GSD-2021-1002546

Source
https://data.gsd.id/GSD-2021-1002546
Import Source
https://github.com/cloudsecurityalliance/gsd-database/blob/main/2021/1002xxx/GSD-2021-1002546.json
JSON Data
https://api.osv.dev/v1/vulns/GSD-2021-1002546
Published
2021-12-19T19:42:06.743062Z
Modified
2023-02-22T05:18:06.475975Z
Summary
vdpa_sim: avoid putting an uninitialized iova_domain
Details

vdpasim: avoid putting an uninitialized iovadomain

This is an automated ID intended to aid in discovery of potential security vulnerabilities. The actual impact and attack plausibility have not yet been proven. This ID is fixed in Linux Kernel version v5.15.6 by commit e4d58ac67e63727aa45a4a26185876f598e8b3dd, it was introduced in version v5.13 by commit 4080fc1067501707b9693b8003feae7d50d14e35. For more details please see the references link.

References

Affected packages

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git/
Events
Introduced
4080fc1067501707b9693b8003feae7d50d14e35
Limit
e4d58ac67e63727aa45a4a26185876f598e8b3dd

Affected versions

v5.*
v5.13
v5.13-rc1
v5.13-rc2
v5.13-rc3
v5.13-rc4
v5.13-rc5
v5.13-rc6
v5.13-rc7
v5.14
v5.14-rc1
v5.14-rc2
v5.14-rc3
v5.14-rc4
v5.14-rc5
v5.14-rc6
v5.14-rc7
v5.15
v5.15-rc1
v5.15-rc2
v5.15-rc3
v5.15-rc4
v5.15-rc5
v5.15-rc6
v5.15-rc7
v5.15.1
v5.15.2
v5.15.3
v5.15.4
v5.15.5

Database specific

source
"https://github.com/cloudsecurityalliance/gsd-database/blob/main/2021/1002xxx/GSD-2021-1002546.json"