1
Candidate: CVE-2017-8068
4
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-8068
5
http://www.kernel.org/pub/linux/kernel/v4.x/ChangeLog-4.9.11
6
http://www.openwall.com/lists/oss-security/2017/04/16/4
7
https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/commit/?id=5593523f968bc86d42a035c6df47d5e0979b5ace
8
https://github.com/torvalds/linux/commit/5593523f968bc86d42a035c6df47d5e0979b5ace
10
drivers/net/usb/pegasus.c in the Linux kernel 4.9.x before 4.9.11 interacts
11
incorrectly with the CONFIG_VMAP_STACK option, which allows local users to
12
cause a denial of service (system crash or memory corruption) or possibly
13
have unspecified other impact by leveraging use of more than one virtual
14
page for a DMA scatterlist.
16
It was discovered that the Pegasus USB device driver in the Linux
17
kernel improperly handled memory. A local attacker could use this
18
to cause a denial of service (system crash).
20
jdstrand> android kernels (flo, goldfish, grouper, maguro, mako and manta) are
21
not supported on the Ubuntu Touch 14.10 and earlier preview kernels
22
jdstrand> linux-lts-saucy no longer receives official support
23
jdstrand> linux-lts-quantal no longer receives official support
25
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=852556
31
break-fix: e37e43a497d5a8b7c0cc1736d56986f432c394c9 5593523f968bc86d42a035c6df47d5e0979b5ace
32
upstream_linux: released (4.10~rc8)
33
precise_linux: ignored (reached end-of-life)
34
precise/esm_linux: not-affected
35
trusty_linux: not-affected
36
vivid/ubuntu-core_linux: not-affected
37
vivid/stable-phone-overlay_linux: DNE
38
xenial_linux: not-affected (no CONFIG_VMAP_STACK)
39
yakkety_linux: not-affected (CONFIG_VMAP_STACK not enabled)
40
zesty_linux: not-affected (4.10.0-8.10)
41
devel_linux: not-affected (4.10.0-19.21)
43
Patches_linux-ti-omap4:
44
upstream_linux-ti-omap4: released (4.10~rc8)
45
precise_linux-ti-omap4: ignored (reached end-of-life)
46
precise/esm_linux-ti-omap4: DNE (precise was needed)
47
trusty_linux-ti-omap4: DNE
48
vivid/ubuntu-core_linux-ti-omap4: DNE
49
vivid/stable-phone-overlay_linux-ti-omap4: DNE
50
xenial_linux-ti-omap4: DNE
51
yakkety_linux-ti-omap4: DNE
52
zesty_linux-ti-omap4: DNE
53
devel_linux-ti-omap4: DNE
55
Patches_linux-linaro-omap:
56
upstream_linux-linaro-omap: released (4.10~rc8)
57
precise_linux-linaro-omap: ignored (abandoned)
58
precise/esm_linux-linaro-omap: DNE (precise was ignored [abandoned])
59
trusty_linux-linaro-omap: DNE
60
vivid/ubuntu-core_linux-linaro-omap: DNE
61
vivid/stable-phone-overlay_linux-linaro-omap: DNE
62
xenial_linux-linaro-omap: DNE
63
yakkety_linux-linaro-omap: DNE
64
zesty_linux-linaro-omap: DNE
65
devel_linux-linaro-omap: DNE
67
Patches_linux-linaro-shared:
68
upstream_linux-linaro-shared: released (4.10~rc8)
69
precise_linux-linaro-shared: ignored (abandoned)
70
precise/esm_linux-linaro-shared: DNE (precise was ignored [abandoned])
71
trusty_linux-linaro-shared: DNE
72
vivid/ubuntu-core_linux-linaro-shared: DNE
73
vivid/stable-phone-overlay_linux-linaro-shared: DNE
74
xenial_linux-linaro-shared: DNE
75
yakkety_linux-linaro-shared: DNE
76
zesty_linux-linaro-shared: DNE
77
devel_linux-linaro-shared: DNE
79
Patches_linux-linaro-vexpress:
80
