocket":"fips-updates"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"4.15.0-1001.1","component":null,"pocket":"fips"},{"release_codename":"focal","status":"not-affected","description":"5.4.0-1021.21+fips1","component":null,"pocket":"fips"}]},{"name":"linux","source":"https://ubuntu.com/security/cve?package=linux","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux","debian":"https://tracker.debian.org/pkg/linux","statuses":[{"release_codename":"bionic","status":"released","description":"4.15.0-44.47","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"released","description":"4.18.0-14.15","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"4.4.0-142.168","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"4.19.0-12.13","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"5.4.0-9.12","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"5.13.0-19.19","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"6.5.0-9.9","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"6.8.0-31.31","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"3.11.0-12.19","component":null,"pocket":"security"}]},{"name":"linux-aws","source":"https://ubuntu.com/security/cve?package=linux-aws","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-aws","debian":"https://tracker.debian.org/pkg/linux-aws","statuses":[{"release_codename":"bionic","status":"released","description":"4.15.0-1032.34","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"released","description":"4.18.0-1008.10","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"4.4.0-1038.41","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"4.4.0-1075.85","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"4.18.0-1008.10","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"5.4.0-1005.5","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"5.13.0-1005.6","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"6.5.0-1008.8","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"6.8.0-1008.8","component":null,"pocket":"security"}]},{"name":"linux-aws-5.15","source":"https://ubuntu.com/security/cve?package=linux-aws-5.15","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-aws-5.15","debian":"https://tracker.debian.org/pkg/linux-aws-5.15","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"5.15.0-1015.19~20.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-aws-5.4","source":"https://ubuntu.com/security/cve?package=linux-aws-5.4","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-aws-5.4","debian":"https://tracker.debian.org/pkg/linux-aws-5.4","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"5.4.0-1020.20~18.04.2","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-aws-6.8","source":"https://ubuntu.com/security/cve?package=linux-aws-6.8","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-aws-6.8","debian":"https://tracker.debian.org/pkg/linux-aws-6.8","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"6.8.0-1009.9~22.04.2","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-aws-hwe","source":"https://ubuntu.com/security/cve?package=linux-aws-hwe","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-aws-hwe","debian":"https://tracker.debian.org/pkg/linux-aws-hwe","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"4.15.0-1032.34~16.04.1","component":null,"pocket":"security"},{"release_codename":"disco","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-azure","source":"https://ubuntu.com/security/cve?package=linux-azure","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-azure","debian":"https://tracker.debian.org/pkg/linux-azure","statuses":[{"release_codename":"bionic","status":"released","description":"4.15.0-1037.39","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"released","description":"4.18.0-1008.8","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"4.15.0-1037.39~14.04.2","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"4.15.0-1037.39~16.04.1","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"4.18.0-1008.8","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"5.4.0-1006.6","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"5.13.0-1006.7","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"6.5.0-1007.7","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"6.8.0-1007.7","component":null,"pocket":"security"}]},{"name":"linux-azure-4.15","source":"https://ubuntu.com/security/cve?package=linux-azure-4.15","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-azure-4.15","debian":"https://tracker.debian.org/pkg/linux-azure-4.15","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"4.15.0-1082.92","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-azure-5.15","source":"https://ubuntu.com/security/cve?package=linux-azure-5.15","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-azure-5.15","debian":"https://tracker.debian.org/pkg/linux-azure-5.15","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"5.15.0-1007.8~20.04.1","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-azure-5.4","source":"https://ubuntu.com/security/cve?package=linux-azure-5.4","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-azure-5.4","debian":"https://tracker.debian.org/pkg/linux-azure-5.4","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"5.4.0-1022.22~18.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-azure-6.8","source":"https://ubuntu.com/security/cve?package=linux-azure-6.8","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-azure-6.8","debian":"https://tracker.debian.org/pkg/linux-azure-6.8","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"6.8.0-1008.8~22.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"}]},{"name":"linux-azure-edge","source":"https://ubuntu.com/security/cve?package=linux-azure-edge","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-azure-edge","debian":"https://tracker.debian.org/pkg/linux-azure-edge","statuses":[{"release_codename":"bionic","status":"released","description":"4.15.0-1037.39","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"disco","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-azure-fde","source":"https://ubuntu.com/security/cve?package=linux-azure-fde","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-azure-fde","debian":"https://tracker.debian.org/pkg/linux-azure-fde","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"5.15.0-1019.24.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"6.8.0-1041.48","component":null,"pocket":"security"},{"release_codename":"focal","status":"ignored","description":"end of standard support, was ignored [superseded by linux-azure-fde-5.15]","component":null,"pocket":"security"}]},{"name":"linux-azure-fde-5.15","source":"https://ubuntu.com/security/cve?package=linux-azure-fde-5.15","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-azure-fde-5.15","debian":"https://tracker.debian.org/pkg/linux-azure-fde-5.15","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"5.15.0-1019.24~20.04.1.1","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-bluefield","source":"https://ubuntu.com/security/cve?package=linux-bluefield","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-bluefield","debian":"https://tracker.debian.org/pkg/linux-bluefield","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"5.4.0-1011.14","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-euclid","source":"https://ubuntu.com/security/cve?package=linux-euclid","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-euclid","debian":"https://tracker.debian.org/pkg/linux-euclid","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"xenial","status":"ignored","description":"end of standard support, was needs-triage","component":null,"pocket":"security"},{"release_codename":"disco","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-fips","source":"https://ubuntu.com/security/cve?package=linux-fips","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-fips","debian":"https://tracker.debian.org/pkg/linux-fips","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"5.15.0-92.102+fips1","component":null,"pocket":"fips-updates"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"4.4.0-1017.22~recert1","component":null,"pocket":"fips"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"4.15.0-1011.12","component":null,"pocket":"fips"},{"release_codename":"focal","status":"not-affected","description":"5.4.0-1007.8","component":null,"pocket":"fips"}]},{"name":"linux-flo","source":"https://ubuntu.com/security/cve?package=linux-flo","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-flo","debian":"https://tracker.debian.org/pkg/linux-flo","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"xenial","status":"ignored","description":"end of standard support","component":null,"pocket":"security"},{"release_codename":"disco","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored [abandoned]","component":null,"pocket":"security"}]},{"name":"linux-gcp","source":"https://ubuntu.com/security/cve?package=linux-gcp","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-gcp","debian":"https://tracker.debian.org/pkg/linux-gcp","statuses":[{"release_codename":"bionic","status":"released","description":"4.15.0-1027.28","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"released","description":"4.18.0-1006.7","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"4.15.0-1027.28~16.04.1","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"4.18.0-1006.7","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"5.4.0-1005.5","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"5.13.0-1005.6","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"6.5.0-1007.7","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"6.8.0-1007.7","component":null,"pocket":"security"}]},{"name":"linux-gcp-4.15","source":"https://ubuntu.com/security/cve?package=linux-gcp-4.15","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-gcp-4.15","debian":"https://tracker.debian.org/pkg/linux-gcp-4.15","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"4.15.0-1071.81","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-gcp-5.15","source":"https://ubuntu.com/security/cve?package=linux-gcp-5.15","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-gcp-5.15","debian":"https://tracker.debian.org/pkg/linux-gcp-5.15","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"5.15.0-1006.9~20.04.1","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-gcp-5.4","source":"https://ubuntu.com/security/cve?package=linux-gcp-5.4","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-gcp-5.4","debian":"https://tracker.debian.org/pkg/linux-gcp-5.4","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"5.4.0-1021.21~18.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-gcp-6.8","source":"https://ubuntu.com/security/cve?package=linux-gcp-6.8","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-gcp-6.8","debian":"https://tracker.debian.org/pkg/linux-gcp-6.8","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"6.8.0-1010.11~22.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-gcp-edge","source":"https://ubuntu.com/security/cve?package=linux-gcp-edge","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-gcp-edge","debian":"https://tracker.debian.org/pkg/linux-gcp-edge","statuses":[{"release_codename":"bionic","status":"released","description":"4.18.0-1006.7~18.04.1","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"disco","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-gke","source":"https://ubuntu.com/security/cve?package=linux-gke","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-gke","debian":"https://tracker.debian.org/pkg/linux-gke","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"xenial","status":"ignored","description":"end of standard support","component":null,"pocket":"security"},{"release_codename":"disco","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"ignored","description":"end of kernel support","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"5.15.0-1002.2","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"6.8.0-1003.5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-gkeop","source":"https://ubuntu.com/security/cve?package=linux-gkeop","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-gkeop","debian":"https://tracker.debian.org/pkg/linux-gkeop","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"5.4.0-1008.9","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"5.15.0-1001.2","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"6.8.0-1001.3","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-gkeop-5.15","source":"https://ubuntu.com/security/cve?package=linux-gkeop-5.15","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-gkeop-5.15","debian":"https://tracker.debian.org/pkg/linux-gkeop-5.15","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"5.15.0-1003.5~20.04.2","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-goldfish","source":"https://ubuntu.com/security/cve?package=linux-goldfish","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-goldfish","debian":"https://tracker.debian.org/pkg/linux-goldfish","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"xenial","status":"ignored","description":"end of standard support","component":null,"pocket":"security"},{"release_codename":"disco","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored [abandoned]","component":null,"pocket":"security"}]},{"name":"linux-grouper","source":"https://ubuntu.com/security/cve?package=linux-grouper","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-grouper","debian":"https://tracker.debian.org/pkg/linux-grouper","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"disco","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored [abandoned]","component":null,"pocket":"security"}]},{"name":"linux-hwe","source":"https://ubuntu.com/security/cve?package=linux-hwe","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-hwe","debian":"https://tracker.debian.org/pkg/linux-hwe","statuses":[{"release_codename":"bionic","status":"released","description":"4.18.0-14.15~18.04.1","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"4.15.0-45.48~16.04.1","component":null,"pocket":"security"},{"release_codename":"disco","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-hwe-5.15","source":"https://ubuntu.com/security/cve?package=linux-hwe-5.15","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-hwe-5.15","debian":"https://tracker.debian.org/pkg/linux-hwe-5.15","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"5.15.0-33.34~20.04.1","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-hwe-5.4","source":"https://ubuntu.com/security/cve?package=linux-hwe-5.4","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-hwe-5.4","debian":"https://tracker.debian.org/pkg/linux-hwe-5.4","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"5.4.0-37.41~18.04.1","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-hwe-6.8","source":"https://ubuntu.com/security/cve?package=linux-hwe-6.8","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-hwe-6.8","debian":"https://tracker.debian.org/pkg/linux-hwe-6.8","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"6.8.0-38.38~22.04.1","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-hwe-edge","source":"https://ubuntu.com/security/cve?package=linux-hwe-edge","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-hwe-edge","debian":"https://tracker.debian.org/pkg/linux-hwe-edge","statuses":[{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"4.15.0-45.48~16.04.1","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"5.0.0-15.16~18.04.1","component":null,"pocket":"security"},{"release_codename":"disco","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-ibm","source":"https://ubuntu.com/security/cve?package=linux-ibm","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-ibm","debian":"https://tracker.debian.org/pkg/linux-ibm","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"5.15.0-1002.2","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"6.5.0-1009.9","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"5.4.0-1004.5","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-ibm-5.15","source":"https://ubuntu.com/security/cve?package=linux-ibm-5.15","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-ibm-5.15","debian":"https://tracker.debian.org/pkg/linux-ibm-5.15","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"5.15.0-1034.37~20.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-ibm-5.4","source":"https://ubuntu.com/security/cve?package=linux-ibm-5.4","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-ibm-5.4","debian":"https://tracker.debian.org/pkg/linux-ibm-5.4","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"5.4.0-1010.11~18.04.2","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-intel","source":"https://ubuntu.com/security/cve?package=linux-intel","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-intel","debian":"https://tracker.debian.org/pkg/linux-intel","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"6.8.0-1001.6","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-intel-iot-realtime","source":"https://ubuntu.com/security/cve?package=linux-intel-iot-realtime","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-intel-iot-realtime","debian":"https://tracker.debian.org/pkg/linux-intel-iot-realtime","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"5.15.0-1021.26","component":null,"pocket":"realtime"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-intel-iotg","source":"https://ubuntu.com/security/cve?package=linux-intel-iotg","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-intel-iotg","debian":"https://tracker.debian.org/pkg/linux-intel-iotg","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"5.15.0-1004.6","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-intel-iotg-5.15","source":"https://ubuntu.com/security/cve?package=linux-intel-iotg-5.15","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-intel-iotg-5.15","debian":"https://tracker.debian.org/pkg/linux-intel-iotg-5.15","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"5.15.0-1003.5~20.04.1","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-iot","source":"https://ubuntu.com/security/cve?package=linux-iot","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-iot","debian":"https://tracker.debian.org/pkg/linux-iot","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"5.4.0-1001.3","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-kvm","source":"https://ubuntu.com/security/cve?package=linux-kvm","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-kvm","debian":"https://tracker.debian.org/pkg/linux-kvm","statuses":[{"release_codename":"bionic","status":"released","description":"4.15.0-1029.29","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"released","description":"4.18.0-1007.7","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"4.4.0-1040.46","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"4.18.0-1007.7","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"5.4.0-1004.4","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"5.13.0-1004.4","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-lowlatency","source":"https://ubuntu.com/security/cve?package=linux-lowlatency","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lowlatency","debian":"https://tracker.debian.org/pkg/linux-lowlatency","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"5.15.0-22.22","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"6.5.0-9.9.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"6.8.0-31.31.1","component":null,"pocket":"security"}]},{"name":"linux-lowlatency-hwe-5.15","source":"https://ubuntu.com/security/cve?package=linux-lowlatency-hwe-5.15","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lowlatency-hwe-5.15","debian":"https://tracker.debian.org/pkg/linux-lowlatency-hwe-5.15","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"5.15.0-33.34~20.04.1","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-lowlatency-hwe-6.8","source":"https://ubuntu.com/security/cve?package=linux-lowlatency-hwe-6.8","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lowlatency-hwe-6.8","debian":"https://tracker.debian.org/pkg/linux-lowlatency-hwe-6.8","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"6.8.0-38.38.1~22.04.2","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-lts-trusty","source":"https://ubuntu.com/security/cve?package=linux-lts-trusty","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lts-trusty","debian":"https://tracker.debian.org/pkg/linux-lts-trusty","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"disco","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-lts-utopic","source":"https://ubuntu.com/security/cve?package=linux-lts-utopic","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lts-utopic","debian":"https://tracker.debian.org/pkg/linux-lts-utopic","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"disco","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored [end of standard support]","component":null,"pocket":"security"}]},{"name":"linux-lts-vivid","source":"https://ubuntu.com/security/cve?package=linux-lts-vivid","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lts-vivid","debian":"https://tracker.debian.org/pkg/linux-lts-vivid","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"disco","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored [end of standard support]","component":null,"pocket":"security"}]},{"name":"linux-lts-wily","source":"https://ubuntu.com/security/cve?package=linux-lts-wily","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lts-wily","debian":"https://tracker.debian.org/pkg/linux-lts-wily","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"disco","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored [end of standard support]","component":null,"pocket":"security"}]},{"name":"linux-lts-xenial","source":"https://ubuntu.com/security/cve?package=linux-lts-xenial","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lts-xenial","debian":"https://tracker.debian.org/pkg/linux-lts-xenial","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"4.4.0-142.168~14.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"disco","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-maguro","source":"https://ubuntu.com/security/cve?package=linux-maguro","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-maguro","debian":"https://tracker.debian.org/pkg/linux-maguro","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"disco","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored [abandoned]","component":null,"pocket":"security"}]},{"name":"linux-mako","source":"https://ubuntu.com/security/cve?package=linux-mako","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-mako","debian":"https://tracker.debian.org/pkg/linux-mako","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"xenial","status":"ignored","description":"end of standard support","component":null,"pocket":"security"},{"release_codename":"disco","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored [abandoned]","component":null,"pocket":"security"}]},{"name":"linux-manta","source":"https://ubuntu.com/security/cve?package=linux-manta","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-manta","debian":"https://tracker.debian.org/pkg/linux-manta","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"disco","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored [abandoned]","component":null,"pocket":"security"}]},{"name":"linux-nvidia","source":"https://ubuntu.com/security/cve?package=linux-nvidia","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-nvidia","debian":"https://tracker.debian.org/pkg/linux-nvidia","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"5.15.0-1005.5","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"6.8.0-1007.7","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-nvidia-6.5","source":"https://ubuntu.com/security/cve?package=linux-nvidia-6.5","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-nvidia-6.5","debian":"https://tracker.debian.org/pkg/linux-nvidia-6.5","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"6.5.0-1004.4","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-nvidia-6.8","source":"https://ubuntu.com/security/cve?package=linux-nvidia-6.8","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-nvidia-6.8","debian":"https://tracker.debian.org/pkg/linux-nvidia-6.8","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"6.8.0-1008.8~22.04.1","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-nvidia-lowlatency","source":"https://ubuntu.com/security/cve?package=linux-nvidia-lowlatency","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-nvidia-lowlatency","debian":"https://tracker.debian.org/pkg/linux-nvidia-lowlatency","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"6.8.0-1009.9.