UBUNTU-CVE-2022-4139
Vulnerability Summary
Timeline
Description
An incorrect TLB flush issue was found in the Linux kernel’s GPU i915 kernel driver, potentially leading to random memory corruption or data leaks. This flaw could allow a local user to crash the system or escalate their privileges on the system.
CVSS Metrics
- v3.1•HIGH•Score: 7.8CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected Systems
- ubuntu•linux
< 5.4.0-144.161 | < 5.15.0-67.74
- ubuntu•linux-aws
< 5.4.0-1097.105 | < 5.15.0-1031.35
- ubuntu•linux-aws-5.0
all
- ubuntu•linux-aws-5.11
all
- ubuntu•linux-aws-5.13
all
- ubuntu•linux-aws-5.15
< 5.15.0-1031.35~20.04.1
- ubuntu•linux-aws-5.3
all
- ubuntu•linux-aws-5.4
< 5.4.0-1097.105~18.04.1
- ubuntu•linux-aws-5.8
all
- ubuntu•linux-aws-fips
< 5.4.0-1099.107+fips1 | all
- ubuntu•linux-azure
all | < 5.4.0-1104.110 | < 5.15.0-1034.41
- ubuntu•linux-azure-5.11
all
- ubuntu•linux-azure-5.13
all
- ubuntu•linux-azure-5.15
< 5.15.0-1034.41~20.04.1
- ubuntu•linux-azure-5.19
< 5.19.0-1021.22~22.04.1
- ubuntu•linux-azure-5.3
all
- ubuntu•linux-azure-5.4
< 5.4.0-1104.110~18.04.1
- ubuntu•linux-azure-5.8
all
- ubuntu•linux-azure-edge
all
- ubuntu•linux-azure-fde
< 5.15.0-1034.41.1
- ubuntu•linux-azure-fips
< 5.4.0-1104.110+fips1 | all
- ubuntu•linux-bluefield
< 5.15.0-1014.16 | < 5.4.0-1059.65 | < 5.15.0-1014.16 | all
- ubuntu•linux-fips
< 5.4.0-1073.82 | all
- ubuntu•linux-gcp
all | < 5.4.0-1101.110 | < 5.15.0-1030.37
- ubuntu•linux-gcp-5.11
all
- ubuntu•linux-gcp-5.13
all
- ubuntu•linux-gcp-5.15
< 5.15.0-1030.37~20.04.1
- ubuntu•linux-gcp-5.3
all
- ubuntu•linux-gcp-5.4
< 5.4.0-1101.110~18.04.1
- ubuntu•linux-gcp-5.8
all
- ubuntu•linux-gcp-fips
< 5.4.0-1101.110+fips1 | all
- ubuntu•linux-gke
< 5.4.0-1095.102 | < 5.15.0-1028.33
- ubuntu•linux-gke-4.15
all
- ubuntu•linux-gke-5.15
< 5.15.0-1028.33~20.04.1
- ubuntu•linux-gke-5.4
all
- ubuntu•linux-gkeop
< 5.4.0-1065.69 | < 5.15.0-1016.21
- ubuntu•linux-gkeop-5.15
< 5.15.0-1016.21~20.04.1
- ubuntu•linux-gkeop-5.4
all
- ubuntu•linux-hwe
all
- ubuntu•linux-hwe-5.11
all
- ubuntu•linux-hwe-5.13
all
- ubuntu•linux-hwe-5.15
< 5.15.0-67.74~20.04.1
- ubuntu•linux-hwe-5.19
< 5.19.0-35.36~22.04.1
- ubuntu•linux-hwe-5.4
< 5.4.0-144.161~18.04.1
- ubuntu•linux-hwe-5.8
all
- ubuntu•linux-hwe-edge
all
- ubuntu•linux-ibm
< 5.4.0-1045.50 | < 5.15.0-1026.29
- ubuntu•linux-ibm-5.4
< 5.4.0-1045.50~18.04.1
- ubuntu•linux-intel-5.13
all
- ubuntu•linux-intel-iot-realtime
< 5.15.0-1022.27 | < 5.15.0-1022.27
Showing first 50 affected entries in server-rendered view.
References (21)
- https://ubuntu.com/security/CVE-2022-4139
- https://www.openwall.com/lists/oss-security/2022/11/30/1
- https://git.kernel.org/linus/04aa64375f48a5d430b5550d9271f8428883e550
- https://ubuntu.com/security/notices/USN-5859-1
- https://ubuntu.com/security/notices/USN-5911-1
- https://ubuntu.com/security/notices/USN-5912-1
- https://ubuntu.com/security/notices/USN-5917-1
- https://ubuntu.com/security/notices/USN-5929-1
- https://ubuntu.com/security/notices/USN-5934-1
- https://ubuntu.com/security/notices/USN-5935-1
- https://ubuntu.com/security/notices/USN-5938-1
- https://ubuntu.com/security/notices/USN-5939-1
- https://ubuntu.com/security/notices/USN-5940-1
- https://ubuntu.com/security/notices/USN-5941-1
- https://ubuntu.com/security/notices/USN-5950-1
- https://ubuntu.com/security/notices/USN-5951-1
- https://ubuntu.com/security/notices/USN-5962-1
- https://ubuntu.com/security/notices/USN-6000-1
- https://ubuntu.com/security/notices/USN-6089-1
- https://ubuntu.com/security/notices/USN-6124-1
- https://www.cve.org/CVERecord?id=CVE-2022-4139