upstream_linux-linaro-vexpress: released (4.10~rc8)
81
precise_linux-linaro-vexpress: ignored (abandoned)
82
precise/esm_linux-linaro-vexpress: DNE (precise was ignored [abandoned])
83
trusty_linux-linaro-vexpress: DNE
84
vivid/ubuntu-core_linux-linaro-vexpress: DNE
85
vivid/stable-phone-overlay_linux-linaro-vexpress: DNE
86
xenial_linux-linaro-vexpress: DNE
87
yakkety_linux-linaro-vexpress: DNE
88
zesty_linux-linaro-vexpress: DNE
89
devel_linux-linaro-vexpress: DNE
91
Patches_linux-qcm-msm:
92
upstream_linux-qcm-msm: released (4.10~rc8)
93
precise_linux-qcm-msm: ignored (abandoned)
94
precise/esm_linux-qcm-msm: DNE (precise was ignored [abandoned])
95
trusty_linux-qcm-msm: DNE
96
vivid/ubuntu-core_linux-qcm-msm: DNE
97
vivid/stable-phone-overlay_linux-qcm-msm: DNE
98
xenial_linux-qcm-msm: DNE
99
yakkety_linux-qcm-msm: DNE
100
zesty_linux-qcm-msm: DNE
101
devel_linux-qcm-msm: DNE
103
Tags_linux-armadaxp: not-ue
104
Patches_linux-armadaxp:
105
upstream_linux-armadaxp: released (4.10~rc8)
106
precise_linux-armadaxp: ignored (reached end-of-life)
107
precise/esm_linux-armadaxp: DNE (precise was needed)
108
trusty_linux-armadaxp: DNE
109
vivid/ubuntu-core_linux-armadaxp: DNE
110
vivid/stable-phone-overlay_linux-armadaxp: DNE
111
xenial_linux-armadaxp: DNE
112
yakkety_linux-armadaxp: DNE
113
zesty_linux-armadaxp: DNE
114
devel_linux-armadaxp: DNE
116
Tags_linux-lts-quantal: not-ue
117
Patches_linux-lts-quantal: DNE
118
upstream_linux-lts-quantal: released (4.10~rc8)
119
precise_linux-lts-quantal: ignored (end-of-life)
120
precise/esm_linux-lts-quantal: DNE (precise was ignored [end-of-life])
121
trusty_linux-lts-quantal: DNE
122
vivid/ubuntu-core_linux-lts-quantal: DNE
123
vivid/stable-phone-overlay_linux-lts-quantal: DNE
124
xenial_linux-lts-quantal: DNE
125
yakkety_linux-lts-quantal: DNE
126
zesty_linux-lts-quantal: DNE
127
devel_linux-lts-quantal: DNE
129
Patches_linux-lts-raring:
130
upstream_linux-lts-raring: released (4.10~rc8)
131
precise_linux-lts-raring: ignored (end-of-life)
132
precise/esm_linux-lts-raring: DNE (precise was ignored [end-of-life])
133
trusty_linux-lts-raring: DNE
134
vivid/ubuntu-core_linux-lts-raring: DNE
135
vivid/stable-phone-overlay_linux-lts-raring: DNE
136
xenial_linux-lts-raring: DNE
137
yakkety_linux-lts-raring: DNE
138
zesty_linux-lts-raring: DNE
139
devel_linux-lts-raring: DNE
141
Tags_linux-lts-saucy: not-ue
142
Patches_linux-lts-saucy:
143
upstream_linux-lts-saucy: released (4.10~rc8)
144
precise_linux-lts-saucy: ignored (end-of-life)
145
precise/esm_linux-lts-saucy: DNE (precise was ignored [end-of-life])
146
trusty_linux-lts-saucy: DNE
147
vivid/ubuntu-core_linux-lts-saucy: DNE
148
vivid/stable-phone-overlay_linux-lts-saucy: DNE
149
xenial_linux-lts-saucy: DNE
150
yakkety_linux-lts-saucy: DNE
151
zesty_linux-lts-saucy: DNE
152
devel_linux-lts-saucy: DNE
154
Patches_linux-lts-trusty:
155
upstream_linux-lts-trusty: released (4.10~rc8)
156
precise_linux-lts-trusty: ignored (reached end-of-life)
157
precise/esm_linux-lts-trusty: not-affected
158
trusty_linux-lts-trusty: DNE
159
vivid/ubuntu-core_linux-lts-trusty: DNE
160
vivid/stable-phone-overlay_linux-lts-trusty: DNE
161
xenial_linux-lts-trusty: DNE
162
yakkety_linux-lts-trusty: DNE
163
zesty_linux-lts-trusty: DNE
