1
Candidate: CVE-2016-2068
4
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-2068
5
https://www.codeaurora.org/multiple-vulnerabilities-msm-qdsp6-audio-driver-allow-kernel-memory-corruption-cve-2016-2068-0
6
https://us.codeaurora.org/cgit/quic/la/kernel/msm-3.18/commit/?id=2c04c0dab66013b7dfbe4d5a523c2c1d6b5b11d6
7
https://us.codeaurora.org/cgit/quic/la/kernel/msm-3.10/commit/?id=9900650540c889f761d102202bc80306ae80ab83
8
https://source.codeaurora.org/quic/la/kernel/msm-3.10/commit/?id=01ee86da5a0cd788f134e360e2be517ef52b6b00
9
http://source.android.com/security/bulletin/2016-07-01.html
11
The MSM QDSP6 audio driver (aka sound driver) for the Linux kernel 3.x, as
12
used in Qualcomm Innovation Center (QuIC) Android contributions for MSM
13
devices and other products, allows attackers to gain privileges or cause a
14
denial of service (integer overflow, and buffer overflow or buffer
15
over-read) via a crafted application that performs a (1)
16
AUDIO_EFFECTS_WRITE or (2) AUDIO_EFFECTS_READ operation, aka Qualcomm
17
internal bug CR1006609.
20
jdstrand> android kernels (flo, goldfish, grouper, maguro, mako and manta) are
21
not supported on the Ubuntu Touch 14.10 and earlier preview kernels
22
jdstrand> linux-lts-saucy no longer receives official support
23
jdstrand> linux-lts-quantal no longer receives official support
30
upstream_linux: not-affected (android kernel only)
31
precise_linux: not-affected (android kernel only)
32
precise/esm_linux: not-affected (android kernel only)
33
trusty_linux: not-affected (android kernel only)
34
vivid/ubuntu-core_linux: not-affected (android kernel only)
35
vivid/stable-phone-overlay_linux: DNE
36
wily_linux: not-affected (android kernel only)
37
xenial_linux: not-affected (android kernel only)
38
yakkety_linux: not-affected (android kernel only)
39
zesty_linux: not-affected (android kernel only)
40
devel_linux: not-affected (android kernel only)
42
Patches_linux-ti-omap4:
43
upstream_linux-ti-omap4: not-affected (android kernel only)
44
precise_linux-ti-omap4: not-affected (android kernel only)
45
precise/esm_linux-ti-omap4: DNE (precise was not-affected [android kernel only])
46
trusty_linux-ti-omap4: DNE
47
vivid/ubuntu-core_linux-ti-omap4: DNE
48
vivid/stable-phone-overlay_linux-ti-omap4: DNE
49
wily_linux-ti-omap4: DNE
50
xenial_linux-ti-omap4: DNE
51
yakkety_linux-ti-omap4: DNE
52
zesty_linux-ti-omap4: DNE
53
devel_linux-ti-omap4: DNE
55
Patches_linux-linaro-omap:
56
upstream_linux-linaro-omap: not-affected (android kernel only)
57
precise_linux-linaro-omap: ignored (abandoned)
58
precise/esm_linux-linaro-omap: DNE (precise was ignored [abandoned])
59
trusty_linux-linaro-omap: DNE
60
vivid/ubuntu-core_linux-linaro-omap: DNE
61
vivid/stable-phone-overlay_linux-linaro-omap: DNE
62
wily_linux-linaro-omap: DNE
63
xenial_linux-linaro-omap: DNE
64
yakkety_linux-linaro-omap: DNE
65
zesty_linux-linaro-omap: DNE
66
devel_linux-linaro-omap: DNE
68
Patches_linux-linaro-shared:
69
upstream_linux-linaro-shared: not-affected (android kernel only)
70
precise_linux-linaro-shared: ignored (abandoned)
71
precise/esm_linux-linaro-shared: DNE (precise was ignored [abandoned])
72
trusty_linux-linaro-shared: DNE
73
vivid/ubuntu-core_linux-linaro-shared: DNE
74
vivid/stable-phone-overlay_linux-linaro-shared: DNE
75
wily_linux-linaro-shared: DNE
76
xenial_linux-linaro-shared: DNE
77
yakkety_linux-linaro-shared: DNE
78
zesty_linux-linaro-shared: DNE
79
devel_linux-linaro-shared: DNE
81
Patches_linux-linaro-vexpress:
82
