{"id":"USN-5920-1","summary":"linux, linux-aws, linux-dell300x, linux-gcp-4.15, linux-oracle vulnerabilities","details":"It was discovered that the Upper Level Protocol (ULP) subsystem in the\nLinux kernel did not properly handle sockets entering the LISTEN state in\ncertain protocols, leading to a use-after-free vulnerability. A local\nattacker could use this to cause a denial of service (system crash) or\npossibly execute arbitrary code. (CVE-2023-0461)\n\nKyle Zeng discovered that the sysctl implementation in the Linux kernel\ncontained a stack-based buffer overflow. A local attacker could use this to\ncause a denial of service (system crash) or execute arbitrary code.\n(CVE-2022-4378)\n\nIt was discovered that a race condition existed in the Kernel Connection\nMultiplexor (KCM) socket implementation in the Linux kernel when releasing\nsockets in certain situations. A local attacker could use this to cause a\ndenial of service (system crash). (CVE-2022-3521)\n\nIt was discovered that the Netronome Ethernet driver in the Linux kernel\ncontained a use-after-free vulnerability. A local attacker could use this\nto cause a denial of service (system crash) or possibly execute arbitrary\ncode. (CVE-2022-3545)\n\nIt was discovered that the Broadcom FullMAC USB WiFi driver in the Linux\nkernel did not properly perform bounds checking in some situations. A\nphysically proximate attacker could use this to craft a malicious USB\ndevice that when inserted, could cause a denial of service (system crash)\nor possibly execute arbitrary code. (CVE-2022-3628)\n\nIt was discovered that a use-after-free vulnerability existed in the\nBluetooth stack in the Linux kernel. A local attacker could use this to\ncause a denial of service (system crash) or possibly execute arbitrary\ncode. (CVE-2022-3640)\n\nIt was discovered that a race condition existed in the Xen network backend\ndriver in the Linux kernel when handling dropped packets in certain\ncircumstances. An attacker could use this to cause a denial of service\n(kernel deadlock). (CVE-2022-42328, CVE-2022-42329)\n\nTamás Koczka discovered that the Bluetooth L2CAP implementation in the\nLinux kernel did not properly initialize memory in some situations. A\nphysically proximate attacker could possibly use this to expose sensitive\ninformation (kernel memory). (CVE-2022-42895)\n\n","modified":"2026-02-10T04:43:00Z","published":"2023-03-03T16:39:13Z","related":["UBUNTU-CVE-2022-3521","UBUNTU-CVE-2022-3545","UBUNTU-CVE-2022-3628","UBUNTU-CVE-2022-3640","UBUNTU-CVE-2022-42328","UBUNTU-CVE-2022-42329","UBUNTU-CVE-2022-42895","UBUNTU-CVE-2022-4378","UBUNTU-CVE-2023-0461"],"upstream":["CVE-2022-3521","CVE-2022-3545","CVE-2022-3628","CVE-2022-3640","CVE-2022-42328","CVE-2022-42329","CVE-2022-42895","CVE-2022-4378","CVE-2023-0461","UBUNTU-CVE-2022-3521","UBUNTU-CVE-2022-3545","UBUNTU-CVE-2022-3628","UBUNTU-CVE-2022-3640","UBUNTU-CVE-2022-42328","UBUNTU-CVE-2022-42329","UBUNTU-CVE-2022-42895","UBUNTU-CVE-2022-4378","UBUNTU-CVE-2023-0461"],"references":[{"type":"ADVISORY","url":"https://ubuntu.com/security/notices/USN-5920-1"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2022-3521"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2022-3545"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2022-3628"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2022-3640"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