summaryrefslogtreecommitdiffstats
path: root/active/CVE-2024-26901
diff options
context:
space:
mode:
authorSalvatore Bonaccorso <carnil@debian.org>2024-04-17 19:42:10 +0200
committerSalvatore Bonaccorso <carnil@debian.org>2024-04-17 19:42:10 +0200
commit340814e1a325812027f37a78f5052c8c470caa62 (patch)
tree7ef5ef0ab7ed2d3c56b2a1da4e9fb0373757586a /active/CVE-2024-26901
parent16ca5f383c524df1ff66a64d96eba1266dd6e1dc (diff)
Add batch of CVEs from CNA
Diffstat (limited to 'active/CVE-2024-26901')
-rw-r--r--active/CVE-2024-2690117
1 files changed, 17 insertions, 0 deletions
diff --git a/active/CVE-2024-26901 b/active/CVE-2024-26901
new file mode 100644
index 000000000..11480221d
--- /dev/null
+++ b/active/CVE-2024-26901
@@ -0,0 +1,17 @@
+Description: do_sys_name_to_handle(): use kzalloc() to fix kernel-infoleak
+References:
+Notes:
+ carnil> Introduced in 990d6c2d7aee ("vfs: Add name to file handle conversion support").
+ carnil> Vulnerable versions: 2.6.39-rc1.
+Bugs:
+upstream: released (6.9-rc1) [3948abaa4e2be938ccdfc289385a27342fb13d43]
+6.8-upstream-stable: released (6.8.2) [bf9ec1b24ab4e94345aa1c60811dd329f069c38b]
+6.7-upstream-stable: released (6.7.11) [cba138f1ef37ec6f961baeab62f312dedc7cf730]
+6.6-upstream-stable: released (6.6.23) [c1362eae861db28b1608b9dc23e49634fe87b63b]
+6.1-upstream-stable: released (6.1.83) [e6450d5e46a737a008b4885aa223486113bf0ad6]
+5.10-upstream-stable: released (5.10.214) [cde76b3af247f615447bcfecf610bb76c3529126]
+4.19-upstream-stable: released (4.19.311) [4bac28f441e3cc9d3f1a84c8d023228a68d8a7c1]
+sid: needed
+6.1-bookworm-security: released (6.1.85-1)
+5.10-bullseye-security: needed
+4.19-buster-security: needed

© 2014-2024 Faster IT GmbH | imprint | privacy policy