[Git][security-tracker-team/security-tracker][master] Merge Linux CVEs from kernel-sec
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Mon Jan 6 19:55:20 GMT 2025
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
2955a407 by Salvatore Bonaccorso at 2025-01-06T20:54:23+01:00
Merge Linux CVEs from kernel-sec
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,3 +1,58 @@
+CVE-2024-56769 [media: dvb-frontends: dib3000mb: fix uninit-value in dib3000_write_reg]
+ - linux 6.12.8-1
+ [bookworm] - linux 6.1.123-1
+ NOTE: https://git.kernel.org/linus/2dd59fe0e19e1ab955259978082b62e5751924c7 (6.13-rc4)
+CVE-2024-56768 [bpf: Fix bpf_get_smp_processor_id() on !CONFIG_SMP]
+ - linux 6.12.8-1
+ [bookworm] - linux <not-affected> (Vulnerable code not present)
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/23579010cf0a12476e96a5f1acdf78a9c5843657 (6.13-rc4)
+CVE-2024-56767 [dmaengine: at_xdmac: avoid null_prt_deref in at_xdmac_prep_dma_memset]
+ - linux 6.12.8-1
+ [bookworm] - linux 6.1.123-1
+ NOTE: https://git.kernel.org/linus/c43ec96e8d34399bd9dab2f2dc316b904892133f (6.13-rc5)
+CVE-2024-56766 [mtd: rawnand: fix double free in atmel_pmecc_create_user()]
+ - linux 6.12.8-1
+ [bookworm] - linux 6.1.123-1
+ NOTE: https://git.kernel.org/linus/d8e4771f99c0400a1873235704b28bb803c83d17 (6.13-rc5)
+CVE-2024-56765 [powerpc/pseries/vas: Add close() callback in vas_vm_ops struct]
+ - linux 6.12.8-1
+ [bookworm] - linux 6.1.123-1
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/05aa156e156ef3168e7ab8a68721945196495c17 (6.13-rc5)
+CVE-2024-56764 [ublk: detach gendisk from ublk device if add_disk() fails]
+ - linux 6.12.8-1
+ [bookworm] - linux <not-affected> (Vulnerable code not present)
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/75cd4005da5492129917a4a4ee45e81660556104 (6.13-rc5)
+CVE-2024-56763 [tracing: Prevent bad count for tracing_cpumask_write]
+ - linux 6.12.8-1
+ [bookworm] - linux 6.1.123-1
+ NOTE: https://git.kernel.org/linus/98feccbf32cfdde8c722bc4587aaa60ee5ac33f0 (6.13-rc5)
+CVE-2024-56762 [io_uring/sqpoll: fix sqpoll error handling races]
+ - linux 6.12.8-1
+ [bookworm] - linux 6.1.123-1
+ NOTE: https://git.kernel.org/linus/e33ac68e5e21ec1292490dfe061e75c0dbdd3bd4 (6.13-rc5)
+CVE-2024-56761 [x86/fred: Clear WFE in missing-ENDBRANCH #CPs]
+ - linux 6.12.8-1
+ [bookworm] - linux <not-affected> (Vulnerable code not present)
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/dc81e556f2a017d681251ace21bf06c126d5a192 (6.13-rc5)
+CVE-2024-56760 [PCI/MSI: Handle lack of irqdomain gracefully]
+ - linux 6.12.8-1
+ [bookworm] - linux <not-affected> (Vulnerable code not present)
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/a60b990798eb17433d0283788280422b1bd94b18 (6.13-rc5)
+CVE-2024-56759 [btrfs: fix use-after-free when COWing tree bock and tracing is enabled]
+ - linux 6.12.8-1
+ NOTE: https://git.kernel.org/linus/44f52bbe96dfdbe4aca3818a2534520082a07040 (6.13-rc5)
+CVE-2024-56758 [btrfs: check folio mapping after unlock in relocate_one_folio()]
+ - linux 6.12.8-1
+ [bullseye] - linux <not-affected> (Vulnerable code not present)
+ NOTE: https://git.kernel.org/linus/3e74859ee35edc33a022c3f3971df066ea0ca6b9 (6.13-rc5)
+CVE-2024-56757 [Bluetooth: btusb: mediatek: add intf release flow when usb disconnect]
+ - linux 6.12.8-1
+ NOTE: https://git.kernel.org/linus/489304e67087abddc2666c5af0159cb95afdcf59 (6.13-rc1)
CVE-2025-0233 (A vulnerability was found in Codezips Project Management System 1.0. I ...)
NOT-FOR-US: Codezips Project Management System
CVE-2025-0232 (A vulnerability was found in Codezips Blood Bank Management System 1.0 ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2955a407daa8d4200df049b97730261198171bcb
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/2955a407daa8d4200df049b97730261198171bcb
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250106/6ee3be55/attachment.htm>
More information about the debian-security-tracker-commits
mailing list