Update 27Jun22 [ci skip]
diff --git a/CHANGES.md b/CHANGES.md index 7994727..101f237 100644 --- a/CHANGES.md +++ b/CHANGES.md
@@ -1,40 +1,133 @@ # **Linux Kernel CVE Changes** -## Last Update - 19Jun22 17:25 +## Last Update - 27Jun22 16:35 ### **New CVEs Added:** -[CVE-2022-1976](cves/CVE-2022-1976) -[CVE-2022-2078](cves/CVE-2022-2078) +[CVE-2022-2153](cves/CVE-2022-2153) +[CVE-2022-32250](cves/CVE-2022-32250) +[CVE-2022-33981](cves/CVE-2022-33981) +[CVE-2022-34494](cves/CVE-2022-34494) +[CVE-2022-34495](cves/CVE-2022-34495) ### **New Versions Checked:** -[4.14.284](streams/4.14) -[4.19.248](streams/4.19) -[4.9.319](streams/4.9) -[5.10.123](streams/5.10) -[5.15.48](streams/5.15) -[5.17.15](streams/5.17) -[5.18.5](streams/5.18) -[5.19-rc2](streams/5.19-rc2) -[5.4.199](streams/5.4) +[4.14.285](streams/4.14) +[4.19.249](streams/4.19) +[4.9.320](streams/4.9) +[5.10.126](streams/5.10) +[5.15.50](streams/5.15) +[5.18.7](streams/5.18) +[5.19-rc4](streams/5.19-rc4) +[5.4.201](streams/5.4) ### **Updated CVEs:** -[CVE-2022-1678](cves/CVE-2022-1678) -[CVE-2022-1786](cves/CVE-2022-1786) -[CVE-2022-1966](cves/CVE-2022-1966) -[CVE-2022-32981](cves/CVE-2022-32981) -[CVE-2020-27068](cves/CVE-2020-27068) +[CVE-2019-0146](cves/CVE-2019-0146) +[CVE-2020-12362](cves/CVE-2020-12362) +[CVE-2020-26555](cves/CVE-2020-26555) +[CVE-2021-0707](cves/CVE-2021-0707) +[CVE-2021-20265](cves/CVE-2021-20265) +[CVE-2021-26401](cves/CVE-2021-26401) +[CVE-2021-26932](cves/CVE-2021-26932) +[CVE-2021-33135](cves/CVE-2021-33135) +[CVE-2021-3894](cves/CVE-2021-3894) +[CVE-2021-39686](cves/CVE-2021-39686) +[CVE-2021-39698](cves/CVE-2021-39698) +[CVE-2021-39711](cves/CVE-2021-39711) +[CVE-2021-39713](cves/CVE-2021-39713) +[CVE-2021-39714](cves/CVE-2021-39714) +[CVE-2021-39800](cves/CVE-2021-39800) +[CVE-2021-39801](cves/CVE-2021-39801) +[CVE-2021-39802](cves/CVE-2021-39802) +[CVE-2021-4023](cves/CVE-2021-4023) +[CVE-2021-4148](cves/CVE-2021-4148) +[CVE-2021-45868](cves/CVE-2021-45868) +[CVE-2022-0001](cves/CVE-2022-0001) +[CVE-2022-0002](cves/CVE-2022-0002) +[CVE-2022-0168](cves/CVE-2022-0168) +[CVE-2022-0171](cves/CVE-2022-0171) +[CVE-2022-0494](cves/CVE-2022-0494) +[CVE-2022-0500](cves/CVE-2022-0500) +[CVE-2022-0617](cves/CVE-2022-0617) +[CVE-2022-0644](cves/CVE-2022-0644) +[CVE-2022-0742](cves/CVE-2022-0742) +[CVE-2022-0812](cves/CVE-2022-0812) +[CVE-2022-0850](cves/CVE-2022-0850) +[CVE-2022-0854](cves/CVE-2022-0854) +[CVE-2022-0995](cves/CVE-2022-0995) +[CVE-2022-0998](cves/CVE-2022-0998) +[CVE-2022-1011](cves/CVE-2022-1011) +[CVE-2022-1012](cves/CVE-2022-1012) +[CVE-2022-1015](cves/CVE-2022-1015) +[CVE-2022-1016](cves/CVE-2022-1016) +[CVE-2022-1043](cves/CVE-2022-1043) +[CVE-2022-1048](cves/CVE-2022-1048) +[CVE-2022-1055](cves/CVE-2022-1055) +[CVE-2022-1116](cves/CVE-2022-1116) +[CVE-2022-1158](cves/CVE-2022-1158) +[CVE-2022-1184](cves/CVE-2022-1184) +[CVE-2022-1195](cves/CVE-2022-1195) +[CVE-2022-1198](cves/CVE-2022-1198) +[CVE-2022-1199](cves/CVE-2022-1199) +[CVE-2022-1204](cves/CVE-2022-1204) +[CVE-2022-1205](cves/CVE-2022-1205) +[CVE-2022-1263](cves/CVE-2022-1263) +[CVE-2022-1280](cves/CVE-2022-1280) +[CVE-2022-1353](cves/CVE-2022-1353) +[CVE-2022-1419](cves/CVE-2022-1419) +[CVE-2022-1508](cves/CVE-2022-1508) +[CVE-2022-1516](cves/CVE-2022-1516) +[CVE-2022-1651](cves/CVE-2022-1651) +[CVE-2022-1652](cves/CVE-2022-1652) +[CVE-2022-1671](cves/CVE-2022-1671) +[CVE-2022-1679](cves/CVE-2022-1679) +[CVE-2022-1729](cves/CVE-2022-1729) +[CVE-2022-1789](cves/CVE-2022-1789) +[CVE-2022-1852](cves/CVE-2022-1852) +[CVE-2022-1943](cves/CVE-2022-1943) +[CVE-2022-1972](cves/CVE-2022-1972) +[CVE-2022-1973](cves/CVE-2022-1973) +[CVE-2022-1974](cves/CVE-2022-1974) +[CVE-2022-1975](cves/CVE-2022-1975) +[CVE-2022-1976](cves/CVE-2022-1976) [CVE-2022-1998](cves/CVE-2022-1998) -[CVE-2022-20132](cves/CVE-2022-20132) [CVE-2022-20141](cves/CVE-2022-20141) -[CVE-2022-20148](cves/CVE-2022-20148) [CVE-2022-20153](cves/CVE-2022-20153) [CVE-2022-20154](cves/CVE-2022-20154) [CVE-2022-20166](cves/CVE-2022-20166) +[CVE-2022-2078](cves/CVE-2022-2078) [CVE-2022-21499](cves/CVE-2022-21499) +[CVE-2022-23036](cves/CVE-2022-23036) +[CVE-2022-23037](cves/CVE-2022-23037) +[CVE-2022-23038](cves/CVE-2022-23038) +[CVE-2022-23039](cves/CVE-2022-23039) +[CVE-2022-23040](cves/CVE-2022-23040) +[CVE-2022-23041](cves/CVE-2022-23041) +[CVE-2022-23042](cves/CVE-2022-23042) +[CVE-2022-23960](cves/CVE-2022-23960) +[CVE-2022-25375](cves/CVE-2022-25375) +[CVE-2022-25636](cves/CVE-2022-25636) +[CVE-2022-26878](cves/CVE-2022-26878) +[CVE-2022-26966](cves/CVE-2022-26966) +[CVE-2022-27223](cves/CVE-2022-27223) +[CVE-2022-27950](cves/CVE-2022-27950) +[CVE-2022-28356](cves/CVE-2022-28356) +[CVE-2022-28388](cves/CVE-2022-28388) +[CVE-2022-28389](cves/CVE-2022-28389) +[CVE-2022-28390](cves/CVE-2022-28390) +[CVE-2022-28796](cves/CVE-2022-28796) +[CVE-2022-28893](cves/CVE-2022-28893) +[CVE-2022-29156](cves/CVE-2022-29156) +[CVE-2022-29582](cves/CVE-2022-29582) +[CVE-2022-29968](cves/CVE-2022-29968) +[CVE-2022-30594](cves/CVE-2022-30594) [CVE-2022-32296](cves/CVE-2022-32296) +[CVE-2022-32981](cves/CVE-2022-32981) +[CVE-2022-1836](cves/CVE-2022-1836) +[CVE-2022-1966](cves/CVE-2022-1966) +[CVE-2022-20132](cves/CVE-2022-20132) +[CVE-2022-20148](cves/CVE-2022-20148)
diff --git a/data/3.12/3.12_CVEs.txt b/data/3.12/3.12_CVEs.txt index 508a6d1..5322065 100644 --- a/data/3.12/3.12_CVEs.txt +++ b/data/3.12/3.12_CVEs.txt
@@ -660,7 +660,6 @@ CVE-2018-9518: Fix not seen in stream CVE-2018-9568: Fix not seen in stream CVE-2019-0136: Fix not seen in stream -CVE-2019-0146: Fix unknown CVE-2019-0148: Fix not seen in stream CVE-2019-0154: Fix not seen in stream CVE-2019-10126: Fix not seen in stream @@ -923,7 +922,7 @@ CVE-2020-26145: Fix not seen in stream CVE-2020-26147: Fix not seen in stream CVE-2020-26541: Fix not seen in stream -CVE-2020-26555: Fix unknown +CVE-2020-26555: Fix not seen in stream CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26558: Fix not seen in stream @@ -972,7 +971,6 @@ CVE-2021-0448: Fix not seen in stream CVE-2021-0512: Fix not seen in stream CVE-2021-0695: Fix unknown -CVE-2021-0707: Fix not seen in stream CVE-2021-0920: Fix not seen in stream CVE-2021-0929: Fix not seen in stream CVE-2021-0937: Fix not seen in stream @@ -1014,7 +1012,6 @@ CVE-2021-33034: Fix not seen in stream CVE-2021-33061: Fix not seen in stream CVE-2021-33098: Fix not seen in stream -CVE-2021-33135: Fix unknown CVE-2021-34556: Fix not seen in stream CVE-2021-34693: Fix not seen in stream CVE-2021-3483: Fix not seen in stream @@ -1046,7 +1043,6 @@ CVE-2021-3847: Fix unknown CVE-2021-3864: Fix unknown CVE-2021-3892: Fix unknown -CVE-2021-3894: Fix not seen in stream CVE-2021-3896: Fix not seen in stream CVE-2021-39633: Fix not seen in stream CVE-2021-39634: Fix not seen in stream @@ -1056,9 +1052,6 @@ CVE-2021-39685: Fix not seen in stream CVE-2021-39686: Fix not seen in stream CVE-2021-39698: Fix not seen in stream -CVE-2021-39711: Fix not seen in stream -CVE-2021-39713: Fix not seen in stream -CVE-2021-39714: Fix not seen in stream CVE-2021-39800: Fix unknown CVE-2021-39801: Fix unknown CVE-2021-39802: Fix unknown @@ -1067,7 +1060,6 @@ CVE-2021-4037: Fix not seen in stream CVE-2021-40490: Fix not seen in stream CVE-2021-4083: Fix not seen in stream -CVE-2021-4148: Fix not seen in stream CVE-2021-4149: Fix not seen in stream CVE-2021-4150: Fix not seen in stream CVE-2021-4155: Fix not seen in stream @@ -1088,77 +1080,47 @@ CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream -CVE-2022-0171: Fix unknown CVE-2022-0330: Fix not seen in stream CVE-2022-0382: Fix not seen in stream CVE-2022-0400: Fix unknown CVE-2022-0480: Fix not seen in stream CVE-2022-0492: Fix not seen in stream CVE-2022-0494: Fix not seen in stream -CVE-2022-0500: Fix not seen in stream -CVE-2022-0617: Fix not seen in stream -CVE-2022-0644: Fix not seen in stream -CVE-2022-0742: Fix not seen in stream -CVE-2022-0812: Fix not seen in stream CVE-2022-0850: Fix not seen in stream -CVE-2022-0854: Fix not seen in stream -CVE-2022-0995: Fix not seen in stream -CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fix not seen in stream CVE-2022-1012: Fix not seen in stream -CVE-2022-1015: Fix not seen in stream -CVE-2022-1016: Fix not seen in stream -CVE-2022-1043: Fix not seen in stream CVE-2022-1048: Fix not seen in stream -CVE-2022-1055: Fix not seen in stream CVE-2022-1116: Fix unknown -CVE-2022-1158: Fix not seen in stream -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fix not seen in stream CVE-2022-1195: Fix not seen in stream CVE-2022-1198: Fix not seen in stream CVE-2022-1199: Fix not seen in stream CVE-2022-1204: Fix not seen in stream -CVE-2022-1205: Fix not seen in stream CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream CVE-2022-1353: Fix not seen in stream -CVE-2022-1419: Fix not seen in stream CVE-2022-1462: Fix unknown CVE-2022-1508: Fix not seen in stream -CVE-2022-1516: Fix not seen in stream -CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown -CVE-2022-1671: Fix not seen in stream +CVE-2022-1652: Fix not seen in stream CVE-2022-1679: Fix unknown -CVE-2022-1729: Fix not seen in stream CVE-2022-1786: Fix not seen in stream -CVE-2022-1789: Fix not seen in stream CVE-2022-1836: Fix not seen in stream -CVE-2022-1852: Fix not seen in stream CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fix not seen in stream -CVE-2022-1972: Fix not seen in stream -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fix not seen in stream CVE-2022-1975: Fix not seen in stream -CVE-2022-1976: Fix not seen in stream -CVE-2022-1998: Fix not seen in stream CVE-2022-20132: Fix not seen in stream CVE-2022-20141: Fix not seen in stream CVE-2022-20148: Fix not seen in stream -CVE-2022-20153: Fix not seen in stream -CVE-2022-20154: Fix not seen in stream CVE-2022-20166: Fix not seen in stream -CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fix not seen in stream +CVE-2022-2153: Fix not seen in stream CVE-2022-23036: Fix not seen in stream CVE-2022-23037: Fix not seen in stream CVE-2022-23038: Fix not seen in stream CVE-2022-23039: Fix not seen in stream CVE-2022-23040: Fix not seen in stream -CVE-2022-23041: Fix not seen in stream CVE-2022-23042: Fix not seen in stream CVE-2022-23222: Fix not seen in stream CVE-2022-23960: Fix not seen in stream @@ -1167,20 +1129,11 @@ CVE-2022-25258: Fix not seen in stream CVE-2022-25265: Fix unknown CVE-2022-25375: Fix not seen in stream -CVE-2022-25636: Fix not seen in stream -CVE-2022-26878: Fix unknown CVE-2022-26966: Fix not seen in stream -CVE-2022-27223: Fix not seen in stream -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fix not seen in stream CVE-2022-28388: Fix not seen in stream -CVE-2022-28389: Fix not seen in stream CVE-2022-28390: Fix not seen in stream -CVE-2022-28796: Fix not seen in stream -CVE-2022-28893: Fix not seen in stream -CVE-2022-29156: Fix not seen in stream -CVE-2022-29582: Fix not seen in stream -CVE-2022-29968: Fix not seen in stream -CVE-2022-30594: Fix not seen in stream CVE-2022-32296: Fix not seen in stream -CVE-2022-32981: Fix not seen in stream +CVE-2022-33981: Fix not seen in stream +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/3.12/3.12_security.txt b/data/3.12/3.12_security.txt index ca8d4e8..2af1786 100644 --- a/data/3.12/3.12_security.txt +++ b/data/3.12/3.12_security.txt