164
devel_linux-lts-trusty: DNE
166
Patches_linux-goldfish:
167
upstream_linux-goldfish: released (4.10~rc8)
168
precise_linux-goldfish: DNE
169
precise/esm_linux-goldfish: DNE
170
trusty_linux-goldfish: ignored
171
vivid/ubuntu-core_linux-goldfish: DNE
172
vivid/stable-phone-overlay_linux-goldfish: DNE
173
xenial_linux-goldfish: ignored (abandoned)
174
yakkety_linux-goldfish: ignored (abandoned)
175
zesty_linux-goldfish: ignored (abandoned)
176
devel_linux-goldfish: DNE
178
Patches_linux-grouper:
179
upstream_linux-grouper: released (4.10~rc8)
180
precise_linux-grouper: DNE
181
precise/esm_linux-grouper: DNE
182
trusty_linux-grouper: ignored
183
vivid/ubuntu-core_linux-grouper: DNE
184
vivid/stable-phone-overlay_linux-grouper: DNE
185
xenial_linux-grouper: DNE
186
yakkety_linux-grouper: DNE
187
zesty_linux-grouper: DNE
188
devel_linux-grouper: DNE
190
Patches_linux-maguro:
191
upstream_linux-maguro: released (4.10~rc8)
192
precise_linux-maguro: DNE
193
precise/esm_linux-maguro: DNE
194
trusty_linux-maguro: ignored
195
vivid/ubuntu-core_linux-maguro: DNE
196
vivid/stable-phone-overlay_linux-maguro: DNE
197
xenial_linux-maguro: DNE
198
yakkety_linux-maguro: DNE
199
zesty_linux-maguro: DNE
200
devel_linux-maguro: DNE
203
upstream_linux-mako: released (4.10~rc8)
204
precise_linux-mako: DNE
205
precise/esm_linux-mako: DNE
206
trusty_linux-mako: ignored
207
vivid/ubuntu-core_linux-mako: DNE
208
vivid/stable-phone-overlay_linux-mako: ignored (abandoned)
209
xenial_linux-mako: ignored (abandoned)
210
yakkety_linux-mako: ignored (abandoned)
211
zesty_linux-mako: DNE
212
devel_linux-mako: DNE
215
upstream_linux-manta: released (4.10~rc8)
216
precise_linux-manta: DNE
217
precise/esm_linux-manta: DNE
218
trusty_linux-manta: ignored
219
vivid/ubuntu-core_linux-manta: DNE
220
vivid/stable-phone-overlay_linux-manta: DNE
221
xenial_linux-manta: DNE
222
yakkety_linux-manta: DNE
223
zesty_linux-manta: DNE
224
devel_linux-manta: DNE
227
upstream_linux-flo: released (4.10~rc8)
228
precise_linux-flo: DNE
229
precise/esm_linux-flo: DNE
230
trusty_linux-flo: ignored
231
vivid/ubuntu-core_linux-flo: DNE
232
vivid/stable-phone-overlay_linux-flo: ignored (abandoned)
233
xenial_linux-flo: ignored (abandoned)
234
yakkety_linux-flo: ignored (abandoned)
238
Patches_linux-raspi2:
239
upstream_linux-raspi2: released (4.10~rc8)
240
precise_linux-raspi2: DNE
241
precise/esm_linux-raspi2: DNE
242
trusty_linux-raspi2: DNE
243
vivid/ubuntu-core_linux-raspi2: ignored (end-of-life)
244
vivid/stable-phone-overlay_linux-raspi2: DNE
245
xenial_linux-raspi2: not-affected (no CONFIG_VMAP_STACK)
246
yakkety_linux-raspi2: not-affected (CONFIG_VMAP_STACK not enabled)
247
zesty_linux-raspi2: not-affected (4.10.0-1001.3)
248
devel_linux-raspi2: not-affected (4.10.0-1004.6)
250
Patches_linux-lts-utopic:
251
upstream_linux-lts-utopic: released (4.10~rc8)
252
precise_linux-lts-utopic: DNE
253
precise/esm_linux-lts-utopic: DNE
254
trusty_linux-lts-utopic: ignored (end-of-life)
255
vivid/ubuntu-core_linux-lts-utopic: DNE
256
vivid/stable-phone-overlay_linux-lts-utopic: DNE
257
xenial_linux-lts-utopic: DNE
258
yakkety_linux-lts-utopic: DNE
259
zesty_linux-lts-utopic: DNE
260
devel_linux-lts-utopic: DNE
262
Patches_linux-lts-vivid:
263
