{"id":"USN-6926-2","summary":"linux-azure, linux-azure-4.15 vulnerabilities","details":"\n黄思聪 discovered that the NFC Controller Interface (NCI) implementation in\nthe Linux kernel did not properly handle certain memory allocation failure\nconditions, leading to a null pointer dereference vulnerability. A local\nattacker could use this to cause a denial of service (system crash).\n(CVE-2023-46343)\n\nIt was discovered that a race condition existed in the Bluetooth subsystem\nin the Linux kernel when modifying certain settings values through debugfs.\nA privileged local attacker could use this to cause a denial of service.\n(CVE-2024-24857, CVE-2024-24858, CVE-2024-24859)\n\nChenyuan Yang discovered that the Unsorted Block Images (UBI) flash device\nvolume management subsystem did not properly validate logical eraseblock\nsizes in certain situations. An attacker could possibly use this to cause a\ndenial of service (system crash). (CVE-2024-25739)\n\nSupraja Sridhara, Benedict Schlüter, Mark Kuhne, Andrin Bertschi, and\nShweta Shinde discovered that the Confidential Computing framework in the\nLinux kernel for x86 platforms did not properly handle 32-bit emulation on\nTDX and SEV. An attacker with access to the VMM could use this to cause a\ndenial of service (guest crash) or possibly execute arbitrary code.\n(CVE-2024-25744)\n\nSeveral security issues were discovered in the Linux kernel.\nAn attacker could possibly use these to compromise the system.\nThis update corrects flaws in the following subsystems:\n  - GPU drivers;\n  - HID subsystem;\n  - I2C subsystem;\n  - MTD block device drivers;\n  - Network drivers;\n  - TTY drivers;\n  - USB subsystem;\n  - File systems infrastructure;\n  - F2FS file system;\n  - SMB network file system;\n  - BPF subsystem;\n  - B.A.T.M.A.N. meshing protocol;\n  - Bluetooth subsystem;\n  - Networking core;\n  - IPv4 networking;\n  - IPv6 networking;\n  - Netfilter;\n  - Unix domain sockets;\n  - AppArmor security module;\n(CVE-2024-26884, CVE-2024-26882, CVE-2024-26923, CVE-2024-26840,\nCVE-2023-52435, CVE-2024-35984, CVE-2024-26886, CVE-2023-52752,\nCVE-2023-52436, CVE-2024-36016, CVE-2024-26857, CVE-2024-36902,\nCVE-2023-52443, CVE-2024-35997, CVE-2024-35982, CVE-2023-52469,\nCVE-2024-27020, CVE-2024-35978, CVE-2024-26934, CVE-2024-27013,\nCVE-2023-52449, CVE-2024-26901, CVE-2023-52444, CVE-2023-52620)\n","modified":"2026-04-24T10:02:49.976937722Z","published":"2024-08-01T15:09:46Z","related":["UBUNTU-CVE-2023-46343","UBUNTU-CVE-2023-52435","UBUNTU-CVE-2023-52436","UBUNTU-CVE-2023-52443","UBUNTU-CVE-2023-52444","UBUNTU-CVE-2023-52449","UBUNTU-CVE-2023-52469","UBUNTU-CVE-2023-52620","UBUNTU-CVE-2023-52752","UBUNTU-CVE-2024-24857","UBUNTU-CVE-2024-24858","UBUNTU-CVE-2024-24859","UBUNTU-CVE-2024-25739","UBUNTU-CVE-2024-25744","UBUNTU-CVE-2024-26840","UBUNTU-CVE-2024-26857","UBUNTU-CVE-2024-26882","UBUNTU-CVE-2024-26884","UBUNTU-CVE-2024-26886","UBUNTU-CVE-2024-26901","UBUNTU-CVE-2024-26923","UBUNTU-CVE-2024-26934","UBUNTU-CVE-2024-27013","UBUNTU-CVE-2024-27020","UBUNTU-CVE-2024-35978","UBUNTU-CVE-2024-35982","UBUNTU-CVE-2024-35984","UBUNTU-CVE-2024-35997","UBUNTU-CVE-2024-36016","UBUNTU-CVE-2024-36902"],"upstream":["CVE-2024-26886","UBUNTU-CVE-2024-26886"],"references":[{"type":"ADVISORY","url":"https://ubuntu.com/security/notices/USN-6926-2"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2024-26