From 924f98197dc8f8bb7a29cdc1a4043923b725f255 Mon Sep 17 00:00:00 2001 From: Moritz Muehlenhoff Date: Mon, 20 Jun 2022 16:20:58 +0200 Subject: CVE-2022-1966 rejected in favour of CVE-2022-32250 --- active/CVE-2022-1966 | 15 --------------- active/CVE-2022-32250 | 15 +++++++++++++++ 2 files changed, 15 insertions(+), 15 deletions(-) delete mode 100644 active/CVE-2022-1966 create mode 100644 active/CVE-2022-32250 diff --git a/active/CVE-2022-1966 b/active/CVE-2022-1966 deleted file mode 100644 index a68ac758..00000000 --- a/active/CVE-2022-1966 +++ /dev/null @@ -1,15 +0,0 @@ -Description: netfilter: nf_tables: disallow non-stateful expression in sets earlier -References: - https://www.openwall.com/lists/oss-security/2022/05/31/1 - https://git.kernel.org/pub/scm/linux/kernel/git/netdev/net.git/commit/net/netfilter?id=520778042ccca019f3ffa136dd0ca565c486cedd -Notes: - carnil> For 5.17.y fixed in 5.17.13 and for 5.18.y fixed in 5.18.2 -Bugs: -upstream: released (5.19-rc1) [520778042ccca019f3ffa136dd0ca565c486cedd] -5.10-upstream-stable: released (5.10.120) [ea62d169b6e731e0b54abda1d692406f6bc6a696] -4.19-upstream-stable: released (4.19.247) [ed44398b45add3d9be56b7457cc9e05282e518b4] -4.9-upstream-stable: released (4.9.318) [94e9b75919619ba8c4072abc4917011a7a888a79] -sid: released (5.18.2-1) -5.10-bullseye-security: released (5.10.120-1) -4.19-buster-security: needed -4.9-stretch-security: needed diff --git a/active/CVE-2022-32250 b/active/CVE-2022-32250 new file mode 100644 index 00000000..a68ac758 --- /dev/null +++ b/active/CVE-2022-32250 @@ -0,0 +1,15 @@ +Description: netfilter: nf_tables: disallow non-stateful expression in sets earlier +References: + https://www.openwall.com/lists/oss-security/2022/05/31/1 + https://git.kernel.org/pub/scm/linux/kernel/git/netdev/net.git/commit/net/netfilter?id=520778042ccca019f3ffa136dd0ca565c486cedd +Notes: + carnil> For 5.17.y fixed in 5.17.13 and for 5.18.y fixed in 5.18.2 +Bugs: +upstream: released (5.19-rc1) [520778042ccca019f3ffa136dd0ca565c486cedd] +5.10-upstream-stable: released (5.10.120) [ea62d169b6e731e0b54abda1d692406f6bc6a696] +4.19-upstream-stable: released (4.19.247) [ed44398b45add3d9be56b7457cc9e05282e518b4] +4.9-upstream-stable: released (4.9.318) [94e9b75919619ba8c4072abc4917011a7a888a79] +sid: released (5.18.2-1) +5.10-bullseye-security: released (5.10.120-1) +4.19-buster-security: needed +4.9-stretch-security: needed -- cgit v1.2.3