GSD-2022-1005763

Source
https://data.gsd.id/GSD-2022-1005763
Import Source
https://github.com/cloudsecurityalliance/gsd-database/blob/main/2022/1005xxx/GSD-2022-1005763.json
JSON Data
https://api.osv.dev/v1/vulns/GSD-2022-1005763
Published
2022-09-17T00:24:42.768163Z
Modified
2023-02-22T09:54:12.256488Z
Summary
xfrm: policy: fix metadata dst->dev xmit null pointer dereference
Details

xfrm: policy: fix metadata dst->dev xmit null pointer dereference

This is an automated ID intended to aid in discovery of potential security vulnerabilities. The actual impact and attack plausibility have not yet been proven. This ID is fixed in Linux Kernel version v5.10.140 by commit 2761612bcde9776dd93ce60ce55ef0b7c7329153, it was introduced in version v5.10.118 by commit 5b7f84b1f9f46327360a64c529433fa0d68cc3f4. For more details please see the references link.

References

Affected packages

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git/
Events
Introduced
5b7f84b1f9f46327360a64c529433fa0d68cc3f4
Limit
2761612bcde9776dd93ce60ce55ef0b7c7329153

Affected versions

v5.*
v5.10.118
v5.10.119
v5.10.120
v5.10.121
v5.10.122
v5.10.123
v5.10.124
v5.10.125
v5.10.126
v5.10.127
v5.10.128
v5.10.129
v5.10.130
v5.10.131
v5.10.132
v5.10.133
v5.10.134
v5.10.135
v5.10.136
v5.10.137
v5.10.138
v5.10.139

Database specific

source
"https://github.com/cloudsecurityalliance/gsd-database/blob/main/2022/1005xxx/GSD-2022-1005763.json"