Episode 225

Episode 225

Update: 2024-04-12
Share

Description

Overview


This week we cover the recent reports of a new local privilege escalation
exploit against the Linux kernel, follow-up on the xz-utils backdoor from last
week and it’s the beta release of Ubuntu 24.04 LTS - plus we talk security
vulnerabilities in the X Server, Django, util-linux and more.


This week in Ubuntu Security Updates


76 unique CVEs addressed


[LSN-0102-1] Linux kernel vulnerability (00:53 )
































































































































































































































































Kernel type 22.04 20.04 18.04 16.04 14.04
aws 102.1 102.1 102.1 102.1
aws-5.15 102.1
aws-5.4 102.1
aws-6.5 102.1
aws-hwe 102.1
azure 102.1 102.1 102.1
azure-4.15 102.1
azure-5.4 102.1
azure-6.5 102.1
gcp 102.1 102.1 102.1
gcp-4.15 102.1
gcp-5.15 102.1
gcp-5.4 102.1
gcp-6.5 102.1
generic-4.15 102.1 102.1
generic-4.4 102.1 102.1
generic-5.15 102.1
generic-5.4 102.1 102.1
gke 102.1 102.1
gke-5.15 102.1
gkeop 102.1
hwe-6.5 102.1
ibm 102.1 102.1
ibm-5.15 102.1
linux 102.1
lowlatency 102.1
lowlatency-4.15 102.1 102.1
lowlatency-4.4 102.1 102.1
lowlatency-5.15 102.1
lowlatency-5.4 102.1 102.1

canonical-livepatch status

[USN-6710-2] Firefox regressions (01:54 )



  • 2 CVEs addressed in Focal (20.04 LTS)


  • 124.0.2

    • In particular fixes to allow firefox when installed directly from Mozilla to
      work under 24.04 LTS with the new AppArmor userns restrictions

    • As discussed in previous episodes, default profile allows to use userns but
      then to be blocked on getting additional capabilities - Firefox would
      previously try and do both a new userns and a new PID NS in one call - which
      would be blocked - now split this into two separate calls so the userns can
      succeed but pidns will be denied (since requires CAP_SYS_ADMIN) - but then
      firefox correctly detects this and falls back to the correct behaviour




[USN-6721-1] X.Org X Server vulnerabilities (04:11 )



  • 4 CVEs addressed in Trusty ESM (14.04 ESM), Xenial ESM (16.04 ESM), Bionic ESM (18.04 ESM), Focal (20.04 LTS), Jammy (22.04 LTS), Mantic (23.10)


  • Various OOB reads -> crash / info leaks when handling byte-swapped length
    values - able to be easily triggered by a client who is using a different
    endianness than the X server

  • UAF in glyph handling -> crash / RCE


[USN-6721-2] X.Org X Server regression



  • 4 CVEs addressed in Trusty ESM (14.04 ESM), Xenial ESM
Comments 
In Channel
Episode 243

Episode 243

2024-12-2024:00

Episode 242

Episode 242

2024-11-2919:40

Episode 241

Episode 241

2024-11-1418:16

Episode 240

Episode 240

2024-10-3136:22

Episode 239

Episode 239

2024-10-1839:16

Episode 238

Episode 238

2024-10-0431:39

Episode 237

Episode 237

2024-09-2016:16

Episode 236

Episode 236

2024-09-0618:23

Episode 235

Episode 235

2024-08-2317:40

Episode 234

Episode 234

2024-08-0929:11

Episode 233

Episode 233

2024-08-0224:07

Episode 232

Episode 232

2024-07-0529:20

Episode 231

Episode 231

2024-06-2819:00

Episode 230

Episode 230

2024-06-2021:12

Episode 229

Episode 229

2024-05-3113:22

Episode 228

Episode 228

2024-05-2415:33

Episode 227

Episode 227

2024-05-0324:41

Episode 226

Episode 226

2024-04-1923:59

Episode 225

Episode 225

2024-04-1219:42

Episode 224

Episode 224

2024-04-0528:49

loading
00:00
00:00
x

0.5x

0.8x

1.0x

1.25x

1.5x

2.0x

3.0x

Sleep Timer

Off

End of Episode

5 Minutes

10 Minutes

15 Minutes

30 Minutes

45 Minutes

60 Minutes

120 Minutes

Episode 225

Episode 225

Ubuntu Security Team