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-oem","source":"https://ubuntu.com/security/cve?package=linux-oem","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-oem","debian":"https://tracker.debian.org/pkg/linux-oem","statuses":[{"release_codename":"bionic","status":"released","description":"4.15.0-1033.38","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"released","description":"4.15.0-1033.38","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"xenial","status":"ignored","description":"end of standard support, was needs-triage","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"4.15.0-1033.38","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-oem-6.11","source":"https://ubuntu.com/security/cve?package=linux-oem-6.11","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-oem-6.11","debian":"https://tracker.debian.org/pkg/linux-oem-6.11","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"6.11.0-1007.7","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"}]},{"name":"linux-oem-6.8","source":"https://ubuntu.com/security/cve?package=linux-oem-6.8","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-oem-6.8","debian":"https://tracker.debian.org/pkg/linux-oem-6.8","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"6.8.0-1003.3","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-oracle","source":"https://ubuntu.com/security/cve?package=linux-oracle","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-oracle","debian":"https://tracker.debian.org/pkg/linux-oracle","statuses":[{"release_codename":"cosmic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"4.15.0-1008.10","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"4.15.0-1008.10","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"5.4.0-1005.5","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"5.13.0-1008.10","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"6.5.0-1010.10","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"6.8.0-1005.5","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"4.15.0-1008.10~16.04.1","component":null,"pocket":"security"}]},{"name":"linux-oracle-5.15","source":"https://ubuntu.com/security/cve?package=linux-oracle-5.15","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-oracle-5.15","debian":"https://tracker.debian.org/pkg/linux-oracle-5.15","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"5.15.0-1007.9~20.04.1","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-oracle-5.4","source":"https://ubuntu.com/security/cve?package=linux-oracle-5.4","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-oracle-5.4","debian":"https://tracker.debian.org/pkg/linux-oracle-5.4","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"5.4.0-1021.21~18.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-oracle-6.8","source":"https://ubuntu.com/security/cve?package=linux-oracle-6.8","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-oracle-6.8","debian":"https://tracker.debian.org/pkg/linux-oracle-6.8","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"6.8.0-1006.6~22.04.3","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-raspi","source":"https://ubuntu.com/security/cve?package=linux-raspi","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-raspi","debian":"https://tracker.debian.org/pkg/linux-raspi","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"5.4.0-1007.7","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"5.13.0-1008.9","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"6.5.0-1005.7","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"6.8.0-1004.4","component":null,"pocket":"security"}]},{"name":"linux-raspi-5.4","source":"https://ubuntu.com/security/cve?package=linux-raspi-5.4","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-raspi-5.4","debian":"https://tracker.debian.org/pkg/linux-raspi-5.4","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"5.4.0-1013.13~18.04.1","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-raspi-realtime","source":"https://ubuntu.com/security/cve?package=linux-raspi-realtime","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-raspi-realtime","debian":"https://tracker.debian.org/pkg/linux-raspi-realtime","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"6.7.0-2001.1","component":null,"pocket":"realtime"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-raspi2","source":"https://ubuntu.com/security/cve?package=linux-raspi2","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-raspi2","debian":"https://tracker.debian.org/pkg/linux-raspi2","statuses":[{"release_codename":"bionic","status":"released","description":"4.15.0-1031.33","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"released","description":"4.18.0-1009.11","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"4.4.0-1103.111","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"4.18.0-1009.11","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"ignored","description":"end of standard support, was ignored [replaced by linux-raspi]","component":null,"pocket":"security"}]},{"name":"linux-realtime","source":"https://ubuntu.com/security/cve?package=linux-realtime","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-realtime","debian":"https://tracker.debian.org/pkg/linux-realtime","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"5.15.0-1006.6","component":null,"pocket":"realtime"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"6.11.0-1001.1","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"6.8.1-1015.16","component":null,"pocket":"security"}]},{"name":"linux-riscv","source":"https://ubuntu.com/security/cve?package=linux-riscv","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-riscv","debian":"https://tracker.debian.org/pkg/linux-riscv","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"ignored","description":"end of kernel support","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"6.5.0-9.9.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"6.8.0-31.31.1","component":null,"pocket":"security"},{"release_codename":"focal","status":"ignored","description":"end of standard support, was ignored [superseded by linux-riscv-5.8]","component":null,"pocket":"security"}]},{"name":"linux-riscv-5.15","source":"https://ubuntu.com/security/cve?package=linux-riscv-5.15","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-riscv-5.15","debian":"https://tracker.debian.org/pkg/linux-riscv-5.15","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"5.15.0-1015.17~20.04.1","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-riscv-6.8","source":"https://ubuntu.com/security/cve?package=linux-riscv-6.8","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-riscv-6.8","debian":"https://tracker.debian.org/pkg/linux-riscv-6.8","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"6.8.0-38.38.1~22.04.1","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-snapdragon","source":"https://ubuntu.com/security/cve?package=linux-snapdragon","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-snapdragon","debian":"https://tracker.debian.org/pkg/linux-snapdragon","statuses":[{"release_codename":"bionic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"4.4.0-1107.112","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-xilinx-zynqmp","source":"https://ubuntu.com/security/cve?package=linux-xilinx-zynqmp","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-xilinx-zynqmp","debian":"https://tracker.debian.org/pkg/linux-xilinx-zynqmp","statuses":[{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"5.4.0-1020.24","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"5.15.0-1022.26","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc5","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-3878-1","USN-3871-4","USN-3871-1","USN-3879-1","USN-3871-5","USN-3879-2","USN-3872-1","USN-3878-2","USN-3871-3"],"notices":[{"id":"USN-3878-1","title":"Linux kernel vulnerabilities","summary":"Several security issues were fixed in the Linux kernel.\n","instructions":"After a standard system update you need to reboot your computer to make\nall the necessary changes.\n\nATTENTION: Due to an unavoidable ABI change the kernel updates have\nbeen given a new version number, which requires you to recompile and\nreinstall all third party kernel modules you might have installed.\nUnless you manually uninstalled the standard kernel metapackages\n(e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual,\nlinux-powerpc), a standard system upgrade will automatically perform\nthis as well.\n","references":[],"published":"2019-02-04T19:44:57.436788","description":"It was discovered that a race condition existed in the vsock address family\nimplementation of the Linux kernel that could lead to a use-after-free\ncondition. A local attacker in a guest virtual machine could use this to\nexpose sensitive information (host machine kernel memory). (CVE-2018-14625)\n\nCfir Cohen discovered that a use-after-free vulnerability existed in the\nKVM implementation of the Linux kernel, when handling interrupts in\nenvironments where nested virtualization is in use (nested KVM\nvirtualization is not enabled by default in Ubuntu kernels). A local\nattacker in a guest VM could possibly use this to gain administrative\nprivileges in a host machine. (CVE-2018-16882)\n\nWei Wu discovered that the KVM implementation in the Linux kernel did not\nproperly ensure that ioapics were initialized. A local attacker could use\nthis to cause a denial of service (system crash). (CVE-2018-19407)\n\nIt was discovered that the crypto subsystem of the Linux kernel leaked\nuninitialized memory to user space in some situations. A local attacker\ncould use this to expose sensitive information (kernel memory).\n(CVE-2018-19854)\n","is_hidden":false,"release_packages":{"cosmic":[{"name":"linux-raspi2","version":"4.18.0-1009.11","description":"Linux kernel for Raspberry Pi 2","is_source":true},{"name":"linux-gcp","version":"4.18.0-1006.7","description":"Linux kernel for Google Cloud Platform (GCP) systems","is_source":true},{"name":"linux","version":"4.18.0-14.15","description":"Linux kernel","is_source":true},{"name":"linux-kvm","version":"4.18.0-1007.7","description":"Linux kernel for cloud environments","is_source":true},{"name":"linux-aws","version":"4.18.0-1008.10","description":"Linux kernel for Amazon Web Services (AWS) systems","is_source":true},{"name":"linux-image-kvm","version":"4.18.0.1007.7","is_source":false,"source_link":null,"version_link":null},{"name":"linux-image-gke","version":"4.18.0.1006.6","is_source":false,"source_link":null,"version_link":null},{"name":"linux-image-4.18.0-14-lowlatency","version":"4.18.0-14.15","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.18.0-14.15"},{"name":"linux-image-4.18.0-14-snapdragon","version":"4.18.0-14.15","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.18.0-14.15"},{"name":"linux-image-4.18.0-1007-kvm","version":"4.18.0-1007.7","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-kvm","version_link":"https://launchpad.net/ubuntu/+source/linux-kvm/4.18.0-1007.7"},{"name":"linux-image-generic","version":"4.18.0.14.15","is_source":false,"source_link":null,"version_link":null},{"name":"linux-image-gcp","version":"4.18.0.1006.6","is_source":false,"source_link":null,"version_link":null},{"name":"linux-image-4.18.0-14-generic","version":"4.18.0-14.15","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.18.0-14.15"},{"name":"linux-image-4.18.0-1008-aws","version":"4.18.0-1008.10","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-aws","version_link":"https://launchpad.net/ubuntu/+source/linux-aws/4.18.0-1008.10"},{"name":"linux-image-aws","version":"4.18.0.1008.8","is_source":false,"source_link":null,"version_link":null},{"name":"linux-image-generic-lpae","version":"4.18.0.14.15","is_source":false,"source_link":null,"version_link":null},{"name":"linux-image-snapdragon","version":"4.18.0.14.15","is_source":false,"source_link":null,"version_link":null},{"name":"linux-image-4.18.0-1009-raspi2","version":"4.18.0-1009.11","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-raspi2","version_link":"https://launchpad.net/ubuntu/+source/linux-raspi2/4.18.0-1009.11"},{"name":"linux-image-4.18.0-1006-gcp","version":"4.18.0-1006.7","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-gcp","version_link":"https://launchpad.net/ubuntu/+source/linux-gcp/4.18.0-1006.7"},{"name":"linux-image-4.18.0-14-generic-lpae","version":"4.18.0-14.15","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.18.0-14.15"},{"name":"linux-image-lowlatency","version":"4.18.0.14.15","is_source":false,"source_link":null,"version_link":null},{"name":"linux-image-raspi2","version":"4.18.0.1009.6","is_source":false,"source_link":null,"version_link":null}]},"type":"USN","cves_ids":["CVE-2018-14625","CVE-2018-16882","CVE-2018-19407","CVE-2018-19854"]},{"id":"USN-3871-4","title":"Linux kernel (HWE) vulnerabilities","summary":"Several security issues were fixed in the Linux kernel.\n","instructions":"After a standard system update you need to reboot your computer to make\nall the necessary changes.\n\nATTENTION: Due to an unavoidable ABI change the kernel updates have\nbeen given a new version number, which requires you to recompile and\nreinstall all third party kernel modules you might have installed.\nUnless you manually uninstalled the standard kernel metapackages\n(e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual,\nlinux-powerpc), a standard system upgrade will automatically perform\nthis as well.\n","references":[],"published":"2019-02-04T21:54:37.005356","description":"USN-3871-1 fixed vulnerabilities in the Linux kernel for Ubuntu 18.04\nLTS. This update provides the corresponding updates for the Linux\nHardware Enablement (HWE) kernel from Ubuntu 18.04 LTS for Ubuntu\n16.04 LTS.\n\nWen Xu discovered that a use-after-free vulnerability existed in the ext4\nfilesystem implementation in the Linux kernel. An attacker could use this\nto construct a malicious ext4 image that, when mounted, could cause a\ndenial of service (system crash) or possibly execute arbitrary code.\n(CVE-2018-10876, CVE-2018-10879)\n\nWen Xu discovered that a buffer overflow existed in the ext4 filesystem\nimplementation in the Linux kernel. An attacker could use this to construct\na malicious ext4 image that, when mounted, could cause a denial of service\n(system crash) or possibly execute arbitrary code. (CVE-2018-10877)\n\nWen Xu discovered that an out-of-bounds write vulnerability existed in the\next4 filesystem implementation in the Linux kernel. An attacker could use\nthis to construct a malicious ext4 image that, when mounted, could cause a\ndenial of service (system crash) or possibly execute arbitrary code.\n(CVE-2018-10878, CVE-2018-10882)\n\nWen Xu discovered that the ext4 filesystem implementation in the Linux\nkernel did not properly ensure that xattr information remained in inode\nbodies. An attacker could use this to construct a malicious ext4 image\nthat, when mounted, could cause a denial of service (system crash).\n(CVE-2018-10880)\n\nWen Xu discovered that the ext4 file system implementation in the Linux\nkernel could possibly perform an out of bounds write when updating the\njournal for an inline file. An attacker could use this to construct a\nmalicious ext4 image that, when mounted, could cause a denial of service\n(system crash). (CVE-2018-10883)\n\nIt was discovered that a race condition existed in the vsock address family\nimplementation of the Linux kernel that could lead to a use-after-free\ncondition. A local attacker in a guest virtual machine could use this to\nexpose sensitive information (host machine kernel memory). (CVE-2018-14625)\n\nCfir Cohen discovered that a use-after-free vulnerability existed in the\nKVM implementation of the Linux kernel, when handling interrupts in\nenvironments where nested virtualization is in use (nested KVM\nvirtualization is not enabled by default in Ubuntu kernels). A local\nattacker in a guest VM could possibly use this to gain administrative\nprivileges in a host machine. (CVE-2018-16882)\n\nJann Horn discovered that the procfs file system implementation in the\nLinux kernel did not properly restrict the ability to inspect the kernel\nstack of an arbitrary task. A local attacker could use this to expose\nsensitive information. (CVE-2018-17972)\n\nJann Horn discovered that the mremap() system call in the Linux kernel did\nnot properly flush the TLB when completing, potentially leaving access to a\nphysical page after it has been released to the page allocator. A local\nattacker could use this to cause a denial of service (system crash), expose\nsensitive information, or possibly execute arbitrary code. (CVE-2018-18281)\n\nWei Wu discovered that the KVM implementation in the Linux kernel did not\nproperly ensure that ioapics were initialized. A local attacker could use\nthis to cause a denial of service (system crash). (CVE-2018-19407)\n\nIt was discovered that the debug interface for the Linux kernel's HID\nsubsystem did not properly perform bounds checking in some situations. An\nattacker with access to debugfs could use this to cause a denial of service\nor possibly gain additional privileges. (CVE-2018-9516)\n","is_hidden":false,"release_packages":{"xenial":[{"name":"linux-aws-hwe","version":"4.15.0-1032.34~16.04.1","description":"Linux kernel for Amazon Web Services (AWS-HWE) systems","is_source":true},{"name":"linux-gcp","version":"4.15.0-1027.28~16.04.1","description":"Linux kernel for Google Cloud Platform (GCP) systems","is_source":true},{"name":"linux-hwe","version":"4.15.0-45.48~16.04.1","description":"Linux hardware enablement (HWE) kernel","is_source":true},{"name":"linux-image-4.15.0-1027-gcp","version":"4.15.0-1027.28~16.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-signed-gcp","version_link":"https://launchpad.net/ubuntu/+source/linux-signed-gcp/4.15.0-1027.28~16.04.1","pocket":"security"},{"name":"linux-image-4.15.0-1032-aws","version":"4.15.0-1032.34~16.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-aws-hwe","version_link":"https://launchpad.net/ubuntu/+source/linux-aws-hwe/4.15.0-1032.34~16.04.1","pocket":"security"},{"name":"linux-image-4.15.0-45-generic","version":"4.15.0-45.48~16.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-signed-hwe","version_link":"https://launchpad.net/ubuntu/+source/linux-signed-hwe/4.15.0-45.48~16.04.1","pocket":"security"},{"name":"linux-image-4.15.0-45-generic-lpae","version":"4.15.0-45.48~16.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-hwe","version_link":"https://launchpad.net/ubuntu/+source/linux-hwe/4.15.0-45.48~16.04.1","pocket":"security"},{"name":"linux-image-4.15.0-45-lowlatency","version":"4.15.0-45.48~16.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-signed-hwe","version_link":"https://launchpad.net/ubuntu/+source/linux-signed-hwe/4.15.0-45.48~16.04.1","pocket":"security"},{"name":"linux-image-aws-hwe","version":"4.15.0.1032.33","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta-aws-hwe","version_link":"https://launchpad.net/ubuntu/+source/linux-meta-aws-hwe/4.15.0.1032.33","pocket":"security"},{"name":"linux-image-gcp","version":"4.15.0.1027.41","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta-gcp","version_link":"https://launchpad.net/ubuntu/+source/linux-meta-gcp/4.15.0.1027.41","pocket":"security"},{"name":"linux-image-generic-hwe-16.04","version":"4.15.0.45.66","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta-hwe","version_link":"https://launchpad.net/ubuntu/+source/linux-meta-hwe/4.15.0.45.66","pocket":"security"},{"name":"linux-image-generic-lpae-hwe-16.04","version":"4.15.0.45.66","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta-hwe","version_link":"https://launchpad.net/ubuntu/+source/linux-meta-hwe/4.15.0.45.66","pocket":"security"},{"name":"linux-image-gke","version":"4.15.0.1027.41","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta-gcp","version_link":"https://launchpad.net/ubuntu/+source/linux-meta-gcp/4.15.0.1027.41","pocket":"security"},{"name":"linux-image-lowlatency-hwe-16.04","version":"4.15.0.45.66","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta-hwe","version_link":"https://launchpad.net/ubuntu/+source/linux-meta-hwe/4.15.0.45.66","pocket":"security"},{"name":"linux-image-oem","version":"4.15.0.45.66","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta-hwe","version_link":"https://launchpad.net/ubuntu/+source/linux-meta-hwe/4.15.0.45.66","pocket":"security"},{"name":"linux-image-virtual-hwe-16.04","version":"4.15.0.45.66","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta-hwe","version_link":"https://launchpad.net/ubuntu/+source/linux-meta-hwe/4.15.0.45.66","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2018-10876","CVE-2018-10877","CVE-2018-10878","CVE-2018-10879","CVE-2018-10880","CVE-2018-10882","CVE-2018-10883","CVE-2018-14625","CVE-2018-16882","CVE-2018-17972","CVE-2018-18281","CVE-2018-19407","CVE-2018-9516"]},{"id":"USN-3871-1","title":"Linux kernel vulnerabilities","summary":"Several security issues were fixed in the Linux kernel.\n","instructions":"After a standard system update you need to reboot your computer to make\nall the necessary changes.\n\nATTENTION: Due to an unavoidable ABI change the kernel updates have\nbeen given a new version number, which requires you to recompile and\nreinstall all third party kernel modules you might have installed.\nUnless you manually uninstalled the standard kernel metapackages\n(e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual,\nlinux-powerpc), a standard system upgrade will automatically perform\nthis as well.\n","references":[],"published":"2019-01-29T02:49:23.373281","description":"Wen Xu discovered that a use-after-free vulnerability existed in the ext4\nfilesystem implementation in the Linux kernel. An attacker could use this\nto construct a malicious ext4 image that, when mounted, could cause a\ndenial of service (system crash) or possibly execute arbitrary code.\n(CVE-2018-10876, CVE-2018-10879)\n\nWen Xu discovered that a buffer overflow existed in the ext4 filesystem\nimplementation in the Linux kernel. An attacker could use this to construct\na malicious ext4 image that, when mounted, could cause a denial of service\n(system crash) or possibly execute arbitrary code. (CVE-2018-10877)\n\nWen Xu discovered that an out-of-bounds write vulnerability existed in the\next4 filesystem implementation in the Linux kernel. An attacker could use\nthis to construct a malicious ext4 image that, when mounted, could cause a\ndenial of service (system crash) or possibly execute arbitrary code.\n(CVE-2018-10878, CVE-2018-10882)\n\nWen Xu discovered that the ext4 filesystem implementation in the Linux\nkernel did not properly ensure that xattr information remained in inode\nbodies. An attacker could use this to construct a malicious ext4 image\nthat, when mounted, could cause a denial of service (system crash).