USN-3583-1: Linux kernel vulnerabilities
23 February 2018
Several security issues were fixed in the Linux kernel.
Releases
Packages
- linux - Linux kernel
Details
It was discovered that an out-of-bounds write vulnerability existed in the
Flash-Friendly File System (f2fs) in the Linux kernel. An attacker could
construct a malicious file system that, when mounted, could cause a denial
of service (system crash) or possibly execute arbitrary code.
(CVE-2017-0750)
It was discovered that a race condition leading to a use-after-free
vulnerability existed in the ALSA PCM subsystem of the Linux kernel. A
local attacker could use this to cause a denial of service (system crash)
or possibly execute arbitrary code. (CVE-2017-0861)
It was discovered that the KVM implementation in the Linux kernel allowed
passthrough of the diagnostic I/O port 0x80. An attacker in a guest VM
could use this to cause a denial of service (system crash) in the host OS.
(CVE-2017-1000407)
Bo Zhang discovered that the netlink wireless configuration interface in
the Linux kernel did not properly validate attributes when handling certain
requests. A local attacker with the CAP_NET_ADMIN could use this to cause a
denial of service (system crash). (CVE-2017-12153)
Vitaly Mayatskikh discovered that the SCSI subsystem in the Linux kernel
did not properly track reference counts when merging buffers. A local
attacker could use this to cause a denial of service (memory exhaustion).
(CVE-2017-12190)
It was discovered that the key management subsystem in the Linux kernel did
not properly restrict key reads on negatively instantiated keys. A local
attacker could use this to cause a denial of service (system crash).
(CVE-2017-12192)
It was discovered that an integer overflow existed in the sysfs interface
for the QLogic 24xx+ series SCSI driver in the Linux kernel. A local
privileged attacker could use this to cause a denial of service (system
crash). (CVE-2017-14051)
Otto Ebeling discovered that the memory manager in the Linux kernel did not
properly check the effective UID in some situations. A local attacker could
use this to expose sensitive information. (CVE-2017-14140)
It was discovered that the ATI Radeon framebuffer driver in the Linux
kernel did not properly initialize a data structure returned to user space.
A local attacker could use this to expose sensitive information (kernel
memory). (CVE-2017-14156)
ChunYu Wang discovered that the iSCSI transport implementation in the Linux
kernel did not properly validate data structures. A local attacker could
use this to cause a denial of service (system crash). (CVE-2017-14489)
James Patrick-Evans discovered a race condition in the LEGO USB Infrared
Tower driver in the Linux kernel. A physically proximate attacker could use
this to cause a denial of service (system crash) or possibly execute
arbitrary code. (CVE-2017-15102)
ChunYu Wang discovered that a use-after-free vulnerability existed in the
SCTP protocol implementation in the Linux kernel. A local attacker could
use this to cause a denial of service (system crash) or possibly execute
arbitrary code, (CVE-2017-15115)
It was discovered that the key management subsystem in the Linux kernel did
not properly handle NULL payloads with non-zero length values. A local
attacker could use this to cause a denial of service (system crash).
(CVE-2017-15274)
It was discovered that the Bluebooth Network Encapsulation Protocol (BNEP)
implementation in the Linux kernel did not validate the type of socket
passed in the BNEPCONNADD ioctl(). A local attacker with the CAP_NET_ADMIN
privilege could use this to cause a denial of service (system crash) or
possibly execute arbitrary code. (CVE-2017-15868)
Andrey Konovalov discovered a use-after-free vulnerability in the USB
serial console driver in the Linux kernel. A physically proximate attacker
could use this to cause a denial of service (system crash) or possibly
execute arbitrary code. (CVE-2017-16525)
It was discovered that the netfilter passive OS fingerprinting (xt_osf)
module did not properly perform access control checks. A local attacker
could improperly modify the system-wide OS fingerprint list.