2022-4378"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2022-42328"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2022-42329"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2022-42895"},{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2023-0461"}],"affected":[{"package":{"name":"linux","ecosystem":"Ubuntu:18.04:LTS","purl":"pkg:deb/ubuntu/linux@4.15.0-206.217?arch=source&distro=bionic"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.15.0-206.217"}]}],"versions":["4.13.0-16.19","4.13.0-17.20","4.13.0-25.29","4.13.0-32.35","4.15.0-10.11","4.15.0-12.13","4.15.0-13.14","4.15.0-15.16","4.15.0-19.20","4.15.0-20.21","4.15.0-22.24","4.15.0-23.25","4.15.0-24.26","4.15.0-29.31","4.15.0-30.32","4.15.0-32.35","4.15.0-33.36","4.15.0-34.37","4.15.0-36.39","4.15.0-38.41","4.15.0-39.42","4.15.0-42.45","4.15.0-43.46","4.15.0-44.47","4.15.0-45.48","4.15.0-46.49","4.15.0-47.50","4.15.0-48.51","4.15.0-50.54","4.15.0-51.55","4.15.0-52.56","4.15.0-54.58","4.15.0-55.60","4.15.0-58.64","4.15.0-60.67","4.15.0-62.69","4.15.0-64.73","4.15.0-65.74","4.15.0-66.75","4.15.0-69.78","4.15.0-70.79","4.15.0-72.81","4.15.0-74.84","4.15.0-76.86","4.15.0-88.88","4.15.0-91.92","4.15.0-96.97","4.15.0-99.100","4.15.0-101.102","4.15.0-106.107","4.15.0-108.109","4.15.0-109.110","4.15.0-111.112","4.15.0-112.113","4.15.0-115.116","4.15.0-117.118","4.15.0-118.119","4.15.0-121.123","4.15.0-122.124","4.15.0-123.126","4.15.0-124.127","4.15.0-126.129","4.15.0-128.131","4.15.0-129.132","4.15.0-130.134","4.15.0-132.136","4.15.0-134.138","4.15.0-135.139","4.15.0-136.140","4.15.0-137.141","4.15.0-139.143","4.15.0-140.144","4.15.0-141.145","4.15.0-142.146","4.15.0-143.147","4.15.0-144.148","4.15.0-147.151","4.15.0-151.157","4.15.0-153.160","4.15.0-154.161","4.15.0-156.163","4.15.0-158.166","4.15.0-159.167","4.15.0-161.169","4.15.0-162.170","4.15.0-163.171","4.15.0-166.174","4.15.0-167.175","4.15.0-169.177","4.15.0-171.180","4.15.0-173.182","4.15.0-175.184","4.15.0-176.185","4.15.0-177.186","4.15.0-180.189","4.15.0-184.194","4.15.0-187.198","4.15.0-188.199","4.15.0-189.200","4.15.0-191.202","4.15.0-192.203","4.15.0-193.204","4.15.0-194.205","4.15.0-196.207","4.15.0-197.208","4.15.0-200.211","4.15.0-201.212","4.15.0-202.213","4.15.0-204.215"],"ecosystem_specific":{"availability":"No subscription required","binaries":[{"binary_version":"4.15.0-206.217","binary_name":"block-modules-4.15.0-206-generic-di"},{"binary_version":"4.15.0-206.217","binary_name":"block-modules-4.15.0-206-generic-lpae-di"},{"binary_version":"4.15.0-206.217","binary_name":"crypto-modules-4.15.0-206-generic-di"},{"binary_version":"4.15.0-206.217","binary_name":"crypto-modules-4.15.0-206-generic-lpae-di"},{"binary_version":"4.15.0-206.217","binary_name":"dasd-extra-modules-4.15.0-206-generic-di"},{"binary_version":"4.15.0-206.217","binary_name":"dasd-modules-4.15.0-206-generic-di"},{"binary_version":"4.15.0-206.217","binary_name":"fat-modules-4.15.0-206-generic-di"},{"binary_version":"4.15.0-206.217","binary_name":"fat-modules-4.15.0-206-generic-lpae-di"},{"binary_version":"4.15.0-206.217","binary_name":"fb-modules-4.15.0-206-generic-di"},{"binary_version":"4.15.0-206.217","binary_name":"firewire-core-modules-4.15.0-206-generic-di"},{"binary_version":"4.15.0-206.217","binary_name":"floppy-modules-4.15.0-206-generic-di"},{"binary_version":"4.15.0-206.217","binary_name":"fs-core-modules-4.15