\n(CVE-2018-10880)\n\nWen Xu discovered that the ext4 file system implementation in the Linux\nkernel could possibly perform an out of bounds write when updating the\njournal for an inline file. An attacker could use this to construct a\nmalicious ext4 image that, when mounted, could cause a denial of service\n(system crash). (CVE-2018-10883)\n\nIt was discovered that a race condition existed in the vsock address family\nimplementation of the Linux kernel that could lead to a use-after-free\ncondition. A local attacker in a guest virtual machine could use this to\nexpose sensitive information (host machine kernel memory). (CVE-2018-14625)\n\nCfir Cohen discovered that a use-after-free vulnerability existed in the\nKVM implementation of the Linux kernel, when handling interrupts in\nenvironments where nested virtualization is in use (nested KVM\nvirtualization is not enabled by default in Ubuntu kernels). A local\nattacker in a guest VM could possibly use this to gain administrative\nprivileges in a host machine. (CVE-2018-16882)\n\nJann Horn discovered that the procfs file system implementation in the\nLinux kernel did not properly restrict the ability to inspect the kernel\nstack of an arbitrary task. A local attacker could use this to expose\nsensitive information. (CVE-2018-17972)\n\nJann Horn discovered that the mremap() system call in the Linux kernel did\nnot properly flush the TLB when completing, potentially leaving access to a\nphysical page after it has been released to the page allocator. A local\nattacker could use this to cause a denial of service (system crash), expose\nsensitive information, or possibly execute arbitrary code. (CVE-2018-18281)\n\nWei Wu discovered that the KVM implementation in the Linux kernel did not\nproperly ensure that ioapics were initialized. A local attacker could use\nthis to cause a denial of service (system crash). (CVE-2018-19407)\n\nIt was discovered that the debug interface for the Linux kernel's HID\nsubsystem did not properly perform bounds checking in some situations. An\nattacker with access to debugfs could use this to cause a denial of service\nor possibly gain additional privileges. (CVE-2018-9516)\n","is_hidden":false,"release_packages":{"bionic":[{"name":"linux","version":"4.15.0-44.47","description":"Linux kernel","is_source":true},{"name":"linux-image-4.15.0-44-generic","version":"4.15.0-44.47","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-signed","version_link":"https://launchpad.net/ubuntu/+source/linux-signed/4.15.0-44.47","pocket":"security"},{"name":"linux-image-4.15.0-44-generic-lpae","version":"4.15.0-44.47","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.15.0-44.47","pocket":"security"},{"name":"linux-image-4.15.0-44-lowlatency","version":"4.15.0-44.47","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-signed","version_link":"https://launchpad.net/ubuntu/+source/linux-signed/4.15.0-44.47","pocket":"security"},{"name":"linux-image-4.15.0-44-snapdragon","version":"4.15.0-44.47","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.15.0-44.47","pocket":"security"},{"name":"linux-image-generic","version":"4.15.0.44.46","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.15.0.44.46","pocket":"security"},{"name":"linux-image-generic-hwe-16.04","version":"4.15.0.44.46","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.15.0.44.46","pocket":"security"},{"name":"linux-image-generic-hwe-16.04-edge","version":"4.15.0.44.46","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.15.0.44.46","pocket":"security"},{"name":"linux-image-generic-lpae","version":"4.15.0.44.46","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.15.0.44.46","pocket":"security"},{"name":"linux-image-generic-lpae-hwe-16.04","version":"4.15.0.44.46","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.15.0.44.46","pocket":"security"},{"name":"linux-image-generic-lpae-hwe-16.04-edge","version":"4.15.0.44.46","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.15.0.44.46","pocket":"security"},{"name":"linux-image-lowlatency","version":"4.15.0.44.46","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.15.0.44.46","pocket":"security"},{"name":"linux-image-lowlatency-hwe-16.04","version":"4.15.0.44.46","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.15.0.44.46","pocket":"security"},{"name":"linux-image-lowlatency-hwe-16.04-edge","version":"4.15.0.44.46","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.15.0.44.46","pocket":"security"},{"name":"linux-image-snapdragon","version":"4.15.0.44.46","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.15.0.44.46","pocket":"security"},{"name":"linux-image-virtual","version":"4.15.0.44.46","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.15.0.44.46","pocket":"security"},{"name":"linux-image-virtual-hwe-16.04","version":"4.15.0.44.46","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.15.0.44.46","pocket":"security"},{"name":"linux-image-virtual-hwe-16.04-edge","version":"4.15.0.44.46","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.15.0.44.46","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2018-10876","CVE-2018-10877","CVE-2018-10878","CVE-2018-10879","CVE-2018-10880","CVE-2018-10882","CVE-2018-10883","CVE-2018-14625","CVE-2018-16882","CVE-2018-17972","CVE-2018-18281","CVE-2018-19407","CVE-2018-9516"]},{"id":"USN-3879-1","title":"Linux kernel vulnerabilities","summary":"Several security issues were fixed in the Linux kernel.\n","instructions":"After a standard system update you need to reboot your computer to make\nall the necessary changes.\n\nATTENTION: Due to an unavoidable ABI change the kernel updates have\nbeen given a new version number, which requires you to recompile and\nreinstall all third party kernel modules you might have installed.\nUnless you manually uninstalled the standard kernel metapackages\n(e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual,\nlinux-powerpc), a standard system upgrade will automatically perform\nthis as well.\n","references":[],"published":"2019-02-04T22:21:33.788484","description":"Wen Xu discovered that the ext4 file system implementation in the Linux\nkernel could possibly perform an out of bounds write when updating the\njournal for an inline file. An attacker could use this to construct a\nmalicious ext4 image that, when mounted, could cause a denial of service\n(system crash). (CVE-2018-10883)\n\nVasily Averin and Pavel Tikhomirov discovered that the cleancache subsystem\nof the Linux kernel did not properly initialize new files in some\nsituations. A local attacker could use this to expose sensitive\ninformation. (CVE-2018-16862)\n\nWei Wu discovered that the KVM implementation in the Linux kernel did not\nproperly ensure that ioapics were initialized. A local attacker could use\nthis to cause a denial of service (system crash). (CVE-2018-19407)\n\nMathias Payer and Hui Peng discovered a use-after-free vulnerability in the\nAdvanced Linux Sound Architecture (ALSA) subsystem. A physically proximate\nattacker could use this to cause a denial of service (system crash).\n(CVE-2018-19824)\n\nHui Peng and Mathias Payer discovered that the USB subsystem in the Linux\nkernel did not properly handle size checks when handling an extra USB\ndescriptor. A physically proximate attacker could use this to cause a\ndenial of service (system crash). (CVE-2018-20169)\n","is_hidden":false,"release_packages":{"xenial":[{"name":"linux","version":"4.4.0-142.168","description":"Linux kernel","is_source":true},{"name":"linux-aws","version":"4.4.0-1075.85","description":"Linux kernel for Amazon Web Services (AWS) systems","is_source":true},{"name":"linux-kvm","version":"4.4.0-1040.46","description":"Linux kernel for cloud environments","is_source":true},{"name":"linux-raspi2","version":"4.4.0-1103.111","description":"Linux kernel for Raspberry Pi 2","is_source":true},{"name":"linux-snapdragon","version":"4.4.0-1107.112","description":"Linux kernel for Snapdragon processors","is_source":true},{"name":"linux-image-4.4.0-1040-kvm","version":"4.4.0-1040.46","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-kvm","version_link":"https://launchpad.net/ubuntu/+source/linux-kvm/4.4.0-1040.46","pocket":"security"},{"name":"linux-image-4.4.0-1075-aws","version":"4.4.0-1075.85","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-aws","version_link":"https://launchpad.net/ubuntu/+source/linux-aws/4.4.0-1075.85","pocket":"security"},{"name":"linux-image-4.4.0-1103-raspi2","version":"4.4.0-1103.111","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-raspi2","version_link":"https://launchpad.net/ubuntu/+source/linux-raspi2/4.4.0-1103.111","pocket":"security"},{"name":"linux-image-4.4.0-1107-snapdragon","version":"4.4.0-1107.112","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-snapdragon","version_link":"https://launchpad.net/ubuntu/+source/linux-snapdragon/4.4.0-1107.112","pocket":"security"},{"name":"linux-image-4.4.0-142-generic","version":"4.4.0-142.168","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.4.0-142.168","pocket":"security"},{"name":"linux-image-4.4.0-142-generic-lpae","version":"4.4.0-142.168","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.4.0-142.168","pocket":"security"},{"name":"linux-image-4.4.0-142-lowlatency","version":"4.4.0-142.168","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.4.0-142.168","pocket":"security"},{"name":"linux-image-4.4.0-142-powerpc-e500mc","version":"4.4.0-142.168","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.4.0-142.168","pocket":"security"},{"name":"linux-image-4.4.0-142-powerpc-smp","version":"4.4.0-142.168","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.4.0-142.168","pocket":"security"},{"name":"linux-image-4.4.0-142-powerpc64-emb","version":"4.4.0-142.168","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.4.0-142.168","pocket":"security"},{"name":"linux-image-4.4.0-142-powerpc64-smp","version":"4.4.0-142.168","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.4.0-142.168","pocket":"security"},{"name":"linux-image-aws","version":"4.4.0.1075.77","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta-aws","version_link":"https://launchpad.net/ubuntu/+source/linux-meta-aws/4.4.0.1075.77","pocket":"security"},{"name":"linux-image-generic","version":"4.4.0.142.148","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-generic-lpae","version":"4.4.0.142.148","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-generic-lpae-lts-utopic","version":"4.4.0.142.148","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-generic-lpae-lts-vivid","version":"4.4.0.142.148","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-generic-lpae-lts-wily","version":"4.4.0.142.148","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-generic-lpae-lts-xenial","version":"4.4.0.142.148","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-generic-lts-utopic","version":"4.4.0.142.148","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-generic-lts-vivid","version":"4.4.0.142.148","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-generic-lts-wily","version":"4.4.0.142.148","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-generic-lts-xenial","version":"4.4.0.142.148","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-kvm","version":"4.4.0.1040.39","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta-kvm","version_link":"https://launchpad.net/ubuntu/+source/linux-meta-kvm/4.4.0.1040.39","pocket":"security"},{"name":"linux-image-lowlatency","version":"4.4.0.142.148","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-lowlatency-lts-utopic","version":"4.4.0.142.148","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-lowlatency-lts-vivid","version":"4.4.0.142.148","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-lowlatency-lts-wily","version":"4.4.0.142.148","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-lowlatency-lts-xenial","version":"4.4.0.142.148","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-powerpc-e500mc","version":"4.4.0.142.148","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-powerpc-e500mc-lts-utopic","version":"4.4.0.142.148","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-powerpc-e500mc-lts-vivid","version":"4.4.0.142.148","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-powerpc-e500mc-lts-wily","version":"4.4.0.142.148","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-powerpc-e500mc-lts-xenial","version":"4.4.0.142.148","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-powerpc-smp","version":"4.4.0.142.148","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-powerpc-smp-lts-utopic","version":"4.4.0.142.148","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-powerpc-smp-lts-vivid","version":"4.4.0.142.148","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-powerpc-smp-lts-wily","version":"4.4.0.142.148","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-powerpc-smp-lts-xenial","version":"4.4.0.142.148","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-powerpc64-emb","version":"4.4.0.142.148","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-powerpc64-emb-lts-utopic","version":"4.4.0.142.148","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-powerpc64-emb-lts-vivid","version":"4.4.0.142.148","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-powerpc64-emb-lts-wily","version":"4.4.0.142.148","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-powerpc64-emb-lts-xenial","version":"4.4.0.142.148","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-powerpc64-smp","version":"4.4.0.142.148","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-powerpc64-smp-lts-utopic","version":"4.4.0.142.148","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-powerpc64-smp-lts-vivid","version":"4.4.0.142.148","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-powerpc64-smp-lts-wily","version":"4.4.0.142.148","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-powerpc64-smp-lts-xenial","version":"4.4.0.142.148","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-raspi2","version":"4.4.0.1103.103","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta-raspi2","version_link":"https://launchpad.net/ubuntu/+source/linux-meta-raspi2/4.4.0.1103.103","pocket":"security"},{"name":"linux-image-snapdragon","version":"4.4.0.1107.99","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta-snapdragon","version_link":"https://launchpad.net/ubuntu/+source/linux-meta-snapdragon/4.4.0.1107.99","pocket":"security"},{"name":"linux-image-virtual","version":"4.4.0.142.148","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-virtual-lts-utopic","version":"4.4.0.142.148","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-virtual-lts-vivid","version":"4.4.0.142.148","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-virtual-lts-wily","version":"4.4.0.142.148","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"},{"name":"linux-image-virtual-lts-xenial","version":"4.4.0.142.148","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta","version_link":"https://launchpad.net/ubuntu/+source/linux-meta/4.4.0.142.148","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2018-10883","CVE-2018-16862","CVE-2018-19407","CVE-2018-19824","CVE-2018-20169"]},{"id":"USN-3871-5","title":"Linux kernel (Azure) vulnerabilities","summary":"Several security issues were fixed in the Linux kernel.\n","instructions":"After a standard system update you need to reboot your computer to make\nall the necessary changes.\n\nATTENTION: Due to an unavoidable ABI change the kernel updates have\nbeen given a new version number, which requires you to recompile and\nreinstall all third party kernel modules you might have installed.\nUnless you manually uninstalled the standard kernel metapackages\n(e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual,\nlinux-powerpc), a standard system upgrade will automatically perform\nthis as well.\n","references":[],"published":"2019-02-07T21:56:26.303779","description":"Wen Xu discovered that a use-after-free vulnerability existed in the ext4\nfilesystem implementation in the Linux kernel. An attacker could use this\nto construct a malicious ext4 image that, when mounted, could cause a\ndenial of service (system crash) or possibly execute arbitrary code.\n(CVE-2018-10876, CVE-2018-10879)\n\nWen Xu discovered that a buffer overflow existed in the ext4 filesystem\nimplementation in the Linux kernel. An attacker could use this to construct\na malicious ext4 image that, when mounted, could cause a denial of service\n(system crash) or possibly execute arbitrary code. (CVE-2018-10877)\n\nWen Xu discovered that an out-of-bounds write vulnerability existed in the\next4 filesystem implementation in the Linux kernel. An attacker could use\nthis to construct a malicious ext4 image that, when mounted, could cause a\ndenial of service (system crash) or possibly execute arbitrary code.\n(CVE-2018-10878, CVE-2018-10882)\n\nWen Xu discovered that the ext4 filesystem implementation in the Linux\nkernel did not properly ensure that xattr information remained in inode\nbodies. An attacker could use this to construct a malicious ext4 image\nthat, when mounted, could cause a denial of service (system crash).\n(CVE-2018-10880)\n\nWen Xu discovered that the ext4 file system implementation in the Linux\nkernel could possibly perform an out of bounds write when updating the\njournal for an inline file. An attacker could use this to construct a\nmalicious ext4 image that, when mounted, could cause a denial of service\n(system crash). (CVE-2018-10883)\n\nIt was discovered that a race condition existed in the vsock address family\nimplementation of the Linux kernel that could lead to a use-after-free\ncondition. A local attacker in a guest virtual machine could use this to\nexpose sensitive information (host machine kernel memory). (CVE-2018-14625)\n\nCfir Cohen discovered that a use-after-free vulnerability existed in the\nKVM implementation of the Linux kernel, when handling interrupts in\nenvironments where nested virtualization is in use (nested KVM\nvirtualization is not enabled by default in Ubuntu kernels). A local\nattacker in a guest VM could possibly use this to gain administrative\nprivileges in a host machine. (CVE-2018-16882)\n\nJann Horn discovered that the procfs file system implementation in the\nLinux kernel did not properly restrict the ability to inspect the kernel\nstack of an arbitrary task. A local attacker could use this to expose\nsensitive information. (CVE-2018-17972)\n\nJann Horn discovered that the mremap() system call in the Linux kernel did\nnot properly flush the TLB when completing, potentially leaving access to a\nphysical page after it has been released to the page allocator. A local\nattacker could use this to cause a denial of service (system crash), expose\nsensitive information, or possibly execute arbitrary code. (CVE-2018-18281)\n\nWei Wu discovered that the KVM implementation in the Linux kernel did not\nproperly ensure that ioapics were initialized. A local attacker could use\nthis to cause a denial of service (system crash). (CVE-2018-19407)\n\nIt was discovered that the debug interface for the Linux kernel's HID\nsubsystem did not properly perform bounds checking in some situations. An\nattacker with access to debugfs could use this to cause a denial of service\nor possibly gain additional privileges. (CVE-2018-9516)\n","is_hidden":false,"release_packages":{"bionic":[{"name":"linux-azure","version":"4.15.0-1037.39","description":"Linux kernel for Microsoft Azure Cloud systems","is_source":true},{"name":"linux-image-4.15.0-1037-azure","version":"4.15.0-1037.39","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-signed-azure","version_link":"https://launchpad.net/ubuntu/+source/linux-signed-azure/4.15.0-1037.39","pocket":"security"},{"name":"linux-image-azure","version":"4.15.0.1037.37","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta-azure","version_link":"https://launchpad.net/ubuntu/+source/linux-meta-azure/4.15.0.1037.37","pocket":"security"}],"trusty":[{"name":"linux-azure","version":"4.15.0-1037.39~14.04.2","description":"Linux kernel for Microsoft Azure Cloud systems","is_source":true},{"name":"linux-image-4.15.0-1037-azure","version":"4.15.0-1037.39~14.04.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-signed-azure","version_link":"https://launchpad.net/ubuntu/+source/linux-signed-azure/4.15.0-1037.39~14.04.2","pocket":"security"},{"name":"linux-image-azure","version":"4.15.0.1037.24","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta-azure","version_link":"https://launchpad.net/ubuntu/+source/linux-meta-azure/4.15.0.1037.24","pocket":"security"}],"xenial":[{"name":"linux-azure","version":"4.15.0-1037.39~16.04.1","description":"Linux kernel for Microsoft Azure Cloud systems","is_source":true},{"name":"linux-image-4.15.0-1037-azure","version":"4.15.0-1037.39~16.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-signed-azure","version_link":"https://launchpad.net/ubuntu/+source/linux-signed-azure/4.15.0-1037.39~16.04.1","pocket":"security"},{"name":"linux-image-azure","version":"4.15.0.1037.42","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta-azure","version_link":"https://launchpad.net/ubuntu/+source/linux-meta-azure/4.15.0.1037.42","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2018-10876","CVE-2018-10877","CVE-2018-10878","CVE-2018-10879","CVE-2018-10880","CVE-2018-10882","CVE-2018-10883","CVE-2018-14625","CVE-2018-16882","CVE-2018-17972","CVE-2018-18281","CVE-2018-19407","CVE-2018-9516"]},{"id":"USN-3879-2","title":"Linux kernel (Xenial HWE) vulnerabilities","summary":"Several security issues were fixed in the Linux kernel.\n","instructions":"After a standard system update you need to reboot your computer to make\nall the necessary changes.\n\nATTENTION: Due to an unavoidable ABI change the kernel updates have\nbeen given a new version number, which requires you to recompile and\nreinstall all third party kernel modules you might have installed.\nUnless you manually uninstalled the standard kernel metapackages\n(e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual,\nlinux-powerpc), a standard system upgrade will automatically perform\nthis as well.\n","references":[],"published":"2019-02-04T22:47:25.448045","description":"USN-3879-1 fixed vulnerabilities in the Linux kernel for Ubuntu 16.04\nLTS. This update provides the corresponding updates for the Linux\nHardware Enablement (HWE) kernel from Ubuntu 16.04 LTS for Ubuntu\n14.04 LTS.\n\nWen Xu discovered that the ext4 file system implementation in the Linux\nkernel could possibly perform an out of bounds write when updating the\njournal for an inline file. An attacker could use this to construct a\nmalicious ext4 image that, when mounted, could cause a denial of service\n(system crash). (CVE-2018-10883)\n\nVasily Averin and Pavel Tikhomirov discovered that the cleancache subsystem\nof the Linux kernel did not properly initialize new files in some\nsituations. A local attacker could use this to expose sensitive\ninformation. (CVE-2018-16862)\n\nWei Wu discovered that the KVM implementation in the Linux kernel did not\nproperly ensure that ioapics were initialized. A local attacker could use\nthis to cause a denial of service (system crash). (CVE-2018-19407)\n\nMathias Payer and Hui Peng discovered a use-after-free vulnerability in the\nAdvanced Linux Sound Architecture (ALSA) subsystem. A physically proximate\nattacker could use this to cause a denial of service (system crash).\n(CVE-2018-19824)\n\nHui Peng and Mathias Payer discovered that the USB subsystem in the Linux\nkernel did not properly handle size checks when handling an extra USB\ndescriptor. A physically proximate attacker could use this to cause a\ndenial of service (system crash). (CVE-2018-20169)\n","is_hidden":false,"release_packages":{"trusty":[{"name":"linux-aws","version":"4.4.0-1038.41","description":"Linux kernel for Amazon Web Services (AWS) systems","is_source":true},{"name":"linux-lts-xenial","version":"4.4.0-142.168~14.04.1","description":"Linux hardware enablement kernel from Xenial for Trusty","is_source":true},{"name":"linux-image-4.4.0-1038-aws","version":"4.4.0-1038.41","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-aws","version_link":"https://launchpad.net/ubuntu/+source/linux-aws/4.4.0-1038.41","pocket":"security"},{"name":"linux-image-4.4.0-142-generic","version":"4.4.0-142.168~14.