(CVE-2017-17450)
It was discovered that the HMAC implementation did not validate the state
of the underlying cryptographic hash algorithm. A local attacker could use
this to cause a denial of service (system crash) or possibly execute
arbitrary code. (CVE-2017-17806)
Denys Fedoryshchenko discovered a use-after-free vulnerability in the
netfilter xt_TCPMSS filter of the Linux kernel. A remote attacker could use
this to cause a denial of service (system crash). (CVE-2017-18017)
Gareth Evans discovered that the shm IPC subsystem in the Linux kernel did
not properly restrict mapping page zero. A local privileged attacker could
use this to execute arbitrary code. (CVE-2017-5669)
It was discovered that an integer overflow vulnerability existing in the
IPv6 implementation in the Linux kernel. A local attacker could use this to
cause a denial of service (infinite loop). (CVE-2017-7542)
Tommi Rantala and Brad Spengler discovered that the memory manager in the
Linux kernel did not properly enforce the CONFIG_STRICT_DEVMEM protection
mechanism. A local attacker with access to /dev/mem could use this to
expose sensitive information or possibly execute arbitrary code.
(CVE-2017-7889)
Mohamed Ghannam discovered a use-after-free vulnerability in the DCCP
protocol implementation in the Linux kernel. A local attacker could use
this to cause a denial of service (system crash) or possibly execute
arbitrary code. (CVE-2017-8824)
Mohamed Ghannam discovered a null pointer dereference in the RDS (Reliable
Datagram Sockets) protocol implementation of the Linux kernel. A local
attacker could use this to cause a denial of service (system crash).
(CVE-2018-5333)
范龙飞 discovered that a race condition existed in loop block device
implementation in the Linux kernel. A local attacker could use this to
cause a denial of service (system crash) or possibly execute arbitrary
code. (CVE-2018-5344)
USN-3524-1 mitigated CVE-2017-5754 (Meltdown) for the amd64
architecture in Ubuntu 14.04 LTS. This update provides the
corresponding mitigations for the ppc64el architecture. Original
advisory details:
Jann Horn discovered that microprocessors utilizing speculative execution
and indirect branch prediction may allow unauthorized memory reads via
sidechannel attacks. This flaw is known as Meltdown. A local attacker could
use this to expose sensitive information, including kernel memory.
(CVE-2017-5754)
Update instructions
The problem can be corrected by updating your system to the following package versions:
Ubuntu 14.04
-
linux-image-3.13.0-142-generic
-
3.13.0-142.191
-
linux-image-3.13.0-142-generic-lpae
-
3.13.0-142.191
-
linux-image-3.13.0-142-lowlatency
-
3.13.0-142.191
-
linux-image-3.13.0-142-powerpc-e500
-
3.13.0-142.191
-
linux-image-3.13.0-142-powerpc-e500mc
-
3.13.0-142.191
-
linux-image-3.13.0-142-powerpc-smp
-
3.13.0-142.191
-
linux-image-3.13.0-142-powerpc64-emb
-
3.13.0-142.191
-
linux-image-3.13.0-142-powerpc64-smp
-
3.13.0-142.191
After a standard system update you need to reboot your computer to make
all the necessary changes.
ATTENTION: Due to an unavoidable ABI change the kernel updates have
been given a new version number, which requires you to recompile and
reinstall all third party kernel modules you might have installed.
Unless you manually uninstalled the standard kernel metapackages
(e.g. linux-generic, linux-generic-lts-RELEASE, linux-virtual,
linux-powerpc), a standard system upgrade will automatically perform
this as well.
