USN-6465-3
Dashboard / Vulnerabilities / USN-6465-3
USN-6465-3
Summary: linux-gke vulnerabilities
Details: Yu Hao and Weiteng Chen discovered that the Bluetooth HCI UART driver in the Linux kernel contained a race condition, leading to a null pointer dereference vulnerability. A local attacker could use this to cause a denial of service (system crash). (CVE-2023-31083) Lin Ma discovered that the Netlink Transformation (XFRM) subsystem in the Linux kernel contained a null pointer dereference vulnerability in some situations. A local privileged attacker could use this to cause a denial of service (system crash). (CVE-2023-3772)
References: https://ubuntu.com/security/notices/USN-6465-3, https://ubuntu.com/security/CVE-2023-3772, https://ubuntu.com/security/CVE-2023-31083
Affected packages
Package
Name: linux-gke
Purl: pkg:deb/ubuntu/linux-gke?arch=source&distro=jammy
Affected ranges
Type: ECOSYSTEM
Events:
