NACK [OEM-6.5] Re: [SRU Jammy, OEM-6.5, Mantic 0/1] CVE-2023-51780

Timo Aaltonen tjaalton at ubuntu.com
Fri Feb 2 06:59:44 UTC 2024


Cengiz Can kirjoitti 1.2.2024 klo 18.17:
> [Impact]
> An issue was discovered in the Linux kernel before 6.6.8. do_vcc_ioctl in
> net/atm/ioctl.c has a use-after-free because of a vcc_recvmsg race condition.
> 
> [Fix]
> Cherry picked from upstream.
> 
> [Test case]
> Compile tested only.
> 
> [Where things could go wrong]
> Users of the ATM driver might be affected.
> 
> Hyunwoo Kim (1):
>    atm: Fix Use-After-Free in do_vcc_ioctl
> 
>   net/atm/ioctl.c | 7 +++++--
>   1 file changed, 5 insertions(+), 2 deletions(-)
> 

oem-6.5 gets this via mantic

-- 
t




More information about the kernel-team mailing list