Ubuntu 4392-1: Linux kernel vulnerabilities
Summary
Update Instructions
The problem can be corrected by updating your system to the following package versions: Ubuntu 14.04 ESM: linux-image-3.13.0-180-generic 3.13.0-180.231 linux-image-3.13.0-180-generic-lpae 3.13.0-180.231 linux-image-3.13.0-180-lowlatency 3.13.0-180.231 linux-image-3.13.0-180-powerpc-e500 3.13.0-180.231 linux-image-3.13.0-180-powerpc-e500mc 3.13.0-180.231 linux-image-3.13.0-180-powerpc-smp 3.13.0-180.231 linux-image-3.13.0-180-powerpc64-emb 3.13.0-180.231 linux-image-3.13.0-180-powerpc64-smp 3.13.0-180.231 linux-image-generic 3.13.0.180.189 linux-image-generic-lpae 3.13.0.180.189 linux-image-highbank 3.13.0.180.189 linux-image-lowlatency 3.13.0.180.189 linux-image-omap 3.13.0.180.189 linux-image-powerpc-e500 3.13.0.180.189 linux-image-powerpc-e500mc 3.13.0.180.189 linux-image-powerpc-smp 3.13.0.180.189 linux-image-powerpc64-emb 3.13.0.180.189 linux-image-powerpc64-smp 3.13.0.180.189 linux-image-server 3.13.0.180.189 linux-image-virtual 3.13.0.180.189 Ubuntu 12.04 ESM: linux-image-3.13.0-180-generic 3.13.0-180.231~12.04.1 linux-image-3.13.0-180-generic-lpae 3.13.0-180.231~12.04.1 linux-image-3.13.0-180-lowlatency 3.13.0-180.231~12.04.1 linux-image-generic-lpae-lts-trusty 3.13.0.180.166 linux-image-generic-lts-trusty 3.13.0.180.166 Please note that the mitigation for CVE-2020-0543 requires a processor microcode update to be applied, either from your system manufacturer or via the intel-microcode package. The kernel update for this issue provides the ability to disable the mitigation and to report vulnerability status. After a standard system update you need to reboot your computer to make all the necessary changes. ATTENTION: Due to an unavoidable ABI change the kernel updates have been given a new version number, which requires you to recompile and reinstall all third party kernel modules you might have installed. Unless you manually uninstalled the standard kernel metapackages (e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual, linux-powerpc), a standard system upgrade will automatically perform this as well.
References
https://ubuntu.com/security/notices/USN-4392-1
CVE-2020-0543, CVE-2020-12114, CVE-2020-12654,
https://wiki.ubuntu.com/SecurityTeam/KnowledgeBase/SRBDS
Package Information