USN-5219-1

Advisory lineage Upstream: 2 Downstream: 0
Published: 11 Jan 2022, 05:22
Last modified:04 Feb 2026, 03:56

Vulnerability Summary

Overall Risk (default)
minimal
0/100
CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

11 Jan 2022, 05:22
Published
Vulnerability first disclosed
04 Feb 2026, 03:56
Last Modified
Vulnerability information updated

Description

linux, linux-aws, linux-aws-5.11, linux-azure, linux-azure-5.11, linux-gcp, linux-gcp-5.11, linux-hwe-5.11, linux-kvm, linux-oem-5.10, linux-oracle, linux-oracle-5.11, linux-raspi vulnerability It was discovered that the eBPF implementation in the Linux kernel did not properly validate the memory size of certain ring buffer operation arguments. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code.

Affected Systems

  • ubuntulinux-aws-5.11

    < 5.11.0-1025.27~20.04.1

  • ubuntulinux-azure-5.11

    < 5.11.0-1025.27~20.04.1

  • ubuntulinux-gcp-5.11

    < 5.11.0-1026.29~20.04.1

  • ubuntulinux-hwe-5.11

    < 5.11.0-46.51~20.04.1

  • ubuntulinux-oem-5.10

    < 5.10.0-1055.58

  • ubuntulinux-oracle-5.11

    < 5.11.0-1025.27~20.04.1

References (3)