summaryrefslogtreecommitdiffstats
path: root/active/CVE-2024-26583
diff options
context:
space:
mode:
authorSalvatore Bonaccorso <carnil@debian.org>2024-03-02 09:04:09 +0100
committerSalvatore Bonaccorso <carnil@debian.org>2024-03-02 09:04:09 +0100
commit1ed93094a2d7706459c3f262cf45830849253aba (patch)
tree56d70dee10ba57d9756baf8f61d0a24c33a131de /active/CVE-2024-26583
parentcfe5f650c4c0782672d2e5d39dfa399c9f46a610 (diff)
Track fixes in 6.7.7-1 upload to unstable
Diffstat (limited to 'active/CVE-2024-26583')
-rw-r--r--active/CVE-2024-265839
1 files changed, 5 insertions, 4 deletions
diff --git a/active/CVE-2024-26583 b/active/CVE-2024-26583
index f48b6039a..e463768fa 100644
--- a/active/CVE-2024-26583
+++ b/active/CVE-2024-26583
@@ -1,15 +1,16 @@
Description: tls: fix race between async notify and socket close
References:
Notes:
- carnil> Introduced with 0cada33241d9 ("net/tls: fix race condition
- carnil> causing kernel panic") in 5.7 and backported to 5.6.16.
- carnil> For 6.6.y fixed in 6.6.18. For 6.7.y in 6.7.6.
+ carnil> Introduced in 0cada33241d9 ("net/tls: fix race condition causing kernel
+ carnil> panic"). Vulnerable versions: 5.4.44 5.4.71 5.6.16 5.7 5.8.15.
Bugs:
upstream: released (6.8-rc5) [aec7961916f3f9e88766e2688992da6980f11b8d]
+6.7-upstream-stable: released (6.7.6) [6209319b2efdd8524691187ee99c40637558fa33]
+6.6-upstream-stable: released (6.6.18) [86dc27ee36f558fe223dbdfbfcb6856247356f4a]
6.1-upstream-stable: released (6.1.79) [7a3ca06d04d589deec81f56229a9a9d62352ce01]
5.10-upstream-stable: needed
4.19-upstream-stable: N/A "Vulnerable code not present"
-sid: needed
+sid: released (6.7.7-1)
6.1-bookworm-security: needed
5.10-bullseye-security: needed
4.19-buster-security: N/A "Vulnerable code not present"

© 2014-2024 Faster IT GmbH | imprint | privacy policy