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-lts-xenial","version_link":"https://launchpad.net/ubuntu/+source/linux-lts-xenial/4.4.0-142.168~14.04.1","pocket":"security"},{"name":"linux-image-4.4.0-142-generic-lpae","version":"4.4.0-142.168~14.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-lts-xenial","version_link":"https://launchpad.net/ubuntu/+source/linux-lts-xenial/4.4.0-142.168~14.04.1","pocket":"security"},{"name":"linux-image-4.4.0-142-lowlatency","version":"4.4.0-142.168~14.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-lts-xenial","version_link":"https://launchpad.net/ubuntu/+source/linux-lts-xenial/4.4.0-142.168~14.04.1","pocket":"security"},{"name":"linux-image-4.4.0-142-powerpc-e500mc","version":"4.4.0-142.168~14.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-lts-xenial","version_link":"https://launchpad.net/ubuntu/+source/linux-lts-xenial/4.4.0-142.168~14.04.1","pocket":"security"},{"name":"linux-image-4.4.0-142-powerpc-smp","version":"4.4.0-142.168~14.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-lts-xenial","version_link":"https://launchpad.net/ubuntu/+source/linux-lts-xenial/4.4.0-142.168~14.04.1","pocket":"security"},{"name":"linux-image-4.4.0-142-powerpc64-emb","version":"4.4.0-142.168~14.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-lts-xenial","version_link":"https://launchpad.net/ubuntu/+source/linux-lts-xenial/4.4.0-142.168~14.04.1","pocket":"security"},{"name":"linux-image-4.4.0-142-powerpc64-smp","version":"4.4.0-142.168~14.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-lts-xenial","version_link":"https://launchpad.net/ubuntu/+source/linux-lts-xenial/4.4.0-142.168~14.04.1","pocket":"security"},{"name":"linux-image-aws","version":"4.4.0.1038.38","is_source":false,"is_visible":true,"source_link":null,"version_link":null,"pocket":"security"},{"name":"linux-image-generic-lpae-lts-xenial","version":"4.4.0.142.122","is_source":false,"is_visible":true,"source_link":null,"version_link":null,"pocket":"security"},{"name":"linux-image-generic-lts-xenial","version":"4.4.0.142.122","is_source":false,"is_visible":true,"source_link":null,"version_link":null,"pocket":"security"},{"name":"linux-image-lowlatency-lts-xenial","version":"4.4.0.142.122","is_source":false,"is_visible":true,"source_link":null,"version_link":null,"pocket":"security"},{"name":"linux-image-powerpc-e500mc-lts-xenial","version":"4.4.0.142.122","is_source":false,"is_visible":true,"source_link":null,"version_link":null,"pocket":"security"},{"name":"linux-image-powerpc-smp-lts-xenial","version":"4.4.0.142.122","is_source":false,"is_visible":true,"source_link":null,"version_link":null,"pocket":"security"},{"name":"linux-image-powerpc64-emb-lts-xenial","version":"4.4.0.142.122","is_source":false,"is_visible":true,"source_link":null,"version_link":null,"pocket":"security"},{"name":"linux-image-powerpc64-smp-lts-xenial","version":"4.4.0.142.122","is_source":false,"is_visible":true,"source_link":null,"version_link":null,"pocket":"security"},{"name":"linux-image-virtual-lts-xenial","version":"4.4.0.142.122","is_source":false,"is_visible":false,"source_link":null,"version_link":null,"pocket":"security"}]},"type":"USN","cves_ids":["CVE-2018-10883","CVE-2018-16862","CVE-2018-19407","CVE-2018-19824","CVE-2018-20169"]},{"id":"USN-3872-1","title":"Linux kernel (HWE) vulnerabilities","summary":"Several security issues were fixed in the Linux kernel.\n","instructions":"After a standard system update you need to reboot your computer to make\nall the necessary changes.\n\nATTENTION: Due to an unavoidable ABI change the kernel updates have\nbeen given a new version number, which requires you to recompile and\nreinstall all third party kernel modules you might have installed.\nUnless you manually uninstalled the standard kernel metapackages\n(e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual,\nlinux-powerpc), a standard system upgrade will automatically perform\nthis as well.\n","references":[],"published":"2019-01-29T02:54:09.290168","description":"It was discovered that a race condition existed in the vsock address family\nimplementation of the Linux kernel that could lead to a use-after-free\ncondition. A local attacker in a guest virtual machine could use this to\nexpose sensitive information (host machine kernel memory). (CVE-2018-14625)\n\nCfir Cohen discovered that a use-after-free vulnerability existed in the\nKVM implementation of the Linux kernel, when handling interrupts in\nenvironments where nested virtualization is in use (nested KVM\nvirtualization is not enabled by default in Ubuntu kernels). A local\nattacker in a guest VM could possibly use this to gain administrative\nprivileges in a host machine. (CVE-2018-16882)\n\nWei Wu discovered that the KVM implementation in the Linux kernel did not\nproperly ensure that ioapics were initialized. A local attacker could use\nthis to cause a denial of service (system crash). (CVE-2018-19407)\n\nIt was discovered that the crypto subsystem of the Linux kernel leaked\nuninitialized memory to user space in some situations. A local attacker\ncould use this to expose sensitive information (kernel memory).\n(CVE-2018-19854)\n","is_hidden":false,"release_packages":{"bionic":[{"name":"linux-hwe","version":"4.18.0-14.15~18.04.1","description":"Linux hardware enablement (HWE) kernel","is_source":true},{"name":"linux-image-4.18.0-14-generic","version":"4.18.0-14.15~18.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-signed-hwe","version_link":"https://launchpad.net/ubuntu/+source/linux-signed-hwe/4.18.0-14.15~18.04.1","pocket":"security"},{"name":"linux-image-4.18.0-14-generic-lpae","version":"4.18.0-14.15~18.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-hwe","version_link":"https://launchpad.net/ubuntu/+source/linux-hwe/4.18.0-14.15~18.04.1","pocket":"security"},{"name":"linux-image-4.18.0-14-lowlatency","version":"4.18.0-14.15~18.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-signed-hwe","version_link":"https://launchpad.net/ubuntu/+source/linux-signed-hwe/4.18.0-14.15~18.04.1","pocket":"security"},{"name":"linux-image-4.18.0-14-snapdragon","version":"4.18.0-14.15~18.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-hwe","version_link":"https://launchpad.net/ubuntu/+source/linux-hwe/4.18.0-14.15~18.04.1","pocket":"security"},{"name":"linux-image-generic-hwe-18.04","version":"4.18.0.14.64","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta-hwe","version_link":"https://launchpad.net/ubuntu/+source/linux-meta-hwe/4.18.0.14.64","pocket":"security"},{"name":"linux-image-generic-lpae-hwe-18.04","version":"4.18.0.14.64","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta-hwe","version_link":"https://launchpad.net/ubuntu/+source/linux-meta-hwe/4.18.0.14.64","pocket":"security"},{"name":"linux-image-lowlatency-hwe-18.04","version":"4.18.0.14.64","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta-hwe","version_link":"https://launchpad.net/ubuntu/+source/linux-meta-hwe/4.18.0.14.64","pocket":"security"},{"name":"linux-image-snapdragon-hwe-18.04","version":"4.18.0.14.64","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta-hwe","version_link":"https://launchpad.net/ubuntu/+source/linux-meta-hwe/4.18.0.14.64","pocket":"security"},{"name":"linux-image-virtual-hwe-18.04","version":"4.18.0.14.64","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta-hwe","version_link":"https://launchpad.net/ubuntu/+source/linux-meta-hwe/4.18.0.14.64","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2018-14625","CVE-2018-16882","CVE-2018-19407","CVE-2018-19854"]},{"id":"USN-3878-2","title":"Linux kernel (Azure) vulnerabilities","summary":"Several security issues were fixed in the Linux kernel.\n","instructions":"After a standard system update you need to reboot your computer to make\nall the necessary changes.\n\nATTENTION: Due to an unavoidable ABI change the kernel updates have\nbeen given a new version number, which requires you to recompile and\nreinstall all third party kernel modules you might have installed.\nUnless you manually uninstalled the standard kernel metapackages\n(e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual,\nlinux-powerpc), a standard system upgrade will automatically perform\nthis as well.\n","references":[],"published":"2019-02-07T22:04:43.659638","description":"It was discovered that a race condition existed in the vsock address family\nimplementation of the Linux kernel that could lead to a use-after-free\ncondition. A local attacker in a guest virtual machine could use this to\nexpose sensitive information (host machine kernel memory). (CVE-2018-14625)\n\nCfir Cohen discovered that a use-after-free vulnerability existed in the\nKVM implementation of the Linux kernel, when handling interrupts in\nenvironments where nested virtualization is in use (nested KVM\nvirtualization is not enabled by default in Ubuntu kernels). A local\nattacker in a guest VM could possibly use this to gain administrative\nprivileges in a host machine. (CVE-2018-16882)\n\nWei Wu discovered that the KVM implementation in the Linux kernel did not\nproperly ensure that ioapics were initialized. A local attacker could use\nthis to cause a denial of service (system crash). (CVE-2018-19407)\n\nIt was discovered that the crypto subsystem of the Linux kernel leaked\nuninitialized memory to user space in some situations. A local attacker\ncould use this to expose sensitive information (kernel memory).\n(CVE-2018-19854)\n","is_hidden":false,"release_packages":{"cosmic":[{"name":"linux-azure","version":"4.18.0-1008.8","description":"Linux kernel for Microsoft Azure Cloud systems","is_source":true},{"name":"linux-image-4.18.0-1008-azure","version":"4.18.0-1008.8","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-azure","version_link":"https://launchpad.net/ubuntu/+source/linux-azure/4.18.0-1008.8"},{"name":"linux-image-azure","version":"4.18.0.1008.9","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-azure","version_link":"https://launchpad.net/ubuntu/+source/linux-azure/4.18.0-1008.8"}]},"type":"USN","cves_ids":["CVE-2018-14625","CVE-2018-16882","CVE-2018-19407","CVE-2018-19854"]},{"id":"USN-3871-3","title":"Linux kernel (AWS, GCP, KVM, OEM, Raspberry Pi 2) vulnerabilities","summary":"Several security issues were fixed in the Linux kernel.\n","instructions":"After a standard system update you need to reboot your computer to make\nall the necessary changes.\n\nATTENTION: Due to an unavoidable ABI change the kernel updates have\nbeen given a new version number, which requires you to recompile and\nreinstall all third party kernel modules you might have installed.\nUnless you manually uninstalled the standard kernel metapackages\n(e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual,\nlinux-powerpc), a standard system upgrade will automatically perform\nthis as well.\n","references":[],"published":"2019-02-04T23:00:32.430723","description":"Wen Xu discovered that a use-after-free vulnerability existed in the ext4\nfilesystem implementation in the Linux kernel. An attacker could use this\nto construct a malicious ext4 image that, when mounted, could cause a\ndenial of service (system crash) or possibly execute arbitrary code.\n(CVE-2018-10876, CVE-2018-10879)\n\nWen Xu discovered that a buffer overflow existed in the ext4 filesystem\nimplementation in the Linux kernel. An attacker could use this to construct\na malicious ext4 image that, when mounted, could cause a denial of service\n(system crash) or possibly execute arbitrary code. (CVE-2018-10877)\n\nWen Xu discovered that an out-of-bounds write vulnerability existed in the\next4 filesystem implementation in the Linux kernel. An attacker could use\nthis to construct a malicious ext4 image that, when mounted, could cause a\ndenial of service (system crash) or possibly execute arbitrary code.\n(CVE-2018-10878, CVE-2018-10882)\n\nWen Xu discovered that the ext4 filesystem implementation in the Linux\nkernel did not properly ensure that xattr information remained in inode\nbodies. An attacker could use this to construct a malicious ext4 image\nthat, when mounted, could cause a denial of service (system crash).\n(CVE-2018-10880)\n\nWen Xu discovered that the ext4 file system implementation in the Linux\nkernel could possibly perform an out of bounds write when updating the\njournal for an inline file. An attacker could use this to construct a\nmalicious ext4 image that, when mounted, could cause a denial of service\n(system crash). (CVE-2018-10883)\n\nIt was discovered that a race condition existed in the vsock address family\nimplementation of the Linux kernel that could lead to a use-after-free\ncondition. A local attacker in a guest virtual machine could use this to\nexpose sensitive information (host machine kernel memory). (CVE-2018-14625)\n\nCfir Cohen discovered that a use-after-free vulnerability existed in the\nKVM implementation of the Linux kernel, when handling interrupts in\nenvironments where nested virtualization is in use (nested KVM\nvirtualization is not enabled by default in Ubuntu kernels). A local\nattacker in a guest VM could possibly use this to gain administrative\nprivileges in a host machine. (CVE-2018-16882)\n\nJann Horn discovered that the procfs file system implementation in the\nLinux kernel did not properly restrict the ability to inspect the kernel\nstack of an arbitrary task. A local attacker could use this to expose\nsensitive information. (CVE-2018-17972)\n\nJann Horn discovered that the mremap() system call in the Linux kernel did\nnot properly flush the TLB when completing, potentially leaving access to a\nphysical page after it has been released to the page allocator. A local\nattacker could use this to cause a denial of service (system crash), expose\nsensitive information, or possibly execute arbitrary code. (CVE-2018-18281)\n\nWei Wu discovered that the KVM implementation in the Linux kernel did not\nproperly ensure that ioapics were initialized. A local attacker could use\nthis to cause a denial of service (system crash). (CVE-2018-19407)\n\nIt was discovered that the debug interface for the Linux kernel's HID\nsubsystem did not properly perform bounds checking in some situations. An\nattacker with access to debugfs could use this to cause a denial of service\nor possibly gain additional privileges. (CVE-2018-9516)\n","is_hidden":false,"release_packages":{"bionic":[{"name":"linux-aws","version":"4.15.0-1032.34","description":"Linux kernel for Amazon Web Services (AWS) systems","is_source":true},{"name":"linux-gcp","version":"4.15.0-1027.28","description":"Linux kernel for Google Cloud Platform (GCP) systems","is_source":true},{"name":"linux-kvm","version":"4.15.0-1029.29","description":"Linux kernel for cloud environments","is_source":true},{"name":"linux-oem","version":"4.15.0-1033.38","description":"Linux kernel for OEM processors","is_source":true},{"name":"linux-raspi2","version":"4.15.0-1031.33","description":"Linux kernel for Raspberry Pi 2","is_source":true},{"name":"linux-image-4.15.0-1027-gcp","version":"4.15.0-1027.28","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-signed-gcp","version_link":"https://launchpad.net/ubuntu/+source/linux-signed-gcp/4.15.0-1027.28","pocket":"security"},{"name":"linux-image-4.15.0-1029-kvm","version":"4.15.0-1029.29","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-kvm","version_link":"https://launchpad.net/ubuntu/+source/linux-kvm/4.15.0-1029.29","pocket":"security"},{"name":"linux-image-4.15.0-1031-raspi2","version":"4.15.0-1031.33","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-raspi2","version_link":"https://launchpad.net/ubuntu/+source/linux-raspi2/4.15.0-1031.33","pocket":"security"},{"name":"linux-image-4.15.0-1032-aws","version":"4.15.0-1032.34","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-aws","version_link":"https://launchpad.net/ubuntu/+source/linux-aws/4.15.0-1032.34","pocket":"security"},{"name":"linux-image-4.15.0-1033-oem","version":"4.15.0-1033.38","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-signed-oem","version_link":"https://launchpad.net/ubuntu/+source/linux-signed-oem/4.15.0-1033.38","pocket":"security"},{"name":"linux-image-aws","version":"4.15.0.1032.31","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta-aws","version_link":"https://launchpad.net/ubuntu/+source/linux-meta-aws/4.15.0.1032.31","pocket":"security"},{"name":"linux-image-gcp","version":"4.15.0.1027.29","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta-gcp","version_link":"https://launchpad.net/ubuntu/+source/linux-meta-gcp/4.15.0.1027.29","pocket":"security"},{"name":"linux-image-gke","version":"4.15.0.1027.29","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta-gcp","version_link":"https://launchpad.net/ubuntu/+source/linux-meta-gcp/4.15.0.1027.29","pocket":"security"},{"name":"linux-image-kvm","version":"4.15.0.1029.29","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta-kvm","version_link":"https://launchpad.net/ubuntu/+source/linux-meta-kvm/4.15.0.1029.29","pocket":"security"},{"name":"linux-image-oem","version":"4.15.0.1033.38","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta-oem","version_link":"https://launchpad.net/ubuntu/+source/linux-meta-oem/4.15.0.1033.38","pocket":"security"},{"name":"linux-image-raspi2","version":"4.15.0.1031.29","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-meta-raspi2","version_link":"https://launchpad.net/ubuntu/+source/linux-meta-raspi2/4.15.0.1031.29","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2018-10876","CVE-2018-10877","CVE-2018-10878","CVE-2018-10879","CVE-2018-10880","CVE-2018-10882","CVE-2018-10883","CVE-2018-14625","CVE-2018-16882","CVE-2018-17972","CVE-2018-18281","CVE-2018-19407","CVE-2018-9516"]}]},{"id":"CVE-2018-19364","published":"2018-11-20T00:00:00","updated_at":"2025-08-25T22:51:39.300474+00:00","description":"\nhw/9pfs/cofile.c and hw/9pfs/9p.c in QEMU can modify an fid path while it\nis being accessed by a second thread, leading to (for example) a\nuse-after-free outcome.","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":5.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":5.5,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://www.openwall.com/lists/oss-security/2018/11/20/1","https://lists.gnu.org/archive/html/qemu-devel/2018-11/msg01139.html","https://lists.gnu.org/archive/html/qemu-devel/2018-11/msg02795.html","https://ubuntu.com/security/notices/USN-3826-1","https://www.cve.org/CVERecord?id=CVE-2018-19364"],"bugs":[""],"patches":{"qemu-kvm":[],"qemu":["upstream: https://git.qemu.org/?p=qemu.git;a=commit;h=5b76ef50f62079a2389ba28cacaf6cce68b1a0ed","upstream: https://git.qemu.org/?p=qemu.git;a=commit;h=5b3c77aa581ebb215125c84b0742119483571e55"]},"tags":{},"packages":[{"name":"qemu","source":"https://ubuntu.com/security/cve?package=qemu","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=qemu","debian":"https://tracker.debian.org/pkg/qemu","statuses":[{"release_codename":"hirsute","status":"released","description":"1:2.12+dfsg-3ubuntu9","component":null,"pocket":"security"},{"release_codename":"bionic","status":"released","description":"1:2.11+dfsg-1ubuntu7.8","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"released","description":"1:2.12+dfsg-3ubuntu8.1","component":null,"pocket":"security"},{"release_codename":"disco","status":"released","description":"1:2.12+dfsg-3ubuntu9","component":null,"pocket":"security"},{"release_codename":"eoan","status":"released","description":"1:2.12+dfsg-3ubuntu9","component":null,"pocket":"security"},{"release_codename":"focal","status":"released","description":"1:2.12+dfsg-3ubuntu9","component":null,"pocket":"security"},{"release_codename":"groovy","status":"released","description":"1:2.12+dfsg-3ubuntu9","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"2.0.0+dfsg-2ubuntu1.44","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"1:2.5+dfsg-5ubuntu10.33","component":null,"pocket":"security"}]},{"name":"qemu-kvm","source":"https://ubuntu.com/security/cve?package=qemu-kvm","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=qemu-kvm","debian":"https://tracker.debian.org/pkg/qemu-kvm","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"disco","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"eoan","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"groovy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-3826-1"],"notices":[{"id":"USN-3826-1","title":"QEMU vulnerabilities","summary":"Several security issues were fixed in QEMU.\n","instructions":"After a standard system update you need to restart all QEMU virtual\nmachines to make all the necessary changes.\n","references":[],"published":"2018-11-26T14:23:51.516640","description":"Daniel Shapira and Arash Tohidi discovered that QEMU incorrectly handled\nNE2000 device emulation. An attacker inside the guest could use this issue\nto cause QEMU to crash, resulting in a denial of service. (CVE-2018-10839)\n\nIt was discovered that QEMU incorrectly handled the Slirp networking\nback-end. A privileged attacker inside the guest could use this issue to\ncause QEMU to crash, resulting in a denial of service, or possibly execute\narbitrary code on the host. In the default installation, when QEMU is used\nwith libvirt, attackers would be isolated by the libvirt AppArmor profile.\nThis issue only affected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS and Ubuntu\n18.04 LTS. (CVE-2018-11806)\n\nFakhri Zulkifli discovered that the QEMU guest agent incorrectly handled\ncertain QMP commands. An attacker could possibly use this issue to crash\nthe QEMU guest agent, resulting in a denial of service. (CVE-2018-12617)\n\nLi Qiang discovered that QEMU incorrectly handled NVM Express Controller\nemulation. An attacker inside the guest could use this issue to cause QEMU\nto crash, resulting in a denial of service, or possibly execute arbitrary\ncode on the host. In the default installation, when QEMU is used with\nlibvirt, attackers would be isolated by the libvirt AppArmor profile. This\nissue only affected Ubuntu 18.04 LTS and Ubuntu 18.10. (CVE-2018-16847)\n\nDaniel Shapira and Arash Tohidi discovered that QEMU incorrectly handled\nRTL8139 device emulation. An attacker inside the guest could use this issue\nto cause QEMU to crash, resulting in a denial of service. (CVE-2018-17958)\n\nDaniel Shapira and Arash Tohidi discovered that QEMU incorrectly handled\nPCNET device emulation. An attacker inside the guest could use this issue\nto cause QEMU to crash, resulting in a denial of service. (CVE-2018-17962)\n\nDaniel Shapira discovered that QEMU incorrectly handled large packet sizes.