=========================================================================Ubuntu Security Notice USN-5614-1
September 15, 2022

wayland vulnerability
=========================================================================
A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 22.04 LTS
- Ubuntu 20.04 LTS
- Ubuntu 18.04 LTS

Summary:

Wayland could be made to crash or run programs.

Software Description:
- wayland: Wayland compositor infrastructure

Details:

It was discovered that Wayland incorrectly handled reference counting
certain objects. An attacker could use this issue to cause Wayland to
crash, resulting in a denial of service, or possibly execute arbitrary
code.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 22.04 LTS:
  libwayland-bin                  1.20.0-1ubuntu0.1
  libwayland-client0              1.20.0-1ubuntu0.1
  libwayland-egl1                 1.20.0-1ubuntu0.1
  libwayland-server0              1.20.0-1ubuntu0.1

Ubuntu 20.04 LTS:
  libwayland-bin                  1.18.0-1ubuntu0.1
  libwayland-client0              1.18.0-1ubuntu0.1
  libwayland-egl1                 1.18.0-1ubuntu0.1
  libwayland-server0              1.18.0-1ubuntu0.1

Ubuntu 18.04 LTS:
  libwayland-bin                  1.16.0-1ubuntu1.1~18.04.4
  libwayland-client0              1.16.0-1ubuntu1.1~18.04.4
  libwayland-egl1                 1.16.0-1ubuntu1.1~18.04.4
  libwayland-server0              1.16.0-1ubuntu1.1~18.04.4

After a standard system update you need to reboot your computer to make all
the necessary changes.

References:
  https://ubuntu.com/security/notices/USN-5614-1
  CVE-2021-3782

Package Information:
  https://launchpad.net/ubuntu/+source/wayland/1.20.0-1ubuntu0.1
  https://launchpad.net/ubuntu/+source/wayland/1.18.0-1ubuntu0.1
  https://launchpad.net/ubuntu/+source/wayland/1.16.0-1ubuntu1.1~18.04.4

Ubuntu 5614-1: Wayland vulnerability

September 15, 2022
Wayland could be made to crash or run programs.

Summary

Update Instructions

The problem can be corrected by updating your system to the following package versions: Ubuntu 22.04 LTS: libwayland-bin 1.20.0-1ubuntu0.1 libwayland-client0 1.20.0-1ubuntu0.1 libwayland-egl1 1.20.0-1ubuntu0.1 libwayland-server0 1.20.0-1ubuntu0.1 Ubuntu 20.04 LTS: libwayland-bin 1.18.0-1ubuntu0.1 libwayland-client0 1.18.0-1ubuntu0.1 libwayland-egl1 1.18.0-1ubuntu0.1 libwayland-server0 1.18.0-1ubuntu0.1 Ubuntu 18.04 LTS: libwayland-bin 1.16.0-1ubuntu1.1~18.04.4 libwayland-client0 1.16.0-1ubuntu1.1~18.04.4 libwayland-egl1 1.16.0-1ubuntu1.1~18.04.4 libwayland-server0 1.16.0-1ubuntu1.1~18.04.4 After a standard system update you need to reboot your computer to make all the necessary changes.

References

https://ubuntu.com/security/notices/USN-5614-1

CVE-2021-3782

Severity
September 15, 2022

Package Information

https://launchpad.net/ubuntu/+source/wayland/1.20.0-1ubuntu0.1 https://launchpad.net/ubuntu/+source/wayland/1.18.0-1ubuntu0.1 https://launchpad.net/ubuntu/+source/wayland/1.16.0-1ubuntu1.1~18.04.4

Related News