References
- CVE-2017-0750
- CVE-2017-0861
- CVE-2017-1000407
- CVE-2017-12153
- CVE-2017-12190
- CVE-2017-12192
- CVE-2017-14051
- CVE-2017-14140
- CVE-2017-14156
- CVE-2017-14489
- CVE-2017-15102
- CVE-2017-15115
- CVE-2017-15274
- CVE-2017-15868
- CVE-2017-16525
- CVE-2017-17450
- CVE-2017-17806
- CVE-2017-18017
- CVE-2017-5669
- CVE-2017-5754
- CVE-2017-7542
- CVE-2017-7889
- CVE-2017-8824
- CVE-2018-5333
- CVE-2018-5344
Related notices
- USN-3583-2: linux-image-generic-lpae-lts-trusty, linux-image-3.13.0-142-generic, linux-lts-trusty, linux-image-3.13.0-142-generic-lpae, linux-image-generic-lts-trusty
- USN-3619-2: linux-image-extra-4.4.0-119-generic, linux-image-4.4.0-1016-aws, linux-image-4.4.0-119-powerpc-smp, linux-image-4.4.0-119-generic-lpae, linux-image-4.4.0-119-powerpc64-emb, linux-image-4.4.0-119-powerpc-e500mc, linux-image-4.4.0-119-powerpc64-smp, linux-aws, linux-lts-xenial, linux-image-4.4.0-119-generic, linux-image-4.4.0-119-lowlatency
- USN-3617-1: linux-image-4.13.0-38-generic-lpae, linux-image-4.13.0-38-generic, linux, linux-image-lowlatency, linux-image-generic, linux-image-generic-lpae, linux-image-4.13.0-38-lowlatency
- USN-3619-1: linux-image-extra-4.4.0-119-generic, linux-image-4.4.0-119-powerpc-smp, linux-image-4.4.0-119-generic-lpae, linux-image-4.4.0-119-powerpc64-emb, linux, linux-image-4.4.0-119-powerpc-e500mc, linux-kvm, linux-snapdragon, linux-image-4.4.0-119-powerpc64-smp, linux-aws, linux-image-4.4.0-1020-kvm, linux-image-4.4.0-1088-snapdragon, linux-image-4.4.0-119-generic, linux-image-4.4.0-119-lowlatency, linux-raspi2, linux-image-4.4.0-1054-aws, linux-image-4.4.0-1086-raspi2
- USN-3617-3: linux-image-4.13.0-1016-raspi2, linux-image-raspi2, linux-raspi2
- USN-3617-2: linux-image-4.13.0-1012-gcp, linux-image-4.13.0-38-generic-lpae, linux-image-4.13.0-38-generic, linux-hwe, linux-gcp, linux-image-extra-4.13.0-38-generic, linux-oem, linux-image-extra-4.13.0-1012-gcp, linux-image-4.13.0-38-lowlatency, linux-image-4.13.0-1022-oem
- USN-3632-1: linux-image-4.13.0-1014-azure, linux-azure, linux-image-extra-4.13.0-1014-azure
- USN-3487-1: linux-image-4.13.0-17-generic, linux, linux-image-4.13.0-1006-raspi2, linux-image-4.13.0-17-generic-lpae, linux-image-lowlatency, linux-image-generic, linux-image-generic-lpae, linux-image-4.13.0-17-lowlatency, linux-image-raspi2, linux-raspi2
- USN-3469-1: linux-image-4.4.0-98-generic, linux, linux-image-extra-4.4.0-1033-gke, linux-image-4.4.0-1078-snapdragon, linux-image-4.4.0-1076-raspi2, linux-image-4.4.0-98-generic-lpae, linux-raspi2, linux-image-4.4.0-98-powerpc-e500mc, linux-snapdragon, linux-image-4.4.0-1009-kvm, linux-image-4.4.0-98-powerpc64-emb, linux-gke, linux-image-extra-4.4.0-98-generic, linux-image-4.4.0-1039-aws, linux-image-4.4.0-1033-gke, linux-kvm, linux-image-4.4.0-98-powerpc-smp, linux-aws, linux-image-4.4.0-98-lowlatency, linux-image-4.4.0-98-powerpc64-smp
