[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-USN-3653-2":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-04T08:53:30.047Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":11,"aliases":12,"duplicate_of":9,"upstream":13,"downstream":38,"duplicates":39,"related":40,"reserved_at":9,"published_at":47,"modified_at":48,"state":9,"summary":49,"references_raw":51,"kevs":83,"epss":9,"epss_history":84,"metrics":85,"affected":86},"USN-3653-2","linux-hwe, linux-azure, linux-gcp, linux-oem vulnerabilities\n\nUSN-3653-1 fixed vulnerabilities and added mitigations in the Linux\nkernel for Ubuntu 17.10. This update provides the corresponding\nupdates for the Linux Hardware Enablement (HWE) kernel from Ubuntu\n17.10 for Ubuntu 16.04 LTS.\n\nJann Horn and Ken Johnson discovered that microprocessors utilizing\nspeculative execution of a memory read may allow unauthorized memory\nreads via a sidechannel attack. This flaw is known as Spectre\nVariant 4. A local attacker could use this to expose sensitive\ninformation, including kernel memory. (CVE-2018-3639)\n\nIt was discovered that the netlink subsystem in the Linux kernel did not\nproperly restrict observations of netlink messages to the appropriate net\nnamespace. A local attacker could use this to expose sensitive information\n(kernel netlink traffic). (CVE-2017-17449)\n\nTuba Yavuz discovered that a double-free error existed in the USBTV007\ndriver of the Linux kernel. A local attacker could use this to cause a\ndenial of service (system crash) or possibly execute arbitrary code.\n(CVE-2017-17975)\n\nIt was discovered that a race condition existed in the Device Mapper\ncomponent of the Linux kernel. A local attacker could use this to cause a\ndenial of service (system crash). (CVE-2017-18203)\n\nIt was discovered that an infinite loop could occur in the madvise(2)\nimplementation in the Linux kernel in certain circumstances. A local\nattacker could use this to cause a denial of service (system hang).\n(CVE-2017-18208)\n\nSilvio Cesare discovered a buffer overwrite existed in the NCPFS\nimplementation in the Linux kernel. A remote attacker controlling a\nmalicious NCPFS server could use this to cause a denial of service (system\ncrash) or possibly execute arbitrary code. (CVE-2018-8822)\n",null,[],[],[],[14,16,18,20,22,24,26,28,30,32,34,36],{"_key":15},"CVE-2017-17449",{"_key":17},"CVE-2017-17975",{"_key":19},"CVE-2017-18203",{"_key":21},"CVE-2017-18208",{"_key":23},"CVE-2018-3639",{"_key":25},"CVE-2018-8822",{"_key":27},"UBUNTU-CVE-2017-17449",{"_key":29},"UBUNTU-CVE-2017-17975",{"_key":31},"UBUNTU-CVE-2017-18203",{"_key":33},"UBUNTU-CVE-2017-18208",{"_key":35},"UBUNTU-CVE-2018-3639",{"_key":37},"UBUNTU-CVE-2018-8822",[],[],[41,42,43,44,45,46],{"_key":27},{"_key":29},{"_key":31},{"_key":33},{"_key":35},{"_key":37},"2018-05-22T03:32:36Z","2026-06-03T14:03:45.794098598Z",{"cisa_kev":50,"cisa_ransomware":50,"cisa_vendor":9,"epss_severity":9,"epss_score":9,"severity":9,"severity_score":9,"severity_version":9,"severity_source":9,"severity_vector":9,"severity_status":9},false,[52,58,63,67,71,75,79],{"url":53,"sources":54,"tags":56},"https://ubuntu.com/security/notices/USN-3653-2",[55],"osv_ubuntu",[57],"Advisory",{"url":59,"sources":60,"tags":61},"https://ubuntu.com/security/CVE-2017-17449",[55],[62],"REPORT",{"url":64,"sources":65,"tags":66},"https://ubuntu.com/security/CVE-2017-17975",[55],[62],{"url":68,"sources":69,"tags":70},"https://ubuntu.com/security/CVE-2017-18203",[55],[62],{"url":72,"sources":73,"tags":74},"https://ubuntu.com/security/CVE-2017-18208",[55],[62],{"url":76,"sources":77,"tags":78},"https://ubuntu.com/security/CVE-2018-3639",[55],[62],{"url":80,"sources":81,"tags":82},"https://ubuntu.com/security/CVE-2018-8822",[55],[62],[],[],[],[87,99,105,111],{"ecosystem":88,"name":89,"vendor":90,"product":89,"cpe_part":9,"purl_type":91,"purl_namespace":90,"purl_name":89,"source":9,"versions":92},"Ubuntu","linux-azure","ubuntu","deb",[93],{"version":94,"is_range":95,"range_type":96,"version_start":9,"version_start_type":9,"version_end":97,"version_end_type":98,"fixed_in":9},"lt4_13_0_1018_21",true,"ecosystem","4.13.0-1018.21","excluding",{"ecosystem":88,"name":100,"vendor":90,"product":100,"cpe_part":9,"purl_type":91,"purl_namespace":90,"purl_name":100,"source":9,"versions":101},"linux-gcp",[102],{"version":103,"is_range":95,"range_type":96,"version_start":9,"version_start_type":9,"version_end":104,"version_end_type":98,"fixed_in":9},"lt4_13_0_1017_21","4.13.0-1017.21",{"ecosystem":88,"name":106,"vendor":90,"product":106,"cpe_part":9,"purl_type":91,"purl_namespace":90,"purl_name":106,"source":9,"versions":107},"linux-hwe",[108],{"version":109,"is_range":95,"range_type":96,"version_start":9,"version_start_type":9,"version_end":110,"version_end_type":98,"fixed_in":9},"lt4_13_0_43_48~16_04_1","4.13.0-43.48~16.04.1",{"ecosystem":88,"name":112,"vendor":90,"product":112,"cpe_part":9,"purl_type":91,"purl_namespace":90,"purl_name":112,"source":9,"versions":113},"linux-oem",[114],{"version":115,"is_range":95,"range_type":96,"version_start":9,"version_start_type":9,"version_end":116,"version_end_type":98,"fixed_in":9},"lt4_13_0_1028_31","4.13.0-1028.31"]