USN-5577-1

Advisory lineage Upstream: 4 Downstream: 0
Published: 24 Aug 2022, 04:14
Last modified:14 Sept 2026, 11:17

Vulnerability Summary

Overall Risk (default)
minimal
0/100
CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

24 Aug 2022, 04:14
Published
Vulnerability first disclosed
14 Sept 2026, 11:17
Last Modified
Vulnerability information updated

Description

linux-oem-5.14 vulnerabilities Asaf Modelevsky discovered that the Intel(R) 10GbE PCI Express (ixgbe) Ethernet driver for the Linux kernel performed insufficient control flow management. A local attacker could possibly use this to cause a denial of service. (CVE-2021-33061) It was discovered that the framebuffer driver on the Linux kernel did not verify size limits when changing font or screen size, leading to an out-of- bounds write. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2021-33655)

Affected Systems

  • ubuntulinux-oem-5.14

    < 5.14.0-1049.56

References (3)