@@ -799,7 +799,6 @@ CVE-2018-9518: (unk) NFC: llcp: Limit size of SDP URI CVE-2018-9568: (unk) net: Set sk_prot_creator when cloning sockets to the right proto CVE-2019-0136: (unk) mac80211: drop robust management frames from unknown TA - CVE-2019-0146: (unk) CVE-2019-0148: (unk) i40e: Wrong truncation from u16 to u8 CVE-2019-0154: (unk) drm/i915: Lower RM timeout to avoid DSI hard hangs CVE-2019-10126: (unk) mwifiex: Fix heap overflow in mwifiex_uap_parse_tail_ies() @@ -1062,7 +1061,7 @@ CVE-2020-26145: (unk) ath10k: drop fragments with multicast DA for PCIe CVE-2020-26147: (unk) mac80211: assure all fragments are encrypted CVE-2020-26541: (unk) certs: Add EFI_CERT_X509_GUID support for dbx entries - CVE-2020-26555: (unk) + CVE-2020-26555: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26558: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical @@ -1111,7 +1110,6 @@ CVE-2021-0448: (unk) netfilter: ctnetlink: add a range check for l3/l4 protonum CVE-2021-0512: (unk) HID: make arrays usage and value to be the same CVE-2021-0695: (unk) - CVE-2021-0707: (unk) dmabuf: fix use-after-free of dmabuf's file->f_inode CVE-2021-0920: (unk) af_unix: fix garbage collect vs MSG_PEEK CVE-2021-0929: (unk) staging/android/ion: delete dma_buf->kmap/unmap implemenation CVE-2021-0937: (unk) netfilter: x_tables: fix compat match/target pad out-of-bound write @@ -1152,7 +1150,6 @@ CVE-2021-33034: (unk) Bluetooth: verify AMP hci_chan before amp_destroy CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality CVE-2021-33098: (unk) ixgbe: fix large MTU request from VF - CVE-2021-33135: (unk) CVE-2021-34556: (unk) bpf: Introduce BPF nospec instruction for mitigating Spectre v4 CVE-2021-34693: (unk) can: bcm: fix infoleak in struct bcm_msg_head CVE-2021-3483: (unk) firewire: nosy: Fix a use-after-free bug in nosy_ioctl() @@ -1184,7 +1181,6 @@ CVE-2021-3847: (unk) CVE-2021-3864: (unk) CVE-2021-3892: (unk) - CVE-2021-3894: (unk) sctp: account stream padding length for reconf chunk CVE-2021-3896: (unk) isdn: cpai: check ctr->cnr to avoid array index out of bound CVE-2021-39633: (unk) ip_gre: add validation for csum_start CVE-2021-39634: (unk) epoll: do not insert into poll queues until all sanity checks are done @@ -1194,9 +1190,6 @@ CVE-2021-39685: (unk) USB: gadget: detect too-big endpoint 0 requests CVE-2021-39686: (unk) binder: use euid from cred instead of using task CVE-2021-39698: (unk) wait: add wake_up_pollfree() - CVE-2021-39711: (unk) bpf: fix panic due to oob in bpf_prog_test_run_skb - CVE-2021-39713: (unk) net: sched: use Qdisc rcu API instead of relying on rtnl lock - CVE-2021-39714: (unk) staging: android: ion: Drop ion_map_kernel interface CVE-2021-39800: (unk) CVE-2021-39801: (unk) CVE-2021-39802: (unk) @@ -1205,7 +1198,6 @@ CVE-2021-4037: (unk) xfs: fix up non-directory creation in SGID directories CVE-2021-40490: (unk) ext4: fix race writing to an inline_data file while its xattrs are changing CVE-2021-4083: (unk) fget: check that the fd still exists after getting a ref to it - CVE-2021-4148: (unk) mm: khugepaged: skip huge page collapse for special files CVE-2021-4149: (unk) btrfs: unlock newly allocated extent buffer after error CVE-2021-4150: (unk) block: fix incorrect references to disk objects CVE-2021-4155: (unk) xfs: map unwritten blocks in XFS_IOC_{ALLOC,FREE}SP just like fallocate @@ -1226,77 +1218,47 @@ CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() - CVE-2022-0171: (unk) CVE-2022-0330: (unk) drm/i915: Flush TLBs before releasing backing store CVE-2022-0382: (unk) net ticp:fix a kernel-infoleak in __tipc_sendmsg() CVE-2022-0400: (unk) CVE-2022-0480: (unk) memcg: enable accounting for file lock caches CVE-2022-0492: (unk) cgroup-v1: Require capabilities to set release_agent CVE-2022-0494: (unk) block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern - CVE-2022-0500: (unk) bpf: Introduce MEM_RDONLY flag - CVE-2022-0617: (unk) udf: Fix NULL ptr deref when converting from inline format - CVE-2022-0644: (unk) vfs: check fd has read access in kernel_read_file_from_fd() - CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() - CVE-2022-0812: (unk) xprtrdma: fix incorrect header size calculations CVE-2022-0850: (unk) ext4: fix kernel infoleak via ext4_extent_header - CVE-2022-0854: (unk) swiotlb: rework "fix info leak with DMA_FROM_DEVICE" - CVE-2022-0995: (unk) watch_queue: Fix filter limit check - CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling CVE-2022-1011: (unk) fuse: fix pipe buffer lifetime for direct_io CVE-2022-1012: (unk) secure_seq: use the 64 bits of the siphash for port offset calculation - CVE-2022-1015: (unk) netfilter: nf_tables: validate registers coming from userspace. - CVE-2022-1016: (unk) netfilter: nf_tables: initialize registers in nft_do_chain() - CVE-2022-1043: (unk) io_uring: fix xa_alloc_cycle() error return value check CVE-2022-1048: (unk) ALSA: pcm: Fix races among concurrent hw_params and hw_free calls - CVE-2022-1055: (unk) net: sched: fix use-after-free in tc_new_tfilter() CVE-2022-1116: (unk) - CVE-2022-1158: (unk) KVM: x86/mmu: do compare-and-exchange of gPTE via the user address - CVE-2022-1184: (unk) + CVE-2022-1184: (unk) ext4: verify dir block before splitting it CVE-2022-1195: (unk) hamradio: improve the incomplete fix to avoid NPD CVE-2022-1198: (unk) drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() CVE-2022-1199: (unk) ax25: Fix NULL pointer dereference in ax25_kill_by_device CVE-2022-1204: (unk) ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: (unk) ax25: Fix NULL pointer dereferences in ax25 timers CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector CVE-2022-1353: (unk) af_key: add __GFP_ZERO flag for compose_sadb_supported in function pfkey_register - CVE-2022-1419: (unk) drm/vgem: Close use-after-free race in vgem_gem_create CVE-2022-1462: (unk) CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters - CVE-2022-1516: (unk) net/x25: Fix null-ptr-deref caused by x25_disconnect - CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) - CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c + CVE-2022-1652: (unk) floppy: use a statically allocated error counter CVE-2022-1679: (unk) - CVE-2022-1729: (unk) perf: Fix sys_perf_event_open() race against self CVE-2022-1786: (unk) io_uring: remove io_identity - CVE-2022-1789: (unk) KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID CVE-2022-1836: (unk) floppy: disable FDRAWCMD by default - CVE-2022-1852: (unk) KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse CVE-2022-1966: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier - CVE-2022-1972: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay CVE-2022-1974: (unk) nfc: replace improper check device_is_registered() in netlink related functions CVE-2022-1975: (unk) NFC: netlink: fix sleep in atomic bug when firmware download timeout - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking - CVE-2022-1998: (unk) fanotify: Fix stale file descriptor in copy_event_to_user() CVE-2022-20132: (unk) HID: add hid_is_usb() function to make it simpler for USB detection CVE-2022-20141: (unk) igmp: Add ip_mc_list lock in ip_check_mc_rcu CVE-2022-20148: (unk) f2fs: fix UAF in f2fs_available_free_memory - CVE-2022-20153: (unk) io_uring: return back safer resurrect - CVE-2022-20154: (unk) sctp: use call_rcu to free endpoint CVE-2022-20166: (unk) drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions - CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-21499: (unk) lockdown: also lock down previous kgdb use + CVE-2022-2153: (unk) KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-23036: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23037: (unk) xen/netfront: don't use gnttab_query_foreign_access() for mapped status CVE-2022-23038: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23039: (unk) xen/gntalloc: don't use gnttab_query_foreign_access() CVE-2022-23040: (unk) xen/xenbus: don't let xenbus_grant_ring() remove grants in error case - CVE-2022-23041: (unk) xen/9p: use alloc/free_pages_exact() CVE-2022-23042: (unk) xen/netfront: react properly to failing gnttab_end_foreign_access_ref() CVE-2022-23222: (unk) bpf: Replace PTR_TO_XXX_OR_NULL with PTR_TO_XXX | PTR_MAYBE_NULL CVE-2022-23960: (unk) ARM: report Spectre v2 status through sysfs @@ -1305,20 +1267,11 @@ CVE-2022-25258: (unk) USB: gadget: validate interface OS descriptor requests CVE-2022-25265: (unk) CVE-2022-25375: (unk) usb: gadget: rndis: check size of RNDIS_MSG_SET command - CVE-2022-25636: (unk) netfilter: nf_tables_offload: incorrect flow offload action array size - CVE-2022-26878: (unk) CVE-2022-26966: (unk) sr9700: sanity check for packet length - CVE-2022-27223: (unk) USB: gadget: validate endpoint index for xilinx udc - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe CVE-2022-28356: (unk) llc: fix netdevice reference leaks in llc_ui_bind() CVE-2022-28388: (unk) can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28389: (unk) can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: (unk) can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race - CVE-2022-28893: (unk) SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() - CVE-2022-29156: (unk) RDMA/rtrs-clt: Fix possible double free in error case - CVE-2022-29582: (unk) io_uring: fix race between timeout flush and removal - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb - CVE-2022-30594: (unk) ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 - CVE-2022-32981: (unk) powerpc/32: Fix overread/overwrite of thread_struct via ptrace + CVE-2022-33981: (unk) floppy: disable FDRAWCMD by default + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/3.14/3.14_CVEs.txt b/data/3.14/3.14_CVEs.txt index 9690fc7..fa51259 100644 --- a/data/3.14/3.14_CVEs.txt +++ b/data/3.14/3.14_CVEs.txt
@@ -619,7 +619,6 @@ CVE-2018-9518: Fix not seen in stream CVE-2018-9568: Fix not seen in stream CVE-2019-0136: Fix not seen in stream -CVE-2019-0146: Fix unknown CVE-2019-0148: Fix not seen in stream CVE-2019-0154: Fix not seen in stream CVE-2019-10126: Fix not seen in stream @@ -888,7 +887,7 @@ CVE-2020-26145: Fix not seen in stream CVE-2020-26147: Fix not seen in stream CVE-2020-26541: Fix not seen in stream -CVE-2020-26555: Fix unknown +CVE-2020-26555: Fix not seen in stream CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26558: Fix not seen in stream @@ -938,7 +937,6 @@ CVE-2021-0448: Fix not seen in stream CVE-2021-0512: Fix not seen in stream CVE-2021-0695: Fix unknown -CVE-2021-0707: Fix not seen in stream CVE-2021-0920: Fix not seen in stream CVE-2021-0929: Fix not seen in stream CVE-2021-0937: Fix not seen in stream @@ -980,7 +978,6 @@ CVE-2021-33034: Fix not seen in stream CVE-2021-33061: Fix not seen in stream CVE-2021-33098: Fix not seen in stream -CVE-2021-33135: Fix unknown CVE-2021-34556: Fix not seen in stream CVE-2021-34693: Fix not seen in stream CVE-2021-3483: Fix not seen in stream @@ -1012,7 +1009,6 @@ CVE-2021-3847: Fix unknown CVE-2021-3864: Fix unknown CVE-2021-3892: Fix unknown -CVE-2021-3894: Fix not seen in stream CVE-2021-3896: Fix not seen in stream CVE-2021-39633: Fix not seen in stream CVE-2021-39634: Fix not seen in stream @@ -1022,8 +1018,6 @@ CVE-2021-39685: Fix not seen in stream CVE-2021-39686: Fix not seen in stream CVE-2021-39698: Fix not seen in stream -CVE-2021-39711: Fix not seen in stream -CVE-2021-39713: Fix not seen in stream CVE-2021-39714: Fix not seen in stream CVE-2021-39800: Fix unknown CVE-2021-39801: Fix unknown @@ -1033,7 +1027,6 @@ CVE-2021-4037: Fix not seen in stream CVE-2021-40490: Fix not seen in stream CVE-2021-4083: Fix not seen in stream -CVE-2021-4148: Fix not seen in stream CVE-2021-4149: Fix not seen in stream CVE-2021-4150: Fix not seen in stream CVE-2021-4155: Fix not seen in stream @@ -1054,77 +1047,48 @@ CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream -CVE-2022-0171: Fix unknown CVE-2022-0330: Fix not seen in stream CVE-2022-0382: Fix not seen in stream CVE-2022-0400: Fix unknown CVE-2022-0480: Fix not seen in stream CVE-2022-0492: Fix not seen in stream CVE-2022-0494: Fix not seen in stream -CVE-2022-0500: Fix not seen in stream -CVE-2022-0617: Fix not seen in stream -CVE-2022-0644: Fix not seen in stream -CVE-2022-0742: Fix not seen in stream -CVE-2022-0812: Fix not seen in stream CVE-2022-0850: Fix not seen in stream -CVE-2022-0854: Fix not seen in stream -CVE-2022-0995: Fix not seen in stream -CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fix not seen in stream CVE-2022-1012: Fix not seen in stream -CVE-2022-1015: Fix not seen in stream CVE-2022-1016: Fix not seen in stream -CVE-2022-1043: Fix not seen in stream CVE-2022-1048: Fix not seen in stream -CVE-2022-1055: Fix not seen in stream CVE-2022-1116: Fix unknown -CVE-2022-1158: Fix not seen in