~ubuntu-security/ubuntu-cve-tracker/master

« back to all changes in this revision

Viewing changes to active/CVE-2017-16528

  • Committer: Steve Beattie
  • Date: 2019-02-19 06:18:27 UTC
  • Revision ID: sbeattie@ubuntu.com-20190219061827-oh57fzcfc1u9dlfk
The ubuntu-cve-tracker project has been converted to git.

Please use 'git clone https://git.launchpad.net/ubuntu-cve-tracker' to
get the converted tree.

Show diffs side-by-side

added added

removed removed

Lines of Context:
1
 
PublicDateAtUSN: 2017-11-03
2
 
Candidate: CVE-2017-16528
3
 
PublicDate: 2017-11-03
4
 
References:
5
 
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-16528
6
 
 https://github.com/torvalds/linux/commit/fc27fe7e8deef2f37cba3f2be2d52b6ca5eb9d57
7
 
 https://groups.google.com/d/msg/syzkaller/kuZzDHGkQu8/5du20rZEAAAJ
8
 
 https://usn.ubuntu.com/usn/usn-3619-1
9
 
 https://usn.ubuntu.com/usn/usn-3619-2
10
 
Description:
11
 
 sound/core/seq_device.c in the Linux kernel before 4.13.4 allows local
12
 
 users to cause a denial of service (snd_rawmidi_dev_seq_free use-after-free
13
 
 and system crash) or possibly have unspecified other impact via a crafted
14
 
 USB device.
15
 
Ubuntu-Description:
16
 
 It was discovered that the Advanced Linux Sound Architecture (ALSA)
17
 
 subsystem in the Linux kernel contained a use-after-free when handling
18
 
 device removal. A physically proximate attacker could use this to cause a
19
 
 denial of service (system crash) or possibly execute arbitrary code.
20
 
Notes:
21
 
Bugs:
22
 
Priority: low
23
 
Discovered-by:
24
 
Assigned-to:
25
 
 
26
 
Patches_linux:
27
 
 break-fix: - fc27fe7e8deef2f37cba3f2be2d52b6ca5eb9d57
28
 
upstream_linux: released (4.14~rc1)
29
 
precise/esm_linux: ignored (was needed ESM criteria)
30
 
trusty_linux: needed
31
 
xenial_linux: released (4.4.0-119.143)
32
 
zesty_linux: ignored (reached end-of-life)
33
 
artful_linux: not-affected (4.13.0-15.16)
34
 
bionic_linux: not-affected (4.13.0-16.19)
35
 
devel_linux: not-affected (4.15.0-20.21)
36
 
 
37
 
Patches_linux-ti-omap4:
38
 
upstream_linux-ti-omap4: released (4.14~rc1)
39
 
precise/esm_linux-ti-omap4: DNE
40
 
trusty_linux-ti-omap4: DNE
41
 
xenial_linux-ti-omap4: DNE
42
 
zesty_linux-ti-omap4: DNE
43
 
artful_linux-ti-omap4: DNE
44
 
bionic_linux-ti-omap4: DNE
45
 
devel_linux-ti-omap4: DNE
46
 
 
47
 
Patches_linux-linaro-omap:
48
 
upstream_linux-linaro-omap: released (4.14~rc1)
49
 
precise/esm_linux-linaro-omap: DNE
50
 
trusty_linux-linaro-omap: DNE
51
 
xenial_linux-linaro-omap: DNE
52
 
zesty_linux-linaro-omap: DNE
53
 
artful_linux-linaro-omap: DNE
54
 
bionic_linux-linaro-omap: DNE
55
 
devel_linux-linaro-omap: DNE
56
 
 
57
 
Patches_linux-linaro-shared:
58
 
upstream_linux-linaro-shared: released (4.14~rc1)
59
 
precise/esm_linux-linaro-shared: DNE
60
 
trusty_linux-linaro-shared: DNE
61
 
xenial_linux-linaro-shared: DNE
62
 
zesty_linux-linaro-shared: DNE
63
 
artful_linux-linaro-shared: DNE
64
 
bionic_linux-linaro-shared: DNE
65
 
devel_linux-linaro-shared: DNE
66
 
 
67
 
Patches_linux-linaro-vexpress:
68
 
upstream_linux-linaro-vexpress: released (4.14~rc1)
69
 
precise/esm_linux-linaro-vexpress: DNE
70
 
trusty_linux-linaro-vexpress: DNE
71
 
xenial_linux-linaro-vexpress: DNE
72
 
zesty_linux-linaro-vexpress: DNE
