summaryrefslogtreecommitdiffstats
path: root/active/CVE-2023-52612
diff options
context:
space:
mode:
authorSalvatore Bonaccorso <carnil@debian.org>2024-03-18 18:04:48 +0100
committerSalvatore Bonaccorso <carnil@debian.org>2024-03-18 18:04:48 +0100
commitbcd9eccef0863578591f91cfde157a7c1fcf4d9e (patch)
tree51bcfe848aef821a7b1a16ad6c272fc86e25630e /active/CVE-2023-52612
parent602dff7a3e25bb7b7271a9400d5ff4ce861d05c0 (diff)
Add new batch of CVEs
Fixup for fix in earlier versions as 6.6.15-1 and one N/A as vulnerable code was only introduced in 6.7 series.
Diffstat (limited to 'active/CVE-2023-52612')
-rw-r--r--active/CVE-2023-5261216
1 files changed, 16 insertions, 0 deletions
diff --git a/active/CVE-2023-52612 b/active/CVE-2023-52612
new file mode 100644
index 00000000..e6d41177
--- /dev/null
+++ b/active/CVE-2023-52612
@@ -0,0 +1,16 @@
+Description: crypto: scomp - fix req->dst buffer overflow
+References:
+Notes:
+ carnil> Introduced in 1ab53a77b772 ("crypto: acomp - add driver-side scomp interface").
+ carnil> Vulnerable versions: 4.10-rc1.
+Bugs:
+upstream: released (6.8-rc1) [744e1885922a9943458954cfea917b31064b4131]
+6.7-upstream-stable: released (6.7.2) [71c6670f9f032ec67d8f4e3f8db4646bf5a62883]
+6.6-upstream-stable: released (6.6.14) [7d9e5bed036a7f9e2062a137e97e3c1e77fb8759]
+6.1-upstream-stable: released (6.1.75) [4df0c942d04a67df174195ad8082f6e30e7f71a5]
+5.10-upstream-stable: released (5.10.209) [4518dc468cdd796757190515a9be7408adc8911e]
+4.19-upstream-stable: released (4.19.306) [1142d65c5b881590962ad763f94505b6dd67d2fe]
+sid: released (6.6.15-1)
+6.1-bookworm-security: released (6.1.76-1)
+5.10-bullseye-security: released (5.10.209-1)
+4.19-buster-security: needed

© 2014-2024 Faster IT GmbH | imprint | privacy policy