Early Access — Mondoo Vulnerability Intelligence is currently in preview.
Demi Marie Obenour and Simon Gaiser discovered that several Xen para- virtualization device frontends did not properly restrict the access rights of device backends. An attacker could possibly use a malicious Xen backend to gain access to memory pages of a guest VM or cause a denial of service in the guest. (CVE-2022-23041)
Several security issues were discovered in the Linux kernel. An attacker could possibly use these to compromise the system. This update corrects flaws in the following subsystems:
4.15.0-1187.202~14.04.14.15.0-1179.192~16.04.14.15.0-1187.202~16.04.14.15.0-1172.189~16.04.14.15.0-236.248~16.04.14.15.0-1141.152~16.04.14.15.0-236.2484.15.0-1179.1924.15.0-1187.2024.15.0-1172.1894.15.0-1162.1674.15.0-1141.152