73
 
artful_linux-linaro-vexpress: DNE
74
 
bionic_linux-linaro-vexpress: DNE
75
 
devel_linux-linaro-vexpress: DNE
76
 
 
77
 
Patches_linux-qcm-msm:
78
 
upstream_linux-qcm-msm: released (4.14~rc1)
79
 
precise/esm_linux-qcm-msm: DNE
80
 
trusty_linux-qcm-msm: DNE
81
 
xenial_linux-qcm-msm: DNE
82
 
zesty_linux-qcm-msm: DNE
83
 
artful_linux-qcm-msm: DNE
84
 
bionic_linux-qcm-msm: DNE
85
 
devel_linux-qcm-msm: DNE
86
 
 
87
 
Tags_linux-armadaxp: not-ue
88
 
Patches_linux-armadaxp:
89
 
upstream_linux-armadaxp: released (4.14~rc1)
90
 
precise/esm_linux-armadaxp: DNE
91
 
trusty_linux-armadaxp: DNE
92
 
xenial_linux-armadaxp: DNE
93
 
zesty_linux-armadaxp: DNE
94
 
artful_linux-armadaxp: DNE
95
 
bionic_linux-armadaxp: DNE
96
 
devel_linux-armadaxp: DNE
97
 
 
98
 
Tags_linux-lts-quantal: not-ue
99
 
Patches_linux-lts-quantal: DNE
100
 
upstream_linux-lts-quantal: released (4.14~rc1)
101
 
precise/esm_linux-lts-quantal: ignored (end-of-life)
102
 
trusty_linux-lts-quantal: DNE
103
 
xenial_linux-lts-quantal: DNE
104
 
zesty_linux-lts-quantal: DNE
105
 
artful_linux-lts-quantal: DNE
106
 
bionic_linux-lts-quantal: DNE
107
 
devel_linux-lts-quantal: DNE
108
 
 
109
 
Patches_linux-lts-raring:
110
 
upstream_linux-lts-raring: released (4.14~rc1)
111
 
precise/esm_linux-lts-raring: ignored (end-of-life)
112
 
trusty_linux-lts-raring: DNE
113
 
xenial_linux-lts-raring: DNE
114
 
zesty_linux-lts-raring: DNE
115
 
artful_linux-lts-raring: DNE
116
 
bionic_linux-lts-raring: DNE
117
 
devel_linux-lts-raring: DNE
118
 
 
119
 
Tags_linux-lts-saucy: not-ue
120
 
Patches_linux-lts-saucy:
121
 
upstream_linux-lts-saucy: released (4.14~rc1)
122
 
precise/esm_linux-lts-saucy: ignored (end-of-life)
123
 
trusty_linux-lts-saucy: DNE
124
 
xenial_linux-lts-saucy: DNE
125
 
zesty_linux-lts-saucy: DNE
126
 
artful_linux-lts-saucy: DNE
127
 
bionic_linux-lts-saucy: DNE
128
 
devel_linux-lts-saucy: DNE
129
 
 
130
 
Patches_linux-lts-trusty:
131
 
upstream_linux-lts-trusty: released (4.14~rc1)
132
 
precise/esm_linux-lts-trusty: ignored (was needed ESM criteria)
133
 
trusty_linux-lts-trusty: DNE
134
 
xenial_linux-lts-trusty: DNE
135
 
zesty_linux-lts-trusty: DNE
136
 
artful_linux-lts-trusty: DNE
137
 
bionic_linux-lts-trusty: DNE
138
 
devel_linux-lts-trusty: DNE
139
 
 
140
 
Patches_linux-goldfish:
141
 
upstream_linux-goldfish: released (4.14~rc1)
142
 
precise/esm_linux-goldfish: DNE
143
 
trusty_linux-goldfish: ignored (abandoned)
144
 
xenial_linux-goldfish: ignored (was needed now end-of-life)
145
 
zesty_linux-goldfish: ignored (reached end-of-life)
146
 
artful_linux-goldfish: DNE
147
 
bionic_linux-goldfish: DNE
148
 
devel_linux-goldfish: DNE
149
 
 
150
 
Patches_linux-grouper:
151
 
upstream_linux-grouper: released (4.14~rc1)
152
 
precise/esm_linux-grouper: DNE
153
 
trusty_linux-grouper: ignored (abandoned)
154
 
xenial_linux-grouper: DNE
155
 
zesty_linux-grouper: DNE
156
 
artful_linux-grouper: DNE
157
 
bionic_linux-grouper: DNE
158
 
devel_linux-grouper: DNE
159
 
 
160
 
Patches_linux-maguro:
161
 
upstream_linux-maguro: released (4.14~rc1)
162
 
precise/esm_linux-maguro: DNE
163
 
trusty_linux-maguro: ignored (abandoned)
164
 
xenial_linux-maguro: DNE
165
 
zesty_linux-maguro: DNE
166
 
artful_linux-maguro: DNE
