[Git][security-tracker-team/security-tracker][master] Add CVE-2022-47940/linux

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Dec 23 20:07:05 GMT 2022



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
2d3de6cb by Salvatore Bonaccorso at 2022-12-23T21:06:33+01:00
Add CVE-2022-47940/linux

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -15,6 +15,11 @@ CVE-2022-47941 [ksmbd: fix memory leak in smb2_handle_negotiate]
 	[buster] - linux <not-affected> (Vulnerable code not present)
 	NOTE: https://git.kernel.org/linus/aa7253c2393f6dcd6a1468b0792f6da76edad917 (6.0-rc1)
 	NOTE: https://www.zerodayinitiative.com/advisories/ZDI-CAN-17815/
+CVE-2022-47940 [ksmbd: validate length in smb2_write()]
+	- linux 5.19.6-1
+	[bullseye] - linux <not-affected> (Vulnerable code not present)
+	[buster] - linux <not-affected> (Vulnerable code not present)
+	NOTE: https://git.kernel.org/linus/158a66b245739e15858de42c0ba60fcf3de9b8e6 (5.19-rc1)
 CVE-2022-47939 [ksmbd: fix use-after-free bug in smb2_tree_disconect]
 	- linux 5.19.6-1
 	[bullseye] - linux <not-affected> (Vulnerable code not present)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2d3de6cb064f4e9a80f062da2401909a9e57f3b9

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2d3de6cb064f4e9a80f062da2401909a9e57f3b9
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20221223/f8e165e6/attachment.htm>


More information about the debian-security-tracker-commits mailing list