\nAn attacker inside the guest could use this issue to cause QEMU to crash,\nresulting in a denial of service. (CVE-2018-17963)\n\nIt was discovered that QEMU incorrectly handled LSI53C895A device\nemulation. An attacker inside the guest could use this issue to cause QEMU\nto crash, resulting in a denial of service. (CVE-2018-18849)\n\nMoguofang discovered that QEMU incorrectly handled the IPowerNV LPC\ncontroller. An attacker inside the guest could use this issue to cause QEMU\nto crash, resulting in a denial of service. This issue only affected Ubuntu\n18.04 LTS and Ubuntu 18.10. (CVE-2018-18954)\n\nZhibin Hu discovered that QEMU incorrectly handled the Plan 9 File System\nsupport. An attacker inside the guest could use this issue to cause QEMU\nto crash, resulting in a denial of service. (CVE-2018-19364)\n","is_hidden":false,"release_packages":{"bionic":[{"name":"qemu","version":"1:2.11+dfsg-1ubuntu7.8","description":"Machine emulator and virtualizer","is_source":true},{"name":"qemu","version":"1:2.11+dfsg-1ubuntu7.8","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.11+dfsg-1ubuntu7.8","pocket":"security"},{"name":"qemu-block-extra","version":"1:2.11+dfsg-1ubuntu7.8","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.11+dfsg-1ubuntu7.8","pocket":"security"},{"name":"qemu-guest-agent","version":"1:2.11+dfsg-1ubuntu7.8","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.11+dfsg-1ubuntu7.8","pocket":"security"},{"name":"qemu-kvm","version":"1:2.11+dfsg-1ubuntu7.8","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.11+dfsg-1ubuntu7.8","pocket":"security"},{"name":"qemu-system","version":"1:2.11+dfsg-1ubuntu7.8","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.11+dfsg-1ubuntu7.8","pocket":"security"},{"name":"qemu-system-arm","version":"1:2.11+dfsg-1ubuntu7.8","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.11+dfsg-1ubuntu7.8","pocket":"security"},{"name":"qemu-system-common","version":"1:2.11+dfsg-1ubuntu7.8","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.11+dfsg-1ubuntu7.8","pocket":"security"},{"name":"qemu-system-mips","version":"1:2.11+dfsg-1ubuntu7.8","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.11+dfsg-1ubuntu7.8","pocket":"security"},{"name":"qemu-system-misc","version":"1:2.11+dfsg-1ubuntu7.8","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.11+dfsg-1ubuntu7.8","pocket":"security"},{"name":"qemu-system-ppc","version":"1:2.11+dfsg-1ubuntu7.8","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.11+dfsg-1ubuntu7.8","pocket":"security"},{"name":"qemu-system-s390x","version":"1:2.11+dfsg-1ubuntu7.8","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.11+dfsg-1ubuntu7.8","pocket":"security"},{"name":"qemu-system-sparc","version":"1:2.11+dfsg-1ubuntu7.8","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.11+dfsg-1ubuntu7.8","pocket":"security"},{"name":"qemu-system-x86","version":"1:2.11+dfsg-1ubuntu7.8","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.11+dfsg-1ubuntu7.8","pocket":"security"},{"name":"qemu-user","version":"1:2.11+dfsg-1ubuntu7.8","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.11+dfsg-1ubuntu7.8","pocket":"security"},{"name":"qemu-user-binfmt","version":"1:2.11+dfsg-1ubuntu7.8","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.11+dfsg-1ubuntu7.8","pocket":"security"},{"name":"qemu-user-static","version":"1:2.11+dfsg-1ubuntu7.8","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.11+dfsg-1ubuntu7.8","pocket":"security"},{"name":"qemu-utils","version":"1:2.11+dfsg-1ubuntu7.8","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.11+dfsg-1ubuntu7.8","pocket":"security"}],"cosmic":[{"name":"qemu","version":"1:2.12+dfsg-3ubuntu8.1","description":"Machine emulator and virtualizer","is_source":true},{"name":"qemu-system","version":"1:2.12+dfsg-3ubuntu8.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.12+dfsg-3ubuntu8.1"},{"name":"qemu-system-arm","version":"1:2.12+dfsg-3ubuntu8.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.12+dfsg-3ubuntu8.1"},{"name":"qemu-system-mips","version":"1:2.12+dfsg-3ubuntu8.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.12+dfsg-3ubuntu8.1"},{"name":"qemu-system-misc","version":"1:2.12+dfsg-3ubuntu8.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.12+dfsg-3ubuntu8.1"},{"name":"qemu-system-ppc","version":"1:2.12+dfsg-3ubuntu8.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.12+dfsg-3ubuntu8.1"},{"name":"qemu-system-s390x","version":"1:2.12+dfsg-3ubuntu8.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.12+dfsg-3ubuntu8.1"},{"name":"qemu-system-sparc","version":"1:2.12+dfsg-3ubuntu8.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.12+dfsg-3ubuntu8.1"},{"name":"qemu-system-x86","version":"1:2.12+dfsg-3ubuntu8.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.12+dfsg-3ubuntu8.1"}],"trusty":[{"name":"qemu","version":"2.0.0+dfsg-2ubuntu1.44","description":"Machine emulator and virtualizer","is_source":true},{"name":"qemu","version":"2.0.0+dfsg-2ubuntu1.44","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.44","pocket":"security"},{"name":"qemu-common","version":"2.0.0+dfsg-2ubuntu1.44","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.44","pocket":"security"},{"name":"qemu-guest-agent","version":"2.0.0+dfsg-2ubuntu1.44","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.44","pocket":"security"},{"name":"qemu-keymaps","version":"2.0.0+dfsg-2ubuntu1.44","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.44","pocket":"security"},{"name":"qemu-kvm","version":"2.0.0+dfsg-2ubuntu1.44","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.44","pocket":"security"},{"name":"qemu-system","version":"2.0.0+dfsg-2ubuntu1.44","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.44","pocket":"security"},{"name":"qemu-system-aarch64","version":"2.0.0+dfsg-2ubuntu1.44","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.44","pocket":"security"},{"name":"qemu-system-arm","version":"2.0.0+dfsg-2ubuntu1.44","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.44","pocket":"security"},{"name":"qemu-system-common","version":"2.0.0+dfsg-2ubuntu1.44","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.44","pocket":"security"},{"name":"qemu-system-mips","version":"2.0.0+dfsg-2ubuntu1.44","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.44","pocket":"security"},{"name":"qemu-system-misc","version":"2.0.0+dfsg-2ubuntu1.44","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.44","pocket":"security"},{"name":"qemu-system-ppc","version":"2.0.0+dfsg-2ubuntu1.44","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.44","pocket":"security"},{"name":"qemu-system-sparc","version":"2.0.0+dfsg-2ubuntu1.44","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.44","pocket":"security"},{"name":"qemu-system-x86","version":"2.0.0+dfsg-2ubuntu1.44","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.44","pocket":"security"},{"name":"qemu-user","version":"2.0.0+dfsg-2ubuntu1.44","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.44","pocket":"security"},{"name":"qemu-user-static","version":"2.0.0+dfsg-2ubuntu1.44","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.44","pocket":"security"},{"name":"qemu-utils","version":"2.0.0+dfsg-2ubuntu1.44","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.44","pocket":"security"}],"xenial":[{"name":"qemu","version":"1:2.5+dfsg-5ubuntu10.33","description":"Machine emulator and virtualizer","is_source":true},{"name":"qemu","version":"1:2.5+dfsg-5ubuntu10.33","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.33","pocket":"security"},{"name":"qemu-block-extra","version":"1:2.5+dfsg-5ubuntu10.33","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.33","pocket":"security"},{"name":"qemu-guest-agent","version":"1:2.5+dfsg-5ubuntu10.33","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.33","pocket":"security"},{"name":"qemu-kvm","version":"1:2.5+dfsg-5ubuntu10.33","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.33","pocket":"security"},{"name":"qemu-system","version":"1:2.5+dfsg-5ubuntu10.33","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.33","pocket":"security"},{"name":"qemu-system-aarch64","version":"1:2.5+dfsg-5ubuntu10.33","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.33","pocket":"security"},{"name":"qemu-system-arm","version":"1:2.5+dfsg-5ubuntu10.33","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.33","pocket":"security"},{"name":"qemu-system-common","version":"1:2.5+dfsg-5ubuntu10.33","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.33","pocket":"security"},{"name":"qemu-system-mips","version":"1:2.5+dfsg-5ubuntu10.33","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.33","pocket":"security"},{"name":"qemu-system-misc","version":"1:2.5+dfsg-5ubuntu10.33","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.33","pocket":"security"},{"name":"qemu-system-ppc","version":"1:2.5+dfsg-5ubuntu10.33","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.33","pocket":"security"},{"name":"qemu-system-s390x","version":"1:2.5+dfsg-5ubuntu10.33","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.33","pocket":"security"},{"name":"qemu-system-sparc","version":"1:2.5+dfsg-5ubuntu10.33","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.33","pocket":"security"},{"name":"qemu-system-x86","version":"1:2.5+dfsg-5ubuntu10.33","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.33","pocket":"security"},{"name":"qemu-user","version":"1:2.5+dfsg-5ubuntu10.33","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.33","pocket":"security"},{"name":"qemu-user-binfmt","version":"1:2.5+dfsg-5ubuntu10.33","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.33","pocket":"security"},{"name":"qemu-user-static","version":"1:2.5+dfsg-5ubuntu10.33","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.33","pocket":"security"},{"name":"qemu-utils","version":"1:2.5+dfsg-5ubuntu10.33","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.33","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2018-10839","CVE-2018-11806","CVE-2018-12617","CVE-2018-16847","CVE-2018-17958","CVE-2018-17962","CVE-2018-17963","CVE-2018-18849","CVE-2018-18954","CVE-2018-19364"]}]},{"id":"CVE-2018-19358","published":"2018-11-18T19:29:00","updated_at":"2025-08-04T19:27:34.070613+00:00","description":"\nGNOME Keyring through 3.28.2 allows local users to retrieve login\ncredentials via a Secret Service API call and the D-Bus interface if the\nkeyring is unlocked, a similar issue to CVE-2008-7320. One perspective is\nthat this occurs because available D-Bus protection mechanisms (involving\nthe busconfig and policy XML elements) are not used. NOTE: the vendor\ndisputes this because, according to the security model, untrusted\napplications must not be allowed to access the user's session bus socket.","ubuntu_description":"","notes":[{"author":"msalvatore","note":"Upstream may say this is by design. See upstream FAQ."}],"codename":null,"priority":"low","cvss3":7.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":7.8,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://github.com/sungjungk/keyring_crack","https://www.youtube.com/watch?v=Do4E9ZQaPck","https://wiki.gnome.org/Projects/GnomeKeyring/SecurityFAQ","https://www.cve.org/CVERecord?id=CVE-2018-19358"],"bugs":["https://bugs.launchpad.net/ubuntu/+source/gnome-keyring/+bug/1780365","https://gitlab.gnome.org/GNOME/gnome-keyring/issues/5"],"patches":{"gnome-keyring":[]},"tags":{},"packages":[{"name":"gnome-keyring","source":"https://ubuntu.com/security/cve?package=gnome-keyring","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=gnome-keyring","debian":"https://tracker.debian.org/pkg/gnome-keyring","statuses":[{"release_codename":"cosmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"disco","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"disputed","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"disputed","component":null,"pocket":"security"},{"release_codename":"groovy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"disputed","component":null,"pocket":"security"},{"release_codename":"impish","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"lunar","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"eoan","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needed","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"disputed","component":null,"pocket":"security"},{"release_codename":"mantic","status":"ignored","description":"end of life, was needed","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"disputed","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2008-7320","published":"2018-11-18T19:29:00","updated_at":"2025-08-04T19:23:22.792771+00:00","description":"\nGNOME Seahorse through 3.30 allows physically proximate attackers to read\nplaintext passwords by using the quickAllow dialog at an unattended\nworkstation, if the keyring is unlocked. NOTE: this is disputed by a\nsoftware maintainer because the behavior represents a design decision","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":6.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","attackVector":"PHYSICAL","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":6.8,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://bugs.launchpad.net/ubuntu/+source/seahorse/+bug/189774","https://bugs.launchpad.net/ubuntu/+source/seahorse/+bug/189774/comments/13","https://bugzilla.gnome.org/show_bug.cgi?id=551036","https://www.bountysource.com/issues/3849352-seahorse-shows-passwords-without-verification","https://www.cve.org/CVERecord?id=CVE-2008-7320"],"bugs":[""],"patches":{"seahorse":[]},"tags":{},"packages":[{"name":"seahorse","source":"https://ubuntu.com/security/cve?package=seahorse","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=seahorse","debian":"https://tracker.debian.org/pkg/seahorse","statuses":[{"release_codename":"kinetic","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"disco","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"eoan","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"groovy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"impish","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"lunar","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"disputed","component":null,"pocket":"security"},{"release_codename":"mantic","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"disputed","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"disputed","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"disputed","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"disputed","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needs-triage","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2018-19352","published":"2018-11-18T17:29:00","updated_at":"2025-08-25T22:51:34.744515+00:00","description":"\nJupyter Notebook before 5.7.2 allows XSS via a crafted directory name\nbecause notebook/static/tree/js/notebooklist.js handles certain URLs\nunsafely.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":6.1,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"CHANGED","confidentialityImpact":"LOW","integrityImpact":"LOW","availabilityImpact":"NONE","baseScore":6.1,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://github.com/jupyter/notebook/commit/288b73e1edbf527740e273fcc69b889460871648","https://github.com/jupyter/notebook/blob/master/docs/source/changelog.rst","https://pypi.org/project/notebook/#history","https://www.cve.org/CVERecord?id=CVE-2018-19352"],"bugs":[""],"patches":{"jupyter-notebook":[]},"tags":{},"packages":[{"name":"jupyter-notebook","source":"https://ubuntu.com/security/cve?package=jupyter-notebook","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=jupyter-notebook","debian":"https://tracker.debian.org/pkg/jupyter-notebook","statuses":[{"release_codename":"bionic","status":"not-affected","description":"code not present","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"5.7.4-1","component":null,"pocket":"security"},{"release_codename":"eoan","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"5.7.4-1","component":null,"pocket":"security"},{"release_codename":"groovy","status":"not-affected","description":"5.7.4-1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"5.7.4-1","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2018-19351","published":"2018-11-18T17:29:00","updated_at":"2025-08-25T22:51:34.744515+00:00","description":"\nJupyter Notebook before 5.7.1 allows XSS via an untrusted notebook because\nnbconvert responses are considered to have the same origin as the notebook\nserver. In other words, nbconvert endpoints can execute JavaScript with\naccess to the server API. In notebook/nbconvert/handlers.py,\nNbconvertFileHandler and NbconvertPostHandler do not set a Content Security\nPolicy to prevent this.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":6.1,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"CHANGED","confidentialityImpact":"LOW","integrityImpact":"LOW","availabilityImpact":"NONE","baseScore":6.1,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://github.com/jupyter/notebook/commit/107a89fce5f413fb5728c1c5d2c7788e1fb17491","https://github.com/jupyter/notebook/blob/master/docs/source/changelog.rst","https://groups.google.com/forum/#!topic/jupyter/hWzu2BSsplY","https://pypi.org/project/notebook/#history","https://ubuntu.com/security/notices/USN-5585-1","https://www.cve.org/CVERecord?id=CVE-2018-19351"],"bugs":["https://bugs.launchpad.net/ubuntu/+source/jupyter-notebook/+bug/1982670"],"patches":{"jupyter-notebook":[]},"tags":{},"packages":[{"name":"jupyter-notebook","source":"https://ubuntu.com/security/cve?package=jupyter-notebook","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=jupyter-notebook","debian":"https://tracker.debian.org/pkg/jupyter-notebook","statuses":[{"release_codename":"groovy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"bionic","status":"released","description":"5.2.2-1ubuntu0.1","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"5.7.4-1","component":null,"pocket":"security"},{"release_codename":"eoan","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"6.0.3-2","component":null,"pocket":"security"},{"release_codename":"impish","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"6.4.8-1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"5.7.1","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-5585-1"],"notices":[{"id":"USN-5585-1","title":"Jupyter Notebook vulnerabilities","summary":"Several security issues were fixed in Jupyter Notebook.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2022-08-30T09:26:17.639909","description":"It was discovered that Jupyter Notebook incorrectly handled certain notebooks.\nAn attacker could possibly use this issue of lack of Content Security Policy\nin Nbconvert to perform cross-site scripting (XSS) attacks on the notebook\nserver. This issue only affected Ubuntu 18.04 LTS. (CVE-2018-19351)\n\nIt was discovered that Jupyter Notebook incorrectly handled certain SVG\ndocuments. An attacker could possibly use this issue to perform cross-site\nscripting (XSS) attacks. This issue only affected Ubuntu 18.04 LTS.\n(CVE-2018-21030)\n\nIt was discovered that Jupyter Notebook incorrectly filtered certain URLs on\nthe login page. An attacker could possibly use this issue to perform\nopen-redirect attack. This issue only affected Ubuntu 18.04 LTS.\n(CVE-2019-10255)\n\nIt was discovered that Jupyter Notebook had an incomplete fix for\nCVE-2019-10255. An attacker could possibly use this issue to perform\nopen-redirect attack using empty netloc. (CVE-2019-10856)\n\nIt was discovered that Jupyter Notebook incorrectly handled the inclusion of\nremote pages on Jupyter server. An attacker could possibly use this issue to\nperform cross-site script inclusion (XSSI) attacks. This issue only affected\nUbuntu 18.04 LTS. (CVE-2019-9644)\n\nIt was discovered that Jupyter Notebook incorrectly filtered certain URLs to a\nnotebook. An attacker could possibly use this issue to perform open-redirect\nattack. This issue only affected Ubuntu 18.04 LTS and Ubuntu 20.04 LTS.\n(CVE-2020-26215)\n\nIt was discovered that Jupyter Notebook server access logs were not protected.\nAn attacker having access to the notebook server could possibly use this issue\nto get access to steal sensitive information such as auth/cookies.\n(CVE-2022-24758)\n\nIt was discovered that Jupyter Notebook incorrectly configured hidden files on\nthe server. An authenticated attacker could possibly use this issue to see\nunwanted sensitive hidden files from the server which may result in getting\nfull access to the server. This issue only affected Ubuntu 20.04 LTS and\nUbuntu 22.04 LTS. (CVE-2022-29238)\n","is_hidden":false,"release_packages":{"jammy":[{"name":"jupyter-notebook","version":"6.4.8-1ubuntu0.1","description":"Jupyter interactive notebook","is_source":true},{"name":"python3-notebook","version":"6.4.8-1ubuntu0.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/jupyter-notebook","version_link":"https://launchpad.net/ubuntu/+source/jupyter-notebook/6.4.8-1ubuntu0.1","pocket":"security"},{"name":"python-notebook-doc","version":"6.4.8-1ubuntu0.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/jupyter-notebook","version_link":"https://launchpad.net/ubuntu/+source/jupyter-notebook/6.4.8-1ubuntu0.1","pocket":"security"},{"name":"jupyter-notebook","version":"6.4.8-1ubuntu0.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/jupyter-notebook","version_link":"https://launchpad.net/ubuntu/+source/jupyter-notebook/6.4.8-1ubuntu0.1","pocket":"security"}],"focal":[{"name":"jupyter-notebook","version":"6.0.3-2ubuntu0.1","description":"Jupyter interactive notebook","is_source":true},{"name":"python3-notebook","version":"6.0.3-2ubuntu0.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/jupyter-notebook","version_link":"https://launchpad.net/ubuntu/+source/jupyter-notebook/6.0.3-2ubuntu0.1","pocket":"security"},{"name":"python-notebook-doc","version":"6.0.3-2ubuntu0.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/jupyter-notebook","version_link":"https://launchpad.net/ubuntu/+source/jupyter-notebook/6.0.3-2ubuntu0.1","pocket":"security"},{"name":"jupyter-notebook","version":"6.0.3-2ubuntu0.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/jupyter-notebook","version_link":"https://launchpad.net/ubuntu/+source/jupyter-notebook/6.0.3-2ubuntu0.1","pocket":"security"}],"bionic":[{"name":"jupyter-notebook","version":"5.2.2-1ubuntu0.1","description":"Jupyter interactive notebook","is_source":true},{"name":"python3-notebook","version":"5.2.2-1ubuntu0.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/jupyter-notebook","version_link":"https://launchpad.net/ubuntu/+source/jupyter-notebook/5.2.2-1ubuntu0.1","pocket":"security"},{"name":"python-notebook-doc","version":"5.2.2-1ubuntu0.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/jupyter-notebook","version_link":"https://launchpad.net/ubuntu/+source/jupyter-notebook/5.2.2-1ubuntu0.1","pocket":"security"},{"name":"python-notebook","version":"5.2.2-1ubuntu0.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/jupyter-notebook","version_link":"https://launchpad.net/ubuntu/+source/jupyter-notebook/5.2.2-1ubuntu0.1","pocket":"security"},{"name":"jupyter-notebook","version":"5.2.2-1ubuntu0.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/jupyter-notebook","version_link":"https://launchpad.net/ubuntu/+source/jupyter-notebook/5.2.2-1ubuntu0.1","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2022-24758","CVE-2019-9644","CVE-2022-29238","CVE-2018-21030","CVE-2020-26215","CVE-2019-10856","CVE-2019-10255","CVE-2018-19351"]}]},{"id":"CVE-2018-19274","published":"2018-11-17T13:29:00","updated_at":"2025-08-18T17:08:00.281595+00:00","description":"\nPassing an absolute path to a file_exists check in phpBB before 3.2.4\nallows Remote Code Execution through Object Injection by employing Phar\ndeserialization when an attacker has access to the Admin Control Panel with\nfounder permissions.","ubuntu_description":"\nIt was discovered that rkhunter is vulnerable to object injection\nvulnerability. An attacker could use it for remote code execution.","notes":[],"codename":null,"priority":"medium","cvss3":7.2,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"HIGH","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":7.2,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://www.phpbb.com/community/viewtopic.php?f=14&t=2492206","https://www.cve.org/CVERecord?id=CVE-2018-19274"],"bugs":[""],"patches":{"phpbb3":[]},"tags":{},"packages":[{"name":"phpbb3","source":"https://ubuntu.com/security/cve?package=phpbb3","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=phpbb3","debian":"https://tracker.debian.org/pkg/phpbb3","statuses":[{"release_codename":"xenial","status":"needed","description":"","component":null,"pocket":"security"},{"release_codename":"eoan","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"3.0.12-1ubuntu0.1~esm1","component":null,"pocket":"esm-infra"},{"release_codename":"hirsute","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"disco","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"groovy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"impish","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"3.0.12-5+deb8u2","component":null,"pocket":"security"},{"release_codename":"mantic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"plucky","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"resolute","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"questing","status":"DNE","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2018-19296","published":"2018-11-16T09:29:00","updated_at":"2025-08-25T22:51:34.744515+00:00","description":"\nPHPMailer before 5.2.27 and 6.x before 6.0.6 is vulnerable to an object\ninjection attack.