upstream_linux-lts-vivid: released (4.10~rc8)
264
precise_linux-lts-vivid: DNE
265
precise/esm_linux-lts-vivid: DNE
266
trusty_linux-lts-vivid: not-affected
267
vivid/ubuntu-core_linux-lts-vivid: DNE
268
vivid/stable-phone-overlay_linux-lts-vivid: DNE
269
xenial_linux-lts-vivid: DNE
270
yakkety_linux-lts-vivid: DNE
271
zesty_linux-lts-vivid: DNE
272
devel_linux-lts-vivid: DNE
274
Patches_linux-lts-wily:
275
upstream_linux-lts-wily: released (4.10~rc8)
276
precise_linux-lts-wily: DNE
277
precise/esm_linux-lts-wily: DNE
278
trusty_linux-lts-wily: ignored (end-of-life)
279
vivid/ubuntu-core_linux-lts-wily: DNE
280
vivid/stable-phone-overlay_linux-lts-wily: DNE
281
xenial_linux-lts-wily: DNE
282
yakkety_linux-lts-wily: DNE
283
zesty_linux-lts-wily: DNE
284
devel_linux-lts-wily: DNE
286
Patches_linux-krillin:
287
product_linux-krillin: not-affected
289
Patches_linux-vegetahd:
290
product_linux-vegetahd: not-affected
292
Patches_linux-lts-xenial:
293
upstream_linux-lts-xenial: released (4.10~rc8)
294
precise_linux-lts-xenial: DNE
295
precise/esm_linux-lts-xenial: DNE
296
trusty_linux-lts-xenial: not-affected (no CONFIG_VMAP_STACK)
297
vivid/ubuntu-core_linux-lts-xenial: DNE
298
vivid/stable-phone-overlay_linux-lts-xenial: DNE
299
xenial_linux-lts-xenial: DNE
300
yakkety_linux-lts-xenial: DNE
301
zesty_linux-lts-xenial: DNE
302
devel_linux-lts-xenial: DNE
304
Patches_linux-snapdragon:
305
upstream_linux-snapdragon: released (4.10~rc8)
306
precise_linux-snapdragon: DNE
307
precise/esm_linux-snapdragon: DNE
308
trusty_linux-snapdragon: DNE
309
vivid/ubuntu-core_linux-snapdragon: DNE
310
vivid/stable-phone-overlay_linux-snapdragon: DNE
311
xenial_linux-snapdragon: not-affected (no CONFIG_VMAP_STACK)
312
yakkety_linux-snapdragon: not-affected (no CONFIG_VMAP_STACK)
313
zesty_linux-snapdragon: not-affected (no CONFIG_VMAP_STACK)
314
devel_linux-snapdragon: not-affected (no CONFIG_VMAP_STACK)
317
upstream_linux-aws: released (4.10~rc8)
318
precise_linux-aws: DNE
319
precise/esm_linux-aws: DNE
320
trusty_linux-aws: not-affected
321
vivid/ubuntu-core_linux-aws: DNE
322
vivid/stable-phone-overlay_linux-aws: DNE
323
xenial_linux-aws: not-affected (no CONFIG_VMAP_STACK)
324
yakkety_linux-aws: DNE
329
upstream_linux-hwe: released (4.10~rc8)
330
precise_linux-hwe: DNE
331
precise/esm_linux-hwe: DNE
332
trusty_linux-hwe: DNE
333
vivid/ubuntu-core_linux-hwe: DNE
334
vivid/stable-phone-overlay_linux-hwe: DNE
335
xenial_linux-hwe: not-affected (CONFIG_VMAP_STACK not enabled)
336
yakkety_linux-hwe: DNE
340
Patches_linux-hwe-edge:
341
upstream_linux-hwe-edge: released (4.10~rc8)
342
precise_linux-hwe-edge: DNE
343
precise/esm_linux-hwe-edge: DNE
344
trusty_linux-hwe-edge: DNE
345
vivid/ubuntu-core_linux-hwe-edge: DNE
346
vivid/stable-phone-overlay_linux-hwe-edge: DNE
347
xenial_linux-hwe-edge: not-affected (4.10.0-14.16~16.04.1)
348
yakkety_linux-hwe-edge: DNE
349
zesty_linux-hwe-edge: DNE
350
devel_linux-hwe-edge: DNE
353
upstream_linux-gke: released (4.10~rc8)
354
precise_linux-gke: DNE
355
precise/esm_linux-gke: DNE
356
trusty_linux-gke: DNE
357
vivid/ubuntu-core_linux-gke: DNE
358
vivid/stable-phone-overlay_linux-gke: DNE
359
xenial_linux-gke: not-affected (no CONFIG_VMAP_STACK)
360
yakkety_linux-gke: DNE