stream -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fix not seen in stream CVE-2022-1195: Fix not seen in stream CVE-2022-1198: Fix not seen in stream CVE-2022-1199: Fix not seen in stream CVE-2022-1204: Fix not seen in stream -CVE-2022-1205: Fix not seen in stream CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream CVE-2022-1353: Fix not seen in stream -CVE-2022-1419: Fix not seen in stream CVE-2022-1462: Fix unknown CVE-2022-1508: Fix not seen in stream -CVE-2022-1516: Fix not seen in stream -CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown -CVE-2022-1671: Fix not seen in stream +CVE-2022-1652: Fix not seen in stream CVE-2022-1679: Fix unknown -CVE-2022-1729: Fix not seen in stream CVE-2022-1786: Fix not seen in stream -CVE-2022-1789: Fix not seen in stream CVE-2022-1836: Fix not seen in stream -CVE-2022-1852: Fix not seen in stream CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fix not seen in stream -CVE-2022-1972: Fix not seen in stream -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fix not seen in stream CVE-2022-1975: Fix not seen in stream -CVE-2022-1976: Fix not seen in stream -CVE-2022-1998: Fix not seen in stream CVE-2022-20132: Fix not seen in stream CVE-2022-20141: Fix not seen in stream CVE-2022-20148: Fix not seen in stream -CVE-2022-20153: Fix not seen in stream -CVE-2022-20154: Fix not seen in stream CVE-2022-20166: Fix not seen in stream -CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fix not seen in stream +CVE-2022-2153: Fix not seen in stream CVE-2022-23036: Fix not seen in stream CVE-2022-23037: Fix not seen in stream CVE-2022-23038: Fix not seen in stream CVE-2022-23039: Fix not seen in stream CVE-2022-23040: Fix not seen in stream -CVE-2022-23041: Fix not seen in stream CVE-2022-23042: Fix not seen in stream CVE-2022-23222: Fix not seen in stream CVE-2022-23960: Fix not seen in stream @@ -1133,20 +1097,12 @@ CVE-2022-25258: Fix not seen in stream CVE-2022-25265: Fix unknown CVE-2022-25375: Fix not seen in stream -CVE-2022-25636: Fix not seen in stream -CVE-2022-26878: Fix unknown CVE-2022-26966: Fix not seen in stream -CVE-2022-27223: Fix not seen in stream -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fix not seen in stream CVE-2022-28388: Fix not seen in stream -CVE-2022-28389: Fix not seen in stream CVE-2022-28390: Fix not seen in stream -CVE-2022-28796: Fix not seen in stream -CVE-2022-28893: Fix not seen in stream -CVE-2022-29156: Fix not seen in stream -CVE-2022-29582: Fix not seen in stream -CVE-2022-29968: Fix not seen in stream -CVE-2022-30594: Fix not seen in stream CVE-2022-32296: Fix not seen in stream CVE-2022-32981: Fix not seen in stream +CVE-2022-33981: Fix not seen in stream +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/3.14/3.14_security.txt b/data/3.14/3.14_security.txt index efd2072..b8a0406 100644 --- a/data/3.14/3.14_security.txt +++ b/data/3.14/3.14_security.txt
@@ -753,7 +753,6 @@ CVE-2018-9518: (unk) NFC: llcp: Limit size of SDP URI CVE-2018-9568: (unk) net: Set sk_prot_creator when cloning sockets to the right proto CVE-2019-0136: (unk) mac80211: drop robust management frames from unknown TA - CVE-2019-0146: (unk) CVE-2019-0148: (unk) i40e: Wrong truncation from u16 to u8 CVE-2019-0154: (unk) drm/i915: Lower RM timeout to avoid DSI hard hangs CVE-2019-10126: (unk) mwifiex: Fix heap overflow in mwifiex_uap_parse_tail_ies() @@ -1022,7 +1021,7 @@ CVE-2020-26145: (unk) ath10k: drop fragments with multicast DA for PCIe CVE-2020-26147: (unk) mac80211: assure all fragments are encrypted CVE-2020-26541: (unk) certs: Add EFI_CERT_X509_GUID support for dbx entries - CVE-2020-26555: (unk) + CVE-2020-26555: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26558: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical @@ -1072,7 +1071,6 @@ CVE-2021-0448: (unk) netfilter: ctnetlink: add a range check for l3/l4 protonum CVE-2021-0512: (unk) HID: make arrays usage and value to be the same CVE-2021-0695: (unk) - CVE-2021-0707: (unk) dmabuf: fix use-after-free of dmabuf's file->f_inode CVE-2021-0920: (unk) af_unix: fix garbage collect vs MSG_PEEK CVE-2021-0929: (unk) staging/android/ion: delete dma_buf->kmap/unmap implemenation CVE-2021-0937: (unk) netfilter: x_tables: fix compat match/target pad out-of-bound write @@ -1114,7 +1112,6 @@ CVE-2021-33034: (unk) Bluetooth: verify AMP hci_chan before amp_destroy CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality CVE-2021-33098: (unk) ixgbe: fix large MTU request from VF - CVE-2021-33135: (unk) CVE-2021-34556: (unk) bpf: Introduce BPF nospec instruction for mitigating Spectre v4 CVE-2021-34693: (unk) can: bcm: fix infoleak in struct bcm_msg_head CVE-2021-3483: (unk) firewire: nosy: Fix a use-after-free bug in nosy_ioctl() @@ -1146,7 +1143,6 @@ CVE-2021-3847: (unk) CVE-2021-3864: (unk) CVE-2021-3892: (unk) - CVE-2021-3894: (unk) sctp: account stream padding length for reconf chunk CVE-2021-3896: (unk) isdn: cpai: check ctr->cnr to avoid array index out of bound CVE-2021-39633: (unk) ip_gre: add validation for csum_start CVE-2021-39634: (unk) epoll: do not insert into poll queues until all sanity checks are done @@ -1156,8 +1152,6 @@ CVE-2021-39685: (unk) USB: gadget: detect too-big endpoint 0 requests CVE-2021-39686: (unk) binder: use euid from cred instead of using task CVE-2021-39698: (unk) wait: add wake_up_pollfree() - CVE-2021-39711: (unk) bpf: fix panic due to oob in bpf_prog_test_run_skb - CVE-2021-39713: (unk) net: sched: use Qdisc rcu API instead of relying on rtnl lock CVE-2021-39714: (unk) staging: android: ion: Drop ion_map_kernel interface CVE-2021-39800: (unk) CVE-2021-39801: (unk) @@ -1167,7 +1161,6 @@ CVE-2021-4037: (unk) xfs: fix up non-directory creation in SGID directories CVE-2021-40490: (unk) ext4: fix race writing to an inline_data file while its xattrs are changing CVE-2021-4083: (unk) fget: check that the fd still exists after getting a ref to it - CVE-2021-4148: (unk) mm: khugepaged: skip huge page collapse for special files CVE-2021-4149: (unk) btrfs: unlock newly allocated extent buffer after error CVE-2021-4150: (unk) block: fix incorrect references to disk objects CVE-2021-4155: (unk) xfs: map unwritten blocks in XFS_IOC_{ALLOC,FREE}SP just like fallocate @@ -1188,77 +1181,48 @@ CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() - CVE-2022-0171: (unk) CVE-2022-0330: (unk) drm/i915: Flush TLBs before releasing backing store CVE-2022-0382: (unk) net ticp:fix a kernel-infoleak in __tipc_sendmsg() CVE-2022-0400: (unk) CVE-2022-0480: (unk) memcg: enable accounting for file lock caches CVE-2022-0492: (unk) cgroup-v1: Require capabilities to set release_agent CVE-2022-0494: (unk) block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern - CVE-2022-0500: (unk) bpf: Introduce MEM_RDONLY flag - CVE-2022-0617: (unk) udf: Fix NULL ptr deref when converting from inline format - CVE-2022-0644: (unk) vfs: check fd has read access in kernel_read_file_from_fd() - CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() - CVE-2022-0812: (unk) xprtrdma: fix incorrect header size calculations CVE-2022-0850: (unk) ext4: fix kernel infoleak via ext4_extent_header - CVE-2022-0854: (unk) swiotlb: rework "fix info leak with DMA_FROM_DEVICE" - CVE-2022-0995: (unk) watch_queue: Fix filter limit check - CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling CVE-2022-1011: (unk) fuse: fix pipe buffer lifetime for direct_io CVE-2022-1012: (unk) secure_seq: use the 64 bits of the siphash for port offset calculation - CVE-2022-1015: (unk) netfilter: nf_tables: validate registers coming from userspace. CVE-2022-1016: (unk) netfilter: nf_tables: initialize registers in nft_do_chain() - CVE-2022-1043: (unk) io_uring: fix xa_alloc_cycle() error return value check CVE-2022-1048: (unk) ALSA: pcm: Fix races among concurrent hw_params and hw_free calls - CVE-2022-1055: (unk) net: sched: fix use-after-free in tc_new_tfilter() CVE-2022-1116: (unk) - CVE-2022-1158: (unk) KVM: x86/mmu: do compare-and-exchange of gPTE via the user address - CVE-2022-1184: (unk) + CVE-2022-1184: (unk) ext4: verify dir block before splitting it CVE-2022-1195: (unk) hamradio: improve the incomplete fix to avoid NPD CVE-2022-1198: (unk) drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() CVE-2022-1199: (unk) ax25: Fix NULL pointer dereference in ax25_kill_by_device CVE-2022-1204: (unk) ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: (unk) ax25: Fix NULL pointer dereferences in ax25 timers CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector CVE-2022-1353: (unk) af_key: add __GFP_ZERO flag for compose_sadb_supported in function pfkey_register - CVE-2022-1419: (unk) drm/vgem: Close use-after-free race in vgem_gem_create CVE-2022-1462: (unk) CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters - CVE-2022-1516: (unk) net/x25: Fix null-ptr-deref caused by x25_disconnect - CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) - CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c + CVE-2022-1652: (unk) floppy: use a statically allocated error counter CVE-2022-1679: (unk) - CVE-2022-1729: (unk) perf: Fix sys_perf_event_open() race against self CVE-2022-1786: (unk) io_uring: remove io_identity - CVE-2022-1789: (unk) KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID CVE-2022-1836: (unk) floppy: disable FDRAWCMD by default - CVE-2022-1852: (unk) KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse CVE-2022-1966: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier - CVE-2022-1972: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay CVE-2022-1974: (unk) nfc: replace improper check device_is_registered() in netlink related functions CVE-2022-1975: (unk) NFC: netlink: fix sleep in atomic bug when firmware download timeout - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking - CVE-2022-1998: (unk) fanotify: Fix stale file descriptor in copy_event_to_user() CVE-2022-20132: (unk) HID: add hid_is_usb() function to make it simpler for USB detection CVE-2022-20141: (unk) igmp: Add ip_mc_list lock in ip_check_mc_rcu CVE-2022-20148: (unk) f2fs: fix UAF in f2fs_available_free_memory - CVE-2022-20153: (unk) io_uring: return back safer resurrect - CVE-2022-20154: (unk) sctp: use call_rcu to free endpoint CVE-2022-20166: (unk) drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions - CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-21499: (unk) lockdown: also lock down previous kgdb use + CVE-2022-2153: (unk) KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-23036: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23037: (unk) xen/netfront: don't use gnttab_query_foreign_access() for mapped status CVE-2022-23038: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23039: (unk) xen/gntalloc: don't use gnttab_query_foreign_access() CVE-2022-23040: (unk) xen/xenbus: don't let xenbus_grant_ring() remove grants in error case - CVE-2022-23041: (unk) xen/9p: use alloc/free_pages_exact() CVE-2022-23042: (unk) xen/netfront: react properly to failing gnttab_end_foreign_access_ref() CVE-2022-23222: (unk) bpf: Replace PTR_TO_XXX_OR_NULL with PTR_TO_XXX | PTR_MAYBE_NULL CVE-2022-23960: (unk) ARM: report Spectre v2 status through sysfs @@ -1267,20 +1231,12 @@ CVE-2022-25258: (unk) USB: gadget: validate interface OS descriptor requests CVE-2022-25265: (unk) CVE-2022-25375: (unk) usb: gadget: rndis: check size of RNDIS_MSG_SET command - CVE-2022-25636: (unk) netfilter: nf_tables_offload: incorrect flow offload action array size - CVE-2022-26878: (unk) CVE-2022-26966: (unk) sr9700: sanity check for packet length - CVE-2022-27223: (unk) USB: gadget: validate endpoint index for xilinx udc - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe CVE-2022-28356: (unk) llc: fix netdevice reference leaks in llc_ui_bind() CVE-2022-28388: (unk) can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28389: (unk) can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: (unk) can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race - CVE-2022-28893: (unk) SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() - CVE-2022-29156: (unk) RDMA/rtrs-clt: Fix possible double free in error case - CVE-2022-29582: (unk) io_uring: fix race between timeout flush and removal - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb - CVE-2022-30594: (unk) ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 CVE-2022-32981: (unk) powerpc/32: Fix overread/overwrite of thread_struct via ptrace + CVE-2022-33981: (unk) floppy: disable FDRAWCMD by default + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/3.16/3.16_CVEs.txt b/data/3.16/3.16_CVEs.txt index 411faf0..4475668 100644 --- a/data/3.16/3.16_CVEs.txt +++ b/data/3.16/3.16_CVEs.txt
