[ubuntu/focal-security] linux-gkeop 5.4.0-1014.15 (Accepted)

Andy Whitcroft apw at canonical.com
Thu Apr 15 20:33:13 UTC 2021


linux-gkeop (5.4.0-1014.15) focal; urgency=medium

  [ Ubuntu: 5.4.0-72.80 ]

  * overlayfs calls vfs_setxattr without cap_convert_nscap
    - vfs: move cap_convert_nscap() call into vfs_setxattr()
  * CVE-2021-3492
    - SAUCE: shiftfs: free allocated memory in shiftfs_btrfs_ioctl_fd_replace()
      error paths
    - SAUCE: shiftfs: handle copy_to_user() return values correctly
  * CVE-2021-29154
    - SAUCE: bpf, x86: Validate computation of branch displacements for x86-64
    - SAUCE: bpf, x86: Validate computation of branch displacements for x86-32

Date: 2021-04-13 10:44:09.552541+00:00
Changed-By: Kleber Sacilotto de Souza <kleber.souza at canonical.com>
Signed-By: Andy Whitcroft <apw at canonical.com>
https://launchpad.net/ubuntu/+source/linux-gkeop/5.4.0-1014.15
-------------- next part --------------
Sorry, changesfile not available.


More information about the Focal-changes mailing list