APPLIED: [SRU][B,F,J,K][PATCH 0/1] CVE-2023-1118

Stefan Bader stefan.bader at canonical.com
Tue Mar 28 09:46:54 UTC 2023


On 17.03.23 17:55, Magali Lemes wrote:
> [Impact]
> A flaw use after free in the Linux kernel integrated infrared
> receiver/transceiver driver was found in the way user detaching rc device. A
> local user could use this flaw to crash the system or potentially escalate
> their privileges on the system.
> 
> [Backport]
> Clean cherry-pick.
> 
> [Test]
> Compiled, boot and module load tested.
> 
> [Regression potential]
> Minimal, since we're only unregistering the RC device and adding
> del_timer_sync() to deactivate the tx_sim_timer timer as first actions in the
> ene_remove() function.
> 
> Duoming Zhou (1):
>    media: rc: Fix use-after-free bugs caused by ene_tx_irqsim()
> 
>   drivers/media/rc/ene_ir.c | 3 ++-
>   1 file changed, 2 insertions(+), 1 deletion(-)
> 

Applied to kinetic,jammy,focal,bionic:linux/master-next. Thanks.

-Stefan

-------------- next part --------------
A non-text attachment was scrubbed...
Name: OpenPGP_0xE8675DEECBEECEA3.asc
Type: application/pgp-keys
Size: 44613 bytes
Desc: OpenPGP public key
URL: <https://lists.ubuntu.com/archives/kernel-team/attachments/20230328/d098a18f/attachment-0001.key>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: OpenPGP_signature
Type: application/pgp-signature
Size: 833 bytes
Desc: OpenPGP digital signature
URL: <https://lists.ubuntu.com/archives/kernel-team/attachments/20230328/d098a18f/attachment-0001.sig>


More information about the kernel-team mailing list