@@ -587,7 +587,6 @@ CVE-2018-9518: Fixed with 3.16.57 CVE-2018-9568: Fixed with 3.16.58 CVE-2019-0136: Fixed with 3.16.74 -CVE-2019-0146: Fix unknown CVE-2019-0148: Fix not seen in stream CVE-2019-0154: Fix not seen in stream CVE-2019-10126: Fixed with 3.16.70 @@ -863,7 +862,7 @@ CVE-2020-26145: Fix not seen in stream CVE-2020-26147: Fix not seen in stream CVE-2020-26541: Fix not seen in stream -CVE-2020-26555: Fix unknown +CVE-2020-26555: Fix not seen in stream CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26558: Fix not seen in stream @@ -914,7 +913,6 @@ CVE-2021-0512: Fix not seen in stream CVE-2021-0605: Fix not seen in stream CVE-2021-0695: Fix unknown -CVE-2021-0707: Fix not seen in stream CVE-2021-0920: Fix not seen in stream CVE-2021-0929: Fix not seen in stream CVE-2021-0937: Fix not seen in stream @@ -956,7 +954,6 @@ CVE-2021-33034: Fix not seen in stream CVE-2021-33061: Fix not seen in stream CVE-2021-33098: Fix not seen in stream -CVE-2021-33135: Fix unknown CVE-2021-33909: Fix not seen in stream CVE-2021-34556: Fix not seen in stream CVE-2021-34693: Fix not seen in stream @@ -991,7 +988,6 @@ CVE-2021-3847: Fix unknown CVE-2021-3864: Fix unknown CVE-2021-3892: Fix unknown -CVE-2021-3894: Fix not seen in stream CVE-2021-3896: Fix not seen in stream CVE-2021-39633: Fix not seen in stream CVE-2021-39634: Fix not seen in stream @@ -1001,8 +997,6 @@ CVE-2021-39685: Fix not seen in stream CVE-2021-39686: Fix not seen in stream CVE-2021-39698: Fix not seen in stream -CVE-2021-39711: Fix not seen in stream -CVE-2021-39713: Fix not seen in stream CVE-2021-39714: Fix not seen in stream CVE-2021-39800: Fix unknown CVE-2021-39801: Fix unknown @@ -1012,7 +1006,6 @@ CVE-2021-4037: Fix not seen in stream CVE-2021-40490: Fix not seen in stream CVE-2021-4083: Fix not seen in stream -CVE-2021-4148: Fix not seen in stream CVE-2021-4149: Fix not seen in stream CVE-2021-4150: Fix not seen in stream CVE-2021-4155: Fix not seen in stream @@ -1034,7 +1027,6 @@ CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream -CVE-2022-0171: Fix unknown CVE-2022-0330: Fix not seen in stream CVE-2022-0382: Fix not seen in stream CVE-2022-0400: Fix unknown @@ -1042,70 +1034,42 @@ CVE-2022-0487: Fix not seen in stream CVE-2022-0492: Fix not seen in stream CVE-2022-0494: Fix not seen in stream -CVE-2022-0500: Fix not seen in stream -CVE-2022-0617: Fix not seen in stream -CVE-2022-0644: Fix not seen in stream -CVE-2022-0742: Fix not seen in stream -CVE-2022-0812: Fix not seen in stream CVE-2022-0850: Fix not seen in stream -CVE-2022-0854: Fix not seen in stream -CVE-2022-0995: Fix not seen in stream -CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fix not seen in stream CVE-2022-1012: Fix not seen in stream -CVE-2022-1015: Fix not seen in stream CVE-2022-1016: Fix not seen in stream -CVE-2022-1043: Fix not seen in stream CVE-2022-1048: Fix not seen in stream -CVE-2022-1055: Fix not seen in stream CVE-2022-1116: Fix unknown -CVE-2022-1158: Fix not seen in stream -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fix not seen in stream CVE-2022-1195: Fix not seen in stream CVE-2022-1198: Fix not seen in stream CVE-2022-1199: Fix not seen in stream CVE-2022-1204: Fix not seen in stream -CVE-2022-1205: Fix not seen in stream CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream CVE-2022-1353: Fix not seen in stream -CVE-2022-1419: Fix not seen in stream CVE-2022-1462: Fix unknown CVE-2022-1508: Fix not seen in stream -CVE-2022-1516: Fix not seen in stream -CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown -CVE-2022-1671: Fix not seen in stream +CVE-2022-1652: Fix not seen in stream CVE-2022-1679: Fix unknown -CVE-2022-1729: Fix not seen in stream CVE-2022-1786: Fix not seen in stream -CVE-2022-1789: Fix not seen in stream CVE-2022-1836: Fix not seen in stream -CVE-2022-1852: Fix not seen in stream CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fix not seen in stream -CVE-2022-1972: Fix not seen in stream -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fix not seen in stream CVE-2022-1975: Fix not seen in stream -CVE-2022-1976: Fix not seen in stream -CVE-2022-1998: Fix not seen in stream CVE-2022-20132: Fix not seen in stream CVE-2022-20141: Fix not seen in stream CVE-2022-20148: Fix not seen in stream -CVE-2022-20153: Fix not seen in stream -CVE-2022-20154: Fix not seen in stream CVE-2022-20166: Fix not seen in stream -CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fix not seen in stream +CVE-2022-2153: Fix not seen in stream CVE-2022-23036: Fix not seen in stream CVE-2022-23037: Fix not seen in stream CVE-2022-23038: Fix not seen in stream CVE-2022-23039: Fix not seen in stream CVE-2022-23040: Fix not seen in stream -CVE-2022-23041: Fix not seen in stream CVE-2022-23042: Fix not seen in stream CVE-2022-23222: Fix not seen in stream CVE-2022-23960: Fix not seen in stream @@ -1114,20 +1078,12 @@ CVE-2022-25258: Fix not seen in stream CVE-2022-25265: Fix unknown CVE-2022-25375: Fix not seen in stream -CVE-2022-25636: Fix not seen in stream -CVE-2022-26878: Fix unknown CVE-2022-26966: Fix not seen in stream -CVE-2022-27223: Fix not seen in stream -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fix not seen in stream CVE-2022-28388: Fix not seen in stream -CVE-2022-28389: Fix not seen in stream CVE-2022-28390: Fix not seen in stream -CVE-2022-28796: Fix not seen in stream -CVE-2022-28893: Fix not seen in stream -CVE-2022-29156: Fix not seen in stream -CVE-2022-29582: Fix not seen in stream -CVE-2022-29968: Fix not seen in stream -CVE-2022-30594: Fix not seen in stream CVE-2022-32296: Fix not seen in stream CVE-2022-32981: Fix not seen in stream +CVE-2022-33981: Fix not seen in stream +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/3.16/3.16_security.txt b/data/3.16/3.16_security.txt index e933e69..826608c 100644 --- a/data/3.16/3.16_security.txt +++ b/data/3.16/3.16_security.txt
@@ -852,7 +852,6 @@ CVE-2018-7480: (unk) blkcg: fix double free of new_blkg in blkcg_init_queue CVE-2018-7754: (unk) printk: hash addresses printed with %p CVE-2018-9465: (unk) binder: fix proc->files use-after-free - CVE-2019-0146: (unk) CVE-2019-0148: (unk) i40e: Wrong truncation from u16 to u8 CVE-2019-0154: (unk) drm/i915: Lower RM timeout to avoid DSI hard hangs CVE-2019-10220: (unk) Convert filldir[64]() from __put_user() to unsafe_put_user() @@ -977,7 +976,7 @@ CVE-2020-26145: (unk) ath10k: drop fragments with multicast DA for PCIe CVE-2020-26147: (unk) mac80211: assure all fragments are encrypted CVE-2020-26541: (unk) certs: Add EFI_CERT_X509_GUID support for dbx entries - CVE-2020-26555: (unk) + CVE-2020-26555: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26558: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical @@ -1021,7 +1020,6 @@ CVE-2021-0512: (unk) HID: make arrays usage and value to be the same CVE-2021-0605: (unk) af_key: pfkey_dump needs parameter validation CVE-2021-0695: (unk) - CVE-2021-0707: (unk) dmabuf: fix use-after-free of dmabuf's file->f_inode CVE-2021-0920: (unk) af_unix: fix garbage collect vs MSG_PEEK CVE-2021-0929: (unk) staging/android/ion: delete dma_buf->kmap/unmap implemenation CVE-2021-0937: (unk) netfilter: x_tables: fix compat match/target pad out-of-bound write @@ -1062,7 +1060,6 @@ CVE-2021-33034: (unk) Bluetooth: verify AMP hci_chan before amp_destroy CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality CVE-2021-33098: (unk) ixgbe: fix large MTU request from VF - CVE-2021-33135: (unk) CVE-2021-33909: (unk) seq_file: disallow extremely large seq buffer allocations CVE-2021-34556: (unk) bpf: Introduce BPF nospec instruction for mitigating Spectre v4 CVE-2021-34693: (unk) can: bcm: fix infoleak in struct bcm_msg_head @@ -1097,7 +1094,6 @@ CVE-2021-3847: (unk) CVE-2021-3864: (unk) CVE-2021-3892: (unk) - CVE-2021-3894: (unk) sctp: account stream padding length for reconf chunk CVE-2021-3896: (unk) isdn: cpai: check ctr->cnr to avoid array index out of bound CVE-2021-39633: (unk) ip_gre: add validation for csum_start CVE-2021-39634: (unk) epoll: do not insert into poll queues until all sanity checks are done @@ -1107,8 +1103,6 @@ CVE-2021-39685: (unk) USB: gadget: detect too-big endpoint 0 requests CVE-2021-39686: (unk) binder: use euid from cred instead of using task CVE-2021-39698: (unk) wait: add wake_up_pollfree() - CVE-2021-39711: (unk) bpf: fix panic due to oob in bpf_prog_test_run_skb - CVE-2021-39713: (unk) net: sched: use Qdisc rcu API instead of relying on rtnl lock CVE-2021-39714: (unk) staging: android: ion: Drop ion_map_kernel interface CVE-2021-39800: (unk) CVE-2021-39801: (unk) @@ -1118,7 +1112,6 @@ CVE-2021-4037: (unk) xfs: fix up non-directory creation in SGID directories CVE-2021-40490: (unk) ext4: fix race writing to an inline_data file while its xattrs are changing CVE-2021-4083: (unk) fget: check that the fd still exists after getting a ref to it - CVE-2021-4148: (unk) mm: khugepaged: skip huge page collapse for special files CVE-2021-4149: (unk) btrfs: unlock newly allocated extent buffer after error CVE-2021-4150: (unk) block: fix incorrect references to disk objects CVE-2021-4155: (unk) xfs: map unwritten blocks in XFS_IOC_{ALLOC,FREE}SP just like fallocate @@ -1140,7 +1133,6 @@ CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() - CVE-2022-0171: (unk) CVE-2022-0330: (unk) drm/i915: Flush TLBs before releasing backing store CVE-2022-0382: (unk) net ticp:fix a kernel-infoleak in __tipc_sendmsg() CVE-2022-0400: (unk) @@ -1148,70 +1140,42 @@ CVE-2022-0487: (unk) moxart: fix potential use-after-free on remove path CVE-2022-0492: (unk) cgroup-v1: Require capabilities to set release_agent CVE-2022-0494: (unk) block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern - CVE-2022-0500: (unk) bpf: Introduce MEM_RDONLY flag - CVE-2022-0617: (unk) udf: Fix NULL ptr deref when converting from inline format - CVE-2022-0644: (unk) vfs: check fd has read access in kernel_read_file_from_fd() - CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() - CVE-2022-0812: (unk) xprtrdma: fix incorrect header size calculations CVE-2022-0850: (unk) ext4: fix kernel infoleak via ext4_extent_header - CVE-2022-0854: (unk) swiotlb: rework "fix info leak with DMA_FROM_DEVICE" - CVE-2022-0995: (unk) watch_queue: Fix filter limit check - CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling CVE-2022-1011: (unk) fuse: fix pipe buffer lifetime for direct_io CVE-2022-1012: (unk) secure_seq: use the 64 bits of the siphash for port offset calculation - CVE-2022-1015: (unk) netfilter: nf_tables: validate registers coming from userspace. CVE-2022-1016: (unk) netfilter: nf_tables: initialize registers in nft_do_chain() - CVE-2022-1043: (unk) io_uring: fix xa_alloc_cycle() error return value check CVE-2022-1048: (unk) ALSA: pcm: Fix races among concurrent hw_params and hw_free calls - CVE-2022-1055: (unk) net: sched: fix use-after-free in tc_new_tfilter() CVE-2022-1116: (unk) - CVE-2022-1158: (unk) KVM: x86/mmu: do compare-and-exchange of gPTE via the user address - CVE-2022-1184: (unk) + CVE-2022-1184: (unk) ext4: verify dir block before splitting it CVE-2022-1195: (unk) hamradio: improve the incomplete fix to avoid NPD CVE-2022-1198: (unk) drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() CVE-2022-1199: (unk) ax25: Fix NULL pointer dereference in ax25_kill_by_device CVE-2022-1204: (unk) ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: (unk) ax25: Fix NULL pointer dereferences