.0-206-generic-di"},{"binary_version":"4.15.0-206.217","binary_name":"fs-core-modules-4.15.0-206-generic-lpae-di"},{"binary_version":"4.15.0-206.217","binary_name":"fs-secondary-modules-4.15.0-206-generic-di"},{"binary_version":"4.15.0-206.217","binary_name":"fs-secondary-modules-4.15.0-206-generic-lpae-di"},{"binary_version":"4.15.0-206.217","binary_name":"input-modules-4.15.0-206-generic-di"},{"binary_version":"4.15.0-206.217","binary_name":"input-modules-4.15.0-206-generic-lpae-di"},{"binary_version":"4.15.0-206.217","binary_name":"ipmi-modules-4.15.0-206-generic-di"},{"binary_version":"4.15.0-206.217","binary_name":"ipmi-modules-4.15.0-206-generic-lpae-di"},{"binary_version":"4.15.0-206.217","binary_name":"irda-modules-4.15.0-206-generic-di"},{"binary_version":"4.15.0-206.217","binary_name":"irda-modules-4.15.0-206-generic-lpae-di"},{"binary_version":"4.15.0-206.217","binary_name":"kernel-image-4.15.0-206-generic-di"},{"binary_version":"4.15.0-206.217","binary_name":"kernel-image-4.15.0-206-generic-lpae-di"},{"binary_version":"4.15.0-206.217","binary_name":"linux-buildinfo-4.15.0-206-generic"},{"binary_version":"4.15.0-206.217","binary_name":"linux-buildinfo-4.15.0-206-generic-lpae"},{"binary_version":"4.15.0-206.217","binary_name":"linux-buildinfo-4.15.0-206-lowlatency"},{"binary_version":"4.15.0-206.217","binary_name":"linux-cloud-tools-4.15.0-206"},{"binary_version":"4.15.0-206.217","binary_name":"linux-cloud-tools-4.15.0-206-generic"},{"binary_version":"4.15.0-206.217","binary_name":"linux-cloud-tools-4.15.0-206-lowlatency"},{"binary_version":"4.15.0-206.217","binary_name":"linux-cloud-tools-common"},{"binary_version":"4.15.0-206.217","binary_name":"linux-headers-4.15.0-206"},{"binary_version":"4.15.0-206.217","binary_name":"linux-headers-4.15.0-206-generic"},{"binary_version":"4.15.0-206.217","binary_name":"linux-headers-4.15.0-206-generic-lpae"},{"binary_version":"4.15.0-206.217","binary_name":"linux-headers-4.15.0-206-lowlatency"},{"binary_version":"4.15.0-206.217","binary_name":"linux-image-4.15.0-206-generic"},{"binary_version":"4.15.0-206.217","binary_name":"linux-image-4.15.0-206-generic-lpae"},{"binary_version":"4.15.0-206.217","binary_name":"linux-image-4.15.0-206-lowlatency"},{"binary_version":"4.15.0-206.217","binary_name":"linux-image-unsigned-4.15.0-206-generic"},{"binary_version":"4.15.0-206.217","binary_name":"linux-image-unsigned-4.15.0-206-lowlatency"},{"binary_version":"4.15.0-206.217","binary_name":"linux-libc-dev"},{"binary_version":"4.15.0-206.217","binary_name":"linux-modules-4.15.0-206-generic"},{"binary_version":"4.15.0-206.217","binary_name":"linux-modules-4.15.0-206-generic-lpae"},{"binary_version":"4.15.0-206.217","binary_name":"linux-modules-4.15.0-206-lowlatency"},{"binary_version":"4.15.0-206.217","binary_name":"linux-modules-extra-4.15.0-206-generic"},{"binary_version":"4.15.0-206.217","binary_name":"linux-source-4.15.0"},{"binary_version":"4.15.0-206.217","binary_name":"linux-tools-4.15.0-206"},{"binary_version":"4.15.0-206.217","binary_name":"linux-tools-4.15.0-206-generic"},{"binary_version":"4.15.0-206.217","binary_name":"linux-tools-4.15.0-206-generic-lpae"},{"binary_version":"4.15.0-206.217","binary_name":"linux-tools-4.15.0-206-lowlatency"},{"binary_version":"4.15.0-206.217","binary_name":"linux-tools-common"},{"binary_version":"4.15.0-206.217","binary_name":"linux-tools-host"},{"binary_version