跳转到帖子

Ubuntu: (Multiple Advisories) (CVE-2024-35967): Linux kernel vulnerabilities

recommended_posts

发布于
  • Members

Ubuntu: (Multiple Advisories) (CVE-2024-35967): Linux kernel vulnerabilities

Severity
4
CVSS
(AV:L/AC:M/Au:N/C:P/I:P/A:P)
Published
05/20/2024
Created
07/12/2024
Added
07/12/2024
Modified
01/30/2025

Description

In the Linux kernel, the following vulnerability has been resolved: Bluetooth: SCO: Fix not validating setsockopt user input syzbot reported sco_sock_setsockopt() is copying data without checking user input length. BUG: KASAN: slab-out-of-bounds in copy_from_sockptr_offset include/linux/sockptr.h:49 [inline] BUG: KASAN: slab-out-of-bounds in copy_from_sockptr include/linux/sockptr.h:55 [inline] BUG: KASAN: slab-out-of-bounds in sco_sock_setsockopt+0xc0b/0xf90 net/bluetooth/sco.c:893 Read of size 4 at addr ffff88805f7b15a3 by task syz-executor.5/12578

Solution(s)

  • ubuntu-upgrade-linux-image-5-15-0-1041-xilinx-zynqmp
  • ubuntu-upgrade-linux-image-5-15-0-1057-gkeop
  • ubuntu-upgrade-linux-image-5-15-0-1067-ibm
  • ubuntu-upgrade-linux-image-5-15-0-1070-nvidia
  • ubuntu-upgrade-linux-image-5-15-0-1070-nvidia-lowlatency
  • ubuntu-upgrade-linux-image-5-15-0-1070-raspi
  • ubuntu-upgrade-linux-image-5-15-0-1071-intel-iotg
  • ubuntu-upgrade-linux-image-5-15-0-1071-kvm
  • ubuntu-upgrade-linux-image-5-15-0-1072-gke
  • ubuntu-upgrade-linux-image-5-15-0-1072-oracle
  • ubuntu-upgrade-linux-image-5-15-0-1073-oracle
  • ubuntu-upgrade-linux-image-5-15-0-1074-gcp
  • ubuntu-upgrade-linux-image-5-15-0-1075-aws
  • ubuntu-upgrade-linux-image-5-15-0-1076-aws
  • ubuntu-upgrade-linux-image-5-15-0-1078-azure
  • ubuntu-upgrade-linux-image-5-15-0-128-lowlatency
  • ubuntu-upgrade-linux-image-5-15-0-128-lowlatency-64k
  • ubuntu-upgrade-linux-image-5-15-0-130-generic
  • ubuntu-upgrade-linux-image-5-15-0-130-generic-64k
  • ubuntu-upgrade-linux-image-5-15-0-130-generic-lpae
  • ubuntu-upgrade-linux-image-5-4-0-1056-xilinx-zynqmp
  • ubuntu-upgrade-linux-image-5-4-0-1084-ibm
  • ubuntu-upgrade-linux-image-5-4-0-1097-bluefield
  • ubuntu-upgrade-linux-image-5-4-0-1121-raspi
  • ubuntu-upgrade-linux-image-5-4-0-1125-kvm
  • ubuntu-upgrade-linux-image-5-4-0-1136-oracle
  • ubuntu-upgrade-linux-image-5-4-0-1137-aws
  • ubuntu-upgrade-linux-image-5-4-0-1141-gcp
  • ubuntu-upgrade-linux-image-5-4-0-1142-azure
  • ubuntu-upgrade-linux-image-5-4-0-204-generic
  • ubuntu-upgrade-linux-image-5-4-0-204-generic-lpae
  • ubuntu-upgrade-linux-image-5-4-0-204-lowlatency
  • ubuntu-upgrade-linux-image-6-8-0-1006-gke
  • ubuntu-upgrade-linux-image-6-8-0-1007-intel
  • ubuntu-upgrade-linux-image-6-8-0-1007-raspi
  • ubuntu-upgrade-linux-image-6-8-0-1008-ibm
  • ubuntu-upgrade-linux-image-6-8-0-1008-oem
  • ubuntu-upgrade-linux-image-6-8-0-1008-oracle
  • ubuntu-upgrade-linux-image-6-8-0-1008-oracle-64k
  • ubuntu-upgrade-linux-image-6-8-0-1009-nvidia
  • ubuntu-upgrade-linux-image-6-8-0-1009-nvidia-64k
  • ubuntu-upgrade-linux-image-6-8-0-1010-azure
  • ubuntu-upgrade-linux-image-6-8-0-1010-azure-fde
  • ubuntu-upgrade-linux-image-6-8-0-1010-gcp
  • ubuntu-upgrade-linux-image-6-8-0-1011-aws
  • ubuntu-upgrade-linux-image-6-8-0-38-generic
