NACK [OEM-6.5] Re: [SRU Jammy, OEM-6.5, Mantic 0/1] CVE-2023-51780
Timo Aaltonen
tjaalton at ubuntu.com
Fri Feb 2 06:59:44 UTC 2024
Cengiz Can kirjoitti 1.2.2024 klo 18.17:
> [Impact]
> An issue was discovered in the Linux kernel before 6.6.8. do_vcc_ioctl in
> net/atm/ioctl.c has a use-after-free because of a vcc_recvmsg race condition.
>
> [Fix]
> Cherry picked from upstream.
>
> [Test case]
> Compile tested only.
>
> [Where things could go wrong]
> Users of the ATM driver might be affected.
>
> Hyunwoo Kim (1):
> atm: Fix Use-After-Free in do_vcc_ioctl
>
> net/atm/ioctl.c | 7 +++++--
> 1 file changed, 5 insertions(+), 2 deletions(-)
>
oem-6.5 gets this via mantic
--
t
More information about the kernel-team
mailing list