167
 
bionic_linux-maguro: DNE
168
 
devel_linux-maguro: DNE
169
 
 
170
 
Patches_linux-mako:
171
 
upstream_linux-mako: released (4.14~rc1)
172
 
precise/esm_linux-mako: DNE
173
 
trusty_linux-mako: ignored (abandoned)
174
 
xenial_linux-mako: ignored (abandoned)
175
 
zesty_linux-mako: DNE
176
 
artful_linux-mako: DNE
177
 
bionic_linux-mako: DNE
178
 
devel_linux-mako: DNE
179
 
 
180
 
Patches_linux-manta:
181
 
upstream_linux-manta: released (4.14~rc1)
182
 
precise/esm_linux-manta: DNE
183
 
trusty_linux-manta: ignored (abandoned)
184
 
xenial_linux-manta: DNE
185
 
zesty_linux-manta: DNE
186
 
artful_linux-manta: DNE
187
 
bionic_linux-manta: DNE
188
 
devel_linux-manta: DNE
189
 
 
190
 
Patches_linux-flo:
191
 
upstream_linux-flo: released (4.14~rc1)
192
 
precise/esm_linux-flo: DNE
193
 
trusty_linux-flo: ignored (abandoned)
194
 
xenial_linux-flo: ignored (abandoned)
195
 
zesty_linux-flo: DNE
196
 
artful_linux-flo: DNE
197
 
bionic_linux-flo: DNE
198
 
devel_linux-flo: DNE
199
 
 
200
 
Patches_linux-raspi2:
201
 
upstream_linux-raspi2: released (4.14~rc1)
202
 
precise/esm_linux-raspi2: DNE
203
 
trusty_linux-raspi2: DNE
204
 
xenial_linux-raspi2: released (4.4.0-1086.94)
205
 
zesty_linux-raspi2: ignored (reached end-of-life)
206
 
artful_linux-raspi2: not-affected (4.13.0-1004.4)
207
 
bionic_linux-raspi2: not-affected (4.13.0-1005.5)
208
 
devel_linux-raspi2: not-affected (4.15.0-1010.11)
209
 
 
210
 
Patches_linux-lts-utopic:
211
 
upstream_linux-lts-utopic: released (4.14~rc1)
212
 
precise/esm_linux-lts-utopic: DNE
213
 
trusty_linux-lts-utopic: ignored (end-of-life)
214
 
xenial_linux-lts-utopic: DNE
215
 
zesty_linux-lts-utopic: DNE
216
 
artful_linux-lts-utopic: DNE
217
 
bionic_linux-lts-utopic: DNE
218
 
devel_linux-lts-utopic: DNE
219
 
 
220
 
Patches_linux-lts-vivid:
221
 
upstream_linux-lts-vivid: released (4.14~rc1)
222
 
precise/esm_linux-lts-vivid: DNE
223
 
trusty_linux-lts-vivid: ignored (was needs-triage now end-of-life)
224
 
xenial_linux-lts-vivid: DNE
225
 
zesty_linux-lts-vivid: DNE
226
 
artful_linux-lts-vivid: DNE
227
 
bionic_linux-lts-vivid: DNE
228
 
devel_linux-lts-vivid: DNE
229
 
 
230
 
Patches_linux-lts-wily:
231
 
upstream_linux-lts-wily: released (4.14~rc1)
232
 
precise/esm_linux-lts-wily: DNE
233
 
trusty_linux-lts-wily: ignored (end-of-life)
234
 
xenial_linux-lts-wily: DNE
235
 
zesty_linux-lts-wily: DNE
236
 
artful_linux-lts-wily: DNE
237
 
bionic_linux-lts-wily: DNE
238
 
devel_linux-lts-wily: DNE
239
 
 
240
 
Patches_linux-krillin:
241
 
product_linux-krillin: ignored (was needed now end-of-life)
242
 
 
243
 
Patches_linux-vegetahd:
244
 
product_linux-vegetahd: ignored (was needed now end-of-life)
245
 
 
246
 
Patches_linux-lts-xenial:
247
 
upstream_linux-lts-xenial: released (4.14~rc1)
248
 
precise/esm_linux-lts-xenial: DNE
249
 
trusty_linux-lts-xenial: released (4.4.0-119.143~14.04.1)
250
 
xenial_linux-lts-xenial: DNE
251
 
zesty_linux-lts-xenial: DNE
252
 
artful_linux-lts-xenial: DNE
253
 
bionic_linux-lts-xenial: DNE
254
 
devel_linux-lts-xenial: DNE
255
 
 
256
 
Patches_linux-snapdragon:
257
 
upstream_linux-snapdragon: released (4.14~rc1)
258
 
precise/esm_linux-snapdragon: DNE
259
 
trusty_linux-snapdragon: DNE
260
 
xenial_linux-snapdragon: released (4.4.0-1088.93)
