Description: | Summary: The remote host is missing an update for the 'linux-azure' package(s) announced via the USN-7195-1 advisory.
Vulnerability Insight: Ziming Zhang discovered that the DRM driver for VMware Virtual GPU did not properly handle certain error conditions, leading to a NULL pointer dereference. A local attacker could possibly trigger this vulnerability to cause a denial of service. (CVE-2022-38096)
Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - ARM32 architecture, - ARM64 architecture, - S390 architecture, - x86 architecture, - Power management core, - GPU drivers, - InfiniBand drivers, - Network drivers, - S/390 drivers, - SCSI subsystem, - TTY drivers, - BTRFS file system, - Ext4 file system, - EROFS file system, - F2FS file system, - File systems infrastructure, - BPF subsystem, - Socket messages infrastructure, - Bluetooth subsystem, - Memory management, - Amateur Radio drivers, - Ethernet bridge, - Networking core, - IPv4 networking, - Network traffic control, - Sun RPC protocol, - VMware vSockets driver, - SELinux security module, (CVE-2024-42240, CVE-2024-36938, CVE-2024-35967, CVE-2024-36953, CVE-2022-48938, CVE-2024-38553, CVE-2024-35904, CVE-2024-35965, CVE-2024-26947, CVE-2024-36968, CVE-2024-43892, CVE-2024-38597, CVE-2023-52498, CVE-2021-47501, CVE-2024-44942, CVE-2024-42077, CVE-2024-53057, CVE-2024-46724, CVE-2024-35963, CVE-2022-48943, CVE-2024-42068, CVE-2024-42156, CVE-2022-48733, CVE-2023-52639, CVE-2021-47101, CVE-2023-52821, CVE-2024-44940, CVE-2024-36952, CVE-2021-47001, CVE-2024-38538, CVE-2024-40910, CVE-2021-47076, CVE-2024-35966, CVE-2024-50264, CVE-2024-35951, CVE-2023-52488, CVE-2023-52497, CVE-2024-49967)
Affected Software/OS: 'linux-azure' package(s) on Ubuntu 20.04.
Solution: Please install the updated package(s).
CVSS Score: 6.8
CVSS Vector: AV:L/AC:L/Au:S/C:C/I:C/A:C
|