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":8.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":8.8,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://github.com/PHPMailer/PHPMailer/commit/f1231a9771505f4f34da060390d82eadb8448271","https://github.com/PHPMailer/PHPMailer/releases/tag/v5.2.27","https://github.com/PHPMailer/PHPMailer/releases/tag/v6.0.6","https://ubuntu.com/security/notices/USN-5956-1","https://www.cve.org/CVERecord?id=CVE-2018-19296"],"bugs":[""],"patches":{"libphp-phpmailer":["upstream: https://github.com/PHPMailer/PHPMailer/commit/f1231a9771505f4f34da060390d82eadb8448271"]},"tags":{},"packages":[{"name":"libphp-phpmailer","source":"https://ubuntu.com/security/cve?package=libphp-phpmailer","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=libphp-phpmailer","debian":"https://tracker.debian.org/pkg/libphp-phpmailer","statuses":[{"release_codename":"hirsute","status":"not-affected","description":"5.2.14+dfsg-2.4","component":null,"pocket":"security"},{"release_codename":"bionic","status":"released","description":"5.2.14+dfsg-2.3+deb9u1build0.18.04.1","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"released","description":"5.2.14+dfsg-2.3+deb9u1build0.18.04.1","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"5.2.14+dfsg-2.4","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"5.2.14+dfsg-2.4","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"5.2.14+dfsg-2.4","component":null,"pocket":"security"},{"release_codename":"groovy","status":"not-affected","description":"5.2.14+dfsg-2.4","component":null,"pocket":"security"},{"release_codename":"impish","status":"not-affected","description":"5.2.14+dfsg-2.4","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"5.2.14+dfsg-2.4","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"5.2.14+dfsg-2.3+deb9u1, 5.2.14+dfsg-2.4, 5.2.27","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"5.2.14+dfsg-1ubuntu0.1~esm1","component":null,"pocket":"esm-apps"},{"release_codename":"trusty","status":"DNE","description":"trusty was needed","component":null,"pocket":"security"}]}],"notices_ids":["USN-5956-1"],"notices":[{"id":"USN-5956-1","title":"PHPMailer vulnerabilities","summary":"Several security issues were fixed in PHPMailer.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2023-03-15T14:33:12.444421","description":"Dawid Golunski discovered that PHPMailer was not properly escaping user\ninput data used as arguments to functions executed by the system shell. An\nattacker could possibly use this issue to execute arbitrary code. This\nissue only affected Ubuntu 16.04 ESM. (CVE-2016-10033, CVE-2016-10045)\n\nIt was discovered that PHPMailer was not properly escaping characters\nin certain fields of the code_generator.php example code. An attacker\ncould possibly use this issue to conduct cross-site scripting (XSS)\nattacks. This issue was only fixed in Ubuntu 16.04 ESM and Ubuntu 18.04\nESM. (CVE-2017-11503)\n\nYongxiang Li discovered that PHPMailer was not properly converting\nrelative paths provided as user input when adding attachments to messages,\nwhich could lead to relative image URLs being treated as absolute local\nfile paths and added as attachments. An attacker could possibly use this\nissue to access unauthorized resources and expose sensitive information.\nThis issue only affected Ubuntu 16.04 ESM. (CVE-2017-5223)\n\nSehun Oh discovered that PHPMailer was not properly processing untrusted\nnon-local file attachments, which could lead to an object injection. An\nattacker could possibly use this issue to execute arbitrary code. This\nissue only affected Ubuntu 16.04 ESM. (CVE-2018-19296)\n\nElar Lang discovered that PHPMailer was not properly escaping file\nattachment names, which could lead to a misinterpretation of file types\nby entities processing the message. An attacker could possibly use this\nissue to bypass attachment filters. This issue was only fixed in Ubuntu\n16.04 ESM and Ubuntu 20.04 ESM. (CVE-2020-13625)\n\nIt was discovered that PHPMailer was not properly handling callables in\nits validateAddress function, which could result in untrusted code being\ncalled should the global namespace contain a function called 'php'. An\nattacker could possibly use this issue to execute arbitrary code. This\nissue was only fixed in Ubuntu 20.04 ESM and Ubuntu 22.04 ESM.\n(CVE-2021-3603)\n","is_hidden":false,"release_packages":{"jammy":[{"name":"libphp-phpmailer","version":"6.2.0-2ubuntu0.1~esm1","description":"full featured email transfer class for PHP","is_source":true},{"name":"libphp-phpmailer","version":"6.2.0-2ubuntu0.1~esm1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/libphp-phpmailer","version_link":null,"pocket":"esm-apps"}],"focal":[{"name":"libphp-phpmailer","version":"6.0.6-0.1ubuntu0.1~esm1","description":"full featured email transfer class for PHP","is_source":true},{"name":"libphp-phpmailer","version":"6.0.6-0.1ubuntu0.1~esm1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/libphp-phpmailer","version_link":null,"pocket":"esm-apps"}],"bionic":[{"name":"libphp-phpmailer","version":"5.2.14+dfsg-2.3+deb9u2ubuntu0.1~esm1","description":"full featured email transfer class for PHP","is_source":true},{"name":"libphp-phpmailer","version":"5.2.14+dfsg-2.3+deb9u2ubuntu0.1~esm1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/libphp-phpmailer","version_link":null,"pocket":"esm-apps"}],"xenial":[{"name":"libphp-phpmailer","version":"5.2.14+dfsg-1ubuntu0.1~esm1","description":"full featured email transfer class for PHP","is_source":true},{"name":"libphp-phpmailer","version":"5.2.14+dfsg-1ubuntu0.1~esm1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/libphp-phpmailer","version_link":null,"pocket":"esm-apps"}]},"type":"USN","cves_ids":["CVE-2021-3603","CVE-2016-10045","CVE-2017-5223","CVE-2016-10033","CVE-2018-19296","CVE-2017-11503","CVE-2020-13625"]}]},{"id":"CVE-2018-18955","published":"2018-11-16T00:00:00","updated_at":"2026-07-04T07:46:37.379165+00:00","description":"\nIn the Linux kernel 4.15.x through 4.19.x before 4.19.2, map_write() in\nkernel/user_namespace.c allows privilege escalation because it mishandles\nnested user namespaces with more than 5 UID or GID ranges. A user who has\nCAP_SYS_ADMIN in an affected user namespace can bypass access controls on\nresources outside the namespace, as demonstrated by reading /etc/shadow.\nThis occurs because an ID transformation takes place properly for the\nnamespaced-to-kernel direction but not for the kernel-to-namespaced\ndirection.","ubuntu_description":"\nJann Horn discovered that the Linux kernel mishandles mapping UID or GID\nranges inside nested user namespaces in some situations. A local attacker\ncould use this to bypass access controls on resources outside the\nnamespace.","notes":[],"codename":null,"priority":"medium","cvss3":7.0,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H","attackVector":"LOCAL","attackComplexity":"HIGH","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":7.0,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-3832-1","https://ubuntu.com/security/notices/USN-3833-1","https://ubuntu.com/security/notices/USN-3836-1","https://ubuntu.com/security/notices/USN-3835-1","https://ubuntu.com/security/notices/USN-3836-2","https://www.cve.org/CVERecord?id=CVE-2018-18955"],"bugs":["https://launchpad.net/bugs/1801924"],"patches":{"linux":["break-fix: 6397fac4915ab3002dc15aae751455da1a852f25 d2f007dbe7e4c9583eea6eb04d60001e85c6f1bd"],"linux-lts-trusty":[],"linux-goldfish":[],"linux-grouper":[],"linux-maguro":[],"linux-mako":[],"linux-manta":[],"linux-flo":[],"linux-raspi2":[],"linux-lts-utopic":[],"linux-lts-vivid":[],"linux-lts-wily":[],"linux-lts-xenial":[],"linux-snapdragon":[],"linux-aws":[],"linux-hwe":[],"linux-hwe-edge":[],"linux-gke":[],"linux-azure":[],"linux-azure-edge":[],"linux-gcp":[],"linux-kvm":[],"linux-euclid":[],"linux-oem":[],"linux-gcp-edge":[],"linux-aws-hwe":[],"linux-oracle":[]},"tags":{"linux":["binary-exclude:linux-libc-dev"]},"packages":[{"name":"linux","source":"https://ubuntu.com/security/cve?package=linux","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux","debian":"https://tracker.debian.org/pkg/linux","statuses":[{"release_codename":"bionic","status":"released","description":"4.15.0-42.45","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"released","description":"4.18.0-12.13","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"3.11.0-12.19","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"4.2.0-16.19","component":null,"pocket":"security"}]},{"name":"linux-aws","source":"https://ubuntu.com/security/cve?package=linux-aws","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-aws","debian":"https://tracker.debian.org/pkg/linux-aws","statuses":[{"release_codename":"bionic","status":"released","description":"4.15.0-1029.30","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"released","description":"4.18.0-1006.7","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"4.4.0-1002.2","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"4.4.0-1001.10","component":null,"pocket":"security"}]},{"name":"linux-aws-hwe","source":"https://ubuntu.com/security/cve?package=linux-aws-hwe","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-aws-hwe","debian":"https://tracker.debian.org/pkg/linux-aws-hwe","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"4.15.0-1030.31~16.04.1","component":null,"pocket":"security"}]},{"name":"linux-azure","source":"https://ubuntu.com/security/cve?package=linux-azure","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-azure","debian":"https://tracker.debian.org/pkg/linux-azure","statuses":[{"release_codename":"bionic","status":"released","description":"4.15.0-1035.36","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"released","description":"4.18.0-1006.6","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"4.15.0-1035.36~14.04.2","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"4.15.0-1035.36~16.04.1","component":null,"pocket":"security"}]},{"name":"linux-azure-edge","source":"https://ubuntu.com/security/cve?package=linux-azure-edge","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-azure-edge","debian":"https://tracker.debian.org/pkg/linux-azure-edge","statuses":[{"release_codename":"bionic","status":"released","description":"4.15.0-1035.36","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"4.15.0-1035.36~16.04.1","component":null,"pocket":"security"}]},{"name":"linux-euclid","source":"https://ubuntu.com/security/cve?package=linux-euclid","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-euclid","debian":"https://tracker.debian.org/pkg/linux-euclid","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-flo","source":"https://ubuntu.com/security/cve?package=linux-flo","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-flo","debian":"https://tracker.debian.org/pkg/linux-flo","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc2","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored [abandoned]","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-gcp","source":"https://ubuntu.com/security/cve?package=linux-gcp","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-gcp","debian":"https://tracker.debian.org/pkg/linux-gcp","statuses":[{"release_codename":"bionic","status":"released","description":"4.15.0-1025.26","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"released","description":"4.18.0-1004.5","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"4.15.0-1025.26~16.04.1","component":null,"pocket":"security"}]},{"name":"linux-gcp-edge","source":"https://ubuntu.com/security/cve?package=linux-gcp-edge","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-gcp-edge","debian":"https://tracker.debian.org/pkg/linux-gcp-edge","statuses":[{"release_codename":"bionic","status":"not-affected","description":"4.18.0-1004.5~18.04.1","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-gke","source":"https://ubuntu.com/security/cve?package=linux-gke","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-gke","debian":"https://tracker.debian.org/pkg/linux-gke","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"ignored","description":"end of standard support","component":null,"pocket":"security"}]},{"name":"linux-goldfish","source":"https://ubuntu.com/security/cve?package=linux-goldfish","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-goldfish","debian":"https://tracker.debian.org/pkg/linux-goldfish","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored [abandoned]","component":null,"pocket":"security"}]},{"name":"linux-grouper","source":"https://ubuntu.com/security/cve?package=linux-grouper","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-grouper","debian":"https://tracker.debian.org/pkg/linux-grouper","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored [abandoned]","component":null,"pocket":"security"}]},{"name":"linux-hwe","source":"https://ubuntu.com/security/cve?package=linux-hwe","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-hwe","debian":"https://tracker.debian.org/pkg/linux-hwe","statuses":[{"release_codename":"bionic","status":"not-affected","description":"4.18.0-13.14~18.04.1","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"4.15.0-42.45~16.04.1","component":null,"pocket":"security"}]},{"name":"linux-hwe-edge","source":"https://ubuntu.com/security/cve?package=linux-hwe-edge","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-hwe-edge","debian":"https://tracker.debian.org/pkg/linux-hwe-edge","statuses":[{"release_codename":"bionic","status":"not-affected","description":"4.18.0-12.13~18.04.1","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"4.15.0-42.45~16.04.1","component":null,"pocket":"security"}]},{"name":"linux-kvm","source":"https://ubuntu.com/security/cve?package=linux-kvm","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-kvm","debian":"https://tracker.debian.org/pkg/linux-kvm","statuses":[{"release_codename":"bionic","status":"released","description":"4.15.0-1027.27","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"released","description":"4.18.0-1005.5","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"4.4.0-1004.9","component":null,"pocket":"security"}]},{"name":"linux-lts-trusty","source":"https://ubuntu.com/security/cve?package=linux-lts-trusty","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lts-trusty","debian":"https://tracker.debian.org/pkg/linux-lts-trusty","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-lts-utopic","source":"https://ubuntu.com/security/cve?package=linux-lts-utopic","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lts-utopic","debian":"https://tracker.debian.org/pkg/linux-lts-utopic","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored [end of standard support]","component":null,"pocket":"security"}]},{"name":"linux-lts-vivid","source":"https://ubuntu.com/security/cve?package=linux-lts-vivid","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lts-vivid","debian":"https://tracker.debian.org/pkg/linux-lts-vivid","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored [end of standard support]","component":null,"pocket":"security"}]},{"name":"linux-lts-wily","source":"https://ubuntu.com/security/cve?package=linux-lts-wily","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lts-wily","debian":"https://tracker.debian.org/pkg/linux-lts-wily","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored [end of standard support]","component":null,"pocket":"security"}]},{"name":"linux-lts-xenial","source":"https://ubuntu.com/security/cve?package=linux-lts-xenial","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-lts-xenial","debian":"https://tracker.debian.org/pkg/linux-lts-xenial","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"4.4.0-13.29~14.04.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]},{"name":"linux-maguro","source":"https://ubuntu.com/security/cve?package=linux-maguro","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-maguro","debian":"https://tracker.debian.org/pkg/linux-maguro","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored [abandoned]","component":null,"pocket":"security"}]},{"name":"linux-mako","source":"https://ubuntu.com/security/cve?package=linux-mako","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-mako","debian":"https://tracker.debian.org/pkg/linux-mako","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored [abandoned]","component":null,"pocket":"security"}]},{"name":"linux-manta","source":"https://ubuntu.com/security/cve?package=linux-manta","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-manta","debian":"https://tracker.debian.org/pkg/linux-manta","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was ignored [abandoned]","component":null,"pocket":"security"}]},{"name":"linux-oem","source":"https://ubuntu.com/security/cve?package=linux-oem","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-oem","debian":"https://tracker.debian.org/pkg/linux-oem","statuses":[{"release_codename":"bionic","status":"released","description":"4.15.0-1028.33","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"released","description":"4.15.0-1028.33","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"ignored","description":"end of standard support, was needs-triage","component":null,"pocket":"security"}]},{"name":"linux-oracle","source":"https://ubuntu.com/security/cve?package=linux-oracle","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-oracle","debian":"https://tracker.debian.org/pkg/linux-oracle","statuses":[{"release_codename":"bionic","status":"not-affected","description":"4.15.0-1007.9","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"4.15.0-1007.9~16.04.1","component":null,"pocket":"security"}]},{"name":"linux-raspi2","source":"https://ubuntu.com/security/cve?package=linux-raspi2","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-raspi2","debian":"https://tracker.debian.org/pkg/linux-raspi2","statuses":[{"release_codename":"bionic","status":"released","description":"4.15.0-1029.31","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"released","description":"4.18.0-1007.9","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"4.2.0-1013.19","component":null,"pocket":"security"}]},{"name":"linux-snapdragon","source":"https://ubuntu.com/security/cve?package=linux-snapdragon","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=linux-snapdragon","debian":"https://tracker.debian.org/pkg/linux-snapdragon","statuses":[{"release_codename":"bionic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.20~rc2","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"4.4.0-1012.12","component":null,"pocket":"security"}]}],"notices_ids":["USN-3835-1","USN-3833-1","USN-3836-1","USN-3836-2","USN-3832-1"],"notices":[{"id":"USN-3835-1","title":"Linux kernel vulnerabilities","summary":"Several security issues were fixed in the Linux kernel.\n","instructions":"After a standard system update you need to reboot your computer to make\nall the necessary changes.\n\nATTENTION: Due to an unavoidable ABI change the kernel updates have\nbeen given a new version number, which requires you to recompile and\nreinstall all third party kernel modules you might have installed.\nUnless you manually uninstalled the standard kernel metapackages\n(e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual,\nlinux-powerpc), a standard system upgrade will automatically perform\nthis as well.\n","references":[],"published":"2018-12-03T19:15:30.244363","description":"Jann Horn discovered that the procfs file system implementation in the\nLinux kernel did not properly restrict the ability to inspect the kernel\nstack of an arbitrary task. A local attacker could use this to expose\nsensitive information. (CVE-2018-17972)\n\nJann Horn discovered that the mremap() system call in the Linux kernel did\nnot properly flush the TLB when completing, potentially leaving access to a\nphysical page after it has been released to the page allocator. A local\nattacker could use this to cause a denial of service (system crash), expose\nsensitive information, or possibly execute arbitrary code. (CVE-2018-18281)\n\nIt was discovered that the BPF verifier in the Linux kernel did not\ncorrectly compute numeric bounds in some situations. A local attacker could\nuse this to cause a denial of service (system crash) or possibly execute\narbitrary code. (CVE-2018-18445)\n\nDaniel Dadap discovered that the module loading implementation in the Linux\nkernel did not properly enforce signed module loading when booted with UEFI\nSecure Boot in some situations. A local privileged attacker could use this\nto execute untrusted code in the kernel. (CVE-2018-18653)\n\nJann Horn discovered that the Linux kernel mishandles mapping UID or GID\nranges inside nested user namespaces in some situations. A local attacker\ncould use this to bypass access controls on resources outside the\nnamespace. (CVE-2018-18955)\n\nPhilipp Wendler discovered that the overlayfs implementation in the Linux\nkernel did not properly verify the directory contents permissions from\nwithin a unprivileged user namespace. A local attacker could use this to\nexpose sensitive information (protected file names). (CVE-2018-6559)\n","is_hidden":false,"release_packages":{"cosmic":[{"name":"linux-raspi2","version":"4.18.0-1007.9","description":"Linux kernel for Raspberry Pi 2","is_source":true},{"name":"linux-gcp","version":"4.18.0-1004.5","description":"Linux kernel for Google Cloud Platform (GCP) systems","is_source":true},{"name":"linux-kvm","version":"4.18.0-1005.5","description":"Linux kernel for cloud environments","is_source":true},{"name":"linux","version":"4.18.0-12.13","description":"Linux kernel","is_source":true},{"name":"linux-image-gke","version":"4.18.0.1004.4","is_source":false,"source_link":null,"version_link":null},{"name":"linux-image-generic","version":"4.18.0.12.13","is_source":false,"source_link":null,"version_link":null},{"name":"linux-image-4.18.0-12-generic","version":"4.18.0-12.13","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.18.0-12.13"},{"name":"linux-image-4.18.0-12-snapdragon","version":"4.18.0-12.13","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.18.0-12.13"},{"name":"linux-image-4.18.0-1007-raspi2","version":"4.18.0-1007.9","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-raspi2","version_link":"https://launchpad.net/ubuntu/+source/linux-raspi2/4.18.0-1007.9"},{"name":"linux-image-gcp","version":"4.18.0.1004.4","is_source":false,"source_link":null,"version_link":null},{"name":"linux-image-4.18.0-12-generic-lpae","version":"4.18.0-12.13","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.18.0-12.13"},{"name":"linux-image-4.18.0-1004-gcp","version":"4.18.0-1004.5","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-gcp","version_link":"https://launchpad.net/ubuntu/+source/linux-gcp/4.18.0-1004.5"},{"name":"linux-image-4.18.0-12-lowlatency","version":"4.18.0-12.13","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.18.0-12.13"},{"name":"linux-image-generic-lpae","version":"4.18.0.12.13","is_source":false,"source_link":null,"version_link":null},{"name":"linux-image-4.18.0-1005-kvm","version":"4.18.0-1005.5","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-kvm","version_link":"https://launchpad.net/ubuntu/+source/linux-kvm/4.18.0-1005.5"},{"name":"linux-image-snapdragon","version":"4.18.0.12.13","is_source":false,"source_link":null,"version_link":null},{"name":"linux-image-kvm","version":"4.18.0.1005.5","is_source":false,"source_link":null,"version_link":null},{"name":"linux-image-lowlatency","version":"4.18.0.12.13","is_source":false,"source_link":null,"version_link":null},{"name":"linux-image-raspi2","version":"4.18.0.1007.4","is_source":false,"source_link":null,"version_link":null}]},"type":"USN","cves_ids":["CVE-2018-17972","CVE-2018-18281","CVE-2018-18445","CVE-2018-18653","CVE-2018-18955","CVE-2018-6559"]},{"id":"USN-3833-1","title":"Linux kernel (AWS) vulnerabilities","summary":"Several security issues were fixed in the Linux kernel.