261
 
zesty_linux-snapdragon: ignored (reached end-of-life)
262
 
artful_linux-snapdragon: released (4.4.0-1088.93)
263
 
bionic_linux-snapdragon: DNE
264
 
devel_linux-snapdragon: DNE
265
 
 
266
 
Patches_linux-aws:
267
 
upstream_linux-aws: released (4.14~rc1)
268
 
precise/esm_linux-aws: DNE
269
 
trusty_linux-aws: released (4.4.0-1016.16)
270
 
xenial_linux-aws: released (4.4.0-1054.63)
271
 
zesty_linux-aws: DNE
272
 
artful_linux-aws: DNE
273
 
bionic_linux-aws: not-affected (4.15.0-1001.1)
274
 
devel_linux-aws: not-affected (4.15.0-1007.7)
275
 
 
276
 
Patches_linux-hwe:
277
 
upstream_linux-hwe: released (4.14~rc1)
278
 
precise/esm_linux-hwe: DNE
279
 
trusty_linux-hwe: DNE
280
 
xenial_linux-hwe: released (4.13.0-26.29~16.04.2)
281
 
zesty_linux-hwe: DNE
282
 
artful_linux-hwe: DNE
283
 
bionic_linux-hwe: DNE
284
 
devel_linux-hwe: DNE
285
 
 
286
 
Patches_linux-hwe-edge:
287
 
upstream_linux-hwe-edge: released (4.14~rc1)
288
 
precise/esm_linux-hwe-edge: DNE
289
 
trusty_linux-hwe-edge: DNE
290
 
xenial_linux-hwe-edge: released (4.13.0-16.19~16.04.3)
291
 
zesty_linux-hwe-edge: DNE
292
 
artful_linux-hwe-edge: DNE
293
 
bionic_linux-hwe-edge: DNE
294
 
devel_linux-hwe-edge: DNE
295
 
 
296
 
Patches_linux-gke:
297
 
upstream_linux-gke: released (4.14~rc1)
298
 
precise/esm_linux-gke: DNE
299
 
trusty_linux-gke: DNE
300
 
xenial_linux-gke: ignored (was needed now end-of-life)
301
 
zesty_linux-gke: DNE
302
 
artful_linux-gke: DNE
303
 
bionic_linux-gke: DNE
304
 
devel_linux-gke: DNE
305
 
 
306
 
Patches_linux-azure:
307
 
upstream_linux-azure: released (4.14~rc1)
308
 
precise/esm_linux-azure: DNE
309
 
trusty_linux-azure: DNE
310
 
xenial_linux-azure: released (4.13.0-1005.7)
311
 
zesty_linux-azure: DNE
312
 
artful_linux-azure: DNE
313
 
bionic_linux-azure: not-affected (4.15.0-1002.2)
314
 
devel_linux-azure: not-affected (4.15.0-1009.9)
315
 
 
316
 
Patches_linux-gcp:
317
 
upstream_linux-gcp: released (4.14~rc1)
318
 
precise/esm_linux-gcp: DNE
319
 
trusty_linux-gcp: DNE
320
 
xenial_linux-gcp: released (4.13.0-1002.5)
321
 
zesty_linux-gcp: DNE
322
 
artful_linux-gcp: DNE
323
 
bionic_linux-gcp: not-affected (4.15.0-1001.1)
324
 
devel_linux-gcp: not-affected (4.15.0-1006.6)
325
 
 
326
 
Patches_linux-kvm:
327
 
upstream_linux-kvm: released (4.14~rc1)
328
 
precise/esm_linux-kvm: DNE
329
 
trusty_linux-kvm: DNE
330
 
xenial_linux-kvm: released (4.4.0-1020.25)
331
 
zesty_linux-kvm: DNE
332
 
artful_linux-kvm: DNE
333
 
bionic_linux-kvm: not-affected (4.15.0-1002.2)
334
 
devel_linux-kvm: not-affected (4.15.0-1008.8)
335
 
 
336
 
Patches_linux-euclid:
337
 
upstream_linux-euclid: released (4.14~rc1)
338
 
precise/esm_linux-euclid: DNE
339
 
trusty_linux-euclid: DNE
340
 
xenial_linux-euclid: ignored (was needed ESM criteria)
341
 
zesty_linux-euclid: DNE
342
 
artful_linux-euclid: DNE
343
 
bionic_linux-euclid: DNE
344
 
devel_linux-euclid: DNE
345
 
 
346
 
Patches_linux-oem:
347
 
upstream_linux-oem: released (4.14~rc1)
348
 
precise/esm_linux-oem: DNE
349
 
trusty_linux-oem: DNE
350
 
xenial_linux-oem: not-affected (4.13.0-1008.9)
351
 
zesty_linux-oem: DNE
352
 
artful_linux-oem: DNE
353
 
bionic_linux-oem: not-affected (4.15.0-1002.3)
354
 
devel_linux-oem: not-affected (4.15.0-1004.5)