[SRU][Focal][PATCH 0/1] CVE-2023-3268

Yuxuan Luo yuxuan.luo at canonical.com
Tue Jul 11 14:16:26 UTC 2023


[Impact]
An out of bounds (OOB) memory access flaw was found in the Linux kernel
in relay_file_read_start_pos in kernel/relay.c in the relayfs. This
flaw could allow a local attacker to crash the system or leak kernel
internal information.

[Backport]
Modify the erroneous line directly instead of cherry pick.

[Test]
Only compile and boot tested so far, the test against proof of concept
will come up later.

[Potential Regression]
Expect minimal risk of regression.

Zhang Zhengming (1):
  relayfs: fix out-of-bounds access in relay_file_read

 kernel/relay.c | 3 ++-
 1 file changed, 2 insertions(+), 1 deletion(-)

-- 
2.34.1




More information about the kernel-team mailing list