in ax25 timers CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector CVE-2022-1353: (unk) af_key: add __GFP_ZERO flag for compose_sadb_supported in function pfkey_register - CVE-2022-1419: (unk) drm/vgem: Close use-after-free race in vgem_gem_create CVE-2022-1462: (unk) CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters - CVE-2022-1516: (unk) net/x25: Fix null-ptr-deref caused by x25_disconnect - CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) - CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c + CVE-2022-1652: (unk) floppy: use a statically allocated error counter CVE-2022-1679: (unk) - CVE-2022-1729: (unk) perf: Fix sys_perf_event_open() race against self CVE-2022-1786: (unk) io_uring: remove io_identity - CVE-2022-1789: (unk) KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID CVE-2022-1836: (unk) floppy: disable FDRAWCMD by default - CVE-2022-1852: (unk) KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse CVE-2022-1966: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier - CVE-2022-1972: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay CVE-2022-1974: (unk) nfc: replace improper check device_is_registered() in netlink related functions CVE-2022-1975: (unk) NFC: netlink: fix sleep in atomic bug when firmware download timeout - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking - CVE-2022-1998: (unk) fanotify: Fix stale file descriptor in copy_event_to_user() CVE-2022-20132: (unk) HID: add hid_is_usb() function to make it simpler for USB detection CVE-2022-20141: (unk) igmp: Add ip_mc_list lock in ip_check_mc_rcu CVE-2022-20148: (unk) f2fs: fix UAF in f2fs_available_free_memory - CVE-2022-20153: (unk) io_uring: return back safer resurrect - CVE-2022-20154: (unk) sctp: use call_rcu to free endpoint CVE-2022-20166: (unk) drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions - CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-21499: (unk) lockdown: also lock down previous kgdb use + CVE-2022-2153: (unk) KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-23036: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23037: (unk) xen/netfront: don't use gnttab_query_foreign_access() for mapped status CVE-2022-23038: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23039: (unk) xen/gntalloc: don't use gnttab_query_foreign_access() CVE-2022-23040: (unk) xen/xenbus: don't let xenbus_grant_ring() remove grants in error case - CVE-2022-23041: (unk) xen/9p: use alloc/free_pages_exact() CVE-2022-23042: (unk) xen/netfront: react properly to failing gnttab_end_foreign_access_ref() CVE-2022-23222: (unk) bpf: Replace PTR_TO_XXX_OR_NULL with PTR_TO_XXX | PTR_MAYBE_NULL CVE-2022-23960: (unk) ARM: report Spectre v2 status through sysfs @@ -1220,20 +1184,12 @@ CVE-2022-25258: (unk) USB: gadget: validate interface OS descriptor requests CVE-2022-25265: (unk) CVE-2022-25375: (unk) usb: gadget: rndis: check size of RNDIS_MSG_SET command - CVE-2022-25636: (unk) netfilter: nf_tables_offload: incorrect flow offload action array size - CVE-2022-26878: (unk) CVE-2022-26966: (unk) sr9700: sanity check for packet length - CVE-2022-27223: (unk) USB: gadget: validate endpoint index for xilinx udc - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe CVE-2022-28356: (unk) llc: fix netdevice reference leaks in llc_ui_bind() CVE-2022-28388: (unk) can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28389: (unk) can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: (unk) can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race - CVE-2022-28893: (unk) SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() - CVE-2022-29156: (unk) RDMA/rtrs-clt: Fix possible double free in error case - CVE-2022-29582: (unk) io_uring: fix race between timeout flush and removal - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb - CVE-2022-30594: (unk) ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 CVE-2022-32981: (unk) powerpc/32: Fix overread/overwrite of thread_struct via ptrace + CVE-2022-33981: (unk) floppy: disable FDRAWCMD by default + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/3.18/3.18_CVEs.txt b/data/3.18/3.18_CVEs.txt index bcc2c0e..979da44 100644 --- a/data/3.18/3.18_CVEs.txt +++ b/data/3.18/3.18_CVEs.txt
@@ -561,7 +561,6 @@ CVE-2018-9518: Fixed with 3.18.111 CVE-2018-9568: Fixed with 3.18.77 CVE-2019-0136: Fix not seen in stream -CVE-2019-0146: Fix unknown CVE-2019-0148: Fix not seen in stream CVE-2019-0154: Fix not seen in stream CVE-2019-10126: Fix not seen in stream @@ -844,7 +843,7 @@ CVE-2020-26145: Fix not seen in stream CVE-2020-26147: Fix not seen in stream CVE-2020-26541: Fix not seen in stream -CVE-2020-26555: Fix unknown +CVE-2020-26555: Fix not seen in stream CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26558: Fix not seen in stream @@ -895,7 +894,6 @@ CVE-2021-0512: Fix not seen in stream CVE-2021-0605: Fix not seen in stream CVE-2021-0695: Fix unknown -CVE-2021-0707: Fix not seen in stream CVE-2021-0920: Fix not seen in stream CVE-2021-0929: Fix not seen in stream CVE-2021-0937: Fix not seen in stream @@ -938,7 +936,6 @@ CVE-2021-33034: Fix not seen in stream CVE-2021-33061: Fix not seen in stream CVE-2021-33098: Fix not seen in stream -CVE-2021-33135: Fix unknown CVE-2021-33909: Fix not seen in stream CVE-2021-34556: Fix not seen in stream CVE-2021-34693: Fix not seen in stream @@ -975,7 +972,6 @@ CVE-2021-3847: Fix unknown CVE-2021-3864: Fix unknown CVE-2021-3892: Fix unknown -CVE-2021-3894: Fix not seen in stream CVE-2021-3896: Fix not seen in stream CVE-2021-39633: Fix not seen in stream CVE-2021-39634: Fix not seen in stream @@ -985,8 +981,6 @@ CVE-2021-39685: Fix not seen in stream CVE-2021-39686: Fix not seen in stream CVE-2021-39698: Fix not seen in stream -CVE-2021-39711: Fix not seen in stream -CVE-2021-39713: Fix not seen in stream CVE-2021-39714: Fix not seen in stream CVE-2021-39800: Fix unknown CVE-2021-39801: Fix unknown @@ -996,7 +990,6 @@ CVE-2021-4037: Fix not seen in stream CVE-2021-40490: Fix not seen in stream CVE-2021-4083: Fix not seen in stream -CVE-2021-4148: Fix not seen in stream CVE-2021-4149: Fix not seen in stream CVE-2021-4150: Fix not seen in stream CVE-2021-4155: Fix not seen in stream @@ -1018,7 +1011,6 @@ CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream -CVE-2022-0171: Fix unknown CVE-2022-0330: Fix not seen in stream CVE-2022-0382: Fix not seen in stream CVE-2022-0400: Fix unknown @@ -1026,70 +1018,42 @@ CVE-2022-0487: Fix not seen in stream CVE-2022-0492: Fix not seen in stream CVE-2022-0494: Fix not seen in stream -CVE-2022-0500: Fix not seen in stream -CVE-2022-0617: Fix not seen in stream -CVE-2022-0644: Fix not seen in stream -CVE-2022-0742: Fix not seen in stream -CVE-2022-0812: Fix not seen in stream CVE-2022-0850: Fix not seen in stream -CVE-2022-0854: Fix not seen in stream -CVE-2022-0995: Fix not seen in stream -CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fix not seen in stream CVE-2022-1012: Fix not seen in stream -CVE-2022-1015: Fix not seen in stream CVE-2022-1016: Fix not seen in stream -CVE-2022-1043: Fix not seen in stream CVE-2022-1048: Fix not seen in stream -CVE-2022-1055: Fix not seen in stream CVE-2022-1116: Fix unknown -CVE-2022-1158: Fix not seen in stream -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fix not seen in stream CVE-2022-1195: Fix not seen in stream CVE-2022-1198: Fix not seen in stream CVE-2022-1199: Fix not seen in stream CVE-2022-1204: Fix not seen in stream -CVE-2022-1205: Fix not seen in stream CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream CVE-2022-1353: Fix not seen in stream -CVE-2022-1419: Fix not seen in stream CVE-2022-1462: Fix unknown CVE-2022-1508: Fix not seen in stream -CVE-2022-1516: Fix not seen in stream -CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown -CVE-2022-1671: Fix not seen in stream +CVE-2022-1652: Fix not seen in stream CVE-2022-1679: Fix unknown -CVE-2022-1729: Fix not seen in stream CVE-2022-1786: Fix not seen in stream -CVE-2022-1789: Fix not seen in stream CVE-2022-1836: Fix not seen in stream -CVE-2022-1852: Fix not seen in stream CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fix not seen in stream -CVE-2022-1972: Fix not seen in stream -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fix not seen in stream CVE-2022-1975: Fix not seen in stream -CVE-2022-1976: Fix not seen in stream -CVE-2022-1998: Fix not seen in stream CVE-2022-20132: Fix not seen in stream CVE-2022-20141: Fix not seen in stream CVE-2022-20148: Fix not seen in stream -CVE-2022-20153: Fix not seen in stream -CVE-2022-20154: Fix not seen in stream CVE-2022-20166: Fix not seen in stream -CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fix not seen in stream +CVE-2022-2153: Fix not seen in stream CVE-2022-23036: Fix not seen in stream CVE-2022-23037: Fix not seen in stream CVE-2022-23038: Fix not seen in stream CVE-2022-23039: Fix not seen in stream CVE-2022-23040: Fix not seen in stream -CVE-2022-23041: Fix not seen in stream CVE-2022-23042: Fix not seen in stream CVE-2022-23222: Fix not seen in stream CVE-2022-23960: Fix not seen in stream @@ -1098,20 +1062,13 @@ CVE-2022-25258: Fix not seen in stream CVE-2022-25265: Fix unknown CVE-2022-25375: Fix not seen in stream -CVE-2022-25636: Fix not seen in stream -CVE-2022-26878: Fix unknown CVE-2022-26966: Fix not seen in stream CVE-2022-27223: Fix not seen in stream -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fix not seen in stream CVE-2022-28388: Fix not seen in stream -CVE-2022-28389: Fix not seen in stream CVE-2022-28390: Fix not seen in stream -CVE-2022-28796: Fix not seen in stream -CVE-2022-28893: Fix not seen in stream -CVE-2022-29156: Fix not seen in stream -CVE-2022-29582: Fix not seen in stream -CVE-2022-29968: Fix not seen in stream -CVE-2022-30594: Fix not seen in stream CVE-2022-32296: Fix not seen in stream CVE-2022-32981: Fix not seen in stream +CVE-2022-33981: Fix not seen in stream +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/3.18/3.18_security.txt b/data/3.18/3.18_security.txt index bbfef7f..27a57b1 100644 --- a/data/3.18/3.18_security.txt +++ b/data/3.18/3.18_security.txt
@@ -827,7 +827,6 @@ CVE-2018-9465: (unk) binder: fix proc->files use-after-free CVE-2018-9517: (unk) l2tp: pass tunnel pointer to ->session_create() CVE-2019-0136: (unk) mac80211: drop robust management frames from unknown TA - CVE-2019-0146: (unk) CVE-2019-0148: (unk) i40e: Wrong truncation from u16 to u8 CVE-2019-0154: (unk) drm/i915: Lower RM timeout to avoid DSI hard hangs CVE-2019-10126: (unk) mwifiex: Fix heap overflow in mwifiex_uap_parse_tail_ies() @@ -1078,7 +1077,7 @@ CVE-2020-26145: (unk) ath10k: drop fragments with multicast DA for PCIe CVE-2020-26147: (unk) mac80211: assure all fragments are encrypted CVE-2020-26541: (unk) certs: Add EFI_CERT_X509_GUID support for dbx entries - CVE-2020-26555: (unk) + CVE-2020-26555: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26558: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical @@ -1129,7 +1128,6 @@ CVE-2021-0512: (unk) HID: make arrays usage and value to be the same CVE-2021-0605: (unk) af_key: pfkey_dump needs parameter validation CVE-2021-0695: (unk) - CVE-2021-0707: (unk) dmabuf: fix use-after-free of dmabuf's file->f_inode CVE-2021-0920: (unk) af_unix: fix garbage collect vs MSG_PEEK CVE-2021-0929: (unk) staging/android/ion: delete dma_buf->kmap/unmap implemenation CVE-2021-0937: (unk) netfilter: x_tables: fix compat match/target pad out-of-bound write @@ -1172,7 +1170,6 @@ CVE-2021-33034: (unk) Bluetooth: verify AMP hci_chan before amp_destroy CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality CVE-2021-33098: (unk) ixgbe: fix large MTU request from VF - CVE-2021-33135: (unk) CVE-2021-33909: (unk) seq_file: disallow extremely large seq buffer allocations CVE-2021-34556: (unk) bpf: Introduce BPF nospec instruction for mitigating Spectre v4 CVE-2021-34693: (unk) can: bcm: fix infoleak in struct bcm_msg_head @@ -1209,7 +1206,6 @@ CVE-2021-3847: (unk) CVE-2021-3864: (unk) CVE-2021-3892: (unk) - CVE-2021-3894: (unk) sctp: account stream padding length for reconf chunk CVE-2021-3896: (unk) isdn: cpai: check ctr->cnr to avoid array index out of bound CVE-2021-39633: (unk) ip_gre: add validation for csum_start CVE-2021-39634: (unk) epoll: do not insert into poll queues until all sanity checks are done @@ -1219,8 +1215,6 @@ CVE-2021-39685: (unk) USB: gadget: detect too-big endpoint 0 requests CVE-2021-39686: (unk) binder: use euid from cred instead of using task CVE-2021-39698: (unk) wait: add wake_up_pollfree() - CVE-2021-39711: (unk) bpf: fix panic due to oob in bpf_prog_test_run_skb - CVE-2021-39713: (unk) net: sched: use Qdisc rcu API instead of relying on rtnl lock CVE-2021-39714: (unk) staging: android: ion: Drop ion_map_kernel interface CVE-2021-39800: (unk) CVE-2021-39801: (unk) @@ -1230,7 +1224,6 @@ CVE-2021-4037: (unk) xfs: fix up non-directory creation in SGID directories CVE-2021-40490: (unk) ext4: fix race writing to an inline_data file while its xattrs are changing CVE-2021-4083: (unk) fget: check that the fd still exists after getting a ref to it - CVE-2021-4148: (unk) mm: khugepaged: skip huge page collapse for special files CVE-2021-4149: (unk) btrfs: unlock newly allocated extent buffer after error CVE-2021-4150: (unk) block: fix incorrect references to disk objects CVE-2021-4155: (unk) xfs: map unwritten blocks in XFS_IOC_{ALLOC,FREE}SP just like fallocate @@ -1252,7 +1245,6 @@ CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() - CVE-2022-0171: (unk) CVE-2022-0330: (unk) drm/i915: Flush TLBs before releasing backing store CVE-2022-0382: (unk) net ticp:fix a kernel-infoleak in __tipc_sendmsg() CVE-2022-0400: (unk) @@ -1260,70 +1252,42 @@ CVE-2022-0487: (unk) moxart: fix potential use-after-free on remove path CVE-2022-0492: (unk) cgroup-v1: Require capabilities to set release_agent CVE-2022-0494: (unk) block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern - CVE-2022-0500: (unk) bpf: Introduce MEM_RDONLY flag - CVE-2022-0617: (unk) udf: Fix NULL ptr deref when converting from inline format - CVE-2022-0644: (unk) vfs: check fd has read access in kernel_read_file_from_fd() - CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() - CVE-2022-0812: (unk) xprtrdma: fix incorrect header size calculations CVE-2022-0850: (unk) ext4: fix kernel infoleak via ext4_extent_header - CVE-2022-0854: (unk) swiotlb: rework "fix info leak with DMA_FROM_DEVICE" - CVE-2022-0995: (unk) watch_queue: Fix filter limit check - CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling CVE-2022-1011: (unk) fuse: fix pipe buffer lifetime for direct_io CVE-2022-1012: (unk) secure_seq: use the 64 bits of the siphash for port offset calculation - CVE-2022-1015: (unk) netfilter: nf_tables: validate registers coming from userspace. CVE-2022-1016: (unk) netfilter: nf_tables: initialize registers in nft_do_chain() - CVE-2022-1043: (unk) io_uring: fix xa_alloc_cycle() error return value check CVE-2022-1048: (unk) ALSA: pcm: Fix races among concurrent hw_params and hw_free calls - CVE-2022-1055: (unk) net: sched: fix use-after-free in tc_new_tfilter() CVE-2022-1116: (unk) - CVE-2022-1158: (unk) KVM: x86/mmu: do compare-and-exchange of gPTE via the user address - CVE-2022-1184: (unk) + CVE-2022-1184: (unk) ext4: verify dir block before splitting it CVE-2022-1195: (unk) hamradio: improve the incomplete fix to avoid NPD CVE-2022-1198: (unk) drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() CVE-2022-1199: (unk) ax25: Fix NULL pointer dereference in ax25_kill_by_device CVE-2022-1204: (unk) ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: (unk) ax25: Fix NULL pointer dereferences in ax25 timers CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector CVE-2022-1353: (unk) af_key: add __GFP_ZERO flag for compose_sadb_supported in function pfkey_register - CVE-2022-1419: (unk) drm/vgem: Close use-after-free race in vgem_gem_create CVE-2022-1462: (unk) CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters - CVE-2022-1516: (unk) net/x25: Fix null-ptr-deref caused by x25_disconnect - CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) - CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c + CVE-2022-1652: (unk) floppy: use a statically allocated error counter CVE-2022-1679: (unk) - CVE-2022-1729: (unk) perf: Fix sys_perf_event_open() race against self CVE-2022-1786: (unk) io_uring: remove io_identity - CVE-2022-1789: (unk) KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID CVE-2022-1836: (unk) floppy: disable FDRAWCMD by default - CVE-2022-1852: (unk) KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse CVE-2022-1966: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier - CVE-2022-1972: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay CVE-2022-1974: (unk) nfc: replace improper check device_is_registered() in netlink related functions CVE-2022-1975: (unk) NFC: netlink: fix sleep in atomic bug when firmware download timeout - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking - CVE-2022-1998: (unk) fanotify: Fix stale file descriptor in copy_event_to_user() CVE-2022-20132: (unk) HID: add hid_is_usb() function to make it simpler for USB detection CVE-2022-20141: (unk) igmp: Add ip_mc_list lock in ip_check_mc_rcu CVE-2022-20148: (unk) f2fs: fix UAF in f2fs_available_free_memory - CVE-2022-20153: (unk) io_uring: return back safer resurrect - CVE-2022-20154: (unk) sctp: use call_rcu to free endpoint CVE-2022-20166: (unk) drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions - CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-21499: (unk) lockdown: also lock down previous kgdb use + CVE-2022-2153: (unk) KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-23036: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23037: (unk) xen/netfront: don't use gnttab_query_foreign_access() for mapped status CVE-2022-23038: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23039: (unk) xen/gntalloc: don't use gnttab_query_foreign_access() CVE-2022-23040: (unk) xen/xenbus: don't let xenbus_grant_ring() remove grants in error case - CVE-2022-23041: (unk) xen/9p: use alloc/free_pages_exact() CVE-2022-23042: (unk) xen/netfront: react properly to failing gnttab_end_foreign_access_ref() CVE-2022-23222: (unk) bpf: Replace PTR_TO_XXX_OR_NULL with PTR_TO_XXX | PTR_MAYBE_NULL CVE-2022-23960: (unk) ARM: report Spectre v2 status through sysfs @@ -1332,20 +1296,13 @@ CVE-2022-25258: (unk) USB: gadget: validate interface OS descriptor requests CVE-2022-25265: (unk) CVE-2022-25375: (unk) usb: gadget: rndis: check size of RNDIS_MSG_SET command - CVE-2022-25636: (unk) netfilter: nf_tables_offload: incorrect flow offload action array size - CVE-2022-26878: (unk) CVE-2022-26966: (unk) sr9700: sanity check for packet length CVE-2022-27223: (unk) USB: gadget: validate endpoint index for xilinx udc - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe CVE-2022-28356: (unk) llc: fix netdevice reference leaks in llc_ui_bind() CVE-2022-28388: (unk) can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28389: (unk) can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: (unk) can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race - CVE-2022-28893: (unk) SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() - CVE-2022-29156: (unk) RDMA/rtrs-clt: Fix possible double free in error case - CVE-2022-29582: (unk) io_uring: fix race between timeout flush and removal - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb - CVE-2022-30594: (unk) ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 CVE-2022-32981: (unk) powerpc/32: Fix overread/overwrite of thread_struct via ptrace + CVE-2022-33981: (unk) floppy: disable FDRAWCMD by default + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/3.2/3.2_CVEs.txt b/data/3.2/3.2_CVEs.txt index 86ecf68..62b3109 100644 --- a/data/3.2/3.2_CVEs.txt +++ b/data/3.2/3.2_CVEs.txt
@@ -698,7 +698,6 @@ CVE-2018-9517: Fixed with 3.2.96 CVE-2018-9568: Fix not seen in stream CVE-2019-0136: Fix not seen in stream -CVE-2019-0146: Fix unknown CVE-2019-0154: Fix not seen in stream CVE-2019-10126: Fix not seen in stream CVE-2019-10142: Fix not seen in stream @@ -923,7 +922,7 @@ CVE-2020-26145: Fix not seen in stream CVE-2020-26147: Fix not seen in stream CVE-2020-26541: Fix not seen in stream -CVE-2020-26555: Fix unknown +CVE-2020-26555: Fix not seen in stream CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26558: Fix not seen in stream @@ -969,7 +968,6 @@ CVE-2021-0448: Fix not seen in stream CVE-2021-0512: Fix not seen in stream CVE-2021-0695: Fix unknown -CVE-2021-0707: Fix not seen in stream CVE-2021-0920: Fix not seen in stream CVE-2021-0929: Fix not seen in stream CVE-2021-0937: Fix not seen in stream @@ -1008,7 +1006,6 @@ CVE-2021-32399: Fix not seen in stream CVE-2021-33034: Fix not seen in stream CVE-2021-33061: Fix not seen in stream -CVE-2021-33135: Fix unknown CVE-2021-34556: Fix not seen in stream CVE-2021-34693: Fix not seen in stream CVE-2021-3483: Fix not seen in stream @@ -1037,7 +1034,6 @@ CVE-2021-3847: Fix unknown CVE-2021-3864: Fix unknown CVE-2021-3892: Fix unknown -CVE-2021-3894: Fix not seen in stream CVE-2021-3896: Fix not seen in stream CVE-2021-39634: Fix not seen in stream CVE-2021-39636: Fix not seen in stream @@ -1045,16 +1041,12 @@ CVE-2021-39685: Fix not seen in stream CVE-2021-39686: Fix not seen in stream CVE-2021-39698: Fix not seen in stream -CVE-2021-39711: Fix not seen in stream -CVE-2021-39713: Fix not seen in stream -CVE-2021-39714: Fix not seen in stream CVE-2021-39800: Fix unknown CVE-2021-39801: Fix unknown CVE-2021-39802: Fix unknown CVE-2021-4023: Fix not seen in stream CVE-2021-4037: Fix not seen in stream CVE-2021-4083: Fix not seen in stream -CVE-2021-4148: Fix not seen in stream CVE-2021-4149: Fix not seen in stream CVE-2021-4150: Fix not seen in stream CVE-2021-4155: Fix not seen in stream @@ -1074,77 +1066,45 @@ CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream -CVE-2022-0171: Fix unknown CVE-2022-0330: Fix not seen in stream CVE-2022-0382: Fix not seen in stream CVE-2022-0400: Fix unknown CVE-2022-0480: Fix not seen in stream CVE-2022-0492: Fix not seen in stream CVE-2022-0494: Fix not seen in stream -CVE-2022-0500: Fix not seen in stream -CVE-2022-0617: Fix not seen in stream -CVE-2022-0644: Fix not seen in stream -CVE-2022-0742: Fix not seen in stream -CVE-2022-0812: Fix not seen in stream CVE-2022-0850: Fix not seen in stream -CVE-2022-0854: Fix not seen in stream -CVE-2022-0995: Fix not seen in stream -CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fix not seen in stream CVE-2022-1012: Fix not seen in stream -CVE-2022-1015: Fix not seen in stream -CVE-2022-1016: Fix not seen in stream -CVE-2022-1043: Fix not seen in stream CVE-2022-1048: Fix not seen in stream -CVE-2022-1055: Fix not seen in stream CVE-2022-1116: Fix unknown -CVE-2022-1158: Fix not seen in stream -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fix not seen in stream CVE-2022-1195: Fix not seen in stream CVE-2022-1198: Fix not seen in stream CVE-2022-1199: Fix not seen in stream CVE-2022-1204: Fix not seen in stream -CVE-2022-1205: Fix not seen in stream CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream CVE-2022-1353: Fix not seen in stream -CVE-2022-1419: Fix not seen in stream CVE-2022-1462: Fix unknown CVE-2022-1508: Fix not seen in stream -CVE-2022-1516: Fix not seen in stream -CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown -CVE-2022-1671: Fix not seen in stream +CVE-2022-1652: Fix not seen in stream CVE-2022-1679: Fix unknown -CVE-2022-1729: Fix not seen in stream CVE-2022-1786: Fix not seen in stream -CVE-2022-1789: Fix not seen in stream CVE-2022-1836: Fix not seen in stream -CVE-2022-1852: Fix not seen in stream CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fix not seen in stream -CVE-2022-1972: Fix not seen in stream -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fix not seen in stream -CVE-2022-1975: Fix not seen in stream -CVE-2022-1976: Fix not seen in stream -CVE-2022-1998: Fix not seen in stream CVE-2022-20132: Fix not seen in stream CVE-2022-20141: Fix not seen in stream CVE-2022-20148: Fix not seen in stream -CVE-2022-20153: Fix not seen in stream -CVE-2022-20154: Fix not seen in stream CVE-2022-20166: Fix not seen in stream -CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fix not seen in stream CVE-2022-23036: Fix not seen in stream CVE-2022-23037: Fix not seen in stream CVE-2022-23038: Fix not seen in stream CVE-2022-23039: Fix not seen in stream CVE-2022-23040: Fix not seen in stream -CVE-2022-23041: Fix not seen in stream CVE-2022-23042: Fix not seen in stream CVE-2022-23222: Fix not seen in stream CVE-2022-23960: Fix not seen in stream @@ -1152,20 +1112,9 @@ CVE-2022-25258: Fix not seen in stream CVE-2022-25265: Fix unknown CVE-2022-25375: Fix not seen in stream -CVE-2022-25636: Fix not seen in stream -CVE-2022-26878: Fix unknown -CVE-2022-26966: Fix not seen in stream -CVE-2022-27223: Fix not seen in stream -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fix not seen in stream -CVE-2022-28388: Fix not seen in stream -CVE-2022-28389: Fix not seen in stream CVE-2022-28390: Fix not seen in stream -CVE-2022-28796: Fix not seen in stream -CVE-2022-28893: Fix not seen in stream -CVE-2022-29156: Fix not seen in stream -CVE-2022-29582: Fix not seen in stream -CVE-2022-29968: Fix not seen in stream -CVE-2022-30594: Fix not seen in stream CVE-2022-32296: Fix not seen in stream -CVE-2022-32981: Fix not seen in stream +CVE-2022-33981: Fix not seen in stream +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/3.2/3.2_security.txt b/data/3.2/3.2_security.txt index 223c699..6166107 100644 --- a/data/3.2/3.2_security.txt +++ b/data/3.2/3.2_security.txt
