Yu Hao discovered that the UBI driver in the Linux kernel did not properly check for MTD with zero erasesize during device attachment. A local privileged attacker could use this to cause a denial of service (system crash). (CVE-2023-31085)
Manfred Rudigier discovered that the Intel(R) PCI-Express Gigabit (igb) Ethernet driver in the Linux kernel did not properly validate received frames that are larger than the set MTU size, leading to a buffer overflow vulnerability. An attacker could use this to cause a denial of service (system crash) or possibly execute arbitrary code. (CVE-2023-45871)
5.4.0-167.1845.4.0-1114.1245.4.0-1075.815.4.0-1061.665.4.0-1026.275.4.0-1103.1105.4.0-1113.1225.4.0-1098.1105.4.0-1034.385.4.0-1114.124~18.04.15.4.0-167.184~18.04.15.4.0-1061.66~18.04.15.4.0-1113.122~18.04.15.4.0-1098.110~18.04.2