summaryrefslogtreecommitdiffstats
path: root/retired/CVE-2017-6345
blob: 6a2e9d354e6474ef6ffad78c663c974da954b088 (plain) (blame)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
Description: net/llc: avoid BUG_ON() in skb_orphan()
References:
Notes:
 bwh> The upstream commit refers to an added assertion in 3.12, but the
 bwh> purpose of that assertion was to catch potential UAF cases so I
 bwh> assume this bug could result in a UAF in 3.2.  Note that this bug
 bwh> is in the obscure llc2 module, not the basic llc support used by
 bwh> some other protocols.
Bugs:
upstream: released (4.10) [8b74d439e1697110c5e5c600643e823eb1dd0762]
4.9-upstream-stable: released (4.9.13) [42b52783a59cc706c71cdc7096edce4a6f086fd3]
3.16-upstream-stable: released (3.16.42) [net-llc-avoid-bug_on-in-skb_orphan.patch]
3.2-upstream-stable: released (3.2.87) [net-llc-avoid-bug_on-in-skb_orphan.patch]
sid: released (4.9.13-1)
3.16-jessie-security: released (3.16.39-1+deb8u2) [bugfix/all/net-llc-avoid-BUG_ON-in-skb_orphan.patch]
3.2-wheezy-security: released (3.2.86-1) [bugfix/all/net-llc-avoid-bug_on-in-skb_orphan.patch]

© 2014-2024 Faster IT GmbH | imprint | privacy policy