In the Linux kernel, the following vulnerability has been resolved:
crypto: scomp - fix req->dst buffer overflow
The req->dst buffer size should be checked before copying from the scomp_scratch->dst to avoid req->dst buffer overflow problem.
{ "vanir_signatures": [ { "deprecated": false, "signature_type": "Function", "target": { "file": "crypto/scompress.c", "function": "scomp_acomp_comp_decomp" }, "signature_version": "v1", "digest": { "length": 1073.0, "function_hash": "130148922143245095711795553681364824918" }, "id": "CVE-2023-52612-19842d3d", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@1142d65c5b881590962ad763f94505b6dd67d2fe" }, { "deprecated": false, "signature_type": "Function", "target": { "file": "crypto/scompress.c", "function": "scomp_acomp_comp_decomp" }, "signature_version": "v1", "digest": { "length": 1073.0, "function_hash": "130148922143245095711795553681364824918" }, "id": "CVE-2023-52612-1df213e2", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@71c6670f9f032ec67d8f4e3f8db4646bf5a62883" }, { "deprecated": false, "signature_type": "Line", "target": { "file": "crypto/scompress.c" }, "signature_version": "v1", "digest": { "line_hashes": [ "141523859175842450023915476196378272668", "224276674082482589796348214501470983382", "126263579801732001772876730895612098050", "6180929904000934114757963454225744834", "265231546565214835593998411076754344771", "163280089789386480455364737113922599322", "109645295366625828466370531328394478714", "274768840044405259215296345708408036172", "213412984459532907720588903229668266526", "66822131125408382956963452665537813155", "254488572984320614406299353684164920064" ], "threshold": 0.9 }, "id": "CVE-2023-52612-29f68efc", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@a5f2f91b3fd7387e5102060809316a0f8f0bc625" }, { "deprecated": false, "signature_type": "Line", "target": { "file": "crypto/scompress.c" }, "signature_version": "v1", "digest": { "line_hashes": [ "141523859175842450023915476196378272668", "224276674082482589796348214501470983382", "126263579801732001772876730895612098050", "6180929904000934114757963454225744834", "265231546565214835593998411076754344771", "163280089789386480455364737113922599322", "109645295366625828466370531328394478714", "274768840044405259215296345708408036172", "213412984459532907720588903229668266526", "66822131125408382956963452665537813155", "254488572984320614406299353684164920064" ], "threshold": 0.9 }, "id": "CVE-2023-52612-3a49b6c9", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@e0e3f4a18784182cfe34e20c00eca11e78d53e76" }, { "deprecated": false, "signature_type": "Line", "target": { "file": "crypto/scompress.c" }, "signature_version": "v1", "digest": { "line_hashes": [ "141523859175842450023915476196378272668", "224276674082482589796348214501470983382", "126263579801732001772876730895612098050", "6180929904000934114757963454225744834", "265231546565214835593998411076754344771", "163280089789386480455364737113922599322", "109645295366625828466370531328394478714", "274768840044405259215296345708408036172", "213412984459532907720588903229668266526", "66822131125408382956963452665537813155", "254488572984320614406299353684164920064" ], "threshold": 0.9 }, "id": "CVE-2023-52612-4bfe2f0b", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@71c6670f9f032ec67d8f4e3f8db4646bf5a62883" }, { "deprecated": false, "signature_type": "Line", "target": { "file": "crypto/scompress.c" }, "signature_version": "v1", "digest": { "line_hashes": [ "141523859175842450023915476196378272668", "224276674082482589796348214501470983382", "126263579801732001772876730895612098050", "6180929904000934114757963454225744834", "265231546565214835593998411076754344771", "163280089789386480455364737113922599322", "109645295366625828466370531328394478714", "274768840044405259215296345708408036172", "213412984459532907720588903229668266526", "66822131125408382956963452665537813155", "254488572984320614406299353684164920064" ], "threshold": 0.9 }, "id": "CVE-2023-52612-51c84179", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@744e1885922a9943458954cfea917b31064b4131" }, { "deprecated": false, "signature_type": "Function", "target": { "file": "crypto/scompress.c", "function": "scomp_acomp_comp_decomp" }, "signature_version": "v1", "digest": { "length": 