Summary
It was discovered that the i.MX clock driver in the Linux kernel did not properly handle certain memory allocation failure conditions, leading to a null pointer dereference vulnerability. A local attacker could possibly use this to cause a denial of service (system crash). (CVE-2022-3114)
Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems:
- User-space API (UAPI);
- ARM32 architecture;
- ARM64 architecture;
- MIPS architecture;
- PowerPC architecture;
- RISC-V architecture;
- User-Mode Linux (UML);
- x86 architecture;
- Block layer subsystem;
- Cryptographic API;
- ACPI drivers;
- Android drivers;
- Serial ATA and Parallel ATA drivers;
- Drivers core;
- DRBD Distributed Replicated Block Device drivers;
- Rados block device (RBD) driver;
- Bluetooth drivers;
- Cdrom driver;
- Character device driver;
- Hardware random number generator core;
- TPM device driver;
- Data acquisition framework and drivers;
- CPU frequency scaling framework;
- Hardware crypto device drivers;
- DAX dirext access to differentiated memory framework;
- DMA engine subsystem;
- FireWire subsystem;
- Arm Firmware Framework for ARMv8-A(FFA);
- ARM SCMI message protocol;
- Intel Stratix 10 firmware drivers;
- FPGA Framework;
- GPIO subsystem;
- GPU drivers;
- HID subsystem;
- Hardware monitoring drivers;
- Intel Trace Hub HW tracing drivers;
- I2C subsystem;
- IIO subsystem;
- IIO ADC drivers;
- IIO Magnetometer sensors drivers;
- InfiniBand drivers;
- Input Device core drivers;
- Input Device (Miscellaneous) drivers;
- Input Device (Mouse) drivers;
- IOMMU subsystem;
- IRQ chip drivers;
- LED subsystem;
- Multiple devices driver;
- Media drivers;
- MemoryStick subsystem;
- Multifunction device drivers;
- Fastrpc Driver;
- MMC subsystem;
- MTD block device drivers;
- Ethernet bonding driver;
- Network drivers;
- Mellanox network drivers;
- Microsoft Azure Network Adapter (MANA) driver;
- Texas Instruments network drivers;
- MediaTek network drivers;
- NTB driver;
- NVDIMM (Non-Volatile Memory Device) drivers;
- NVME drivers;
- Parport drivers;
- PCI subsystem;
- Pin controllers subsystem;
- Generic PM domains;
- System reset/shutdown drivers;
- Power supply drivers;
- RapidIO drivers;
- Voltage and Current Regulator drivers;
- Reset controller framework;
- S/390 drivers;
- SCSI subsystem;
- SLIMbus drivers;
- SPI subsystem;
- Media staging drivers;
- Media Oriented Systems Transport (MOST) driver;
- NVIDIA Tegra embedded controller (NVEC) staging driver;
- Realtek RTL8723BS SDIO drivers;
- TCM subsystem;
- Trusted Execution Environment drivers;
- Thermal drivers;
- Thunderbolt and USB4 drivers;
- TTY drivers;
- USB DSL drivers;
- Cadence USB3 driver;
- USB Device Class drivers;
- ULPI bus;
- DesignWare USB2 driver;
- DesignWare USB3 driver;
- USB Gadget drivers;
- USB Host Controller drivers;
- USB ChaosKey driver;
- Siemens ID Mouse USB driver;
- IOWarrior USB driver;
- LD Didactic USB driver;
- LEGO USB Tower driver;
- USS720 USB parallel port adapter driver;
- MediaTek USB3 DRD driver;
- USB Serial drivers;
- USB Type-C support driver;
- USB Type-C Port Controller Manager driver;
- USB Type-C Connector System Software Interface driver;
- USB over IP driver;
- vDPA drivers;
- VFIO drivers;
- Virtio Host (VHOST) subsystem;
- Framebuffer layer;
- Watchdog drivers;
- Xen hypervisor drivers;
- AFS file system;
- File systems infrastructure;
- BTRFS file system;
- Ceph distributed file system;
- EROFS file system;
- exFAT file system;
- Ext4 file system;
- F2FS file system;
- FUSE (File system in Userspace);
- HFS file system;
- HFS+ file system;