- USN-3469-2: linux-image-4.4.0-98-powerpc-e500mc, linux-image-4.4.0-98-generic, linux-image-4.4.0-98-powerpc64-emb, linux-image-4.4.0-98-powerpc-smp, linux-image-4.4.0-98-lowlatency, linux-lts-xenial, linux-image-4.4.0-98-generic-lpae, linux-image-4.4.0-98-powerpc64-smp, linux-image-extra-4.4.0-98-generic
- USN-3582-2: linux-image-4.4.0-116-powerpc-e500mc, linux-image-4.4.0-116-powerpc-smp, linux-image-4.4.0-116-generic, linux-image-4.4.0-116-powerpc64-emb, linux-image-4.4.0-116-powerpc64-smp, linux-image-4.4.0-1014-aws, linux-aws, linux-lts-xenial, linux-image-4.4.0-116-lowlatency, linux-image-4.4.0-116-generic-lpae, linux-image-extra-4.4.0-116-generic
- USN-3582-1: linux-image-4.4.0-116-powerpc-e500mc, linux-image-4.4.0-116-powerpc-smp, linux-image-4.4.0-116-generic, linux-image-4.4.0-116-powerpc64-emb, linux-image-4.4.0-1087-snapdragon, linux-image-4.4.0-116-powerpc64-smp, linux, linux-image-4.4.0-1052-aws, linux-kvm, linux-snapdragon, linux-aws, linux-image-4.4.0-1085-raspi2, linux-image-4.4.0-116-lowlatency, linux-image-4.4.0-116-generic-lpae, linux-image-extra-4.4.0-116-generic, linux-raspi2, linux-image-4.4.0-1019-kvm
- USN-3444-2: linux-image-4.4.0-97-powerpc64-emb, linux-image-4.4.0-97-lowlatency, linux-image-extra-4.4.0-97-generic, linux-image-4.4.0-97-generic, linux-lts-xenial, linux-image-4.4.0-97-powerpc64-smp, linux-image-4.4.0-97-powerpc-e500mc, linux-image-4.4.0-97-powerpc-smp, linux-image-4.4.0-97-generic-lpae
- USN-3444-1: linux-image-4.4.0-1008-kvm, linux-image-4.4.0-97-powerpc64-emb, linux, linux-image-4.4.0-97-generic-lpae, linux-raspi2, linux-image-4.4.0-1038-aws, linux-image-4.4.0-97-generic, linux-snapdragon, linux-gke, linux-image-4.4.0-97-powerpc-e500mc, linux-image-4.4.0-1075-raspi2, linux-image-extra-4.4.0-1032-gke, linux-image-4.4.0-97-powerpc-smp, linux-image-4.4.0-1077-snapdragon, linux-image-4.4.0-97-lowlatency, linux-image-extra-4.4.0-97-generic, linux-kvm, linux-image-4.4.0-1032-gke, linux-aws, linux-image-4.4.0-97-powerpc64-smp
- USN-3581-1: linux-image-4.13.0-36-generic, linux, linux-image-4.13.0-36-lowlatency, linux-image-4.13.0-36-generic-lpae, linux-image-lowlatency, linux-image-generic, linux-image-generic-lpae
- USN-3581-3: linux-image-4.13.0-1014-raspi2, linux-image-raspi2, linux-raspi2
- USN-3581-2: linux-image-4.13.0-36-generic, linux-image-4.13.0-1011-azure, linux-image-4.13.0-36-lowlatency, linux-hwe, linux-gcp, linux-azure, linux-image-4.13.0-1021-oem, linux-image-4.13.0-36-generic-lpae, linux-image-extra-4.13.0-36-generic, linux-oem, linux-image-4.13.0-1011-gcp, linux-image-extra-4.13.0-1011-gcp, linux-image-extra-4.13.0-1011-azure
