summaryrefslogtreecommitdiffstats
path: root/retired/CVE-2022-2153
blob: 8d9b69ae3e9f14e9ec36c6e0bfb0b06a2174c28e (plain) (blame)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
Description: KVM: NULL pointer dereference in kvm_irq_delivery_to_apic_fast()
References:
 https://bugzilla.redhat.com/show_bug.cgi?id=2069736
 https://www.openwall.com/lists/oss-security/2022/06/22/1
Notes:
 carnil> Fixed as well in 5.16.19 for 5.16.y and 5.17.2 for 5.17.y. The
 carnil> last commit of the series was as well backported to 5.10.110,
 carnil> 4.19.238 and 4.9.311.
 carnil> According to the oss-security reference the main fix seems to
 carnil> be pin-pointed at 00b5f37189d2 ("KVM: x86: Avoid theoretical
 carnil> NULL pointer dereference in kvm_irq_delivery_to_apic_fast()")
 carnil> which would not yet be included in 5.10.y and older.
Bugs:
upstream: released (5.18-rc1) [7ec37d1cbe17d8189d9562178d8b29167fe1c31a, 00b5f37189d24ac3ed46cb7f11742094778c46ce, b1e34d325397a33d97d845e312d7cf2a8b646b44]
5.10-upstream-stable: released (5.10.110) [09c771c45c1243e295470225aaee726693fdc242], released (5.10.137) [4c85e207c1b58249ea521670df577324ad69442c, ac7de8c2ba1292856fdd4a4c0764669b9607cf0a]
4.19-upstream-stable: released (4.19.238) [2f4835b5188f3b73b2b048a761ae2553e845b027], released (4.19.256) [5cde0b9cc69fcbbf559674986c2d325ae4708036, b8127a0fd21d70ab42d8177f8bb97df74f503cc1]
4.9-upstream-stable: released (4.9.311) [95d51d058680766130098287f680474bc55f1679]
sid: released (5.17.3-1)
5.10-bullseye-security: released (5.10.113-1), released (5.10.140-1)
4.19-buster-security: released (4.19.249-1), released (4.19.260-1)
4.9-stretch-security: released (4.9.320-2), needed

© 2014-2024 Faster IT GmbH | imprint | privacy policy