summaryrefslogtreecommitdiffstats
path: root/active/CVE-2024-26861
diff options
context:
space:
mode:
authorSalvatore Bonaccorso <carnil@debian.org>2024-04-17 19:42:10 +0200
committerSalvatore Bonaccorso <carnil@debian.org>2024-04-17 19:42:10 +0200
commit340814e1a325812027f37a78f5052c8c470caa62 (patch)
tree7ef5ef0ab7ed2d3c56b2a1da4e9fb0373757586a /active/CVE-2024-26861
parent16ca5f383c524df1ff66a64d96eba1266dd6e1dc (diff)
Add batch of CVEs from CNA
Diffstat (limited to 'active/CVE-2024-26861')
-rw-r--r--active/CVE-2024-2686117
1 files changed, 17 insertions, 0 deletions
diff --git a/active/CVE-2024-26861 b/active/CVE-2024-26861
new file mode 100644
index 000000000..7b9e10848
--- /dev/null
+++ b/active/CVE-2024-26861
@@ -0,0 +1,17 @@
+Description: wireguard: receive: annotate data-race around receiving_counter.counter
+References:
+Notes:
+ carnil> Introduced in a9e90d9931f3 ("wireguard: noise: separate receive counter from
+ carnil> send counter"). Vulnerable versions: 5.6.16 5.7-rc7.
+Bugs:
+upstream: released (6.9-rc1) [bba045dc4d996d03dce6fe45726e78a1a1f6d4c3]
+6.8-upstream-stable: released (6.8.2) [fdf16de078a97bf14bb8ee2b8d47cc3d3ead09ed]
+6.7-upstream-stable: released (6.7.11) [3f94da807fe1668b9830f0eefbbf7e887b0a7bc6]
+6.6-upstream-stable: released (6.6.23) [78739d72f16b2d7d549f713f1dfebd678d32484b]
+6.1-upstream-stable: released (6.1.83) [45a83b220c83e3c326513269afbf69ae6fc65cce]
+5.10-upstream-stable: released (5.10.214) [f87884e0dffd61b47e58bc6e1e2f6843c212b0cc]
+4.19-upstream-stable: N/A "Vulnerable code not present"
+sid: needed
+6.1-bookworm-security: released (6.1.85-1)
+5.10-bullseye-security: needed
+4.19-buster-security: N/A "Vulnerable code not present"

© 2014-2024 Faster IT GmbH | imprint | privacy policy