GSD-2021-1001176

Source
https://data.gsd.id/GSD-2021-1001176
Import Source
https://github.com/cloudsecurityalliance/gsd-database/blob/main/2021/1001xxx/GSD-2021-1001176.json
JSON Data
https://api.osv.dev/v1/vulns/GSD-2021-1001176
Published
2021-08-03T01:32:29.927640Z
Modified
2023-02-22T03:44:08.874406Z
Summary
bus: mhi: core: Validate channel ID when processing command completions
Details

bus: mhi: core: Validate channel ID when processing command completions

This is an automated ID intended to aid in discovery of potential security vulnerabilities. The actual impact and attack plausibility have not yet been proven. This ID is fixed in Linux Kernel version v5.13.6 by commit aed4f5b51aba41e2afd7cfda20a0571a6a67dfe9, it was introduced in version v5.7 by commit 1d3173a3bae7039b765a0956e3e4bf846dbaacb8. For more details please see the references link.

References

Affected packages

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git/
Events
Introduced
1d3173a3bae7039b765a0956e3e4bf846dbaacb8
Limit
aed4f5b51aba41e2afd7cfda20a0571a6a67dfe9

Affected versions

v5.*
v5.10
v5.10-rc1
v5.10-rc2
v5.10-rc3
v5.10-rc4
v5.10-rc5
v5.10-rc6
v5.10-rc7
v5.11
v5.11-rc1
v5.11-rc2
v5.11-rc3
v5.11-rc4
v5.11-rc5
v5.11-rc6
v5.11-rc7
v5.12
v5.12-rc1-dontuse
v5.12-rc2
v5.12-rc3
v5.12-rc4
v5.12-rc5
v5.12-rc6
v5.12-rc7
v5.12-rc8
v5.13
v5.13-rc1
v5.13-rc2
v5.13-rc3
v5.13-rc4
v5.13-rc5
v5.13-rc6
v5.13-rc7
v5.13.1
v5.13.2
v5.13.3
v5.13.4
v5.13.5
v5.6
v5.6-rc6
v5.6-rc7
v5.7
v5.7-rc1
v5.7-rc2
v5.7-rc3
v5.7-rc4
v5.7-rc5
v5.7-rc6
v5.7-rc7
v5.8
v5.8-rc1
v5.8-rc2
v5.8-rc3
v5.8-rc4
v5.8-rc5
v5.8-rc6
v5.8-rc7
v5.9
v5.9-rc1
v5.9-rc2
v5.9-rc3
v5.9-rc4
v5.9-rc5
v5.9-rc6
v5.9-rc7
v5.9-rc8

Database specific

source
"https://github.com/cloudsecurityalliance/gsd-database/blob/main/2021/1001xxx/GSD-2021-1001176.json"