Sander Wiebing, Alvise de Faveri Tron, Herbert Bos, and Cristiano Giuffrida discovered that the Linux kernel mitigations for the initial Branch History Injection vulnerability (CVE-2022-0001) were insufficient for Intel processors. A local attacker could potentially use this to expose sensitive information. (CVE-2024-2201)
Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems: - Netfilter; (CVE-2024-26925, CVE-2024-26643)
{ "availability": "Available with Ubuntu Pro (Infra-only): https://ubuntu.com/pro", "binaries": [ { "binary_version": "5.4.0-1127.137~18.04.2", "binary_name": "linux-aws-5.4-cloud-tools-5.4.0-1127" }, { "binary_version": "5.4.0-1127.137~18.04.2", "binary_name": "linux-aws-5.4-headers-5.4.0-1127" }, { "binary_version": "5.4.0-1127.137~18.04.2", "binary_name": "linux-aws-5.4-tools-5.4.0-1127" }, { "binary_version": "5.4.0-1127.137~18.04.2", "binary_name": "linux-buildinfo-5.4.0-1127-aws" }, { "binary_version": "5.4.0-1127.137~18.04.2", "binary_name": "linux-cloud-tools-5.4.0-1127-aws" }, { "binary_version": "5.4.0-1127.137~18.04.2", "binary_name": "linux-headers-5.4.0-1127-aws" }, { "binary_version": "5.4.0-1127.137~18.04.2", "binary_name": "linux-image-unsigned-5.4.0-1127-aws" }, { "binary_version": "5.4.0-1127.137~18.04.2", "binary_name": "linux-image-unsigned-5.4.0-1127-aws-dbgsym" }, { "binary_version": "5.4.0-1127.137~18.04.2", "binary_name": "linux-modules-5.4.0-1127-aws" }, { "binary_version": "5.4.0-1127.137~18.04.2", "binary_name": "linux-modules-extra-5.4.0-1127-aws" }, { "binary_version": "5.4.0-1127.137~18.04.2", "binary_name": "linux-tools-5.4.0-1127-aws" } ] }