[Git][security-tracker-team/security-tracker][master] Merge Linux CVEs from kernel-sec

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Feb 23 19:18:42 GMT 2024



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
e98d73cc by Salvatore Bonaccorso at 2024-02-23T20:18:07+01:00
Merge Linux CVEs from kernel-sec

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,3 +1,25 @@
+CVE-2024-26597 [net: qualcomm: rmnet: fix global oob in rmnet_policy]
+	- linux 6.6.15-1
+	[bookworm] - linux 6.1.76-1
+	[bullseye] - linux 5.10.209-1
+	NOTE: https://git.kernel.org/linus/b33fb5b801c6db408b774a68e7c8722796b59ecc (6.8-rc1)
+CVE-2023-52464 [EDAC/thunderx: Fix possible out-of-bounds string access]
+	- linux 6.6.15-1
+	[bookworm] - linux 6.1.76-1
+	[bullseye] - linux 5.10.209-1
+	NOTE: https://git.kernel.org/linus/475c58e1a471e9b873e3e39958c64a2d278275c8 (6.8-rc1)
+CVE-2023-52463 [efivarfs: force RO when remounting if SetVariable is not supported]
+	- linux 6.6.15-1
+	[bookworm] - linux 6.1.76-1
+	[bullseye] - linux 5.10.209-1
+	[buster] - linux <not-affected> (Vulnerable code not present)
+	NOTE: https://git.kernel.org/linus/0e8d2444168dd519fea501599d150e62718ed2fe (6.8-rc1)
+CVE-2023-52459 [media: v4l: async: Fix duplicated list deletion]
+	- linux 6.6.15-1
+	[bookworm] - linux <not-affected> (Vulnerable code not present)
+	[bullseye] - linux <not-affected> (Vulnerable code not present)
+	[buster] - linux <not-affected> (Vulnerable code not present)
+	NOTE: https://git.kernel.org/linus/3de6ee94aae701fa949cd3b5df6b6a440ddfb8f2 (6.8-rc1)
 CVE-2024-26599 [pwm: Fix out-of-bounds access in of_pwm_single_xlate()]
 	- linux 6.6.15-1
 	[bookworm] - linux 6.1.76-1



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e98d73cc4a90fb2c32e96bdab9b1c18b5b679675

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e98d73cc4a90fb2c32e96bdab9b1c18b5b679675
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20240223/beb5d7c9/attachment.htm>


More information about the debian-security-tracker-commits mailing list