GSD-2023-1001625

Source
https://data.gsd.id/GSD-2023-1001625
Import Source
https://github.com/cloudsecurityalliance/gsd-database/blob/main/2023/1001xxx/GSD-2023-1001625.json
JSON Data
https://api.osv.dev/v1/vulns/GSD-2023-1001625
Published
2023-01-17T19:38:45.190113Z
Modified
2023-02-22T06:47:49.851456Z
Summary
NFSv4.2: Fix a memory stomp in decode_attr_security_label
Details

NFSv4.2: Fix a memory stomp in decodeattrsecurity_label

This is an automated ID intended to aid in discovery of potential security vulnerabilities. The actual impact and attack plausibility have not yet been proven. This ID is fixed in Linux Kernel version v4.9.337 by commit 6f384464b9a37795f2cbfd99d2f6ffebe01b6ead, it was introduced in version v4.9.233 by commit 8973046648c4f0392f50d915ea1bdb639e930519. For more details please see the references link.

References

Affected packages

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git/
Events
Introduced
8973046648c4f0392f50d915ea1bdb639e930519
Limit
6f384464b9a37795f2cbfd99d2f6ffebe01b6ead

Affected versions

v4.*
v4.9.233
v4.9.234
v4.9.235
v4.9.236
v4.9.237
v4.9.238
v4.9.239
v4.9.240
v4.9.241
v4.9.242
v4.9.243
v4.9.244
v4.9.245
v4.9.246
v4.9.247
v4.9.248
v4.9.249
v4.9.250
v4.9.251
v4.9.252
v4.9.253
v4.9.254
v4.9.255
v4.9.256
v4.9.257
v4.9.258
v4.9.259
v4.9.260
v4.9.261
v4.9.262
v4.9.263
v4.9.264
v4.9.265
v4.9.266
v4.9.267
v4.9.268
v4.9.269
v4.9.270
v4.9.271
v4.9.272
v4.9.273
v4.9.274
v4.9.275
v4.9.276
v4.9.277
v4.9.278
v4.9.279
v4.9.280
v4.9.281
v4.9.282
v4.9.283
v4.9.284
v4.9.285
v4.9.286
v4.9.287
v4.9.288
v4.9.289
v4.9.290
v4.9.291
v4.9.292
v4.9.293
v4.9.294
v4.9.295
v4.9.296
v4.9.297
v4.9.298
v4.9.299
v4.9.300
v4.9.301
v4.9.302
v4.9.303
v4.9.304
v4.9.305
v4.9.306
v4.9.307
v4.9.308
v4.9.309
v4.9.310
v4.9.311
v4.9.312
v4.9.313
v4.9.314
v4.9.315
v4.9.316
v4.9.317
v4.9.318
v4.9.319
v4.9.320
v4.9.321
v4.9.322
v4.9.323
v4.9.324
v4.9.325
v4.9.326
v4.9.327
v4.9.328
v4.9.329
v4.9.330
v4.9.331
v4.9.332
v4.9.333
v4.9.334
v4.9.335
v4.9.336

Database specific

source
"https://github.com/cloudsecurityalliance/gsd-database/blob/main/2023/1001xxx/GSD-2023-1001625.json"