[SRU][F/L][PATCH 0/1] CVE-2023-4132

Yuxuan Luo yuxuan.luo at canonical.com
Thu Sep 7 22:37:25 UTC 2023


[Impact]
A use-after-free vulnerability was found in the siano smsusb module in
the Linux kernel. The bug occurs during device initialization when the
siano device is plugged in. This flaw allows a local user to crash the
system, causing a denial of service condition.

[Backport]
Clean cherry pick.

[Test]
Compile and boot tested.

[Potential Regression]
Expect minimal regression potential.

Duoming Zhou (1):
  media: usb: siano: Fix warning due to null work_func_t function
    pointer

 drivers/media/usb/siano/smsusb.c | 3 ++-
 1 file changed, 2 insertions(+), 1 deletion(-)

-- 
2.34.1




More information about the kernel-team mailing list