- USN-3485-1: linux-image-4.4.0-101-powerpc-e500mc, linux-image-4.4.0-101-powerpc-smp, linux-image-4.4.0-1034-gke, linux, linux-image-extra-4.4.0-101-generic, linux-image-4.4.0-101-lowlatency, linux-image-4.4.0-101-powerpc64-emb, linux-raspi2, linux-image-4.4.0-1041-aws, linux-image-4.4.0-101-powerpc64-smp, linux-snapdragon, linux-gke, linux-image-4.4.0-1079-snapdragon, linux-image-4.4.0-1010-kvm, linux-image-4.4.0-101-generic-lpae, linux-image-4.4.0-1077-raspi2, linux-kvm, linux-aws, linux-image-extra-4.4.0-1034-gke, linux-image-4.4.0-101-generic
- USN-3485-3: linux-aws, linux-image-4.4.0-1003-aws
- USN-3485-2: linux-image-4.4.0-101-generic-lpae, linux-image-4.4.0-101-powerpc-smp, linux-image-4.4.0-101-powerpc-e500mc, linux-image-4.4.0-101-powerpc64-smp, linux-image-extra-4.4.0-101-generic, linux-image-4.4.0-101-lowlatency, linux-lts-xenial, linux-image-4.4.0-101-powerpc64-emb, linux-image-4.4.0-101-generic
- USN-3361-1: linux-image-4.10.0-27-lowlatency, linux-image-4.10.0-27-generic-lpae, linux-hwe, linux-image-4.10.0-27-generic, linux-image-extra-4.10.0-27-generic
- USN-3265-1: linux-image-4.4.0-75-generic, linux-image-4.4.0-1016-aws, linux-image-4.4.0-75-powerpc64-emb, linux-image-4.4.0-1057-snapdragon, linux-image-4.4.0-75-powerpc-e500mc, linux, linux-image-4.4.0-75-lowlatency, linux-image-4.4.0-1054-raspi2, linux-image-4.4.0-75-generic-lpae, linux-image-4.4.0-75-powerpc64-smp, linux-gke, linux-image-extra-4.4.0-1012-gke, linux-aws, linux-image-extra-4.4.0-75-generic, linux-snapdragon, linux-image-4.4.0-1012-gke, linux-raspi2, linux-image-4.4.0-75-powerpc-smp
- USN-3265-2: linux-image-4.4.0-75-generic, linux-image-4.4.0-75-powerpc64-emb, linux-image-4.4.0-75-powerpc-e500mc, linux-image-4.4.0-75-lowlatency, linux-image-extra-4.4.0-75-generic, linux-image-4.4.0-75-generic-lpae, linux-image-4.4.0-75-powerpc64-smp, linux-lts-xenial, linux-image-4.4.0-75-powerpc-smp
- USN-3541-2: linux-hwe, linux-gcp, linux-azure, linux-image-4.13.0-1007-gcp, linux-image-4.13.0-31-generic, linux-image-4.13.0-31-lowlatency, linux-image-extra-4.13.0-31-generic, linux-image-extra-4.13.0-1006-azure, linux-image-4.13.0-1017-oem, linux-oem, linux-image-extra-4.13.0-1007-gcp, linux-image-4.13.0-31-generic-lpae, linux-image-4.13.0-1006-azure
- USN-3523-2: linux-image-extra-4.13.0-26-generic, linux-image-4.13.0-1006-gcp, linux-hwe, linux-gcp, linux-azure, linux-image-4.13.0-1005-azure, linux-image-4.13.0-26-generic-lpae, linux-image-extra-4.13.0-1005-azure, linux-image-extra-4.13.0-1006-gcp, linux-oem, linux-image-4.13.0-26-lowlatency, linux-image-4.13.0-26-generic, linux-image-4.13.0-1015-oem
- USN-3540-1: linux-image-4.4.0-112-lowlatency, linux-image-4.4.0-112-generic, linux-image-4.4.0-1049-aws, linux-image-4.4.0-112-powerpc-smp, linux-image-4.4.0-112-powerpc-e500mc, linux-image-extra-4.4.0-9023-euclid, linux-image-extra-4.4.0-112-generic, linux, linux-image-4.4.0-9023-euclid, linux-aws, linux-image-4.4.0-112-powerpc64-emb, linux-image-4.4.0-112-generic-lpae, linux-image-4.4.0-112-powerpc64-smp, linux-euclid
