UBUNTU-CVE-2021-46934
Dashboard / Vulnerabilities / UBUNTU-CVE-2021-46934
Summary:
Details: In the Linux kernel, the following vulnerability has been resolved: i2c: validate user data in compat ioctl Wrong user data may cause warning in i2c_transfer(), ex: zero msgs. Userspace should not be able to trigger warnings, so this patch adds validation checks for user data in compact ioctl to prevent reported warnings
References: https://ubuntu.com/security/CVE-2021-46934, https://git.kernel.org/linus/bb436283e25aaf1533ce061605d23a9564447bdf, https://git.kernel.org/stable/c/407c8708fb1bf2d4afc5337ef50635cf540c364b, https://git.kernel.org/stable/c/9e4a3f47eff476097e0c7faac04d1831fc70237d, https://git.kernel.org/stable/c/8d31cbab4c295d7010ebb729e9d02d0e9cece18f, https://git.kernel.org/stable/c/f68599581067e8a5a8901ba9eb270b4519690e26, https://git.kernel.org/stable/c/bb436283e25aaf1533ce061605d23a9564447bdf, https://www.cve.org/CVERecord?id=CVE-2021-46934
Affected packages
Package
Name: linux-azure
Purl: pkg:deb/ubuntu/linux-azure?arch=source&distro=trusty%2Fesm
Affected ranges
Type: ECOSYSTEM
Events:
