[ubuntu/jammy-security] linux-kvm 5.15.0-1063.68 (Accepted)

Andy Whitcroft apw at canonical.com
Wed Jul 24 23:16:57 UTC 2024


linux-kvm (5.15.0-1063.68) jammy; urgency=medium

  * jammy/linux-kvm: 5.15.0-1063.68 -proposed tracker (LP: #2072045)

  [ Ubuntu: 5.15.0-117.127 ]

  * jammy/linux: 5.15.0-117.127 -proposed tracker (LP: #2072059)
  * CVE-2024-27017
    - netfilter: nft_set_pipapo: constify lookup fn args where possible
    - netfilter: nft_set_pipapo: walk over current view on netlink dump
    - netfilter: nf_tables: missing iterator type in lookup walk
  * CVE-2024-26952
    - ksmbd: fix potencial out-of-bounds when buffer offset is invalid
  * CVE-2024-26886
    - Bluetooth: af_bluetooth: Fix deadlock
  * CVE-2023-52752
    - smb: client: fix use-after-free bug in cifs_debug_data_proc_show()
  * CVE-2024-25742
    - x86/sev: Harden #VC instruction emulation somewhat
    - x86/sev: Check for MWAITX and MONITORX opcodes in the #VC handler
  * CVE-2024-36016
    - tty: n_gsm: fix possible out-of-bounds in gsm0_receive()

  [ Ubuntu: 5.15.0-116.126 ]

  * jammy/linux: 5.15.0-116.126 -proposed tracker (LP: #2071603)
  * idxd: NULL pointer dereference reading wq op_config attribute (LP: #2069081)
    - SAUCE: dmaengine: idxd: set is_visible member of idxd_wq_attribute_group
  * AMD GPUs fail with null pointer dereference when IOMMU enabled, leading to
    black screen (LP: #2068738)
    - SAUCE: Revert "drm/amdgpu: init iommu after amdkfd device init"

Date: 2024-07-12 08:17:11.471694+00:00
Changed-By: Thibf <thibault.ferrante at canonical.com>
Signed-By: Andy Whitcroft <apw at canonical.com>
https://launchpad.net/ubuntu/+source/linux-kvm/5.15.0-1063.68
-------------- next part --------------
Sorry, changesfile not available.


More information about the jammy-changes mailing list