upstream_linux-linaro-vexpress: not-affected (android kernel only)
83
precise_linux-linaro-vexpress: ignored (abandoned)
84
precise/esm_linux-linaro-vexpress: DNE (precise was ignored [abandoned])
85
trusty_linux-linaro-vexpress: DNE
86
vivid/ubuntu-core_linux-linaro-vexpress: DNE
87
vivid/stable-phone-overlay_linux-linaro-vexpress: DNE
88
wily_linux-linaro-vexpress: DNE
89
xenial_linux-linaro-vexpress: DNE
90
yakkety_linux-linaro-vexpress: DNE
91
zesty_linux-linaro-vexpress: DNE
92
devel_linux-linaro-vexpress: DNE
94
Patches_linux-qcm-msm:
95
upstream_linux-qcm-msm: not-affected (android kernel only)
96
precise_linux-qcm-msm: ignored (abandoned)
97
precise/esm_linux-qcm-msm: DNE (precise was ignored [abandoned])
98
trusty_linux-qcm-msm: DNE
99
vivid/ubuntu-core_linux-qcm-msm: DNE
100
vivid/stable-phone-overlay_linux-qcm-msm: DNE
101
wily_linux-qcm-msm: DNE
102
xenial_linux-qcm-msm: DNE
103
yakkety_linux-qcm-msm: DNE
104
zesty_linux-qcm-msm: DNE
105
devel_linux-qcm-msm: DNE
107
Tags_linux-armadaxp: not-ue
108
Patches_linux-armadaxp:
109
upstream_linux-armadaxp: not-affected (android kernel only)
110
precise_linux-armadaxp: not-affected (android kernel only)
111
precise/esm_linux-armadaxp: DNE (precise was not-affected [android kernel only])
112
trusty_linux-armadaxp: DNE
113
vivid/ubuntu-core_linux-armadaxp: DNE
114
vivid/stable-phone-overlay_linux-armadaxp: DNE
115
wily_linux-armadaxp: DNE
116
xenial_linux-armadaxp: DNE
117
yakkety_linux-armadaxp: DNE
118
zesty_linux-armadaxp: DNE
119
devel_linux-armadaxp: DNE
121
Tags_linux-lts-quantal: not-ue
122
Patches_linux-lts-quantal: DNE
123
upstream_linux-lts-quantal: not-affected (android kernel only)
124
precise_linux-lts-quantal: ignored (end-of-life)
125
precise/esm_linux-lts-quantal: DNE (precise was ignored [end-of-life])
126
trusty_linux-lts-quantal: DNE
127
vivid/ubuntu-core_linux-lts-quantal: DNE
128
vivid/stable-phone-overlay_linux-lts-quantal: DNE
129
wily_linux-lts-quantal: DNE
130
xenial_linux-lts-quantal: DNE
131
yakkety_linux-lts-quantal: DNE
132
zesty_linux-lts-quantal: DNE
133
devel_linux-lts-quantal: DNE
135
Patches_linux-lts-raring:
136
upstream_linux-lts-raring: not-affected (android kernel only)
137
precise_linux-lts-raring: ignored (end-of-life)
138
precise/esm_linux-lts-raring: DNE (precise was ignored [end-of-life])
139
trusty_linux-lts-raring: DNE
140
vivid/ubuntu-core_linux-lts-raring: DNE
141
vivid/stable-phone-overlay_linux-lts-raring: DNE
142
wily_linux-lts-raring: DNE
143
xenial_linux-lts-raring: DNE
144
yakkety_linux-lts-raring: DNE
145
zesty_linux-lts-raring: DNE
146
devel_linux-lts-raring: DNE
148
Tags_linux-lts-saucy: not-ue
149
Patches_linux-lts-saucy:
150
upstream_linux-lts-saucy: not-affected (android kernel only)
151
precise_linux-lts-saucy: ignored (end-of-life)
152
precise/esm_linux-lts-saucy: DNE (precise was ignored [end-of-life])
153
trusty_linux-lts-saucy: DNE
154
vivid/ubuntu-core_linux-lts-saucy: DNE
155
vivid/stable-phone-overlay_linux-lts-saucy: DNE
156
wily_linux-lts-saucy: DNE
157
xenial_linux-lts-saucy: DNE
158
yakkety_linux-lts-saucy: DNE
159
zesty_linux-lts-saucy: DNE
160
devel_linux-lts-saucy: DNE
162
Patches_linux-lts-trusty:
163
upstream_linux-lts-trusty: not-affected (android kernel only)
164
precise_linux-lts-trusty: not-affected (android kernel only)
165
precise/esm_linux-lts-trusty: not-affected (android kernel only)
166
trusty_linux-lts-trusty: DNE
167
vivid/ubuntu-core_linux-lts-trusty: DNE
168
vivid/stable-phone-overlay_linux-lts-trusty: DNE
169
wily_linux-lts-trusty: DNE
170
xenial_linux-lts-trusty: DNE
