CVE-2019-10142

Published: 23 May 2019

A flaw was found in the Linux kernel's freescale hypervisor manager implementation, kernel versions 5.0.x up to, excluding 5.0.17. A parameter passed to an ioctl was incorrectly validated and used in size calculations for the page size calculation. An attacker can use this flaw to crash the system, corrupt memory, or create other adverse security affects.

From the Ubuntu security team

It was discovered that an integer overflow existed in the Freescale (PowerPC) hypervisor manager in the Linux kernel. A local attacker with write access to /dev/fsl-hv could use this to cause a denial of service (system crash) or possibly execute arbitrary code.

Priority

Negligible

CVSS 3 base score: 7.8

Status

Package Release Status
linux
Launchpad, Ubuntu, Debian
Upstream
Released (5.2~rc1)
Ubuntu 18.04 LTS (Bionic Beaver) Not vulnerable
(CONFIG_FSL_HV_MANAGER is not enabled)
Ubuntu 16.04 ESM (Xenial Xerus)
Released (4.4.0-157.185)
Ubuntu 14.04 ESM (Trusty Tahr) Ignored
(was needs-triage ESM criteria)
Patches:
Introduced by 6db7199407ca56f55bc0832fb124e1ad216ea57b
Fixed by 6a024330650e24556b8a18cc654ad00cfecf6c6c
linux-aws
Launchpad, Ubuntu, Debian
Upstream
Released (5.2~rc1)
Ubuntu 18.04 LTS (Bionic Beaver) Not vulnerable
(CONFIG_FSL_HV_MANAGER is not enabled)
Ubuntu 16.04 ESM (Xenial Xerus) Not vulnerable
(CONFIG_FSL_HV_MANAGER is not enabled)
Ubuntu 14.04 ESM (Trusty Tahr) Ignored
(was needed ESM criteria)
linux-aws-hwe
Launchpad, Ubuntu, Debian
Upstream
Released (5.2~rc1)
Ubuntu 18.04 LTS (Bionic Beaver) Does not exist

Ubuntu 16.04 ESM (Xenial Xerus) Not vulnerable
(CONFIG_FSL_HV_MANAGER is not enabled)
Ubuntu 14.04 ESM (Trusty Tahr) Does not exist

linux-azure
Launchpad, Ubuntu, Debian
Upstream
Released (5.2~rc1)
Ubuntu 18.04 LTS (Bionic Beaver) Not vulnerable
(CONFIG_FSL_HV_MANAGER is not enabled)
Ubuntu 16.04 ESM (Xenial Xerus) Not vulnerable
(CONFIG_FSL_HV_MANAGER is not enabled)
Ubuntu 14.04 ESM (Trusty Tahr) Ignored
(was needs-triage ESM criteria)
linux-azure-edge
Launchpad, Ubuntu, Debian
Upstream
Released (5.2~rc1)
Ubuntu 18.04 LTS (Bionic Beaver) Not vulnerable
(CONFIG_FSL_HV_MANAGER is not enabled)
Ubuntu 16.04 ESM (Xenial Xerus) Not vulnerable
(CONFIG_FSL_HV_MANAGER is not enabled)
Ubuntu 14.04 ESM (Trusty Tahr) Does not exist

linux-euclid
Launchpad, Ubuntu, Debian
Upstream
Released (5.2~rc1)
Ubuntu 18.04 LTS (Bionic Beaver) Does not exist

Ubuntu 16.04 ESM (Xenial Xerus) Ignored
(was needs-triage now end-of-life)
Ubuntu 14.04 ESM (Trusty Tahr) Does not exist

linux-flo
Launchpad, Ubuntu, Debian
Upstream
Released (5.2~rc1)
Ubuntu 18.04 LTS (Bionic Beaver) Does not exist

