[SRU][J/F/B][PATCH 0/1] CVE-2022-4350

Cengiz Can cengiz.can at canonical.com
Fri Nov 18 04:49:35 UTC 2022


On Thu, 2022-11-17 at 10:45 -0500, Yuxuan Luo wrote:
> [Impact]
> The usbmon module is found to have a vulnerability allowing user space
> client to crash the kernel.
> 
> [Backport]
> It is a clean cherry-pick.
> 
> [Test]
> Compile tested.

As we discussed, it would be nice if you can boot test this first.

> 
> [Potential Regression]
> Potential regression is limited to the usbmon module.
> 
> Tadeusz Struk (1):
>   usb: mon: make mmapped memory read only
> 
>  drivers/usb/mon/mon_bin.c | 5 +++++
>  1 file changed, 5 insertions(+)
> 
> -- 
> 2.34.1
> 
> 




More information about the kernel-team mailing list