summaryrefslogtreecommitdiffstats
path: root/active/CVE-2023-52610
diff options
context:
space:
mode:
authorSalvatore Bonaccorso <carnil@debian.org>2024-03-18 18:04:48 +0100
committerSalvatore Bonaccorso <carnil@debian.org>2024-03-18 18:04:48 +0100
commitbcd9eccef0863578591f91cfde157a7c1fcf4d9e (patch)
tree51bcfe848aef821a7b1a16ad6c272fc86e25630e /active/CVE-2023-52610
parent602dff7a3e25bb7b7271a9400d5ff4ce861d05c0 (diff)
Add new batch of CVEs
Fixup for fix in earlier versions as 6.6.15-1 and one N/A as vulnerable code was only introduced in 6.7 series.
Diffstat (limited to 'active/CVE-2023-52610')
-rw-r--r--active/CVE-2023-5261016
1 files changed, 16 insertions, 0 deletions
diff --git a/active/CVE-2023-52610 b/active/CVE-2023-52610
new file mode 100644
index 000000000..9c806ea33
--- /dev/null
+++ b/active/CVE-2023-52610
@@ -0,0 +1,16 @@
+Description: net/sched: act_ct: fix skb leak and crash on ooo frags
+References:
+Notes:
+ carnil> Introduced in b57dc7c13ea9 ("net/sched: Introduce action ct"). Vulnerable
+ carnil> versions: 5.3-rc1.
+Bugs:
+upstream: released (6.8-rc1) [3f14b377d01d8357eba032b4cabc8c1149b458b6]
+6.7-upstream-stable: released (6.7.2) [f5346df0591d10bc948761ca854b1fae6d2ef441]
+6.6-upstream-stable: released (6.6.14) [73f7da5fd124f2cda9161e2e46114915e6e82e97]
+6.1-upstream-stable: released (6.1.75) [0b5b831122fc3789fff75be433ba3e4dd7b779d4]
+5.10-upstream-stable: needed
+4.19-upstream-stable: N/A "Vulnerable code not present"
+sid: released (6.6.15-1)
+6.1-bookworm-security: released (6.1.76-1)
+5.10-bullseye-security: needed
+4.19-buster-security: N/A "Vulnerable code not present"

© 2014-2024 Faster IT GmbH | imprint | privacy policy