Ubuntu 16.04 ESM (Xenial Xerus) Ignored
(abandoned)
Ubuntu 14.04 ESM (Trusty Tahr) Does not exist

linux-gcp
Launchpad, Ubuntu, Debian
Upstream
Released (5.2~rc1)
Ubuntu 18.04 LTS (Bionic Beaver) Not vulnerable
(CONFIG_FSL_HV_MANAGER is not enabled)
Ubuntu 16.04 ESM (Xenial Xerus) Not vulnerable
(CONFIG_FSL_HV_MANAGER is not enabled)
Ubuntu 14.04 ESM (Trusty Tahr) Does not exist

linux-gcp-edge
Launchpad, Ubuntu, Debian
Upstream
Released (5.2~rc1)
Ubuntu 18.04 LTS (Bionic Beaver) Not vulnerable
(CONFIG_FSL_HV_MANAGER is not enabled)
Ubuntu 16.04 ESM (Xenial Xerus) Does not exist

Ubuntu 14.04 ESM (Trusty Tahr) Does not exist

linux-gke
Launchpad, Ubuntu, Debian
Upstream
Released (5.2~rc1)
Ubuntu 18.04 LTS (Bionic Beaver) Not vulnerable
(CONFIG_FSL_HV_MANAGER is not enabled)
Ubuntu 16.04 ESM (Xenial Xerus) Ignored
(end-of-life)
Ubuntu 14.04 ESM (Trusty Tahr) Does not exist

linux-goldfish
Launchpad, Ubuntu, Debian
Upstream
Released (5.2~rc1)
Ubuntu 18.04 LTS (Bionic Beaver) Does not exist

Ubuntu 16.04 ESM (Xenial Xerus) Ignored
(end-of-life)
Ubuntu 14.04 ESM (Trusty Tahr) Does not exist

linux-grouper
Launchpad, Ubuntu, Debian
Upstream
Released (5.2~rc1)
Ubuntu 18.04 LTS (Bionic Beaver) Does not exist

Ubuntu 16.04 ESM (Xenial Xerus) Does not exist

Ubuntu 14.04 ESM (Trusty Tahr) Does not exist

linux-hwe
Launchpad, Ubuntu, Debian
Upstream
Released (5.2~rc1)
Ubuntu 18.04 LTS (Bionic Beaver) Not vulnerable
(CONFIG_FSL_HV_MANAGER is not enabled)
Ubuntu 16.04 ESM (Xenial Xerus) Not vulnerable
(CONFIG_FSL_HV_MANAGER is not enabled)
Ubuntu 14.04 ESM (Trusty Tahr) Does not exist

linux-hwe-edge
Launchpad, Ubuntu, Debian
Upstream
Released (5.2~rc1)
Ubuntu 18.04 LTS (Bionic Beaver) Not vulnerable
(CONFIG_FSL_HV_MANAGER is not enabled)
Ubuntu 16.04 ESM (Xenial Xerus) Not vulnerable
(CONFIG_FSL_HV_MANAGER is not enabled)
Ubuntu 14.04 ESM (Trusty Tahr) Does not exist

linux-kvm
Launchpad, Ubuntu, Debian
Upstream
Released (5.2~rc1)
Ubuntu 18.04 LTS (Bionic Beaver) Not vulnerable
(CONFIG_FSL_HV_MANAGER is not enabled)
Ubuntu 16.04 ESM (Xenial Xerus) Not vulnerable
(CONFIG_FSL_HV_MANAGER is not enabled)
Ubuntu 14.04 ESM (Trusty Tahr) Does not exist

linux-lts-trusty
Launchpad, Ubuntu, Debian
Upstream
Released (5.2~rc1)
Ubuntu 18.04 LTS (Bionic Beaver) Does not exist

Ubuntu 16.04 ESM (Xenial Xerus) Does not exist

Ubuntu 14.04 ESM (Trusty Tahr) Does not exist

linux-lts-utopic
Launchpad, Ubuntu, Debian
Upstream
Released (5.2~rc1)
Ubuntu 18.04 LTS (Bionic Beaver) Does not exist

Ubuntu 16.04 ESM (Xenial Xerus) Does not exist

Ubuntu 14.04 ESM (Trusty Tahr) Does not exist

linux-lts-vivid
Launchpad, Ubuntu, Debian
Upstream
Released (5.2~rc1)
Ubuntu 18.04 LTS (Bionic Beaver) Does not exist

