FlawAtlas
Search the atlas
USN-5621-1 Not scored

linux, linux-aws, linux-aws-hwe, linux-azure-4.15, linux-dell300x, linux-gcp, linux-gcp-4.15, lnux-hwe, inux-kvm, linux-oracle, linux-raspi2, linux-snapdragon vulnerabilities

It was discovered that the framebuffer driver on the Linux kernel did not verify size limits when changing font or screen size, leading to an out-of- bounds write. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2021-33655) Domingo Dirutigliano and Nicola Guerrera discovered that the netfilter subsystem in the Linux kernel did not properly handle rules that truncated packets below the packet header size. When such rules are in place, a remote attacker could possibly use this to cause a denial of service (system crash). (CVE-2022-36946)

Exploit probability Not scored
Published September 21, 2022
Required by Not available
Last source change June 25, 2026

02 / AFFECTED SOFTWARE

Affected packages

Ubuntu:18.04:LTS linux

101 explicit affected versions

Ubuntu:18.04:LTS linux-aws

88 explicit affected versions

Ubuntu:18.04:LTS linux-azure-4.15

44 explicit affected versions

Ubuntu:18.04:LTS linux-dell300x

31 explicit affected versions

Ubuntu:18.04:LTS linux-gcp-4.15

43 explicit affected versions

Ubuntu:18.04:LTS linux-kvm

82 explicit affected versions

Ubuntu:18.04:LTS linux-oracle

68 explicit affected versions

Ubuntu:18.04:LTS linux-raspi2

85 explicit affected versions

Ubuntu:18.04:LTS linux-snapdragon

65 explicit affected versions

Ubuntu:Pro:16.04:LTS linux-aws-hwe

67 explicit affected versions

Ubuntu:Pro:16.04:LTS linux-gcp

90 explicit affected versions

Ubuntu:Pro:16.04:LTS linux-hwe

116 explicit affected versions

Ubuntu:Pro:16.04:LTS linux-oracle

66 explicit affected versions

03 / CONNECTIONS

Connected vulnerabilities

04 / EVIDENCE

Source records

Open Source Vulnerabilities USN-5621-1

It was discovered that the framebuffer driver on the Linux kernel did not verify size limits when changing font or screen size, leading to an out-of- bounds write. A local attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2021-33655) Domingo Dirutigliano and Nicola Guerrera discovered that the netfilter subsystem in the Linux kernel did not properly handle rules that truncated packets below the packet header size. When such rules are in place, a remote attacker could possibly use this to cause a denial of service (system crash). (CVE-2022-36946)

View original source

05 / REFERENCES

Further evidence