GSD-2023-1002261

Source
https://data.gsd.id/GSD-2023-1002261
Import Source
https://github.com/cloudsecurityalliance/gsd-database/blob/main/2023/1002xxx/GSD-2023-1002261.json
JSON Data
https://api.osv.dev/v1/vulns/GSD-2023-1002261
Published
2023-02-13T17:59:10.402274Z
Modified
2023-02-22T09:49:28.283752Z
Summary
bpf: Fix pointer-leak due to insufficient speculative store bypass mitigation
Details

bpf: Fix pointer-leak due to insufficient speculative store bypass mitigation

This is an automated ID intended to aid in discovery of potential security vulnerabilities. The actual impact and attack plausibility have not yet been proven. This ID is fixed in Linux Kernel version v4.19.272 by commit aae109414a57ab4164218f36e2e4a17f027fcaaa, it was introduced in version v4.19.207 by commit 872968502114d68c21419cf7eb5ab97717e7b803. For more details please see the references link.

References

Affected packages

Linux / Kernel

Package

Name
Kernel

Affected ranges

Type
GIT
Repo
https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git/
Events
Introduced
872968502114d68c21419cf7eb5ab97717e7b803
Limit
aae109414a57ab4164218f36e2e4a17f027fcaaa

Affected versions

v4.*
v4.19.207
v4.19.208
v4.19.209
v4.19.210
v4.19.211
v4.19.212
v4.19.213
v4.19.214
v4.19.215
v4.19.216
v4.19.217
v4.19.218
v4.19.219
v4.19.220
v4.19.221
v4.19.222
v4.19.223
v4.19.224
v4.19.225
v4.19.226
v4.19.227
v4.19.228
v4.19.229
v4.19.230
v4.19.231
v4.19.232
v4.19.233
v4.19.234
v4.19.235
v4.19.236
v4.19.237
v4.19.238
v4.19.239
v4.19.240
v4.19.241
v4.19.242
v4.19.243
v4.19.244
v4.19.245
v4.19.246
v4.19.247
v4.19.248
v4.19.249
v4.19.250
v4.19.251
v4.19.252
v4.19.253
v4.19.254
v4.19.255
v4.19.256
v4.19.257
v4.19.258
v4.19.259
v4.19.260
v4.19.261
v4.19.262
v4.19.263
v4.19.264
v4.19.265
v4.19.266
v4.19.267
v4.19.268
v4.19.269
v4.19.270
v4.19.271

Database specific

source
"https://github.com/cloudsecurityalliance/gsd-database/blob/main/2023/1002xxx/GSD-2023-1002261.json"