@@ -860,7 +860,6 @@ CVE-2018-9516: (unk) HID: debug: check length before copy_to_user() CVE-2018-9568: (unk) net: Set sk_prot_creator when cloning sockets to the right proto CVE-2019-0136: (unk) mac80211: drop robust management frames from unknown TA - CVE-2019-0146: (unk) CVE-2019-0154: (unk) drm/i915: Lower RM timeout to avoid DSI hard hangs CVE-2019-10126: (unk) mwifiex: Fix heap overflow in mwifiex_uap_parse_tail_ies() CVE-2019-10142: (unk) drivers/virt/fsl_hypervisor.c: prevent integer overflow in ioctl @@ -1082,7 +1081,7 @@ CVE-2020-26145: (unk) ath10k: drop fragments with multicast DA for PCIe CVE-2020-26147: (unk) mac80211: assure all fragments are encrypted CVE-2020-26541: (unk) certs: Add EFI_CERT_X509_GUID support for dbx entries - CVE-2020-26555: (unk) + CVE-2020-26555: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26558: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical @@ -1126,7 +1125,6 @@ CVE-2021-0448: (unk) netfilter: ctnetlink: add a range check for l3/l4 protonum CVE-2021-0512: (unk) HID: make arrays usage and value to be the same CVE-2021-0695: (unk) - CVE-2021-0707: (unk) dmabuf: fix use-after-free of dmabuf's file->f_inode CVE-2021-0920: (unk) af_unix: fix garbage collect vs MSG_PEEK CVE-2021-0929: (unk) staging/android/ion: delete dma_buf->kmap/unmap implemenation CVE-2021-0937: (unk) netfilter: x_tables: fix compat match/target pad out-of-bound write @@ -1164,7 +1162,6 @@ CVE-2021-32399: (unk) bluetooth: eliminate the potential race condition when removing the HCI controller CVE-2021-33034: (unk) Bluetooth: verify AMP hci_chan before amp_destroy CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality - CVE-2021-33135: (unk) CVE-2021-34556: (unk) bpf: Introduce BPF nospec instruction for mitigating Spectre v4 CVE-2021-34693: (unk) can: bcm: fix infoleak in struct bcm_msg_head CVE-2021-3483: (unk) firewire: nosy: Fix a use-after-free bug in nosy_ioctl() @@ -1193,7 +1190,6 @@ CVE-2021-3847: (unk) CVE-2021-3864: (unk) CVE-2021-3892: (unk) - CVE-2021-3894: (unk) sctp: account stream padding length for reconf chunk CVE-2021-3896: (unk) isdn: cpai: check ctr->cnr to avoid array index out of bound CVE-2021-39634: (unk) epoll: do not insert into poll queues until all sanity checks are done CVE-2021-39636: (unk) netfilter: x_tables: fix pointer leaks to userspace @@ -1201,16 +1197,12 @@ CVE-2021-39685: (unk) USB: gadget: detect too-big endpoint 0 requests CVE-2021-39686: (unk) binder: use euid from cred instead of using task CVE-2021-39698: (unk) wait: add wake_up_pollfree() - CVE-2021-39711: (unk) bpf: fix panic due to oob in bpf_prog_test_run_skb - CVE-2021-39713: (unk) net: sched: use Qdisc rcu API instead of relying on rtnl lock - CVE-2021-39714: (unk) staging: android: ion: Drop ion_map_kernel interface CVE-2021-39800: (unk) CVE-2021-39801: (unk) CVE-2021-39802: (unk) CVE-2021-4023: (unk) io-wq: fix cancellation on create-worker failure CVE-2021-4037: (unk) xfs: fix up non-directory creation in SGID directories CVE-2021-4083: (unk) fget: check that the fd still exists after getting a ref to it - CVE-2021-4148: (unk) mm: khugepaged: skip huge page collapse for special files CVE-2021-4149: (unk) btrfs: unlock newly allocated extent buffer after error CVE-2021-4150: (unk) block: fix incorrect references to disk objects CVE-2021-4155: (unk) xfs: map unwritten blocks in XFS_IOC_{ALLOC,FREE}SP just like fallocate @@ -1230,77 +1222,45 @@ CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() - CVE-2022-0171: (unk) CVE-2022-0330: (unk) drm/i915: Flush TLBs before releasing backing store CVE-2022-0382: (unk) net ticp:fix a kernel-infoleak in __tipc_sendmsg() CVE-2022-0400: (unk) CVE-2022-0480: (unk) memcg: enable accounting for file lock caches CVE-2022-0492: (unk) cgroup-v1: Require capabilities to set release_agent CVE-2022-0494: (unk) block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern - CVE-2022-0500: (unk) bpf: Introduce MEM_RDONLY flag - CVE-2022-0617: (unk) udf: Fix NULL ptr deref when converting from inline format - CVE-2022-0644: (unk) vfs: check fd has read access in kernel_read_file_from_fd() - CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() - CVE-2022-0812: (unk) xprtrdma: fix incorrect header size calculations CVE-2022-0850: (unk) ext4: fix kernel infoleak via ext4_extent_header - CVE-2022-0854: (unk) swiotlb: rework "fix info leak with DMA_FROM_DEVICE" - CVE-2022-0995: (unk) watch_queue: Fix filter limit check - CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling CVE-2022-1011: (unk) fuse: fix pipe buffer lifetime for direct_io CVE-2022-1012: (unk) secure_seq: use the 64 bits of the siphash for port offset calculation - CVE-2022-1015: (unk) netfilter: nf_tables: validate registers coming from userspace. - CVE-2022-1016: (unk) netfilter: nf_tables: initialize registers in nft_do_chain() - CVE-2022-1043: (unk) io_uring: fix xa_alloc_cycle() error return value check CVE-2022-1048: (unk) ALSA: pcm: Fix races among concurrent hw_params and hw_free calls - CVE-2022-1055: (unk) net: sched: fix use-after-free in tc_new_tfilter() CVE-2022-1116: (unk) - CVE-2022-1158: (unk) KVM: x86/mmu: do compare-and-exchange of gPTE via the user address - CVE-2022-1184: (unk) + CVE-2022-1184: (unk) ext4: verify dir block before splitting it CVE-2022-1195: (unk) hamradio: improve the incomplete fix to avoid NPD CVE-2022-1198: (unk) drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() CVE-2022-1199: (unk) ax25: Fix NULL pointer dereference in ax25_kill_by_device CVE-2022-1204: (unk) ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: (unk) ax25: Fix NULL pointer dereferences in ax25 timers CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector CVE-2022-1353: (unk) af_key: add __GFP_ZERO flag for compose_sadb_supported in function pfkey_register - CVE-2022-1419: (unk) drm/vgem: Close use-after-free race in vgem_gem_create CVE-2022-1462: (unk) CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters - CVE-2022-1516: (unk) net/x25: Fix null-ptr-deref caused by x25_disconnect - CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) - CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c + CVE-2022-1652: (unk) floppy: use a statically allocated error counter CVE-2022-1679: (unk) - CVE-2022-1729: (unk) perf: Fix sys_perf_event_open() race against self CVE-2022-1786: (unk) io_uring: remove io_identity - CVE-2022-1789: (unk) KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID CVE-2022-1836: (unk) floppy: disable FDRAWCMD by default - CVE-2022-1852: (unk) KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse CVE-2022-1966: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier - CVE-2022-1972: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay CVE-2022-1974: (unk) nfc: replace improper check device_is_registered() in netlink related functions - CVE-2022-1975: (unk) NFC: netlink: fix sleep in atomic bug when firmware download timeout - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking - CVE-2022-1998: (unk) fanotify: Fix stale file descriptor in copy_event_to_user() CVE-2022-20132: (unk) HID: add hid_is_usb() function to make it simpler for USB detection CVE-2022-20141: (unk) igmp: Add ip_mc_list lock in ip_check_mc_rcu CVE-2022-20148: (unk) f2fs: fix UAF in f2fs_available_free_memory - CVE-2022-20153: (unk) io_uring: return back safer resurrect - CVE-2022-20154: (unk) sctp: use call_rcu to free endpoint CVE-2022-20166: (unk) drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions - CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-21499: (unk) lockdown: also lock down previous kgdb use CVE-2022-23036: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23037: (unk) xen/netfront: don't use gnttab_query_foreign_access() for mapped status CVE-2022-23038: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23039: (unk) xen/gntalloc: don't use gnttab_query_foreign_access() CVE-2022-23040: (unk) xen/xenbus: don't let xenbus_grant_ring() remove grants in error case - CVE-2022-23041: (unk) xen/9p: use alloc/free_pages_exact() CVE-2022-23042: (unk) xen/netfront: react properly to failing gnttab_end_foreign_access_ref() CVE-2022-23222: (unk) bpf: Replace PTR_TO_XXX_OR_NULL with PTR_TO_XXX | PTR_MAYBE_NULL CVE-2022-23960: (unk) ARM: report Spectre v2 status through sysfs @@ -1308,20 +1268,9 @@ CVE-2022-25258: (unk) USB: gadget: validate interface OS descriptor requests CVE-2022-25265: (unk) CVE-2022-25375: (unk) usb: gadget: rndis: check size of RNDIS_MSG_SET command - CVE-2022-25636: (unk) netfilter: nf_tables_offload: incorrect flow offload action array size - CVE-2022-26878: (unk) - CVE-2022-26966: (unk) sr9700: sanity check for packet length - CVE-2022-27223: (unk) USB: gadget: validate endpoint index for xilinx udc - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe CVE-2022-28356: (unk) llc: fix netdevice reference leaks in llc_ui_bind() - CVE-2022-28388: (unk) can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28389: (unk) can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: (unk) can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race - CVE-2022-28893: (unk) SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() - CVE-2022-29156: (unk) RDMA/rtrs-clt: Fix possible double free in error case - CVE-2022-29582: (unk) io_uring: fix race between timeout flush and removal - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb - CVE-2022-30594: (unk) ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 - CVE-2022-32981: (unk) powerpc/32: Fix overread/overwrite of thread_struct via ptrace + CVE-2022-33981: (unk) floppy: disable FDRAWCMD by default + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/4.1/4.1_CVEs.txt b/data/4.1/4.1_CVEs.txt index e2f42d6..5efc461 100644 --- a/data/4.1/4.1_CVEs.txt +++ b/data/4.1/4.1_CVEs.txt