- Journaling layer for block devices (JBD2);
- Network file system (NFS) client;
- Network file system (NFS) server daemon;
- NILFS2 file system;
- NTFS3 file system;
- OCFS2 file system;
- OrangeFS file system;
- Proc file system;
- SMB network file system;
- UDF file system;
- XFS file system;
- Key management;
- Software nodes and device properties;
- Glob pattern matching library;
- KVM subsystem;
- Networking core;
- Netfilter;
- Socket messages infrastructure;
- Network sockets;
- Memory Management;
- Network traffic control;
- IPv6 networking;
- Bluetooth subsystem;
- IP tunnels definitions;
- IPv4 networking;
- SCTP protocol;
- XFRM subsystem;
- io_uring subsystem;
- IPC subsystem;
- Audit subsystem;
- BPF subsystem;
- Control group (cgroup);
- Kernel CPU control infrastructure;
- Kernel exit() syscall;
- Kernel futex primitives;
- Locking primitives;
- Scheduler infrastructure;
- Signal handling mechanism;
- Timer subsystem;
- Tracing infrastructure;
- Cryptographic library;
- Debug objects infrastructure;
- Resizable hashtable library;
- Memory management;
- 6LoWPAN network protocol;
- IEEE 802 network protocols;
- 9P file system network protocol;
- Asynchronous Transfer Mode (ATM) subsystem;
- B.A.T.M.A.N. meshing protocol;
- Ethernet bridge;
- CAN network layer;
- Ceph Core library;
- Ethtool driver;
- HSR network protocol;
- IEEE802154.4 network protocol;
- IFE protocol;
- IUCV driver;
- KCM (Kernel Connection Multiplexor) sockets driver;
- Logical Link layer;
- MAC80211 subsystem;
- IEEE 802.15.4 subsystem;
- Management Component Transport Protocol (MCTP);
- MultiProtocol Label Switching driver;
- Multipath TCP;
- NCSI (Network Controller Sideband Interface) driver;
- NetLabel subsystem;
- NFC subsystem;
- Open vSwitch;
- Packet sockets;
- Phonet protocol;
- Packet sampling (psample);
- Qualcomm IPC Router (QRTR);
- RDS protocol;
- SMC sockets;
- Sun RPC protocol;
- TIPC protocol;
- TLS protocol;
- Unix domain sockets;
- VMware vSockets driver;
- Wireless networking;
- X.25 network layer;
- AppArmor security module;
- Integrity Measurement Architecture(IMA) framework;
- Apple Onboard Audio ALSA driver;
- ALSA framework;
- Generic PCM loopback sound driver;
- FireWire sound drivers;
- ESS Solo-1 ALSA driver;
- HD-audio driver;
- Simple audio multiplexer codec driver;
- SoC Audio for Freescale CPUs drivers;
- NVIDIA Tegra ASoC drivers;
- USB sound devices;
- Perf tools;
View 950 CVE identifiers
Products covered
A separate affected-products list was not included in the collected bulletin.
Remediation
This update corrects flaws in the following subsystems:
- User-space API (UAPI)
- ARM32 architecture
- ARM64 architecture
- MIPS architecture
- PowerPC architecture
- RISC-V architecture
- User-Mode Linux (UML)
- x86 architecture
- Block layer subsystem
- Cryptographic API
- ACPI drivers
- Android drivers
- Serial ATA and Parallel ATA drivers
- Drivers core
- DRBD Distributed Replicated Block Device drivers
- Rados block device (RBD) driver
- Bluetooth drivers
- Cdrom driver
- Character device driver
- Hardware random number generator core
- TPM device driver
- Data acquisition framework and drivers
- CPU frequency scaling framework
- Hardware crypto device drivers
- DAX dirext access to differentiated memory framework
- DMA engine subsystem
- FireWire subsystem;
CVEs in this advisory 1
Updates
- Published by Ubuntu
The publication date reported by the vendor.
- Added to SecurityAlert
We collected the advisory from the official source.
- Confirmed at the source
Our collector saw this advisory during a later source check.