summaryrefslogtreecommitdiffstats
path: root/retired/CVE-2022-0742
blob: 1455c1bc0bbf8134c3da8bfea36c87d322687759 (plain) (blame)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
Description: ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()
References:
 https://bugzilla.redhat.com/show_bug.cgi?id=2059294
 https://www.openwall.com/lists/oss-security/2022/03/15/3
Notes:
 carnil> As of 2022-03-14 the Red Hat bugzilla entry contains a "TODO
 carnil> add link to patch when public" marking but not yet references
 carnil> to upstream fixes, but claims to be introduced in commit
 carnil> f185de28d9ae ("mld: add new workqueues for process mld
 carnil> events"). The fix seems to be 2d3916f31891 ("ipv6: fix skb
 carnil> drops in igmp6_event_query() and igmp6_event_report()"), which
 carnil> is applied in 5.17-rc7.
 carnil> For 5.16.y the issue is fixed in 5.16.13.
Bugs:
upstream: released (5.17-rc7) [2d3916f3189172d5c69d33065c3c21119fe539fc]
5.10-upstream-stable: N/A "Vulnerable code not present"
4.19-upstream-stable: N/A "Vulnerable code not present"
4.9-upstream-stable: N/A "Vulnerable code not present"
sid: released (5.16.14-1)
5.10-bullseye-security: N/A "Vulnerable code not present"
4.19-buster-security: N/A "Vulnerable code not present"
4.9-stretch-security: N/A "Vulnerable code not present"

© 2014-2024 Faster IT GmbH | imprint | privacy policy