":"4.15.0-206.217","binary_name":"linux-udebs-generic"},{"binary_version":"4.15.0-206.217","binary_name":"linux-udebs-generic-lpae"},{"binary_version":"4.15.0-206.217","binary_name":"md-modules-4.15.0-206-generic-di"},{"binary_version":"4.15.0-206.217","binary_name":"md-modules-4.15.0-206-generic-lpae-di"},{"binary_version":"4.15.0-206.217","binary_name":"message-modules-4.15.0-206-generic-di"},{"binary_version":"4.15.0-206.217","binary_name":"mouse-modules-4.15.0-206-generic-di"},{"binary_version":"4.15.0-206.217","binary_name":"mouse-modules-4.15.0-206-generic-lpae-di"},{"binary_version":"4.15.0-206.217","binary_name":"multipath-modules-4.15.0-206-generic-di"},{"binary_version":"4.15.0-206.217","binary_name":"multipath-modules-4.15.0-206-generic-lpae-di"},{"binary_version":"4.15.0-206.217","binary_name":"nfs-modules-4.15.0-206-generic-di"},{"binary_version":"4.15.0-206.217","binary_name":"nfs-modules-4.15.0-206-generic-lpae-di"},{"binary_version":"4.15.0-206.217","binary_name":"nic-modules-4.15.0-206-generic-di"},{"binary_version":"4.15.0-206.217","binary_name":"nic-modules-4.15.0-206-generic-lpae-di"},{"binary_version":"4.15.0-206.217","binary_name":"nic-pcmcia-modules-4.15.0-206-generic-di"},{"binary_version":"4.15.0-206.217","binary_name":"nic-shared-modules-4.15.0-206-generic-di"},{"binary_version":"4.15.0-206.217","binary_name":"nic-shared-modules-4.15.0-206-generic-lpae-di"},{"binary_version":"4.15.0-206.217","binary_name":"nic-usb-modules-4.15.0-206-generic-di"},{"binary_version":"4.15.0-206.217","binary_name":"nic-usb-modules-4.15.0-206-generic-lpae-di"},{"binary_version":"4.15.0-206.217","binary_name":"parport-modules-4.15.0-206-generic-di"},{"binary_version":"4.15.0-206.217","binary_name":"parport-modules-4.15.0-206-generic-lpae-di"},{"binary_version":"4.15.0-206.217","binary_name":"pata-modules-4.15.0-206-generic-di"},{"binary_version":"4.15.0-206.217","binary_name":"pcmcia-modules-4.15.0-206-generic-di"},{"binary_version":"4.15.0-206.217","binary_name":"pcmcia-storage-modules-4.15.0-206-generic-di"},{"binary_version":"4.15.0-206.217","binary_name":"plip-modules-4.15.0-206-generic-di"},{"binary_version":"4.15.0-206.217","binary_name":"plip-modules-4.15.0-206-generic-lpae-di"},{"binary_version":"4.15.0-206.217","binary_name":"ppp-modules-4.15.0-206-generic-di"},{"binary_version":"4.15.0-206.217","binary_name":"ppp-modules-4.15.0-206-generic-lpae-di"},{"binary_version":"4.15.0-206.217","binary_name":"sata-modules-4.15.0-206-generic-di"},{"binary_version":"4.15.0-206.217","binary_name":"sata-modules-4.15.0-206-generic-lpae-di"},{"binary_version":"4.15.0-206.217","binary_name":"scsi-modules-4.15.0-206-generic-di"},{"binary_version":"4.15.0-206.217","binary_name":"scsi-modules-4.15.0-206-generic-lpae-di"},{"binary_version":"4.15.0-206.217","binary_name":"serial-modules-4.15.0-206-generic-di"},{"binary_version":"4.15.0-206.217","binary_name":"storage-core-modules-4.15.0-206-generic-di"},{"binary_version":"4.15.0-206.217","binary_name":"storage-core-modules-4.15.0-206-generic-lpae-di"},{"binary_version":"4.15.0-206.217","binary_name":"usb-modules-4.15.0-206-generic-di"},{"binary_version":"4.15.0-206.217","binary_name":"usb-modules-4.15.0-206-generic-lpae-di"},{"binary_version":"4.15.0-206.217","binary_name":"virtio-modules-4.15.0-206-generic-di"},{"binary_version":"4.15.0-206.217","binary_name":"vlan-modules-4.15.0-206-generic-di