It was discovered that the LIO SCSI target implementation in the Linux kernel performed insufficient identifier checking in certain XCOPY requests. An attacker with access to at least one LUN in a multiple backstore environment could use this to expose sensitive information or modify data. (CVE-2020-28374)
Kiyin (尹亮) discovered that the perf subsystem in the Linux kernel did not properly deallocate memory in some situations. A privileged attacker could use this to cause a denial of service (kernel memory exhaustion). (CVE-2020-25704)
4.15.0-1093.99~16.04.14.15.0-1106.118~16.04.14.15.0-1092.105~16.04.14.15.0-1064.71~16.04.14.15.0-1093.994.15.0-1106.1184.15.0-1092.1054.15.0-1078.834.15.0-1084.864.15.0-1064.71