USN-5692-1
Vulnerability Summary
Timeline
Description
linux, linux-aws, linux-aws-5.15, linux-azure, linux-azure-5.15, linux-gcp, linux-gcp-5.15, linux-gke, linux-gke-5.15, linux-gkeop, linux-hwe-5.15, linux-ibm, linux-kvm, linux-lowlatency, linux-lowlatency-hwe-5.15, linux-oem-5.14, linux-oracle, linux-raspi vulnerabilities David Bouman and Billy Jheng Bing Jhong discovered that a race condition existed in the io_uring subsystem in the Linux kernel, leading to a use- after-free vulnerability. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2022-2602) Sönke Huster discovered that an integer overflow vulnerability existed in the WiFi driver stack in the Linux kernel, leading to a buffer overflow. A physically proximate attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2022-41674) Sönke Huster discovered that a use-after-free vulnerability existed in the WiFi driver stack in the Linux kernel. A physically proximate attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2022-42719) Sönke Huster discovered that the WiFi driver stack in the Linux kernel did not properly perform reference counting in some situations, leading to a use-after-free vulnerability. A physically proximate attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2022-42720) Sönke Huster discovered that the WiFi driver stack in the Linux kernel did not properly handle BSSID/SSID lists in some situations. A physically proximate attacker could use this to cause a denial of service (infinite loop). (CVE-2022-42721) Sönke Huster discovered that the WiFi driver stack in the Linux kernel contained a NULL pointer dereference vulnerability in certain situations. A physically proximate attacker could use this to cause a denial of service (system crash). (CVE-2022-42722)
Affected Systems
- ubuntu•linux
< 5.15.0-52.58
- ubuntu•linux-aws
< 5.15.0-1022.26
- ubuntu•linux-aws-5.15
< 5.15.0-1022.26~20.04.1
- ubuntu•linux-azure
< 5.15.0-1022.27
- ubuntu•linux-azure-5.15
< 5.15.0-1022.27~20.04.1
- ubuntu•linux-gcp
< 5.15.0-1021.28
- ubuntu•linux-gcp-5.15
< 5.15.0-1021.28~20.04.1
- ubuntu•linux-gke
< 5.15.0-1019.23
- ubuntu•linux-gke-5.15
< 5.15.0-1019.23~20.04.1
- ubuntu•linux-gkeop
< 5.15.0-1007.10
- ubuntu•linux-hwe-5.15
< 5.15.0-52.58~20.04.1
- ubuntu•linux-ibm
< 5.15.0-1017.20
- ubuntu•linux-kvm
< 5.15.0-1020.24
- ubuntu•linux-lowlatency
< 5.15.0-52.58
- ubuntu•linux-lowlatency-hwe-5.15
< 5.15.0-52.58~20.04.1
- ubuntu•linux-oem-5.14
< 5.14.0-1054.61
- ubuntu•linux-oracle
< 5.15.0-1021.27
- ubuntu•linux-raspi
< 5.15.0-1017.19