[SRU][K/J/HWE-5.17/F/OEM-5.14/B/X/T][PATCH 0/1] CVE-2022-3594 - r8152: Rate limit overflow messages

Thadeu Lima de Souza Cascardo cascardo at canonical.com
Thu Nov 17 09:26:05 UTC 2022


On Thu, Nov 17, 2022 at 09:23:41AM +0100, Stefan Bader wrote:
> On 16.11.22 21:21, John Cabaj wrote:
> > CVE-2022-3594
> > 
> > [Impact]
> > 
> > * Receipt of -EOVERFLOW from R8152 USB-Ethernet adapter spams kernel log messages
> > 
> > [Fix]
> > 
> > * Add a check to rate limit the kernel log message
> > 
> > [Test case]
> > 
> > * Only a kernel log message is impacted - compile and boot test
> > 
> > [Potential regression]
> > 
> > * Fixes a logging issue, no potential regressions
> > 
> > Andrew Gaul (1):
> >    r8152: Rate limit overflow messages
> > 
> >   drivers/net/usb/r8152.c | 4 +++-
> >   1 file changed, 3 insertions(+), 1 deletion(-)
> > 
> 
> Could this be missing OEM-6.0?
> 
> -Stefan

OEM-6.0 has not been promoted to -updates or -security pocket yet. But, yeah,
we will have to catch up when it goes there. So likely, we want to revisit
those CVEs really soon.

Cascardo.



> -- 
> kernel-team mailing list
> kernel-team at lists.ubuntu.com
> https://lists.ubuntu.com/mailman/listinfo/kernel-team




More information about the kernel-team mailing list