GSD-2023-1000745

Source
https://data.gsd.id/GSD-2023-1000745
Import Source
https://github.com/cloudsecurityalliance/gsd-database/blob/main/2023/1000xxx/GSD-2023-1000745.json
JSON Data
https://api.osv.dev/v1/vulns/GSD-2023-1000745
Published
2023-01-17T18:06:28.884137Z
Modified
2023-02-22T09:43:52.541659Z
Summary
bpf, sockmap: Fix repeated calls to sock_put() when msg has more_data
Details

bpf, sockmap: Fix repeated calls to sockput() when msg has moredata

This is an automated ID intended to aid in discovery of potential security vulnerabilities. The actual impact and attack plausibility have not yet been proven. This ID is fixed in Linux Kernel version v6.0.16 by commit 578a7628b838a3ac8ad61deaab5a816ff032ac13, it was introduced in version v5.15 by commit cd9733f5d75c94a32544d6ce5be47e14194cf137. For more details please see the references link.

References

Affected packages

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git/
Events
Introduced
cd9733f5d75c94a32544d6ce5be47e14194cf137
Limit
578a7628b838a3ac8ad61deaab5a816ff032ac13

Affected versions

v5.*
v5.15
v5.15-rc6
v5.15-rc7
v5.16
v5.16-rc1
v5.16-rc2
v5.16-rc3
v5.16-rc4
v5.16-rc5
v5.16-rc6
v5.16-rc7
v5.16-rc8
v5.17
v5.17-rc1
v5.17-rc2
v5.17-rc3
v5.17-rc4
v5.17-rc5
v5.17-rc6
v5.17-rc7
v5.17-rc8
v5.18
v5.18-rc1
v5.18-rc2
v5.18-rc3
v5.18-rc4
v5.18-rc5
v5.18-rc6
v5.18-rc7
v5.19
v5.19-rc1
v5.19-rc2
v5.19-rc3
v5.19-rc4
v5.19-rc5
v5.19-rc6
v5.19-rc7
v5.19-rc8
v6.*
v6.0
v6.0-rc1
v6.0-rc2
v6.0-rc3
v6.0-rc4
v6.0-rc5
v6.0-rc6
v6.0-rc7
v6.0.1
v6.0.10
v6.0.11
v6.0.12
v6.0.13
v6.0.14
v6.0.15
v6.0.2
v6.0.3
v6.0.4
v6.0.5
v6.0.6
v6.0.7
v6.0.8
v6.0.9

Database specific

source
"https://github.com/cloudsecurityalliance/gsd-database/blob/main/2023/1000xxx/GSD-2023-1000745.json"