APPLIED: [SRU][F/J/L][PATCH 0/1] CVE-2023-31083

Stefan Bader stefan.bader at canonical.com
Fri Sep 15 08:56:10 UTC 2023


On 13.09.23 00:02, Yuxuan Luo wrote:
> [Impact]
> An issue was discovered in drivers/bluetooth/hci_ldisc.c in the Linux
> kernel 6.2. In hci_uart_tty_ioctl, there is a race condition between
> HCIUARTSETPROTO and HCIUARTGETPROTO. HCI_UART_PROTO_SET is set before
> hu->proto is set. A NULL pointer dereference may occur.
> 
> [Backport]
> It is a clean cherry pick.
> 
> [Test]
> Smoked tested via calling the `hcitool` command.
> 
> [Potential Regression]
> Expect very low regression potential.
> 
> Lee, Chun-Yi (1):
>    Bluetooth: hci_ldisc: check HCI_UART_PROTO_READY flag in
>      HCIUARTGETPROTO
> 
>   drivers/bluetooth/hci_ldisc.c | 3 ++-
>   1 file changed, 2 insertions(+), 1 deletion(-)
> 

Applied to lunar,jammy,focal:linux/master-next. Thanks.

-Stefan

-------------- next part --------------
A non-text attachment was scrubbed...
Name: OpenPGP_0xE8675DEECBEECEA3.asc
Type: application/pgp-keys
Size: 44613 bytes
Desc: OpenPGP public key
URL: <https://lists.ubuntu.com/archives/kernel-team/attachments/20230915/3e213748/attachment-0001.key>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: OpenPGP_signature
Type: application/pgp-signature
Size: 833 bytes
Desc: OpenPGP digital signature
URL: <https://lists.ubuntu.com/archives/kernel-team/attachments/20230915/3e213748/attachment-0001.sig>


More information about the kernel-team mailing list