Ubuntu 16.04 ESM (Xenial Xerus) Does not exist

Ubuntu 14.04 ESM (Trusty Tahr) Does not exist

linux-lts-wily
Launchpad, Ubuntu, Debian
Upstream
Released (5.2~rc1)
Ubuntu 18.04 LTS (Bionic Beaver) Does not exist

Ubuntu 16.04 ESM (Xenial Xerus) Does not exist

Ubuntu 14.04 ESM (Trusty Tahr) Does not exist

linux-lts-xenial
Launchpad, Ubuntu, Debian
Upstream
Released (5.2~rc1)
Ubuntu 18.04 LTS (Bionic Beaver) Does not exist

Ubuntu 16.04 ESM (Xenial Xerus) Does not exist

Ubuntu 14.04 ESM (Trusty Tahr) Ignored
(was needs-triage ESM criteria)
linux-maguro
Launchpad, Ubuntu, Debian
Upstream
Released (5.2~rc1)
Ubuntu 18.04 LTS (Bionic Beaver) Does not exist

Ubuntu 16.04 ESM (Xenial Xerus) Does not exist

Ubuntu 14.04 ESM (Trusty Tahr) Does not exist

linux-mako
Launchpad, Ubuntu, Debian
Upstream
Released (5.2~rc1)
Ubuntu 18.04 LTS (Bionic Beaver) Does not exist

Ubuntu 16.04 ESM (Xenial Xerus) Ignored
(abandoned)
Ubuntu 14.04 ESM (Trusty Tahr) Does not exist

linux-manta
Launchpad, Ubuntu, Debian
Upstream
Released (5.2~rc1)
Ubuntu 18.04 LTS (Bionic Beaver) Does not exist

Ubuntu 16.04 ESM (Xenial Xerus) Does not exist

Ubuntu 14.04 ESM (Trusty Tahr) Does not exist

linux-oem
Launchpad, Ubuntu, Debian
Upstream
Released (5.2~rc1)
Ubuntu 18.04 LTS (Bionic Beaver) Not vulnerable
(CONFIG_FSL_HV_MANAGER is not enabled)
Ubuntu 16.04 ESM (Xenial Xerus) Ignored
(was needs-triage now end-of-life)
Ubuntu 14.04 ESM (Trusty Tahr) Does not exist

linux-oracle
Launchpad, Ubuntu, Debian
Upstream
Released (5.2~rc1)
Ubuntu 18.04 LTS (Bionic Beaver) Not vulnerable
(CONFIG_FSL_HV_MANAGER is not enabled)
Ubuntu 16.04 ESM (Xenial Xerus) Not vulnerable
(CONFIG_FSL_HV_MANAGER is not enabled)
Ubuntu 14.04 ESM (Trusty Tahr) Does not exist

linux-raspi2
Launchpad, Ubuntu, Debian
Upstream
Released (5.2~rc1)
Ubuntu 18.04 LTS (Bionic Beaver) Not vulnerable
(CONFIG_FSL_HV_MANAGER is not enabled)
Ubuntu 16.04 ESM (Xenial Xerus) Not vulnerable
(CONFIG_FSL_HV_MANAGER is not enabled)
Ubuntu 14.04 ESM (Trusty Tahr) Does not exist

linux-snapdragon
Launchpad, Ubuntu, Debian
Upstream
Released (5.2~rc1)
Ubuntu 18.04 LTS (Bionic Beaver) Not vulnerable
(CONFIG_FSL_HV_MANAGER is not enabled)
Ubuntu 16.04 ESM (Xenial Xerus) Not vulnerable
(CONFIG_FSL_HV_MANAGER is not enabled)
Ubuntu 14.04 ESM (Trusty Tahr) Does not exist

Notes

AuthorNote
sbeattie
depends on freescale (ppc) only
tyhicks
Only the powerpc-e500mc and powerpc64-emb flavours of the Xenial
powerpc kernel are affected. I'm downgrading the priority to negligible since
no officially supported architectures are affected.

References

Bugs