diff options
author | Salvatore Bonaccorso <carnil@debian.org> | 2021-06-07 22:44:23 +0200 |
---|---|---|
committer | Salvatore Bonaccorso <carnil@debian.org> | 2021-06-07 22:44:23 +0200 |
commit | f02934ebe558d3c197c70ae79e83afecb27373b5 (patch) | |
tree | 30bf930185533151c00597102b87639b5723334e /retired/CVE-2021-3490 | |
parent | 30576def76dc7c0306b5af9a204a79132f63255a (diff) |
Retire some CVEs
Diffstat (limited to 'retired/CVE-2021-3490')
-rw-r--r-- | retired/CVE-2021-3490 | 17 |
1 files changed, 17 insertions, 0 deletions
diff --git a/retired/CVE-2021-3490 b/retired/CVE-2021-3490 new file mode 100644 index 00000000..6db4034d --- /dev/null +++ b/retired/CVE-2021-3490 @@ -0,0 +1,17 @@ +Description: eBPF bitwise ops ALU32 bounds tracking +References: + https://www.openwall.com/lists/oss-security/2021/05/11/11 + https://git.kernel.org/pub/scm/linux/kernel/git/bpf/bpf.git/commit/?id=049c4e13714ecbca567b4d5f6d563f05d431c80e +Notes: + carnil> Introduced by 3f50f132d840 ("bpf: Verifier, do explicit ALU32 + carnil> bounds tracking") in 5.7-rc1 respectively the XOR version + carnil> introduced in 2921c90d4718 ("bpf: Fix a verifier failure with + carnil> xor") in 5.10-rc1. +Bugs: +upstream: released (5.13-rc4) [049c4e13714ecbca567b4d5f6d563f05d431c80e] +5.10-upstream-stable: released (5.10.37) [282bfc8848eaa195d5e994bb700f2c7afb7eb3e6] +4.19-upstream-stable: N/A "Vulnerable code introduced later" +4.9-upstream-stable: N/A "Vulnerable code introduced later" +sid: released (5.10.38-1) +4.19-buster-security: N/A "Vulnerable code introduced later" +4.9-stretch-security: N/A "Vulnerable code introduced later" |