"},{"binary_version":"4.15.0-206.217","binary_name":"vlan-modules-4.15.0-206-generic-lpae-di"}]},"database_specific":{"cves_map":{"ecosystem":"Ubuntu:18.04:LTS","cves":[{"id":"CVE-2022-3521","severity":[{"score":"CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:L","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:L","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2022-3545","severity":[{"score":"CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2022-3628","severity":[{"score":"CVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2022-3640","severity":[{"score":"CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2022-42328","severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2022-42329","severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2022-42895","severity":[{"score":"CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2023-0461","severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"high","type":"Ubuntu"}]}]},"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-5920-1.json"}},{"package":{"name":"linux-aws","ecosystem":"Ubuntu:18.04:LTS","purl":"pkg:deb/ubuntu/linux-aws@4.15.0-1151.164?arch=source&distro=bionic"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.15.0-1151.164"}]}],"versions":["4.15.0-1001.1","4.15.0-1003.3","4.15.0-1005.5","4.15.0-1006.6","4.15.0-1007.7","4.15.0-1009.9","4.15.0-1010.10","4.15.0-1011.11","4.15.0-1016.16","4.15.0-1017.17","4.15.0-1019.19","4.15.0-1020.20","4.15.0-1021.21","4.15.0-1023.23","4.15.0-1025.25","4.15.0-1027.27","4.15.0-1029.30","4.15.0-1031.33","4.15.0-1032.34","4.15.0-1033.35","4.15.0-1034.36","4.15.0-1035.37","4.15.0-1037.39","4.15.0-1039.41","4.15.0-1040.42","4.15.0-1041.43","4.15.0-1043.45","4.15.0-1044.46","4.15.0-1045.47","4.15.0-1047.49","4.15.0-1048.50","4.15.0-1050.52","4.15.0-1051.53","4.15.0-1052.54","4.15.0-1054.56","4.15.0-1056.58","4.15.0-1057.59","4.15.0-1058.60","4.15.0-1060.62","4.15.0-1063.67","4.15.0-1065.69","4.15.0-1066.70","4.15.0-1067.71","4.15.0-1073.77","4.15.0-1076.80","4.15.0-1077.81","4.15.0-1079.83","4.15.0-1080.84","4.15.0-1082.86","4.15.0-1083.87","4.15.0-1086.91","4.15.0-1087.92","4.15.0-1088.93","4.15.0-1090.95","4.15.0-1091.96","4.15.0-1092.98","4.15.0-1093.99","4.15.0-1094.101","4.15.0-1095.102","4.15.0-1096.103","4.15.0-1097.104","4.15.0-1098.105","4.15.0-1099.106","4.15.0-1101.108","4.15.0-1102.109","4.15.0-1103.110","4.15.0-1106.113","4.15.0-1109.116","4.15.0-1110.117","4.15.0-1111.118","4.15.0-1112.119","4.15.0-1114.121","4.15.0-1115.122","4.15.0-1116.123","4.15.0-1118.125","4.15.0-1119.127","4.15.0-1121.129","4.15.0-1123.132","4.15.0-1124.133","4.15.0-1126.135","4.15.0-1127.136","4.15.0-1128.137","4.15.0-1130.139","4.15.0-1133.143","4.15.0-1136.147","4.15.0-1137.148","4.15.0-1139.150","4.15.0-1140.151","4.15.0-1141.152","4.15.0-1142.154","4.15.0-1143.155","4.15.0-1144.156","4.15.0-1146.158","4.15.0-1147.159","4.15.0-1148.160","4.15.0-1150.163"],"ecosystem_specific":{"availability":"No subscription