886"}],"affected":[{"package":{"name":"linux-azure","ecosystem":"Ubuntu:Pro:14.04:LTS","purl":"pkg:deb/ubuntu/linux-azure@4.15.0-1179.194~14.04.1?arch=source&distro=trusty/esm"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.15.0-1179.194~14.04.1"}]}],"versions":["4.15.0-1023.24~14.04.1","4.15.0-1030.31~14.04.1","4.15.0-1031.32~14.04.1","4.15.0-1032.33~14.04.2","4.15.0-1035.36~14.04.2","4.15.0-1036.38~14.04.2","4.15.0-1037.39~14.04.2","4.15.0-1039.41~14.04.2","4.15.0-1040.44~14.04.1","4.15.0-1041.45~14.04.1","4.15.0-1042.46~14.04.1","4.15.0-1045.49~14.04.1","4.15.0-1046.50~14.04.1","4.15.0-1047.51~14.04.1","4.15.0-1049.54~14.04.1","4.15.0-1050.55~14.04.1","4.15.0-1051.56~14.04.1","4.15.0-1052.57~14.04.1","4.15.0-1055.60~14.04.1","4.15.0-1056.61~14.04.1","4.15.0-1057.62~14.04.1","4.15.0-1059.64~14.04.1","4.15.0-1060.65~14.04.1","4.15.0-1061.66~14.04.1","4.15.0-1063.68~14.04.1","4.15.0-1064.69~14.04.1","4.15.0-1066.71~14.04.1","4.15.0-1067.72~14.04.1","4.15.0-1069.74~14.04.1","4.15.0-1071.76~14.04.1","4.15.0-1074.79~14.04.1","4.15.0-1077.82~14.04.1","4.15.0-1082.92~14.04.1","4.15.0-1083.93~14.04.1","4.15.0-1089.99~14.04.1","4.15.0-1091.101~14.04.1","4.15.0-1092.102~14.04.1","4.15.0-1093.103~14.04.1","4.15.0-1095.105~14.04.1","4.15.0-1096.106~14.04.1","4.15.0-1098.109~14.04.1","4.15.0-1100.111~14.04.1","4.15.0-1102.113~14.04.1","4.15.0-1103.114~14.04.1","4.15.0-1106.118~14.04.1","4.15.0-1108.120~14.04.1","4.15.0-1109.121~14.04.1","4.15.0-1110.122~14.04.1","4.15.0-1111.123~14.04.1","4.15.0-1112.124~14.04.1","4.15.0-1113.126~14.04.1","4.15.0-1114.127~14.04.1","4.15.0-1115.128~14.04.1","4.15.0-1118.131~14.04.1","4.15.0-1121.134~14.04.1","4.15.0-1122.135~14.04.1","4.15.0-1123.136~14.04.1","4.15.0-1124.137~14.04.1","4.15.0-1125.138~14.04.1","4.15.0-1126.139~14.04.1","4.15.0-1127.140~14.04.1","4.15.0-1129.142~14.04.1","4.15.0-1130.143~14.04.1","4.15.0-1131.144~14.04.1","4.15.0-1133.146~14.04.1","4.15.0-1134.147~14.04.1","4.15.0-1136.149~14.04.1","4.15.0-1137.150~14.04.1","4.15.0-1138.151~14.04.1","4.15.0-1139.152~14.04.1","4.15.0-1142.156~14.04.1","4.15.0-1145.160~14.04.1","4.15.0-1146.161~14.04.1","4.15.0-1149.164~14.04.1","4.15.0-1150.165~14.04.1","4.15.0-1151.166~14.04.1","4.15.0-1153.168~14.04.1","4.15.0-1157.172~14.04.2","4.15.0-1158.173~14.04.1","4.15.0-1159.174~14.04.1","4.15.0-1162.177~14.04.1","4.15.0-1163.178~14.04.1","4.15.0-1164.179~14.04.1","4.15.0-1165.180~14.04.1","4.15.0-1166.181~14.04.1","4.15.0-1167.182~14.04.1","4.15.0-1168.183~14.04.1","4.15.0-1169.184~14.04.1","4.15.0-1170.185~14.04.1","4.15.0-1171.186~14.04.1","4.15.0-1172.187~14.04.1","4.15.0-1173.188~14.04.1","4.15.0-1174.189~14.04.1","4.15.0-1175.190~14.04.1","4.15.0-1176.191~14.04.1","4.15.0-1177.192~14.04.1","4.15.0-1178.193~14.04.1"],"ecosystem_specific":{"availability":"Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro","binaries":[{"binary_name":"linux-azure-cloud-tools-4.15.0-1179","binary_version":"4.15.0-1179.194~14.04.1"},{"binary_name":"linux-azure-headers-4.15.0-1179","binary_version":"4.15.0-1179.194~14.04.1"},{"binary_name":"linux-azure-tools-4.15.0-1179","binary_version":"4.15.0-1179.194~14.04.1"},{"binary_name":"linux-buildinfo-4.15.0-1179-azure","binary_version":"4.15.0-1179.194~14.04.1"},{"binary_name":"linux-cloud-tools-4.15.0-1179-azure","binary_version":"4.15.0-1179.194~14.04.1"},{"binary_name":"linux-headers-4.15.0-1179-azure","binary_