171
yakkety_linux-lts-trusty: DNE
172
zesty_linux-lts-trusty: DNE
173
devel_linux-lts-trusty: DNE
175
Patches_linux-goldfish:
176
upstream_linux-goldfish: needs-triage
177
precise_linux-goldfish: DNE
178
precise/esm_linux-goldfish: DNE
179
trusty_linux-goldfish: ignored
180
vivid/ubuntu-core_linux-goldfish: DNE
181
vivid/stable-phone-overlay_linux-goldfish: DNE
182
wily_linux-goldfish: ignored (reached end-of-life)
183
xenial_linux-goldfish: ignored (abandoned)
184
yakkety_linux-goldfish: ignored (abandoned)
185
zesty_linux-goldfish: ignored (abandoned)
186
devel_linux-goldfish: DNE
188
Patches_linux-grouper:
189
upstream_linux-grouper: needs-triage
190
precise_linux-grouper: DNE
191
precise/esm_linux-grouper: DNE
192
trusty_linux-grouper: ignored
193
vivid/ubuntu-core_linux-grouper: DNE
194
vivid/stable-phone-overlay_linux-grouper: DNE
195
wily_linux-grouper: DNE
196
xenial_linux-grouper: DNE
197
yakkety_linux-grouper: DNE
198
zesty_linux-grouper: DNE
199
devel_linux-grouper: DNE
201
Patches_linux-maguro:
202
upstream_linux-maguro: needs-triage
203
precise_linux-maguro: DNE
204
precise/esm_linux-maguro: DNE
205
trusty_linux-maguro: ignored
206
vivid/ubuntu-core_linux-maguro: DNE
207
vivid/stable-phone-overlay_linux-maguro: DNE
208
wily_linux-maguro: DNE
209
xenial_linux-maguro: DNE
210
yakkety_linux-maguro: DNE
211
zesty_linux-maguro: DNE
212
devel_linux-maguro: DNE
215
upstream_linux-mako: needs-triage
216
precise_linux-mako: DNE
217
precise/esm_linux-mako: DNE
218
trusty_linux-mako: ignored
219
vivid/ubuntu-core_linux-mako: DNE
220
vivid/stable-phone-overlay_linux-mako: ignored (abandoned)
221
wily_linux-mako: ignored (reached end-of-life)
222
xenial_linux-mako: ignored (abandoned)
223
yakkety_linux-mako: ignored (abandoned)
224
zesty_linux-mako: DNE
225
devel_linux-mako: DNE
228
upstream_linux-manta: needs-triage
229
precise_linux-manta: DNE
230
precise/esm_linux-manta: DNE
231
trusty_linux-manta: ignored
232
vivid/ubuntu-core_linux-manta: DNE
233
vivid/stable-phone-overlay_linux-manta: DNE
234
wily_linux-manta: ignored (reached end-of-life)
235
xenial_linux-manta: DNE
236
yakkety_linux-manta: DNE
237
zesty_linux-manta: DNE
238
devel_linux-manta: DNE
241
upstream_linux-flo: needs-triage
242
precise_linux-flo: DNE
243
precise/esm_linux-flo: DNE
244
trusty_linux-flo: ignored
245
vivid/ubuntu-core_linux-flo: DNE
246
vivid/stable-phone-overlay_linux-flo: ignored (abandoned)
247
wily_linux-flo: ignored (reached end-of-life)
248
xenial_linux-flo: ignored (abandoned)
249
yakkety_linux-flo: ignored (abandoned)
253
Patches_linux-raspi2:
254
upstream_linux-raspi2: not-affected (android kernel only)
255
precise_linux-raspi2: DNE
256
precise/esm_linux-raspi2: DNE
257
trusty_linux-raspi2: DNE
258
vivid/ubuntu-core_linux-raspi2: not-affected (android kernel only)
259
vivid/stable-phone-overlay_linux-raspi2: DNE
260
wily_linux-raspi2: not-affected (android kernel only)
261
xenial_linux-raspi2: not-affected (android kernel only)
262
yakkety_linux-raspi2: not-affected (android kernel only)
263
zesty_linux-raspi2: not-affected (android kernel only)
264
devel_linux-raspi2: not-affected (android kernel only)
266
Patches_linux-lts-utopic:
267
upstream_linux-lts-utopic: not-affected (android kernel only)
268
precise_linux-lts-utopic: DNE
269
precise/esm_linux-lts-utopic: DNE
270
trusty_linux-lts-utopic: not-affected (android kernel only)
271
vivid/ubuntu-core_linux-lts-utopic: DNE
272
vivid/stable-phone-overlay_linux-lts-utopic: DNE
273
wily_linux-lts-utopic: DNE
274