\n","instructions":"After a standard system update you need to reboot your computer to make\nall the necessary changes.\n\nATTENTION: Due to an unavoidable ABI change the kernel updates have\nbeen given a new version number, which requires you to recompile and\nreinstall all third party kernel modules you might have installed.\nUnless you manually uninstalled the standard kernel metapackages\n(e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual,\nlinux-powerpc), a standard system upgrade will automatically perform\nthis as well.\n","references":[],"published":"2018-11-30T06:31:39.339781","description":"Jann Horn discovered that the Linux kernel mishandles mapping UID or GID\nranges inside nested user namespaces in some situations. A local attacker\ncould use this to bypass access controls on resources outside the\nnamespace. (CVE-2018-18955)\n\nPhilipp Wendler discovered that the overlayfs implementation in the Linux\nkernel did not properly verify the directory contents permissions from\nwithin a unprivileged user namespace. A local attacker could use this to\nexpose sensitive information (protected file names). (CVE-2018-6559)\n","is_hidden":false,"release_packages":{"bionic":[{"name":"linux-aws","version":"4.15.0-1029.30","description":"Linux kernel for Amazon Web Services (AWS) systems","is_source":true},{"name":"linux-image-4.15.0-1029-aws","version":"4.15.0-1029.30","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-aws","version_link":"https://launchpad.net/ubuntu/+source/linux-aws/4.15.0-1029.30","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2018-18955","CVE-2018-6559"]},{"id":"USN-3836-1","title":"Linux kernel vulnerabilities","summary":"Several security issues were fixed in the Linux kernel.\n","instructions":"After a standard system update you need to reboot your computer to make\nall the necessary changes.\n\nATTENTION: Due to an unavoidable ABI change the kernel updates have\nbeen given a new version number, which requires you to recompile and\nreinstall all third party kernel modules you might have installed.\nUnless you manually uninstalled the standard kernel metapackages\n(e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual,\nlinux-powerpc), a standard system upgrade will automatically perform\nthis as well.\n","references":[],"published":"2018-12-03T19:40:09.309814","description":"Jann Horn discovered that the Linux kernel mishandles mapping UID or GID\nranges inside nested user namespaces in some situations. A local attacker\ncould use this to bypass access controls on resources outside the\nnamespace. (CVE-2018-18955)\n\nPhilipp Wendler discovered that the overlayfs implementation in the Linux\nkernel did not properly verify the directory contents permissions from\nwithin a unprivileged user namespace. A local attacker could use this to\nexpose sensitive information (protected file names). (CVE-2018-6559)\n","is_hidden":false,"release_packages":{"bionic":[{"name":"linux","version":"4.15.0-42.45","description":"Linux kernel","is_source":true},{"name":"linux-gcp","version":"4.15.0-1025.26","description":"Linux kernel for Google Cloud Platform (GCP) systems","is_source":true},{"name":"linux-kvm","version":"4.15.0-1027.27","description":"Linux kernel for cloud environments","is_source":true},{"name":"linux-raspi2","version":"4.15.0-1029.31","description":"Linux kernel for Raspberry Pi 2","is_source":true},{"name":"linux-image-4.15.0-1027-kvm","version":"4.15.0-1027.27","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-kvm","version_link":"https://launchpad.net/ubuntu/+source/linux-kvm/4.15.0-1027.27","pocket":"security"},{"name":"linux-image-4.15.0-1029-raspi2","version":"4.15.0-1029.31","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-raspi2","version_link":"https://launchpad.net/ubuntu/+source/linux-raspi2/4.15.0-1029.31","pocket":"security"},{"name":"linux-image-4.15.0-42-generic","version":"4.15.0-42.45","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.15.0-42.45","pocket":"security"},{"name":"linux-image-4.15.0-42-generic-lpae","version":"4.15.0-42.45","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.15.0-42.45","pocket":"security"},{"name":"linux-image-4.15.0-42-lowlatency","version":"4.15.0-42.45","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.15.0-42.45","pocket":"security"},{"name":"linux-image-4.15.0-42-snapdragon","version":"4.15.0-42.45","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.15.0-42.45","pocket":"security"},{"name":"linux-image-unsigned-4.15.0-1025-gcp","version":"4.15.0-1025.26","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-gcp","version_link":"https://launchpad.net/ubuntu/+source/linux-gcp/4.15.0-1025.26","pocket":"security"},{"name":"linux-image-unsigned-4.15.0-42-generic","version":"4.15.0-42.45","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.15.0-42.45","pocket":"security"},{"name":"linux-image-unsigned-4.15.0-42-lowlatency","version":"4.15.0-42.45","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux","version_link":"https://launchpad.net/ubuntu/+source/linux/4.15.0-42.45","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2018-18955","CVE-2018-6559"]},{"id":"USN-3836-2","title":"Linux kernel (HWE) vulnerabilities","summary":"Several security issues were fixed in the Linux kernel.\n","instructions":"After a standard system update you need to reboot your computer to make\nall the necessary changes.\n\nATTENTION: Due to an unavoidable ABI change the kernel updates have\nbeen given a new version number, which requires you to recompile and\nreinstall all third party kernel modules you might have installed.\nUnless you manually uninstalled the standard kernel metapackages\n(e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual,\nlinux-powerpc), a standard system upgrade will automatically perform\nthis as well.\n","references":[],"published":"2018-12-04T04:49:26.078666","description":"USN-3836-1 fixed vulnerabilities in the Linux kernel for Ubuntu 18.04\nLTS. This update provides the corresponding updates for the Linux\nHardware Enablement (HWE) kernel from Ubuntu 18.04 LTS for Ubuntu\n16.04 LTS.\n\nJann Horn discovered that the Linux kernel mishandles mapping UID or GID\nranges inside nested user namespaces in some situations. A local attacker\ncould use this to bypass access controls on resources outside the\nnamespace. (CVE-2018-18955)\n\nPhilipp Wendler discovered that the overlayfs implementation in the Linux\nkernel did not properly verify the directory contents permissions from\nwithin a unprivileged user namespace. A local attacker could use this to\nexpose sensitive information (protected file names). (CVE-2018-6559)\n","is_hidden":false,"release_packages":{"xenial":[{"name":"linux-gcp","version":"4.15.0-1025.26~16.04.1","description":"Linux kernel for Google Cloud Platform (GCP) systems","is_source":true},{"name":"linux-hwe","version":"4.15.0-42.45~16.04.1","description":"Linux hardware enablement (HWE) kernel","is_source":true},{"name":"linux-image-4.15.0-42-generic","version":"4.15.0-42.45~16.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-hwe","version_link":"https://launchpad.net/ubuntu/+source/linux-hwe/4.15.0-42.45~16.04.1","pocket":"security"},{"name":"linux-image-4.15.0-42-generic-lpae","version":"4.15.0-42.45~16.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-hwe","version_link":"https://launchpad.net/ubuntu/+source/linux-hwe/4.15.0-42.45~16.04.1","pocket":"security"},{"name":"linux-image-4.15.0-42-lowlatency","version":"4.15.0-42.45~16.04.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/linux-hwe","version_link":"https://launchpad.net/ubuntu/+source/linux-hwe/4.15.0-42.45~16.04.1","pocket":"security"},{"name":"linux-image-unsigned-4.15.0-1025-gcp","version":"4.15.0-1025.26~16.04.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-gcp","version_link":"https://launchpad.net/ubuntu/+source/linux-gcp/4.15.0-1025.26~16.04.1","pocket":"security"},{"name":"linux-image-unsigned-4.15.0-42-generic","version":"4.15.0-42.45~16.04.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-hwe","version_link":"https://launchpad.net/ubuntu/+source/linux-hwe/4.15.0-42.45~16.04.1","pocket":"security"},{"name":"linux-image-unsigned-4.15.0-42-lowlatency","version":"4.15.0-42.45~16.04.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-hwe","version_link":"https://launchpad.net/ubuntu/+source/linux-hwe/4.15.0-42.45~16.04.1","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2018-18955","CVE-2018-6559"]},{"id":"USN-3832-1","title":"Linux kernel (AWS) vulnerabilities","summary":"Several security issues were fixed in the Linux kernel.\n","instructions":"After a standard system update you need to reboot your computer to make\nall the necessary changes.\nXXX MAYBE WITH XXX\nATTENTION: Due to an unavoidable ABI change the kernel updates have\nbeen given a new version number, which requires you to recompile and\nreinstall all third party kernel modules you might have installed.\nUnless you manually uninstalled the standard kernel metapackages\n(e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual,\nlinux-powerpc), a standard system upgrade will automatically perform\nthis as well.\n","references":[],"published":"2018-11-30T06:19:57.353382","description":"Jann Horn discovered that the procfs file system implementation in the\nLinux kernel did not properly restrict the ability to inspect the kernel\nstack of an arbitrary task. A local attacker could use this to expose\nsensitive information. (CVE-2018-17972)\n\nJann Horn discovered that the mremap() system call in the Linux kernel did\nnot properly flush the TLB when completing, potentially leaving access to a\nphysical page after it has been released to the page allocator. A local\nattacker could use this to cause a denial of service (system crash), expose\nsensitive information, or possibly execute arbitrary code. (CVE-2018-18281)\n\nIt was discovered that the BPF verifier in the Linux kernel did not\ncorrectly compute numeric bounds in some situations. A local attacker could\nuse this to cause a denial of service (system crash) or possibly execute\narbitrary code. (CVE-2018-18445)\n\nDaniel Dadap discovered that the module loading implementation in the Linux\nkernel did not properly enforce signed module loading when booted with UEFI\nSecure Boot in some situations. A local privileged attacker could use this\nto execute untrusted code in the kernel. (CVE-2018-18653)\n\nJann Horn discovered that the Linux kernel mishandles mapping UID or GID\nranges inside nested user namespaces in some situations. A local attacker\ncould use this to bypass access controls on resources outside the\nnamespace. (CVE-2018-18955)\n\nPhilipp Wendler discovered that the overlayfs implementation in the Linux\nkernel did not properly verify the directory contents permissions from\nwithin a unprivileged user namespace. A local attacker could use this to\nexpose sensitive information (protected file names). (CVE-2018-6559)\n\n","is_hidden":false,"release_packages":{"cosmic":[{"name":"linux-aws","version":"4.18.0-1006.7","description":"Linux kernel for Amazon Web Services (AWS) systems","is_source":true},{"name":"linux-image-aws","version":"4.18.0.1006.6","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-aws","version_link":"https://launchpad.net/ubuntu/+source/linux-aws/4.18.0-1006.7"},{"name":"linux-image-4.18.0-1006-aws","version":"4.18.0-1006.7","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/linux-aws","version_link":"https://launchpad.net/ubuntu/+source/linux-aws/4.18.0-1006.7"}]},"type":"USN","cves_ids":["CVE-2018-17972","CVE-2018-18281","CVE-2018-18445","CVE-2018-18653","CVE-2018-18955","CVE-2018-6559"]}]},{"id":"CVE-2018-12543","published":"2018-11-15T15:29:00","updated_at":"2025-08-25T22:46:19.044097+00:00","description":"\nIn Eclipse Mosquitto versions 1.5 to 1.5.2 inclusive, if a message is\npublished to Mosquitto that has a topic starting with $, but that is not\n$SYS, e.g. $test/test, then an assert is triggered that should otherwise\nnot be reachable and Mosquitto will exit.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":7.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":7.5,"baseSeverity":"HIGH"}}},"status":"active","mitigation":"","references":["http://mosquitto.org/blog/2018/09/security-advisory-cve-2018-12543/","https://mosquitto.org/files/cve/2018-12543/","https://www.cve.org/CVERecord?id=CVE-2018-12543"],"bugs":[""],"patches":{"mosquitto":[]},"tags":{},"packages":[{"name":"mosquitto","source":"https://ubuntu.com/security/cve?package=mosquitto","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=mosquitto","debian":"https://tracker.debian.org/pkg/mosquitto","statuses":[{"release_codename":"bionic","status":"not-affected","description":"code not present","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"code not present","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"code not present","component":null,"pocket":"security"},{"release_codename":"upstream","status":"not-affected","description":"debian: Vulnerable code introduced in 1.5","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"code not present","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2015-9274","published":"2018-11-15T06:29:00","updated_at":"2025-08-25T21:50:30.116843+00:00","description":"\nHarfBuzz before 1.0.4 allows remote attackers to cause a denial of service\n(invalid read of two bytes and application crash) because of GPOS and GSUB\ntable mishandling, related to hb-ot-layout-gpos-table.hh,\nhb-ot-layout-gsub-table.hh, and hb-ot-layout-gsubgpos-private.hh.","ubuntu_description":"","notes":[{"author":"rodrigo-zaiden","note":"issue added in commit 50b8dc79, version 0.9.39."}],"codename":null,"priority":"low","cvss3":6.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":6.5,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-5746-1","https://www.cve.org/CVERecord?id=CVE-2015-9274"],"bugs":[""],"patches":{"harfbuzz":["upstream: https://github.com/harfbuzz/harfbuzz/commit/c917965b9e6fe2b21ed6c51559673288fa3af4b7"]},"tags":{},"packages":[{"name":"harfbuzz","source":"https://ubuntu.com/security/cve?package=harfbuzz","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=harfbuzz","debian":"https://tracker.debian.org/pkg/harfbuzz","statuses":[{"release_codename":"impish","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"not-affected","description":"1.7.2-1ubuntu1","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.2.6-1","component":null,"pocket":"security"},{"release_codename":"groovy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"not-affected","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"code not present","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"1.0.1-1ubuntu0.1+esm1","component":null,"pocket":"esm-infra"}]}],"notices_ids":["USN-5746-1"],"notices":[{"id":"USN-5746-1","title":"HarfBuzz vulnerability","summary":"HarfBuzz could be made to crash if it received specially crafted\ninput.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2022-11-28T22:06:35.155933","description":"Behzad Najjarpour Jabbari discovered that HarfBuzz incorrectly handled\ncertain inputs. A remote attacker could possibly use this issue to cause\na denial of service.\n","is_hidden":false,"release_packages":{"xenial":[{"name":"harfbuzz","version":"1.0.1-1ubuntu0.1+esm1","description":"OpenType text shaping engine","is_source":true},{"name":"gir1.2-harfbuzz-0.0","version":"1.0.1-1ubuntu0.1+esm1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/harfbuzz","version_link":null,"pocket":"esm-infra"},{"name":"libharfbuzz-gobject0","version":"1.0.1-1ubuntu0.1+esm1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/harfbuzz","version_link":null,"pocket":"esm-infra"},{"name":"libharfbuzz-dev","version":"1.0.1-1ubuntu0.1+esm1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/harfbuzz","version_link":null,"pocket":"esm-infra"},{"name":"libharfbuzz-icu0","version":"1.0.1-1ubuntu0.1+esm1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/harfbuzz","version_link":null,"pocket":"esm-infra"},{"name":"libharfbuzz0b","version":"1.0.1-1ubuntu0.1+esm1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/harfbuzz","version_link":null,"pocket":"esm-infra"},{"name":"libharfbuzz-bin","version":"1.0.1-1ubuntu0.1+esm1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/harfbuzz","version_link":null,"pocket":"esm-infra"},{"name":"libharfbuzz-doc","version":"1.0.1-1ubuntu0.1+esm1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/harfbuzz","version_link":null,"pocket":"esm-infra"}]},"type":"USN","cves_ids":["CVE-2015-9274"]}]},{"id":"CVE-2018-5407","published":"2018-11-15T00:00:00","updated_at":"2025-08-25T22:56:22.828083+00:00","description":"\nSimultaneous Multi-threading (SMT) in processors can enable local users to\nexploit software vulnerable to timing attacks via a side-channel timing\nattack on 'port contention'.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"this is a hardware issue, but openssl did commit a workaround\nin 1.1.1, 1.1.0i"}],"codename":null,"priority":"low","cvss3":4.7,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:N/A:N","attackVector":"LOCAL","attackComplexity":"HIGH","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"NONE","availabilityImpact":"NONE","baseScore":4.7,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://www.openwall.com/lists/oss-security/2018/11/01/4","https://github.com/bbbrumley/portsmash","https://ubuntu.com/security/notices/USN-3840-1","https://www.cve.org/CVERecord?id=CVE-2018-5407"],"bugs":[""],"patches":{"openssl":["upstream: https://git.openssl.org/?p=openssl.git;a=commit;h=aab7c770353b1dc4ba045938c8fb446dd1c4531e","upstream: https://git.openssl.org/?p=openssl.git;a=commit;h=f06437c751d6f6ec7f4176518e2897f44dd58eb0","upstream: https://git.openssl.org/?p=openssl.git;a=commit;h=33588c930d39d67d1128794dc7c85bae71af24ad","upstream: https://git.openssl.org/?p=openssl.git;a=commit;h=f916a735bcdce496cebc7653a8ad2e72b333405a","upstream: https://git.openssl.org/?p=openssl.git;a=commit;h=b43ad53119c0ac2ecfa6e4356210ccda57e0d16b","upstream: https://git.openssl.org/?p=openssl.git;a=commit;h=2172133d0dc58256bf776da074c0d1944fef15cb","upstream: https://git.openssl.org/?p=openssl.git;a=commit;h=cc39f9250957dfe6e9f1b62a4eca1863e8451483","upstream: https://git.openssl.org/?p=openssl.git;a=commit;h=7b3e775a6a78650bbd3e8e19a5aa12981880402b","upstream: https://git.openssl.org/?p=openssl.git;a=commit;h=5eee95a54de6854e60886c8e662a902184b12d04","upstream: https://git.openssl.org/?p=openssl.git;a=commit;h=875ba8b21ecc65ad9a6bdc66971e50461660fcbb","upstream: https://git.openssl.org/?p=openssl.git;a=commit;h=b18162a7c9bbfb57112459a4d6631fa258fd8c0c"],"openssl098":[],"openssl1.0":[]},"tags":{},"packages":[{"name":"openssl","source":"https://ubuntu.com/security/cve?package=openssl","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openssl","debian":"https://tracker.debian.org/pkg/openssl","statuses":[{"release_codename":"bionic","status":"released","description":"1.1.0g-2ubuntu4.3","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"not-affected","description":"1.1.1-1ubuntu2","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"1.1.1-1ubuntu2","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"1.1.1-1ubuntu2","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"1.1.1-1ubuntu2","component":null,"pocket":"security"},{"release_codename":"groovy","status":"not-affected","description":"1.1.1-1ubuntu2","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"not-affected","description":"1.1.1-1ubuntu2","component":null,"pocket":"security"},{"release_codename":"trusty","status":"released","description":"1.0.1f-1ubuntu2.27","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.1.0i,1.1.1","component":null,"pocket":"security"},{"release_codename":"xenial","status":"released","description":"1.0.2g-1ubuntu4.14","component":null,"pocket":"security"}]},{"name":"openssl098","source":"https://ubuntu.com/security/cve?package=openssl098","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openssl098","debian":"https://tracker.debian.org/pkg/openssl098","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"disco","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"eoan","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"groovy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needs-triage","component":null,"pocket":"security"}]},{"name":"openssl1.0","source":"https://ubuntu.com/security/cve?package=openssl1.0","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=openssl1.0","debian":"https://tracker.debian.org/pkg/openssl1.0","statuses":[{"release_codename":"bionic","status":"released","description":"1.0.2n-1ubuntu5.2","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"released","description":"1.0.2n-1ubuntu6.1","component":null,"pocket":"security"},{"release_codename":"disco","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"eoan","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"groovy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-3840-1"],"notices":[{"id":"USN-3840-1","title":"OpenSSL vulnerabilities","summary":"Several security issues were fixed in OpenSSL.\n","instructions":"After a standard system update you need to reboot your computer to make\nall the necessary changes.\n","references":[],"published":"2018-12-06T17:43:06.643127","description":"Samuel Weiser discovered that OpenSSL incorrectly handled DSA signing. An\nattacker could possibly use this issue to perform a timing side-channel\nattack and recover private DSA keys. (CVE-2018-0734)\n\nSamuel Weiser discovered that OpenSSL incorrectly handled ECDSA signing. An\nattacker could possibly use this issue to perform a timing side-channel\nattack and recover private ECDSA keys. This issue only affected Ubuntu\n18.04 LTS and Ubuntu 18.10. (CVE-2018-0735)\n\nBilly Bob Brumley, Cesar Pereida Garcia, Sohaib ul Hassan, Nicola Tuveri,\nand Alejandro Cabrera Aldaya discovered that Simultaneous Multithreading\n(SMT) architectures are vulnerable to side-channel leakage. This issue is\nknown as \"PortSmash\". An attacker could possibly use this issue to perform\na timing side-channel attack and recover private keys. (CVE-2018-5407)\n","is_hidden":false,"release_packages":{"bionic":[{"name":"openssl","version":"1.1.0g-2ubuntu4.3","description":"Secure Socket Layer (SSL) cryptographic library and tools","is_source":true},{"name":"openssl1.0","version":"1.0.2n-1ubuntu5.2","description":"Secure Socket Layer (SSL) cryptographic library and tools","is_source":true},{"name":"libcrypto1.0.0-udeb","version":"1.0.2n-1ubuntu5.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl1.0","version_link":"https://launchpad.net/ubuntu/+source/openssl1.0/1.0.2n-1ubuntu5.2","pocket":"security"},{"name":"libcrypto1.1-udeb","version":"1.1.0g-2ubuntu4.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.1.0g-2ubuntu4.3","pocket":"security"},{"name":"libssl-dev","version":"1.1.0g-2ubuntu4.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.1.0g-2ubuntu4.3","pocket":"security"},{"name":"libssl-doc","version":"1.1.0g-2ubuntu4.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.1.0g-2ubuntu4.3","pocket":"security"},{"name":"libssl1.0-dev","version":"1.0.2n-1ubuntu5.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl1.0","version_link":"https://launchpad.net/ubuntu/+source/openssl1.0/1.0.2n-1ubuntu5.2","pocket":"security"},{"name":"libssl1.0.0","version":"1.0.2n-1ubuntu5.2","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openssl1.0","version_link":"https://launchpad.net/ubuntu/+source/openssl1.0/1.0.2n-1ubuntu5.2","pocket":"security"},{"name":"libssl1.0.0-udeb","version":"1.0.2n-1ubuntu5.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl1.0","version_link":"https://launchpad.net/ubuntu/+source/openssl1.0/1.0.2n-1ubuntu5.2","pocket":"security"},{"name":"libssl1.1","version":"1.1.0g-2ubuntu4.3","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.1.0g-2ubuntu4.3","pocket":"security"},{"name":"libssl1.1-udeb","version":"1.1.0g-2ubuntu4.