  • ubuntu-upgrade-linux-image-6-8-0-38-generic-64k
  • ubuntu-upgrade-linux-image-6-8-0-38-lowlatency
  • ubuntu-upgrade-linux-image-6-8-0-38-lowlatency-64k
  • ubuntu-upgrade-linux-image-aws
  • ubuntu-upgrade-linux-image-aws-lts-20-04
  • ubuntu-upgrade-linux-image-aws-lts-22-04
  • ubuntu-upgrade-linux-image-azure
  • ubuntu-upgrade-linux-image-azure-cvm
  • ubuntu-upgrade-linux-image-azure-fde
  • ubuntu-upgrade-linux-image-azure-lts-20-04
  • ubuntu-upgrade-linux-image-azure-lts-22-04
  • ubuntu-upgrade-linux-image-bluefield
  • ubuntu-upgrade-linux-image-gcp
  • ubuntu-upgrade-linux-image-gcp-lts-20-04
  • ubuntu-upgrade-linux-image-gcp-lts-22-04
  • ubuntu-upgrade-linux-image-generic
  • ubuntu-upgrade-linux-image-generic-64k
  • ubuntu-upgrade-linux-image-generic-64k-hwe-20-04
  • ubuntu-upgrade-linux-image-generic-64k-hwe-24-04
  • ubuntu-upgrade-linux-image-generic-hwe-18-04
  • ubuntu-upgrade-linux-image-generic-hwe-20-04
  • ubuntu-upgrade-linux-image-generic-hwe-24-04
  • ubuntu-upgrade-linux-image-generic-lpae
  • ubuntu-upgrade-linux-image-generic-lpae-hwe-20-04
  • ubuntu-upgrade-linux-image-gke
  • ubuntu-upgrade-linux-image-gke-5-15
  • ubuntu-upgrade-linux-image-gkeop
  • ubuntu-upgrade-linux-image-gkeop-5-15
  • ubuntu-upgrade-linux-image-ibm
  • ubuntu-upgrade-linux-image-ibm-classic
  • ubuntu-upgrade-linux-image-ibm-lts-20-04
  • ubuntu-upgrade-linux-image-ibm-lts-24-04
  • ubuntu-upgrade-linux-image-intel
  • ubuntu-upgrade-linux-image-intel-iotg
  • ubuntu-upgrade-linux-image-kvm
  • ubuntu-upgrade-linux-image-lowlatency
  • ubuntu-upgrade-linux-image-lowlatency-64k
  • ubuntu-upgrade-linux-image-lowlatency-64k-hwe-20-04
  • ubuntu-upgrade-linux-image-lowlatency-hwe-18-04
  • ubuntu-upgrade-linux-image-lowlatency-hwe-20-04
  • ubuntu-upgrade-linux-image-nvidia
  • ubuntu-upgrade-linux-image-nvidia-64k
  • ubuntu-upgrade-linux-image-nvidia-lowlatency
  • ubuntu-upgrade-linux-image-oem
  • ubuntu-upgrade-linux-image-oem-20-04
  • ubuntu-upgrade-linux-image-oem-20-04b
  • ubuntu-upgrade-linux-image-oem-20-04c
  • ubuntu-upgrade-linux-image-oem-20-04d
  • ubuntu-upgrade-linux-image-oem-24-04
  • ubuntu-upgrade-linux-image-oem-24-04a
  • ubuntu-upgrade-linux-image-oem-osp1
  • ubuntu-upgrade-linux-image-oracle
  • ubuntu-upgrade-linux-image-oracle-64k
  • ubuntu-upgrade-linux-image-oracle-lts-20-04
  • ubuntu-upgrade-linux-image-oracle-lts-22-04
  • ubuntu-upgrade-linux-image-raspi
  • ubuntu-upgrade-linux-image-raspi-hwe-18-04
  • ubuntu-upgrade-linux-image-raspi-nolpae
  • ubuntu-upgrade-linux-image-raspi2
  • ubuntu-upgrade-linux-image-snapdragon-hwe-18-04
  • ubuntu-upgrade-linux-image-virtual
  • ubuntu-upgrade-linux-image-virtual-hwe-18-04
  • ubuntu-upgrade-linux-image-virtual-hwe-20-04
  • ubuntu-upgrade-linux-image-virtual-hwe-24-04
  • ubuntu-upgrade-linux-image-xilinx-zynqmp

References

  • https://attackerkb.com/topics/cve-2024-35967
  • CVE - 2024-35967
  • USN-6893-1
  • USN-6893-2
  • USN-6893-3
  • USN-6918-1
  • USN-7173-1
  • USN-7173-2
  • USN-7173-3
  • USN-7179-1
  • USN-7179-2
  • USN-7179-3
  • USN-7179-4
  • USN-7186-1
  • USN-7186-2
  • USN-7194-1
  • USN-7195-1
  • USN-7195-2
View more
  • 查看数 698
  • 已创建
  • 最后回复