xenial_linux-lts-utopic: DNE
275
yakkety_linux-lts-utopic: DNE
276
zesty_linux-lts-utopic: DNE
277
devel_linux-lts-utopic: DNE
279
Patches_linux-lts-vivid:
280
upstream_linux-lts-vivid: not-affected (android kernel only)
281
precise_linux-lts-vivid: DNE
282
precise/esm_linux-lts-vivid: DNE
283
trusty_linux-lts-vivid: not-affected (android kernel only)
284
vivid/ubuntu-core_linux-lts-vivid: DNE
285
vivid/stable-phone-overlay_linux-lts-vivid: DNE
286
wily_linux-lts-vivid: DNE
287
xenial_linux-lts-vivid: DNE
288
yakkety_linux-lts-vivid: DNE
289
zesty_linux-lts-vivid: DNE
290
devel_linux-lts-vivid: DNE
292
Patches_linux-lts-wily:
293
upstream_linux-lts-wily: not-affected (android kernel only)
294
precise_linux-lts-wily: DNE
295
precise/esm_linux-lts-wily: DNE
296
trusty_linux-lts-wily: not-affected (android kernel only)
297
vivid/ubuntu-core_linux-lts-wily: DNE
298
vivid/stable-phone-overlay_linux-lts-wily: DNE
299
wily_linux-lts-wily: DNE
300
xenial_linux-lts-wily: DNE
301
yakkety_linux-lts-wily: DNE
302
zesty_linux-lts-wily: DNE
303
devel_linux-lts-wily: DNE
305
Patches_linux-krillin:
306
product_linux-krillin: ignored (was needs-triage now end-of-life)
308
Patches_linux-vegetahd:
309
product_linux-vegetahd: ignored (was needs-triage now end-of-life)
311
Patches_linux-lts-xenial:
312
upstream_linux-lts-xenial: not-affected (android kernel only)
313
precise_linux-lts-xenial: DNE
314
precise/esm_linux-lts-xenial: DNE
315
trusty_linux-lts-xenial: not-affected (android kernel only)
316
vivid/ubuntu-core_linux-lts-xenial: DNE
317
vivid/stable-phone-overlay_linux-lts-xenial: DNE
318
wily_linux-lts-xenial: DNE
319
xenial_linux-lts-xenial: DNE
320
yakkety_linux-lts-xenial: DNE
321
zesty_linux-lts-xenial: DNE
322
devel_linux-lts-xenial: DNE
324
Patches_linux-snapdragon:
325
upstream_linux-snapdragon: not-affected (android kernel only)
326
precise_linux-snapdragon: DNE
327
precise/esm_linux-snapdragon: DNE
328
trusty_linux-snapdragon: DNE
329
vivid/ubuntu-core_linux-snapdragon: DNE
330
vivid/stable-phone-overlay_linux-snapdragon: DNE
331
wily_linux-snapdragon: DNE
332
xenial_linux-snapdragon: not-affected (android kernel only)
333
yakkety_linux-snapdragon: not-affected (android kernel only)
334
zesty_linux-snapdragon: not-affected (android kernel only)
335
devel_linux-snapdragon: not-affected (android kernel only)
338
upstream_linux-aws: needs-triage
339
precise_linux-aws: DNE
340
precise/esm_linux-aws: DNE
341
trusty_linux-aws: not-affected
342
vivid/ubuntu-core_linux-aws: DNE
343
vivid/stable-phone-overlay_linux-aws: DNE
344
xenial_linux-aws: not-affected
345
yakkety_linux-aws: DNE
349
Patches_linux-hwe-edge:
350
upstream_linux-hwe-edge: needs-triage
351
precise_linux-hwe-edge: DNE
352
precise/esm_linux-hwe-edge: DNE
353
trusty_linux-hwe-edge: DNE
354
vivid/ubuntu-core_linux-hwe-edge: DNE
355
vivid/stable-phone-overlay_linux-hwe-edge: DNE
356
xenial_linux-hwe-edge: not-affected
357
yakkety_linux-hwe-edge: DNE
358
zesty_linux-hwe-edge: DNE
359
devel_linux-hwe-edge: DNE
362
upstream_linux-hwe: needs-triage
363
precise_linux-hwe: DNE
364
precise/esm_linux-hwe: DNE
365
trusty_linux-hwe: DNE
366
vivid/ubuntu-core_linux-hwe: DNE
367
vivid/stable-phone-overlay_linux-hwe: DNE
368
xenial_linux-hwe: not-affected
369
yakkety_linux-hwe: DNE
374
upstream_linux-gke: needs-triage
375
precise_linux-gke: DNE
376
precise/esm_linux-gke: DNE
377
trusty_linux-gke: DNE
378
vivid/ubuntu-core_linux-gke: DNE
379
vivid/stable-phone-overlay_linux-gke: DNE
380
xenial_linux-gke: not-affected
381
yakkety_linux-gke: DNE