required","binaries":[{"binary_version":"4.15.0-1151.164","binary_name":"linux-aws-cloud-tools-4.15.0-1151"},{"binary_version":"4.15.0-1151.164","binary_name":"linux-aws-headers-4.15.0-1151"},{"binary_version":"4.15.0-1151.164","binary_name":"linux-aws-tools-4.15.0-1151"},{"binary_version":"4.15.0-1151.164","binary_name":"linux-buildinfo-4.15.0-1151-aws"},{"binary_version":"4.15.0-1151.164","binary_name":"linux-cloud-tools-4.15.0-1151-aws"},{"binary_version":"4.15.0-1151.164","binary_name":"linux-headers-4.15.0-1151-aws"},{"binary_version":"4.15.0-1151.164","binary_name":"linux-image-unsigned-4.15.0-1151-aws"},{"binary_version":"4.15.0-1151.164","binary_name":"linux-modules-4.15.0-1151-aws"},{"binary_version":"4.15.0-1151.164","binary_name":"linux-modules-extra-4.15.0-1151-aws"},{"binary_version":"4.15.0-1151.164","binary_name":"linux-tools-4.15.0-1151-aws"}]},"database_specific":{"cves_map":{"ecosystem":"Ubuntu:18.04:LTS","cves":[{"id":"CVE-2022-3521","severity":[{"score":"CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:L","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:L","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2022-3545","severity":[{"score":"CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2022-3628","severity":[{"score":"CVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2022-3640","severity":[{"score":"CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2022-42328","severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2022-42329","severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2022-42895","severity":[{"score":"CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2023-0461","severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"high","type":"Ubuntu"}]}]},"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-5920-1.json"}},{"package":{"name":"linux-dell300x","ecosystem":"Ubuntu:18.04:LTS","purl":"pkg:deb/ubuntu/linux-dell300x@4.15.0-1061.66?arch=source&distro=bionic"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.15.0-1061.66"}]}],"versions":["4.15.0-1005.8","4.15.0-1006.10","4.15.0-1007.11","4.15.0-1009.13","4.15.0-1010.14","4.15.0-1011.15","4.15.0-1012.16","4.15.0-1013.17","4.15.0-1015.19","4.15.0-1016.20","4.15.0-1017.21","4.15.0-1018.22","4.15.0-1022.26","4.15.0-1027.32","4.15.0-1028.33","4.15.0-1029.34","4.15.0-1030.35","4.15.0-1031.36","4.15.0-1033.38","4.15.0-1034.39","4.15.0-1035.40","4.15.0-1037.42","4.15.0-1038.43","4.15.0-1040.45","4.15.0-1041.46","4.15.0-1042.47","4.15.0-1047.52","4.15.0-1048.53","4.15.0-1049.54","4.15.0-1051.56","4.15.0-1052.57","4.15.0-1053.58","4.15.0-1054.59","4.15.0-1055.60","4.15.0-1057.62","4.15.0-1058.63","4.15.0-1060.65"],"ecosystem_specific":{"availability":"No subscription required","binaries":[{"binary_version":"4.15.0-1061.66","binary_name":"linux-buildinfo-4.15.0-1061-dell300x"},{"binary_version":"4.15.0-1061.66","binary_name":"linux-dell300x-headers-4.15.0-1061"},{"binary_version":"4.15.0-1061.66","binary_name":"linux-dell300x-tools-4.15.0-1061"},{"binary_version":"4.15.0-1061.66","binary_name":"linux-headers-4.15.0-1061-dell300x"},{"binary_version":"4.15.0-1061.66","binary_name":"linux-image-unsigned-4.15.0-1061-dell300x"},{"binary_version":"4.15.0-1061.66","binary_name":"linux-modules-4.15.0-1061-dell300x"},{"binary_version":"4.15.0-1061.66","binary_name":"linux-tools-4.15.0-1061-dell300x"}]},"database_specific":{"cves_map":{"ecosystem":"Ubuntu:18.04:LTS","cves":[{"id":"CVE-2022-3521","severity":[{"score":"CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:L","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:L","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2022-3545","severity":[{"score":"CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2022-3628","severity":[{"score":"CVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