1073.0, "function_hash": "130148922143245095711795553681364824918" }, "id": "CVE-2023-52612-5e590a86", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@a5f2f91b3fd7387e5102060809316a0f8f0bc625" }, { "deprecated": false, "signature_type": "Function", "target": { "file": "crypto/scompress.c", "function": "scomp_acomp_comp_decomp" }, "signature_version": "v1", "digest": { "length": 1073.0, "function_hash": "130148922143245095711795553681364824918" }, "id": "CVE-2023-52612-7a0e76e4", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@4df0c942d04a67df174195ad8082f6e30e7f71a5" }, { "deprecated": false, "signature_type": "Function", "target": { "file": "crypto/scompress.c", "function": "scomp_acomp_comp_decomp" }, "signature_version": "v1", "digest": { "length": 1073.0, "function_hash": "130148922143245095711795553681364824918" }, "id": "CVE-2023-52612-93eed724", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@e0e3f4a18784182cfe34e20c00eca11e78d53e76" }, { "deprecated": false, "signature_type": "Line", "target": { "file": "crypto/scompress.c" }, "signature_version": "v1", "digest": { "line_hashes": [ "141523859175842450023915476196378272668", "224276674082482589796348214501470983382", "126263579801732001772876730895612098050", "6180929904000934114757963454225744834", "265231546565214835593998411076754344771", "163280089789386480455364737113922599322", "109645295366625828466370531328394478714", "274768840044405259215296345708408036172", "213412984459532907720588903229668266526", "66822131125408382956963452665537813155", "254488572984320614406299353684164920064" ], "threshold": 0.9 }, "id": "CVE-2023-52612-9a9dba7c", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@1142d65c5b881590962ad763f94505b6dd67d2fe" }, { "deprecated": false, "signature_type": "Line", "target": { "file": "crypto/scompress.c" }, "signature_version": "v1", "digest": { "line_hashes": [ "141523859175842450023915476196378272668", "224276674082482589796348214501470983382", "126263579801732001772876730895612098050", "6180929904000934114757963454225744834", "265231546565214835593998411076754344771", "163280089789386480455364737113922599322", "109645295366625828466370531328394478714", "274768840044405259215296345708408036172", "213412984459532907720588903229668266526", "66822131125408382956963452665537813155", "254488572984320614406299353684164920064" ], "threshold": 0.9 }, "id": "CVE-2023-52612-9d638505", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@4df0c942d04a67df174195ad8082f6e30e7f71a5" }, { "deprecated": false, "signature_type": "Function", "target": { "file": "crypto/scompress.c", "function": "scomp_acomp_comp_decomp" }, "signature_version": "v1", "digest": { "length": 1073.0, "function_hash": "130148922143245095711795553681364824918" }, "id": "CVE-2023-52612-a05ea611", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@744e1885922a9943458954cfea917b31064b4131" }, { "deprecated": false, "signature_type": "Line", "target": { "file": "crypto/scompress.c" }, "signature_version": "v1", "digest": { "line_hashes": [ "141523859175842450023915476196378272668", "224276674082482589796348214501470983382", "126263579801732001772876730895612098050", "6180929904000934114757963454225744834", "265231546565214835593998411076754344771", "163280089789386480455364737113922599322", "109645295366625828466370531328394478714", "274768840044405259215296345708408036172", "213412984459532907720588903229668266526", "66822131125408382956963452665537813155", "254488572984320614406299353684164920064" ], "threshold": 0.9 }, "id": "CVE-2023-52612-a8e1e854", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@7d9e5bed036a7f9e2062a137e97e3c1e77fb8759" }, { "deprecated": false, "signature_type": "Function", "target": { "file": "crypto/scompress.c", "function": "scomp_acomp_comp_decomp" }, "signature_version": "v1", "digest": { "length": 1073.0, "function_hash": "130148922143245095711795553681364824918" }, "id": "CVE-2023-52612-dd1b7c11", "source": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git@7d9e5bed036a7f9e2062a137e97e3c1e77fb8759" } ] }