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.1.0g-2ubuntu4.3","pocket":"security"},{"name":"openssl","version":"1.1.0g-2ubuntu4.3","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.1.0g-2ubuntu4.3","pocket":"security"},{"name":"openssl1.0","version":"1.0.2n-1ubuntu5.2","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl1.0","version_link":"https://launchpad.net/ubuntu/+source/openssl1.0/1.0.2n-1ubuntu5.2","pocket":"security"}],"cosmic":[{"name":"openssl","version":"1.1.1-1ubuntu2.1","description":"Secure Socket Layer (SSL) cryptographic library and tools","is_source":true},{"name":"openssl1.0","version":"1.0.2n-1ubuntu6.1","description":"Secure Socket Layer (SSL) cryptographic library and tools","is_source":true},{"name":"libssl1.0.0","version":"1.0.2n-1ubuntu6.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openssl1.0","version_link":"https://launchpad.net/ubuntu/+source/openssl1.0/1.0.2n-1ubuntu6.1"},{"name":"libssl1.1","version":"1.1.1-1ubuntu2.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.1.1-1ubuntu2.1"}],"trusty":[{"name":"openssl","version":"1.0.1f-1ubuntu2.27","description":"Secure Socket Layer (SSL) cryptographic library and tools","is_source":true},{"name":"libcrypto1.0.0-udeb","version":"1.0.1f-1ubuntu2.27","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1f-1ubuntu2.27","pocket":"security"},{"name":"libssl-dev","version":"1.0.1f-1ubuntu2.27","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1f-1ubuntu2.27","pocket":"security"},{"name":"libssl-doc","version":"1.0.1f-1ubuntu2.27","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1f-1ubuntu2.27","pocket":"security"},{"name":"libssl1.0.0","version":"1.0.1f-1ubuntu2.27","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1f-1ubuntu2.27","pocket":"security"},{"name":"libssl1.0.0-udeb","version":"1.0.1f-1ubuntu2.27","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1f-1ubuntu2.27","pocket":"security"},{"name":"openssl","version":"1.0.1f-1ubuntu2.27","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.1f-1ubuntu2.27","pocket":"security"}],"xenial":[{"name":"openssl","version":"1.0.2g-1ubuntu4.14","description":"Secure Socket Layer (SSL) cryptographic library and tools","is_source":true},{"name":"libcrypto1.0.0-udeb","version":"1.0.2g-1ubuntu4.14","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.2g-1ubuntu4.14","pocket":"security"},{"name":"libssl-dev","version":"1.0.2g-1ubuntu4.14","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.2g-1ubuntu4.14","pocket":"security"},{"name":"libssl-doc","version":"1.0.2g-1ubuntu4.14","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.2g-1ubuntu4.14","pocket":"security"},{"name":"libssl1.0.0","version":"1.0.2g-1ubuntu4.14","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.2g-1ubuntu4.14","pocket":"security"},{"name":"libssl1.0.0-udeb","version":"1.0.2g-1ubuntu4.14","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.2g-1ubuntu4.14","pocket":"security"},{"name":"openssl","version":"1.0.2g-1ubuntu4.14","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/openssl","version_link":"https://launchpad.net/ubuntu/+source/openssl/1.0.2g-1ubuntu4.14","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2018-0734","CVE-2018-0735","CVE-2018-5407"]}]},{"id":"CVE-2018-18954","published":"2018-11-15T00:00:00","updated_at":"2025-08-25T22:51:25.173788+00:00","description":"\nThe pnv_lpc_do_eccb function in hw/ppc/pnv_lpc.c in Qemu before 3.1 allows\nout-of-bounds write or read access to PowerNV memory.","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":5.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"NONE","availabilityImpact":"HIGH","baseScore":5.5,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://lists.gnu.org/archive/html/qemu-devel/2018-11/msg00446.html","https://ubuntu.com/security/notices/USN-3826-1","https://www.cve.org/CVERecord?id=CVE-2018-18954"],"bugs":[""],"patches":{"qemu-kvm":[],"qemu":["upstream: https://git.qemu.org/?p=qemu.git;a=commit;h=d07945e78eb6b593cd17a4640c1fc9eb35e3245d"]},"tags":{},"packages":[{"name":"qemu","source":"https://ubuntu.com/security/cve?package=qemu","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=qemu","debian":"https://tracker.debian.org/pkg/qemu","statuses":[{"release_codename":"bionic","status":"released","description":"1:2.11+dfsg-1ubuntu7.8","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"released","description":"1:2.12+dfsg-3ubuntu8.1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"code not present","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"not-affected","description":"code not present","component":null,"pocket":"security"}]},{"name":"qemu-kvm","source":"https://ubuntu.com/security/cve?package=qemu-kvm","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=qemu-kvm","debian":"https://tracker.debian.org/pkg/qemu-kvm","statuses":[{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-3826-1"],"notices":[{"id":"USN-3826-1","title":"QEMU vulnerabilities","summary":"Several security issues were fixed in QEMU.\n","instructions":"After a standard system update you need to restart all QEMU virtual\nmachines to make all the necessary changes.\n","references":[],"published":"2018-11-26T14:23:51.516640","description":"Daniel Shapira and Arash Tohidi discovered that QEMU incorrectly handled\nNE2000 device emulation. An attacker inside the guest could use this issue\nto cause QEMU to crash, resulting in a denial of service. (CVE-2018-10839)\n\nIt was discovered that QEMU incorrectly handled the Slirp networking\nback-end. A privileged attacker inside the guest could use this issue to\ncause QEMU to crash, resulting in a denial of service, or possibly execute\narbitrary code on the host. In the default installation, when QEMU is used\nwith libvirt, attackers would be isolated by the libvirt AppArmor profile.\nThis issue only affected Ubuntu 14.04 LTS, Ubuntu 16.04 LTS and Ubuntu\n18.04 LTS. (CVE-2018-11806)\n\nFakhri Zulkifli discovered that the QEMU guest agent incorrectly handled\ncertain QMP commands. An attacker could possibly use this issue to crash\nthe QEMU guest agent, resulting in a denial of service. (CVE-2018-12617)\n\nLi Qiang discovered that QEMU incorrectly handled NVM Express Controller\nemulation. An attacker inside the guest could use this issue to cause QEMU\nto crash, resulting in a denial of service, or possibly execute arbitrary\ncode on the host. In the default installation, when QEMU is used with\nlibvirt, attackers would be isolated by the libvirt AppArmor profile. This\nissue only affected Ubuntu 18.04 LTS and Ubuntu 18.10. (CVE-2018-16847)\n\nDaniel Shapira and Arash Tohidi discovered that QEMU incorrectly handled\nRTL8139 device emulation. An attacker inside the guest could use this issue\nto cause QEMU to crash, resulting in a denial of service. (CVE-2018-17958)\n\nDaniel Shapira and Arash Tohidi discovered that QEMU incorrectly handled\nPCNET device emulation. An attacker inside the guest could use this issue\nto cause QEMU to crash, resulting in a denial of service. (CVE-2018-17962)\n\nDaniel Shapira discovered that QEMU incorrectly handled large packet sizes.\nAn attacker inside the guest could use this issue to cause QEMU to crash,\nresulting in a denial of service. (CVE-2018-17963)\n\nIt was discovered that QEMU incorrectly handled LSI53C895A device\nemulation. An attacker inside the guest could use this issue to cause QEMU\nto crash, resulting in a denial of service. (CVE-2018-18849)\n\nMoguofang discovered that QEMU incorrectly handled the IPowerNV LPC\ncontroller. An attacker inside the guest could use this issue to cause QEMU\nto crash, resulting in a denial of service. This issue only affected Ubuntu\n18.04 LTS and Ubuntu 18.10. (CVE-2018-18954)\n\nZhibin Hu discovered that QEMU incorrectly handled the Plan 9 File System\nsupport. An attacker inside the guest could use this issue to cause QEMU\nto crash, resulting in a denial of service. (CVE-2018-19364)\n","is_hidden":false,"release_packages":{"bionic":[{"name":"qemu","version":"1:2.11+dfsg-1ubuntu7.8","description":"Machine emulator and virtualizer","is_source":true},{"name":"qemu","version":"1:2.11+dfsg-1ubuntu7.8","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.11+dfsg-1ubuntu7.8","pocket":"security"},{"name":"qemu-block-extra","version":"1:2.11+dfsg-1ubuntu7.8","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.11+dfsg-1ubuntu7.8","pocket":"security"},{"name":"qemu-guest-agent","version":"1:2.11+dfsg-1ubuntu7.8","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.11+dfsg-1ubuntu7.8","pocket":"security"},{"name":"qemu-kvm","version":"1:2.11+dfsg-1ubuntu7.8","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.11+dfsg-1ubuntu7.8","pocket":"security"},{"name":"qemu-system","version":"1:2.11+dfsg-1ubuntu7.8","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.11+dfsg-1ubuntu7.8","pocket":"security"},{"name":"qemu-system-arm","version":"1:2.11+dfsg-1ubuntu7.8","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.11+dfsg-1ubuntu7.8","pocket":"security"},{"name":"qemu-system-common","version":"1:2.11+dfsg-1ubuntu7.8","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.11+dfsg-1ubuntu7.8","pocket":"security"},{"name":"qemu-system-mips","version":"1:2.11+dfsg-1ubuntu7.8","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.11+dfsg-1ubuntu7.8","pocket":"security"},{"name":"qemu-system-misc","version":"1:2.11+dfsg-1ubuntu7.8","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.11+dfsg-1ubuntu7.8","pocket":"security"},{"name":"qemu-system-ppc","version":"1:2.11+dfsg-1ubuntu7.8","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.11+dfsg-1ubuntu7.8","pocket":"security"},{"name":"qemu-system-s390x","version":"1:2.11+dfsg-1ubuntu7.8","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.11+dfsg-1ubuntu7.8","pocket":"security"},{"name":"qemu-system-sparc","version":"1:2.11+dfsg-1ubuntu7.8","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.11+dfsg-1ubuntu7.8","pocket":"security"},{"name":"qemu-system-x86","version":"1:2.11+dfsg-1ubuntu7.8","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.11+dfsg-1ubuntu7.8","pocket":"security"},{"name":"qemu-user","version":"1:2.11+dfsg-1ubuntu7.8","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.11+dfsg-1ubuntu7.8","pocket":"security"},{"name":"qemu-user-binfmt","version":"1:2.11+dfsg-1ubuntu7.8","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.11+dfsg-1ubuntu7.8","pocket":"security"},{"name":"qemu-user-static","version":"1:2.11+dfsg-1ubuntu7.8","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.11+dfsg-1ubuntu7.8","pocket":"security"},{"name":"qemu-utils","version":"1:2.11+dfsg-1ubuntu7.8","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.11+dfsg-1ubuntu7.8","pocket":"security"}],"cosmic":[{"name":"qemu","version":"1:2.12+dfsg-3ubuntu8.1","description":"Machine emulator and virtualizer","is_source":true},{"name":"qemu-system","version":"1:2.12+dfsg-3ubuntu8.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.12+dfsg-3ubuntu8.1"},{"name":"qemu-system-arm","version":"1:2.12+dfsg-3ubuntu8.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.12+dfsg-3ubuntu8.1"},{"name":"qemu-system-mips","version":"1:2.12+dfsg-3ubuntu8.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.12+dfsg-3ubuntu8.1"},{"name":"qemu-system-misc","version":"1:2.12+dfsg-3ubuntu8.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.12+dfsg-3ubuntu8.1"},{"name":"qemu-system-ppc","version":"1:2.12+dfsg-3ubuntu8.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.12+dfsg-3ubuntu8.1"},{"name":"qemu-system-s390x","version":"1:2.12+dfsg-3ubuntu8.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.12+dfsg-3ubuntu8.1"},{"name":"qemu-system-sparc","version":"1:2.12+dfsg-3ubuntu8.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.12+dfsg-3ubuntu8.1"},{"name":"qemu-system-x86","version":"1:2.12+dfsg-3ubuntu8.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.12+dfsg-3ubuntu8.1"}],"trusty":[{"name":"qemu","version":"2.0.0+dfsg-2ubuntu1.44","description":"Machine emulator and virtualizer","is_source":true},{"name":"qemu","version":"2.0.0+dfsg-2ubuntu1.44","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.44","pocket":"security"},{"name":"qemu-common","version":"2.0.0+dfsg-2ubuntu1.44","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.44","pocket":"security"},{"name":"qemu-guest-agent","version":"2.0.0+dfsg-2ubuntu1.44","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.44","pocket":"security"},{"name":"qemu-keymaps","version":"2.0.0+dfsg-2ubuntu1.44","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.44","pocket":"security"},{"name":"qemu-kvm","version":"2.0.0+dfsg-2ubuntu1.44","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.44","pocket":"security"},{"name":"qemu-system","version":"2.0.0+dfsg-2ubuntu1.44","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.44","pocket":"security"},{"name":"qemu-system-aarch64","version":"2.0.0+dfsg-2ubuntu1.44","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.44","pocket":"security"},{"name":"qemu-system-arm","version":"2.0.0+dfsg-2ubuntu1.44","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.44","pocket":"security"},{"name":"qemu-system-common","version":"2.0.0+dfsg-2ubuntu1.44","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.44","pocket":"security"},{"name":"qemu-system-mips","version":"2.0.0+dfsg-2ubuntu1.44","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.44","pocket":"security"},{"name":"qemu-system-misc","version":"2.0.0+dfsg-2ubuntu1.44","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.44","pocket":"security"},{"name":"qemu-system-ppc","version":"2.0.0+dfsg-2ubuntu1.44","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.44","pocket":"security"},{"name":"qemu-system-sparc","version":"2.0.0+dfsg-2ubuntu1.44","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.44","pocket":"security"},{"name":"qemu-system-x86","version":"2.0.0+dfsg-2ubuntu1.44","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.44","pocket":"security"},{"name":"qemu-user","version":"2.0.0+dfsg-2ubuntu1.44","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.44","pocket":"security"},{"name":"qemu-user-static","version":"2.0.0+dfsg-2ubuntu1.44","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.44","pocket":"security"},{"name":"qemu-utils","version":"2.0.0+dfsg-2ubuntu1.44","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/2.0.0+dfsg-2ubuntu1.44","pocket":"security"}],"xenial":[{"name":"qemu","version":"1:2.5+dfsg-5ubuntu10.33","description":"Machine emulator and virtualizer","is_source":true},{"name":"qemu","version":"1:2.5+dfsg-5ubuntu10.33","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.33","pocket":"security"},{"name":"qemu-block-extra","version":"1:2.5+dfsg-5ubuntu10.33","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.33","pocket":"security"},{"name":"qemu-guest-agent","version":"1:2.5+dfsg-5ubuntu10.33","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.33","pocket":"security"},{"name":"qemu-kvm","version":"1:2.5+dfsg-5ubuntu10.33","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.33","pocket":"security"},{"name":"qemu-system","version":"1:2.5+dfsg-5ubuntu10.33","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.33","pocket":"security"},{"name":"qemu-system-aarch64","version":"1:2.5+dfsg-5ubuntu10.33","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.33","pocket":"security"},{"name":"qemu-system-arm","version":"1:2.5+dfsg-5ubuntu10.33","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.33","pocket":"security"},{"name":"qemu-system-common","version":"1:2.5+dfsg-5ubuntu10.33","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.33","pocket":"security"},{"name":"qemu-system-mips","version":"1:2.5+dfsg-5ubuntu10.33","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.33","pocket":"security"},{"name":"qemu-system-misc","version":"1:2.5+dfsg-5ubuntu10.33","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.33","pocket":"security"},{"name":"qemu-system-ppc","version":"1:2.5+dfsg-5ubuntu10.33","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.33","pocket":"security"},{"name":"qemu-system-s390x","version":"1:2.5+dfsg-5ubuntu10.33","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.33","pocket":"security"},{"name":"qemu-system-sparc","version":"1:2.5+dfsg-5ubuntu10.33","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.33","pocket":"security"},{"name":"qemu-system-x86","version":"1:2.5+dfsg-5ubuntu10.33","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.33","pocket":"security"},{"name":"qemu-user","version":"1:2.5+dfsg-5ubuntu10.33","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.33","pocket":"security"},{"name":"qemu-user-binfmt","version":"1:2.5+dfsg-5ubuntu10.33","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.33","pocket":"security"},{"name":"qemu-user-static","version":"1:2.5+dfsg-5ubuntu10.33","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.33","pocket":"security"},{"name":"qemu-utils","version":"1:2.5+dfsg-5ubuntu10.33","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/qemu","version_link":"https://launchpad.net/ubuntu/+source/qemu/1:2.5+dfsg-5ubuntu10.33","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2018-10839","CVE-2018-11806","CVE-2018-12617","CVE-2018-16847","CVE-2018-17958","CVE-2018-17962","CVE-2018-17963","CVE-2018-18849","CVE-2018-18954","CVE-2018-19364"]}]},{"id":"CVE-2018-17960","published":"2018-11-14T20:29:00","updated_at":"2025-08-26T12:06:22.367266+00:00","description":"\nCKEditor 4.x before 4.11.0 allows user-assisted XSS involving a source-mode\npaste.","ubuntu_description":"","notes":[{"author":"litios","note":"No specific patch was found"}],"codename":null,"priority":"medium","cvss3":6.1,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"REQUIRED","scope":"CHANGED","confidentialityImpact":"LOW","integrityImpact":"LOW","availabilityImpact":"NONE","baseScore":6.1,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://ckeditor.com/blog/CKEditor-4.11-with-emoji-dropdown-and-auto-link-on-typing-released/","https://ckeditor.com/cke4/release/CKEditor-4.11.0","https://www.cve.org/CVERecord?id=CVE-2018-17960"],"bugs":[""],"patches":{"fckeditor":[],"ckeditor":[]},"tags":{},"packages":[{"name":"ckeditor","source":"https://ubuntu.com/security/cve?package=ckeditor","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=ckeditor","debian":"https://tracker.debian.org/pkg/ckeditor","statuses":[{"release_codename":"xenial","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"impish","status":"not-affected","description":"4.11.1+dfsg-1","component":null,"pocket":"security"},{"release_codename":"jammy","status":"not-affected","description":"4.11.1+dfsg-1","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"disco","status":"not-affected","description":"4.11.1+dfsg-1","component":null,"pocket":"security"},{"release_codename":"eoan","status":"not-affected","description":"4.11.1+dfsg-1","component":null,"pocket":"security"},{"release_codename":"focal","status":"not-affected","description":"4.11.1+dfsg-1","component":null,"pocket":"security"},{"release_codename":"groovy","status":"not-affected","description":"4.11.1+dfsg-1","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"not-affected","description":"4.11.1+dfsg-1","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"not-affected","description":"4.11.1+dfsg-1","component":null,"pocket":"security"},{"release_codename":"lunar","status":"not-affected","description":"4.11.1+dfsg-1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"4.11.1+dfsg-1","component":null,"pocket":"security"},{"release_codename":"mantic","status":"not-affected","description":"4.11.1+dfsg-1","component":null,"pocket":"security"},{"release_codename":"noble","status":"not-affected","description":"4.11.1+dfsg-1","component":null,"pocket":"security"},{"release_codename":"oracular","status":"not-affected","description":"4.11.1+dfsg-1","component":null,"pocket":"security"},{"release_codename":"plucky","status":"not-affected","description":"4.11.1+dfsg-1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needs-triage","component":null,"pocket":"security"},{"release_codename":"questing","status":"not-affected","description":"4.11.1+dfsg-1","component":null,"pocket":"security"},{"release_codename":"resolute","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"needs-triage","description":"","component":null,"pocket":"security"}]},{"name":"fckeditor","source":"https://ubuntu.com/security/cve?package=fckeditor","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=fckeditor","debian":"https://tracker.debian.org/pkg/fckeditor","statuses":[{"release_codename":"impish","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"jammy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"bionic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"disco","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"eoan","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"groovy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lunar","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"xenial","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"mantic","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"noble","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oracular","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"plucky","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needs-triage","component":null,"pocket":"security"},{"release_codename":"questing","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"resolute","status":"DNE","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2018-9543","published":"2018-11-14T18:29:00","updated_at":"2025-07-11T07:41:37.915898+00:00","description":"\nIn trim_device of f2fs_format_utils.c, it is possible that the data\npartition is not wiped during a factory reset. This could lead to local\ninformation disclosure after factory reset with no additional execution\nprivileges needed. User interaction is not needed for exploitation.\nProduct: Android. Versions: Android-7.0 Android-7.1.1 Android-7.1.2\nAndroid-8.0 Android-8.1 Android-9. Android ID: A-112868088.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":5.5,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"NONE","availabilityImpact":"NONE","baseScore":5.5,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["https://source.android.com/security/bulletin/2018-11-01","https://www.cve.org/CVERecord?id=CVE-2018-9543"],"bugs":[""],"patches":{"f2fs-tools":[]},"tags":{},"packages":[{"name":"f2fs-tools","source":"https://ubuntu.com/security/cve?package=f2fs-tools","ubuntu":"https://packages.ubuntu.com/search?suite=all§ion=all&arch=any&searchon=sourcenames&keywords=f2fs-tools","debian":"https://tracker.debian.org/pkg/f2fs-tools","statuses":[{"release_codename":"xenial","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"questing","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"cosmic","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"disco","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"eoan","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"bionic","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"groovy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"kinetic","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"hirsute","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"jammy","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"impish","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"focal","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"mantic","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"lunar","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"noble","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"oracular","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty was needs-triage","component":null,"pocket":"security"},{"release_codename":"resolute","status":"needs-triage","description":"","component":null,"pocket":"security"},{"release_codename":"plucky","status":"ignored","description":"end of life, was needs-triage","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]}],"offset":51180,"limit":20,"total_results":79316}