From cb41aaec96680fb9a2218590e9d4d7979f871d30 Mon Sep 17 00:00:00 2001 From: Salvatore Bonaccorso Date: Sat, 11 Jun 2022 10:39:36 +0200 Subject: Add CVE-2022-0854 for 5.10.120-1 --- dsa-texts/5.10.120-1 | 8 +++++++- 1 file changed, 7 insertions(+), 1 deletion(-) diff --git a/dsa-texts/5.10.120-1 b/dsa-texts/5.10.120-1 index 7c73e6db..cb497fe6 100644 --- a/dsa-texts/5.10.120-1 +++ b/dsa-texts/5.10.120-1 @@ -1,5 +1,5 @@ Package: linux -CVE ID: CVE-2022-0494 CVE-2022-1012 CVE-2022-1729 CVE-2022-1786 CVE-2022-1789 CVE-2022-1852 CVE-2022-1966 CVE-2022-1972 CVE-2022-1974 CVE-2022-1975 CVE-2022-21499 CVE-2022-28893 +CVE ID: CVE-2022-0494 CVE-2022-0854 CVE-2022-1012 CVE-2022-1729 CVE-2022-1786 CVE-2022-1789 CVE-2022-1852 CVE-2022-1966 CVE-2022-1972 CVE-2022-1974 CVE-2022-1975 CVE-2022-21499 CVE-2022-28893 Several vulnerabilities have been discovered in the Linux kernel that may lead to a privilege escalation, denial of service or information @@ -11,6 +11,12 @@ CVE-2022-0494 exploitable by users with CAP_SYS_ADMIN or CAP_SYS_RAWIO capabilities. +CVE-2022-0854 + + Ali Haider discovered a potential information leak in the DMA + subsystem. On systems where the swiotlb feature is needed, this + might allow a local user to read sensitive information. + CVE-2022-1012 The randomisation when calculating port offsets in the IP -- cgit v1.2.3