version":"4.15.0-1179.194~14.04.1"},{"binary_name":"linux-image-unsigned-4.15.0-1179-azure","binary_version":"4.15.0-1179.194~14.04.1"},{"binary_name":"linux-modules-4.15.0-1179-azure","binary_version":"4.15.0-1179.194~14.04.1"},{"binary_name":"linux-modules-extra-4.15.0-1179-azure","binary_version":"4.15.0-1179.194~14.04.1"},{"binary_name":"linux-tools-4.15.0-1179-azure","binary_version":"4.15.0-1179.194~14.04.1"}]},"database_specific":{"cves_map":{"ecosystem":"Ubuntu:Pro:14.04:LTS","cves":[{"id":"CVE-2024-26886","severity":[{"score":"CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]}]},"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-6926-2.json"}},{"package":{"name":"linux-azure-4.15","ecosystem":"Ubuntu:Pro:18.04:LTS","purl":"pkg:deb/ubuntu/linux-azure-4.15@4.15.0-1179.194?arch=source&distro=esm-infra/bionic"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.15.0-1179.194"}]}],"versions":["4.15.0-1082.92","4.15.0-1083.93","4.15.0-1089.99","4.15.0-1091.101","4.15.0-1092.102","4.15.0-1093.103","4.15.0-1095.105","4.15.0-1096.106","4.15.0-1099.110","4.15.0-1100.111","4.15.0-1102.113","4.15.0-1103.114","4.15.0-1104.116","4.15.0-1106.118","4.15.0-1108.120","4.15.0-1109.121","4.15.0-1110.122","4.15.0-1111.123","4.15.0-1112.125","4.15.0-1113.126","4.15.0-1114.127","4.15.0-1115.128","4.15.0-1118.131","4.15.0-1121.134","4.15.0-1122.135","4.15.0-1123.136","4.15.0-1124.137","4.15.0-1125.138","4.15.0-1126.139","4.15.0-1127.140","4.15.0-1129.142","4.15.0-1130.143","4.15.0-1131.144","4.15.0-1133.146","4.15.0-1134.147","4.15.0-1136.149","4.15.0-1137.150","4.15.0-1138.151","4.15.0-1139.152","4.15.0-1142.156","4.15.0-1145.160","4.15.0-1146.161","4.15.0-1149.164","4.15.0-1150.165","4.15.0-1151.166","4.15.0-1153.168","4.15.0-1157.172","4.15.0-1158.173","4.15.0-1159.174","4.15.0-1161.176","4.15.0-1162.177","4.15.0-1163.178","4.15.0-1164.179","4.15.0-1165.180","4.15.0-1166.181","4.15.0-1167.182","4.15.0-1168.183","4.15.0-1169.184","4.15.0-1170.185","4.15.0-1171.186","4.15.0-1172.187","4.15.0-1173.188","4.15.0-1174.189","4.15.0-1175.190","4.15.0-1176.191","4.15.0-1177.192","4.15.0-1178.193"],"ecosystem_specific":{"availability":"Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro","binaries":[{"binary_name":"linux-azure-4.15-cloud-tools-4.15.0-1179","binary_version":"4.15.0-1179.194"},{"binary_name":"linux-azure-4.15-headers-4.15.0-1179","binary_version":"4.15.0-1179.194"},{"binary_name":"linux-azure-4.15-tools-4.15.0-1179","binary_version":"4.15.0-1179.194"},{"binary_name":"linux-buildinfo-4.15.0-1179-azure","binary_version":"4.15.0-1179.194"},{"binary_name":"linux-cloud-tools-4.15.0-1179-azure","binary_version":"4.15.0-1179.194"},{"binary_name":"linux-headers-4.15.0-1179-azure","binary_version":"4.15.0-1179.194"},{"binary_name":"linux-image-unsigned-4.15.0-1179-azure","binary_version":"4.15.0-1179.194"},{"binary_name":"linux-modules-4.15.0-1179-azure","binary_version":"4.15.0-1179.194"},{"binary_name":"linux-modules-extra-4.15.0-1179-azure","binary_version":"4.15.0-1179.194"},{"binary_name":"linux-tools-4.15.0-1179-azure","binary_version":"4.15.0-1179.194"}]},"database_specific":{"cves_map":{"ecosystem":"Ubuntu:Pro:18.04:LTS","cves":[{"id":"CVE-2024-26886","severity":[{"score":"CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]}]},"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-6926-2.json"}}],"schema_version":"1.7.5"}