2022-3640","severity":[{"score":"CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2022-42328","severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2022-42329","severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2022-42895","severity":[{"score":"CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2023-0461","severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"high","type":"Ubuntu"}]}]},"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-5920-1.json"}},{"package":{"name":"linux-gcp-4.15","ecosystem":"Ubuntu:18.04:LTS","purl":"pkg:deb/ubuntu/linux-gcp-4.15@4.15.0-1146.162?arch=source&distro=bionic"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.15.0-1146.162"}]}],"versions":["4.15.0-1071.81","4.15.0-1077.87","4.15.0-1078.88","4.15.0-1080.90","4.15.0-1081.92","4.15.0-1083.94","4.15.0-1084.95","4.15.0-1086.98","4.15.0-1087.100","4.15.0-1088.101","4.15.0-1090.103","4.15.0-1091.104","4.15.0-1092.105","4.15.0-1093.106","4.15.0-1094.107","4.15.0-1095.108","4.15.0-1096.109","4.15.0-1097.110","4.15.0-1098.111","4.15.0-1099.112","4.15.0-1100.113","4.15.0-1103.116","4.15.0-1106.120","4.15.0-1107.121","4.15.0-1108.122","4.15.0-1109.123","4.15.0-1110.124","4.15.0-1111.125","4.15.0-1112.126","4.15.0-1114.128","4.15.0-1115.129","4.15.0-1116.130","4.15.0-1118.132","4.15.0-1119.133","4.15.0-1120.134","4.15.0-1121.135","4.15.0-1122.136","4.15.0-1124.138","4.15.0-1127.142","4.15.0-1130.146","4.15.0-1131.147","4.15.0-1134.150","4.15.0-1135.151","4.15.0-1136.152","4.15.0-1137.153","4.15.0-1138.154","4.15.0-1141.157","4.15.0-1142.158","4.15.0-1143.159","4.15.0-1145.161"],"ecosystem_specific":{"availability":"No subscription required","binaries":[{"binary_version":"4.15.0-1146.162","binary_name":"linux-buildinfo-4.15.0-1146-gcp"},{"binary_version":"4.15.0-1146.162","binary_name":"linux-gcp-4.15-headers-4.15.0-1146"},{"binary_version":"4.15.0-1146.162","binary_name":"linux-gcp-4.15-tools-4.15.0-1146"},{"binary_version":"4.15.0-1146.162","binary_name":"linux-headers-4.15.0-1146-gcp"},{"binary_version":"4.15.0-1146.162","binary_name":"linux-image-unsigned-4.15.0-1146-gcp"},{"binary_version":"4.15.0-1146.162","binary_name":"linux-modules-4.15.0-1146-gcp"},{"binary_version":"4.15.0-1146.162","binary_name":"linux-modules-extra-4.15.0-1146-gcp"},{"binary_version":"4.15.0-1146.162","binary_name":"linux-tools-4.15.0-1146-gcp"}]},"database_specific":{"cves_map":{"ecosystem":"Ubuntu:18.04:LTS","cves":[{"id":"CVE-2022-3521","severity":[{"score":"CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:L","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:L","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2022-3545","severity":[{"score":"CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2022-3628","severity":[{"score":"CVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2022-3640","severity":[{"score":"CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2022-42328","severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2022-42329","severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2022-42895","severity":[{"score":"CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2023-0461","severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"high","type":"Ubuntu"}]}]},"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-5920-1.json"}},{"package":{"name":"linux-oracle","ecosystem":"Ubuntu:18.04:LTS","purl":"pkg:deb/ubuntu/linux-oracle@4.15.0-1115.126?arch=source&distro=bionic"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"4.15.0-1115.126"}]}],"versions":["4.15.0-1007.9","4.15.0-1008.10","4.15.0-1009.11","4.15.0-1010.12","4.15.0-1011.13","4.15.0-1013.15","4.15.0-1014.16","4.15.0-1015.17","4.15.0-1017.19","4.15.0-1018.20","4.15.0-1021.23","4.15.0-1022.25","4.15.0-1023.26","4.15.0-1025.28","4.15.0-1026.29","4.15.0-1027.30","4.15.0-1029.32","4.15.0-1030.33","4.15.0-1031.34","4.15.0-1033.36","4.15.0-1035.39","4.15.0-1037.41","4.15.0-1038.42","4.15.0-1039.43","4.15.0-1045.49","4.15.0-1047.51","4.15.0-1048.52","4.15.0-1050.54","4.15.0-1051.55","4.15.0-1053.57","4.15.0-1054.58","4.15.0-1057.62","4.15.0-1058.64","4.15.0-1059.65","4.15.0-1061.67","4.15.0-1062.68","4.15.0-1063.70","4.15.0-1064.71","4.15.0-1065.73","4.15.0-1066.74","4.15.0-1067.75","4.15.0-1068.76","4.15.0-1069.77","4.15.0-1070.78","4.15.0-1071.79","4.15.0-1072.80","4.15.0-1075.83","4.15.0-1078.86","4.15.0-1079.87","4.15.0-1080.88","4.15.0-1081.89","4.15.0-1082.90","4.15.0-1083.91","4.15.0-1084.92","4.15.0-1085.93","4.15.0-1086.94","4.15.0-1087.95","4.15.0-1089.98","4.15.0-1090.99","4.15.0-1091.100","4.15.0-1092.101","4.15.0-1093.102","4.15.0-1095.104","4.15.0-1098.108","4.15.0-1101.112","4.15.0-1102.113","4.15.0-1104.115","4.15.0-1105.116","4.15.0-1106.117","4.15.0-1107.118","4.15.0-1108.119","4.15.0-1111.122","4.15.0-1112.123","4.15.0-1113.124","4.15.0-1114.125"],"ecosystem_specific":{"availability":"No subscription required","binaries":[{"binary_version":"4.15.0-1115.126","binary_name":"linux-buildinfo-4.15.0-1115-oracle"},{"binary_version":"4.15.0-1115.126","binary_name":"linux-headers-4.15.0-1115-oracle"},{"binary_version":"4.15.0-1115.126","binary_name":"linux-image-unsigned-4.15.0-1115-oracle"},{"binary_version":"4.15.0-1115.126","binary_name":"linux-modules-4.15.0-1115-oracle"},{"binary_version":"4.15.0-1115.126","binary_name":"linux-modules-extra-4.15.0-1115-oracle"},{"binary_version":"4.15.0-1115.126","binary_name":"linux-oracle-headers-4.15.0-1115"},{"binary_version":"4.15.0-1115.126","binary_name":"linux-oracle-tools-4.15.0-1115"},{"binary_version":"4.15.0-1115.126","binary_name":"linux-tools-4.15.0-1115-oracle"}]},"database_specific":{"cves_map":{"ecosystem":"Ubuntu:18.04:LTS","cves":[{"id":"CVE-2022-3521","severity":[{"score":"CVSS:3.1/AV:A/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:L","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:N/I:N/A:L","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2022-3545","severity":[{"score":"CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2022-3628","severity":[{"score":"CVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:P/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2022-3640","severity":[{"score":"CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2022-42328","severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2022-42329","severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2022-42895","severity":[{"score":"CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N","type":"CVSS_V3"},{"score":"medium","type":"Ubuntu"}]},{"id":"CVE-2023-0461","severity":[{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","type":"CVSS_V3"},{"score":"high","type":"Ubuntu"}]}]},"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/usn/USN-5920-1.json"}}],"schema_version":"1.7.3"}