APPLIED [OEM-6.1] Re: [SRU][Mantic][Jammy][Focal][PATCH 0/1] CVE-2023-6915

Timo Aaltonen tjaalton at ubuntu.com
Mon Feb 5 16:15:01 UTC 2024


Bethany Jamison kirjoitti 31.1.2024 klo 20.32:
> [Impact]
> 
> A Null pointer dereference problem was found in ida_free in lib/idr.c in
> the Linux Kernel. This issue may allow an attacker using this library to
> cause a denial of service problem due to a missing check at a function
> return.
> 
> [Fix]
> 
> Clean cherry-pick.
> 
> [Test Case]
> 
> Compile and boot test.
> 
> [Regression Potential]
> 
> Issues could occur when running ida_free.
> 
> Matthew Wilcox (Oracle) (1):
>    ida: Fix crash in ida_free when the bitmap is empty
> 
>   lib/idr.c      |  2 +-
>   lib/test_ida.c | 40 ++++++++++++++++++++++++++++++++++++++++
>   2 files changed, 41 insertions(+), 1 deletion(-)
> 

I saw this is part of the new security cycle, and is the only one 
missing from current oem-6.1, so I've gone ahead and applied it there too..

-- 
t




More information about the kernel-team mailing list