Release Info

Advisory: CLSA-2024:1705081601

OS: Ubuntu 18.04 ELS

Public date: 2024-01-12 12:46:43

Project: linux

Version: 4.15.0-222.233

Errata link: https://errata.tuxcare.com/els_os/ubuntu18.04els/CLSA-2024-1705081601.html

Changelog

* CVE-url: https://ubuntu.com/security/CVE-2023-7192 - netfilter: ctnetlink: fix possible refcount leak in ctnetlink_create_conntrack() * CVE-url: https://ubuntu.com/security/CVE-2023-6610 - smb: client: fix potential OOB in smb2_dump_detail() * CVE-url: https://ubuntu.com/security/CVE-2023-6606 - smb: client: fix OOB in smbCalcSize() * CVE-url: https://ubuntu.com/security/CVE-2023-6546 - tty: n_gsm: fix the UAF caused by race condition in gsm_cleanup_mux * CVE-url: https://ubuntu.com/security/CVE-2023-6932 - ipv4: igmp: fix refcnt uaf issue when receiving igmp query packet * CVE-url: https://ubuntu.com/security/CVE-2023-6931 - perf: Fix perf_event_validate_size() - perf: Fix perf_event_validate_size() lockdep splat * CVE-2023-4244 // CVE-url: https://ubuntu.com/security/CVE-2023-4244 - netfilter: nf_tables: don't skip expired elements during walk - netfilter: nf_tables: GC transaction API to avoid race with control plane - netfilter: nf_tables: adapt set backend to use GC transaction API - netfilter: nf_tables: remove busy mark and gc batch API - netfilter: nf_tables: fix GC transaction races with netns and netlink event exit path - netfilter: nf_tables: GC transaction race with netns dismantle - netfilter: nf_tables: GC transaction race with abort path - netfilter: nft_dynset: disallow object maps * CVE-url: https://ubuntu.com/security/CVE-2023-4244 - netfilter: nf_tables: pass ctx to nf_tables_expr_destroy() - netfilter: nf_tables: use net_generic infra for transaction data - netfilter: nftables: add nft_pernet() helper function - netfilter: nftables: rename set element data activation/deactivation functions - netfilter: nf_tables: fix chain dependency validation - netfilter: nf_tables: place all set backends in one single module - netfilter: nf_tables: make sets built-in * Miscellaneous Ubuntu changes - [Config] updateconfigs for CONFIG_NFT_SET_RBTREE CONFIG_NFT_SET_HASH CONFIG_NFT_SET_BITMAP

Update

Update command: apt-get update apt-get --only-upgrade install linux*

Packages list

linux-buildinfo-4.15.0-222-tuxcare.els10-generic_4.15.0-222.233_amd64.deb linux-buildinfo-4.15.0-222-tuxcare.els10-lowlatency_4.15.0-222.233_amd64.deb linux-cloud-tools-4.15.0-222-tuxcare.els10_4.15.0-222.233_amd64.deb linux-cloud-tools-4.15.0-222-tuxcare.els10-generic_4.15.0-222.233_amd64.deb linux-cloud-tools-4.15.0-222-tuxcare.els10-lowlatency_4.15.0-222.233_amd64.deb linux-cloud-tools-common_4.15.0-222.233_all.deb linux-doc_4.15.0-222.233_all.deb linux-headers-4.15.0-222-tuxcare.els10_4.15.0-222.233_all.deb linux-headers-4.15.0-222-tuxcare.els10-generic_4.15.0-222.233_amd64.deb linux-headers-4.15.0-222-tuxcare.els10-lowlatency_4.15.0-222.233_amd64.deb linux-image-unsigned-4.15.0-222-tuxcare.els10-generic_4.15.0-222.233_amd64.deb linux-image-unsigned-4.15.0-222-tuxcare.els10-lowlatency_4.15.0-222.233_amd64.deb linux-libc-dev_4.15.0-222.233_amd64.deb linux-modules-4.15.0-222-tuxcare.els10-generic_4.15.0-222.233_amd64.deb linux-modules-4.15.0-222-tuxcare.els10-lowlatency_4.15.0-222.233_amd64.deb linux-modules-extra-4.15.0-222-tuxcare.els10-generic_4.15.0-222.233_amd64.deb linux-source-4.15.0_4.15.0-222.233_all.deb linux-tools-4.15.0-222-tuxcare.els10_4.15.0-222.233_amd64.deb linux-tools-4.15.0-222-tuxcare.els10-generic_4.15.0-222.233_amd64.deb linux-tools-4.15.0-222-tuxcare.els10-lowlatency_4.15.0-222.233_amd64.deb linux-tools-common_4.15.0-222.233_all.deb linux-tools-host_4.15.0-222.233_all.deb

CVEs

CVE-2023-6932
CVE-2023-6610
CVE-2023-6931
CVE-2023-6546
CVE-2023-7192
CVE-2023-6606
CVE-2023-4244