In the Linux kernel, the following vulnerability has been resolved: apparmor: Fix & Optimize table creation from possibly unaligned memory Source blob may come from userspace and might be unaligned. Try to optize the copying process by avoiding unaligned memory accesses. - Added Fixes tag - Added "Fix &" to description as this doesn't just optimize but fixes a potential unaligned memory access [jj: remove duplicate word "convert" in comment trigger checkpatch warning]
Update Linux/Linux to 47e351dfef60ab0e3285133556e1a9c7f646a969 if you use the affected versions. Test the change in a non-production environment first.
Local check
hol-guard supply-chain scanapparmor: Fix & Optimize table creation from possibly unaligned memory affects Linux/Linux (generic), Linux/Linux (generic). Severity is high. In the Linux kernel, the following vulnerability has been resolved: apparmor: Fix & Optimize table creation from possibly unaligned memory Source blob may come from userspace and might be unaligned. Try to optize the copying process by avoiding unaligned memory accesses. - Added Fixes tag - Added "Fix &" to description as this doesn't just optimize but fixes a potential unaligned memory access [jj: remove duplicate word "convert" in comment trigger checkpatch warning]
AI coding agents often install or upgrade packages automatically in generic. A high vulnerability in a dependency can be pulled into a project through a normal install or update without a human reviewing the change, expanding the blast radius from a single package to every agent workspace that depends on it.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric |
In the Linux kernel, the following vulnerability has been resolved: apparmor: Fix & Optimize table creation from possibly unaligned memory Source blob may come from userspace and might be unaligned. Try to optize the copying process by avoiding unaligned memory accesses. - Added Fixes tag - Added "Fix &" to description as this doesn't just optimize but fixes a potential unaligned memory access [jj: remove duplicate word "convert" in comment trigger checkpatch warning]
Update Linux/Linux to 47e351dfef60ab0e3285133556e1a9c7f646a969 if you use the affected versions. Test the change in a non-production environment first.
Local check
hol-guard supply-chain scanapparmor: Fix & Optimize table creation from possibly unaligned memory affects Linux/Linux (generic), Linux/Linux (generic). Severity is high. In the Linux kernel, the following vulnerability has been resolved: apparmor: Fix & Optimize table creation from possibly unaligned memory Source blob may come from userspace and might be unaligned. Try to optize the copying process by avoiding unaligned memory accesses. - Added Fixes tag - Added "Fix &" to description as this doesn't just optimize but fixes a potential unaligned memory access [jj: remove duplicate word "convert" in comment trigger checkpatch warning]
AI coding agents often install or upgrade packages automatically in generic. A high vulnerability in a dependency can be pulled into a project through a normal install or update without a human reviewing the change, expanding the blast radius from a single package to every agent workspace that depends on it.
| Package | Affected range | Fixed version |
|---|---|---|
| Linux/Linuxgeneric |
| >=e6e8bf418850d7958311a96ccfb594f2bcc8313e <47e351dfef60ab0e3285133556e1a9c7f646a969 || >=e6e8bf418850d7958311a96ccfb594f2bcc8313e <e027999049c493fb728ead5a90db76942181a935 || >=e6e8bf418850d7958311a96ccfb594f2bcc8313e <226c3b10aab23f73b03c47e7773107de56ba3a4e || >=e6e8bf418850d7958311a96ccfb594f2bcc8313e <6fc367bfd4c8886e6b1742aabbd1c0bdc310db3a |
| 47e351dfef60ab0e3285133556e1a9c7f646a969, e027999049c493fb728ead5a90db76942181a935, 226c3b10aab23f73b03c47e7773107de56ba3a4e, 6fc367bfd4c8886e6b1742aabbd1c0bdc310db3a |
| Linux/Linuxgeneric | 4.11 | Not reported |
|---|
Fixed versions are reported by the source feed; confirm compatibility before updating.
Reported by CVE List V5 (cvelist).
HOL Guard can help your team review package activity against supported protection paths.
Explore HOL Guard| >=e6e8bf418850d7958311a96ccfb594f2bcc8313e <47e351dfef60ab0e3285133556e1a9c7f646a969 || >=e6e8bf418850d7958311a96ccfb594f2bcc8313e <e027999049c493fb728ead5a90db76942181a935 || >=e6e8bf418850d7958311a96ccfb594f2bcc8313e <226c3b10aab23f73b03c47e7773107de56ba3a4e || >=e6e8bf418850d7958311a96ccfb594f2bcc8313e <6fc367bfd4c8886e6b1742aabbd1c0bdc310db3a |
| 47e351dfef60ab0e3285133556e1a9c7f646a969, e027999049c493fb728ead5a90db76942181a935, 226c3b10aab23f73b03c47e7773107de56ba3a4e, 6fc367bfd4c8886e6b1742aabbd1c0bdc310db3a |
| Linux/Linuxgeneric | 4.11 | Not reported |
|---|
Fixed versions are reported by the source feed; confirm compatibility before updating.
Reported by CVE List V5 (cvelist).
HOL Guard can help your team review package activity against supported protection paths.
Explore HOL Guard