- USN-3540-2: linux-image-4.4.0-111-lowlatency, linux-image-4.4.0-111-powerpc64-smp, linux-image-4.4.0-111-powerpc-e500mc, linux-image-4.4.0-111-generic-lpae, linux-aws, linux-image-4.4.0-111-generic, linux-image-4.4.0-1011-aws, linux-image-extra-4.4.0-111-generic, linux-lts-xenial, linux-image-4.4.0-111-powerpc-smp, linux-image-4.4.0-111-powerpc64-emb
- USN-3522-1: linux-image-4.4.0-1047-aws, linux-image-4.4.0-108-generic-lpae, linux, linux-image-4.4.0-108-powerpc-e500mc, linux-kvm, linux-image-4.4.0-108-generic, linux-aws, linux-image-4.4.0-108-lowlatency, linux-image-4.4.0-9021-euclid, linux-image-extra-4.4.0-108-generic, linux-image-extra-4.4.0-9021-euclid, linux-image-4.4.0-108-powerpc64-smp, linux-image-4.4.0-108-powerpc64-emb, linux-image-4.4.0-108-powerpc-smp, linux-euclid, linux-image-4.4.0-1015-kvm
- USN-3522-2: linux-image-4.4.0-108-generic-lpae, linux-image-4.4.0-108-powerpc-e500mc, linux-image-4.4.0-108-powerpc-smp, linux-image-4.4.0-108-generic, linux-aws, linux-image-4.4.0-108-lowlatency, linux-lts-xenial, linux-image-extra-4.4.0-108-generic, linux-image-4.4.0-108-powerpc64-smp, linux-image-4.4.0-108-powerpc64-emb, linux-image-4.4.0-1009-aws
- USN-3524-2: linux-image-3.13.0-139-generic, linux-image-generic-lpae-lts-trusty, linux-image-3.13.0-139-generic-lpae, linux-lts-trusty, linux-image-generic-lts-trusty
- USN-3524-1: linux-image-3.13.0-139-generic, linux-image-3.13.0-139-generic-lpae, linux-image-extra-3.13.0-139-generic, linux, linux-image-3.13.0-139-powerpc64-emb, linux-image-3.13.0-139-powerpc-smp, linux-image-3.13.0-139-powerpc-e500mc, linux-image-3.13.0-139-lowlatency, linux-image-3.13.0-139-powerpc-e500, linux-image-3.13.0-139-powerpc64-smp
- USN-3597-2: linux-image-extra-4.13.0-37-generic, linux-hwe, linux-image-4.13.0-37-generic-lpae, linux-image-4.13.0-37-generic, linux-image-4.13.0-37-lowlatency
- USN-3516-1: firefox-locale-uk, firefox-locale-da, firefox-locale-gl, firefox-locale-hsb, firefox-locale-ur, firefox-dev, firefox-locale-br, firefox-locale-fi, firefox-locale-sl, firefox-locale-ar, firefox-locale-mk, firefox-locale-ja, firefox-locale-te, firefox-locale-nb, firefox-locale-bg, firefox-locale-or, firefox-locale-zh-hans, firefox-locale-sw, firefox-locale-es, firefox-locale-gd, firefox-locale-mn, firefox-locale-pl, firefox-locale-si, firefox-locale-uz, firefox-locale-en, firefox-locale-af, firefox-locale-pa, firefox-locale-ru, firefox-locale-ast, firefox-locale-mai, firefox-locale-mr, firefox-locale-hr, firefox-locale-csb, firefox-locale-fr, firefox-locale-hu, firefox-locale-ca, firefox-locale-cs, firefox-locale-lv, firefox-locale-fa, firefox-locale-az, firefox-locale-be, firefox-locale-my, firefox-locale-bn, firefox-locale-et, firefox-locale-xh, firefox-locale-eu, firefox-locale-hi, firefox-locale-id, firefox-locale-lt, firefox-locale-sk, firefox-locale-eo, firefox-locale-nso, firefox-testsuite, firefox-locale-ms, firefox-locale-sq, firefox-locale-ro, firefox-locale-kk, firefox-locale-cy, firefox-locale-de, firefox-locale-nn, firefox-locale-th, firefox-locale-fy, firefox-locale-zu, firefox-mozsymbols, firefox-locale-ml, firefox-locale-nl, firefox-locale-pt, firefox-locale-el, firefox-locale-ku, firefox-locale-tr, firefox-locale-an, firefox-locale-cak, firefox-locale-ta, firefox-locale-sr, firefox-locale-oc, firefox-locale-lg, firefox-locale-kab, firefox-locale-vi, firefox-locale-ga, firefox-locale-as, firefox-locale-gn, firefox-locale-hy, firefox-locale-ko, firefox-locale-it, firefox-locale-kn, firefox-locale-he, firefox, firefox-globalmenu, firefox-locale-is, firefox-locale-ka, firefox-locale-km, firefox-locale-gu, firefox-locale-sv, firefox-locale-zh-hant, firefox-locale-bs
- USN-3541-1: linux, linux-image-4.13.0-31-generic, linux-image-4.13.0-31-lowlatency, linux-image-lowlatency, linux-image-generic
- USN-3597-1: linux, linux-image-lowlatency, linux-image-4.13.0-37-generic-lpae, linux-image-4.13.0-1015-raspi2, linux-image-generic, linux-image-4.13.0-37-generic, linux-image-generic-lpae, linux-image-raspi2, linux-raspi2, linux-image-4.13.0-37-lowlatency
- USN-3523-1: linux, linux-image-lowlatency, linux-image-generic, linux-image-4.13.0-25-generic, linux-image-4.13.0-25-lowlatency
- USN-3525-1: linux-image-3.2.0-132-generic-pae, linux, linux-image-generic, linux-image-3.2.0-132-generic, linux-image-generic-pae
- USN-3314-1: linux-image-4.10.0-1006-raspi2, linux, linux-image-4.10.0-22-lowlatency, linux-image-4.10.0-22-generic-lpae, linux-image-lowlatency, linux-image-generic, linux-image-generic-lpae, linux-image-4.10.0-22-generic, linux-raspi2, linux-image-raspi2
- USN-3312-2: linux-image-4.4.0-79-generic, linux-image-extra-4.4.0-79-generic, linux-image-4.4.0-79-generic-lpae, linux-image-4.4.0-79-powerpc-smp, linux-image-4.4.0-79-powerpc-e500mc, linux-lts-xenial, linux-image-4.4.0-79-powerpc64-smp, linux-image-4.4.0-79-lowlatency, linux-image-4.4.0-79-powerpc64-emb
- USN-3312-1: linux-image-4.4.0-1018-aws, linux-image-4.4.0-1057-raspi2, linux-image-4.4.0-79-generic, linux-image-extra-4.4.0-79-generic, linux-image-4.4.0-79-generic-lpae, linux, linux-image-4.4.0-79-powerpc-smp, linux-snapdragon, linux-image-4.4.0-1014-gke, linux-gke, linux-raspi2, linux-aws, linux-image-extra-4.4.0-1014-gke, linux-image-4.4.0-79-powerpc-e500mc, linux-image-4.4.0-79-powerpc64-smp, linux-image-4.4.0-1059-snapdragon, linux-image-4.4.0-79-lowlatency, linux-image-4.4.0-79-powerpc64-emb