@@ -511,7 +511,6 @@ CVE-2018-9518: Fix not seen in stream CVE-2018-9568: Fixed with 4.1.46 CVE-2019-0136: Fix not seen in stream -CVE-2019-0146: Fix unknown CVE-2019-0148: Fix not seen in stream CVE-2019-0154: Fix not seen in stream CVE-2019-0155: Fix not seen in stream @@ -797,7 +796,7 @@ CVE-2020-26145: Fix not seen in stream CVE-2020-26147: Fix not seen in stream CVE-2020-26541: Fix not seen in stream -CVE-2020-26555: Fix unknown +CVE-2020-26555: Fix not seen in stream CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26558: Fix not seen in stream @@ -848,7 +847,6 @@ CVE-2021-0512: Fix not seen in stream CVE-2021-0605: Fix not seen in stream CVE-2021-0695: Fix unknown -CVE-2021-0707: Fix not seen in stream CVE-2021-0920: Fix not seen in stream CVE-2021-0929: Fix not seen in stream CVE-2021-0937: Fix not seen in stream @@ -892,7 +890,6 @@ CVE-2021-33034: Fix not seen in stream CVE-2021-33061: Fix not seen in stream CVE-2021-33098: Fix not seen in stream -CVE-2021-33135: Fix unknown CVE-2021-33909: Fix not seen in stream CVE-2021-34556: Fix not seen in stream CVE-2021-34693: Fix not seen in stream @@ -930,7 +927,6 @@ CVE-2021-3847: Fix unknown CVE-2021-3864: Fix unknown CVE-2021-3892: Fix unknown -CVE-2021-3894: Fix not seen in stream CVE-2021-3896: Fix not seen in stream CVE-2021-39633: Fix not seen in stream CVE-2021-39634: Fix not seen in stream @@ -940,8 +936,6 @@ CVE-2021-39685: Fix not seen in stream CVE-2021-39686: Fix not seen in stream CVE-2021-39698: Fix not seen in stream -CVE-2021-39711: Fix not seen in stream -CVE-2021-39713: Fix not seen in stream CVE-2021-39714: Fix not seen in stream CVE-2021-39800: Fix unknown CVE-2021-39801: Fix unknown @@ -951,7 +945,6 @@ CVE-2021-4037: Fix not seen in stream CVE-2021-40490: Fix not seen in stream CVE-2021-4083: Fix not seen in stream -CVE-2021-4148: Fix not seen in stream CVE-2021-4149: Fix not seen in stream CVE-2021-4150: Fix not seen in stream CVE-2021-4155: Fix not seen in stream @@ -974,7 +967,6 @@ CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream -CVE-2022-0171: Fix unknown CVE-2022-0330: Fix not seen in stream CVE-2022-0382: Fix not seen in stream CVE-2022-0400: Fix unknown @@ -982,30 +974,17 @@ CVE-2022-0487: Fix not seen in stream CVE-2022-0492: Fix not seen in stream CVE-2022-0494: Fix not seen in stream -CVE-2022-0500: Fix not seen in stream -CVE-2022-0617: Fix not seen in stream -CVE-2022-0644: Fix not seen in stream -CVE-2022-0742: Fix not seen in stream -CVE-2022-0812: Fix not seen in stream CVE-2022-0850: Fix not seen in stream -CVE-2022-0854: Fix not seen in stream -CVE-2022-0995: Fix not seen in stream -CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fix not seen in stream CVE-2022-1012: Fix not seen in stream -CVE-2022-1015: Fix not seen in stream CVE-2022-1016: Fix not seen in stream -CVE-2022-1043: Fix not seen in stream CVE-2022-1048: Fix not seen in stream -CVE-2022-1055: Fix not seen in stream CVE-2022-1116: Fix unknown -CVE-2022-1158: Fix not seen in stream -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fix not seen in stream CVE-2022-1195: Fix not seen in stream CVE-2022-1198: Fix not seen in stream CVE-2022-1199: Fix not seen in stream CVE-2022-1204: Fix not seen in stream -CVE-2022-1205: Fix not seen in stream CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream @@ -1013,39 +992,26 @@ CVE-2022-1419: Fix not seen in stream CVE-2022-1462: Fix unknown CVE-2022-1508: Fix not seen in stream -CVE-2022-1516: Fix not seen in stream -CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown -CVE-2022-1671: Fix not seen in stream +CVE-2022-1652: Fix not seen in stream CVE-2022-1679: Fix unknown CVE-2022-1729: Fix not seen in stream CVE-2022-1786: Fix not seen in stream -CVE-2022-1789: Fix not seen in stream CVE-2022-1836: Fix not seen in stream -CVE-2022-1852: Fix not seen in stream CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fix not seen in stream -CVE-2022-1972: Fix not seen in stream -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fix not seen in stream CVE-2022-1975: Fix not seen in stream -CVE-2022-1976: Fix not seen in stream -CVE-2022-1998: Fix not seen in stream CVE-2022-20132: Fix not seen in stream CVE-2022-20141: Fix not seen in stream CVE-2022-20148: Fix not seen in stream -CVE-2022-20153: Fix not seen in stream -CVE-2022-20154: Fix not seen in stream CVE-2022-20166: Fix not seen in stream -CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fix not seen in stream +CVE-2022-2153: Fix not seen in stream CVE-2022-23036: Fix not seen in stream CVE-2022-23037: Fix not seen in stream CVE-2022-23038: Fix not seen in stream CVE-2022-23039: Fix not seen in stream CVE-2022-23040: Fix not seen in stream -CVE-2022-23041: Fix not seen in stream CVE-2022-23042: Fix not seen in stream CVE-2022-23222: Fix not seen in stream CVE-2022-23960: Fix not seen in stream @@ -1054,21 +1020,15 @@ CVE-2022-25258: Fix not seen in stream CVE-2022-25265: Fix unknown CVE-2022-25375: Fix not seen in stream -CVE-2022-25636: Fix not seen in stream CVE-2022-26490: Fix not seen in stream -CVE-2022-26878: Fix unknown CVE-2022-26966: Fix not seen in stream CVE-2022-27223: Fix not seen in stream -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fix not seen in stream CVE-2022-28388: Fix not seen in stream -CVE-2022-28389: Fix not seen in stream CVE-2022-28390: Fix not seen in stream -CVE-2022-28796: Fix not seen in stream -CVE-2022-28893: Fix not seen in stream -CVE-2022-29156: Fix not seen in stream -CVE-2022-29582: Fix not seen in stream -CVE-2022-29968: Fix not seen in stream -CVE-2022-30594: Fix not seen in stream +CVE-2022-32250: Fix not seen in stream CVE-2022-32296: Fix not seen in stream CVE-2022-32981: Fix not seen in stream +CVE-2022-33981: Fix not seen in stream +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/4.1/4.1_security.txt b/data/4.1/4.1_security.txt index 6c7ea55..f45569b 100644 --- a/data/4.1/4.1_security.txt +++ b/data/4.1/4.1_security.txt
@@ -612,7 +612,6 @@ CVE-2018-9517: (unk) l2tp: pass tunnel pointer to ->session_create() CVE-2018-9518: (unk) NFC: llcp: Limit size of SDP URI CVE-2019-0136: (unk) mac80211: drop robust management frames from unknown TA - CVE-2019-0146: (unk) CVE-2019-0148: (unk) i40e: Wrong truncation from u16 to u8 CVE-2019-0154: (unk) drm/i915: Lower RM timeout to avoid DSI hard hangs CVE-2019-0155: (unk) drm/i915: Rename gen7 cmdparser tables @@ -894,7 +893,7 @@ CVE-2020-26145: (unk) ath10k: drop fragments with multicast DA for PCIe CVE-2020-26147: (unk) mac80211: assure all fragments are encrypted CVE-2020-26541: (unk) certs: Add EFI_CERT_X509_GUID support for dbx entries - CVE-2020-26555: (unk) + CVE-2020-26555: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26558: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical @@ -945,7 +944,6 @@ CVE-2021-0512: (unk) HID: make arrays usage and value to be the same CVE-2021-0605: (unk) af_key: pfkey_dump needs parameter validation CVE-2021-0695: (unk) - CVE-2021-0707: (unk) dmabuf: fix use-after-free of dmabuf's file->f_inode CVE-2021-0920: (unk) af_unix: fix garbage collect vs MSG_PEEK CVE-2021-0929: (unk) staging/android/ion: delete dma_buf->kmap/unmap implemenation CVE-2021-0937: (unk) netfilter: x_tables: fix compat match/target pad out-of-bound write @@ -988,7 +986,6 @@ CVE-2021-33034: (unk) Bluetooth: verify AMP hci_chan before amp_destroy CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality CVE-2021-33098: (unk) ixgbe: fix large MTU request from VF - CVE-2021-33135: (unk) CVE-2021-33909: (unk) seq_file: disallow extremely large seq buffer allocations CVE-2021-34556: (unk) bpf: Introduce BPF nospec instruction for mitigating Spectre v4 CVE-2021-34693: (unk) can: bcm: fix infoleak in struct bcm_msg_head @@ -1026,7 +1023,6 @@ CVE-2021-3847: (unk) CVE-2021-3864: (unk) CVE-2021-3892: (unk) - CVE-2021-3894: (unk) sctp: account stream padding length for reconf chunk CVE-2021-3896: (unk) isdn: cpai: check ctr->cnr to avoid array index out of bound CVE-2021-39633: (unk) ip_gre: add validation for csum_start CVE-2021-39634: (unk) epoll: do not insert into poll queues until all sanity checks are done @@ -1036,8 +1032,6 @@ CVE-2021-39685: (unk) USB: gadget: detect too-big endpoint 0 requests CVE-2021-39686: (unk) binder: use euid from cred instead of using task CVE-2021-39698: (unk) wait: add wake_up_pollfree() - CVE-2021-39711: (unk) bpf: fix panic due to oob in bpf_prog_test_run_skb - CVE-2021-39713: (unk) net: sched: use Qdisc rcu API instead of relying on rtnl lock CVE-2021-39714: (unk) staging: android: ion: Drop ion_map_kernel interface CVE-2021-39800: (unk) CVE-2021-39801: (unk) @@ -1047,7 +1041,6 @@ CVE-2021-4037: (unk) xfs: fix up non-directory creation in SGID directories CVE-2021-40490: (unk) ext4: fix race writing to an inline_data file while its xattrs are changing CVE-2021-4083: (unk) fget: check that the fd still exists after getting a ref to it - CVE-2021-4148: (unk) mm: khugepaged: skip huge page collapse for special files CVE-2021-4149: (unk) btrfs: unlock newly allocated extent buffer after error CVE-2021-4150: (unk) block: fix incorrect references to disk objects CVE-2021-4155: (unk) xfs: map unwritten blocks in XFS_IOC_{ALLOC,FREE}SP just like fallocate @@ -1070,7 +1063,6 @@ CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() - CVE-2022-0171: (unk) CVE-2022-0330: (unk) drm/i915: Flush TLBs before releasing backing store CVE-2022-0382: (unk) net ticp:fix a kernel-infoleak in __tipc_sendmsg() CVE-2022-0400: (unk) @@ -1078,30 +1070,17 @@ CVE-2022-0487: (unk) moxart: fix potential use-after-free on remove path CVE-2022-0492: (unk) cgroup-v1: Require capabilities to set release_agent CVE-2022-0494: (unk) block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern - CVE-2022-0500: (unk) bpf: Introduce MEM_RDONLY flag - CVE-2022-0617: (unk) udf: Fix NULL ptr deref when converting from inline format - CVE-2022-0644: (unk) vfs: check fd has read access in kernel_read_file_from_fd() - CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() - CVE-2022-0812: (unk) xprtrdma: fix incorrect header size calculations CVE-2022-0850: (unk) ext4: fix kernel infoleak via ext4_extent_header - CVE-2022-0854: (unk) swiotlb: rework "fix info leak with DMA_FROM_DEVICE" - CVE-2022-0995: (unk) watch_queue: Fix filter limit check - CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling CVE-2022-1011: (unk) fuse: fix pipe buffer lifetime for direct_io CVE-2022-1012: (unk) secure_seq: use the 64 bits of the siphash for port offset calculation - CVE-2022-1015: (unk) netfilter: nf_tables: validate registers coming from userspace. CVE-2022-1016: (unk) netfilter: nf_tables: initialize registers in nft_do_chain() - CVE-2022-1043: (unk) io_uring: fix xa_alloc_cycle() error return value check CVE-2022-1048: (unk) ALSA: pcm: Fix races among concurrent hw_params and hw_free calls - CVE-2022-1055: (unk) net: sched: fix use-after-free in tc_new_tfilter() CVE-2022-1116: (unk) - CVE-2022-1158: (unk) KVM: x86/mmu: do compare-and-exchange of gPTE via the user address - CVE-2022-1184: (unk) + CVE-2022-1184: (unk) ext4: verify dir block before splitting it CVE-2022-1195: (unk) hamradio: improve the incomplete fix to avoid NPD CVE-2022-1198: (unk) drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() CVE-2022-1199: (unk) ax25: Fix NULL pointer dereference in ax25_kill_by_device CVE-2022-1204: (unk) ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: (unk) ax25: Fix NULL pointer dereferences in ax25 timers CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector @@ -1109,39 +1088,26 @@ CVE-2022-1419: (unk) drm/vgem: Close use-after-free race in vgem_gem_create CVE-2022-1462: (unk) CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters - CVE-2022-1516: (unk) net/x25: Fix null-ptr-deref caused by x25_disconnect - CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) - CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c + CVE-2022-1652: (unk) floppy: use a statically allocated error counter CVE-2022-1679: (unk) CVE-2022-1729: (unk) perf: Fix sys_perf_event_open() race against self CVE-2022-1786: (unk) io_uring: remove io_identity - CVE-2022-1789: (unk) KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID CVE-2022-1836: (unk) floppy: disable FDRAWCMD by default - CVE-2022-1852: (unk) KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse CVE-2022-1966: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier - CVE-2022-1972: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay CVE-2022-1974: (unk) nfc: replace improper check device_is_registered() in netlink related functions CVE-2022-1975: (unk) NFC: netlink: fix sleep in atomic bug when firmware download timeout - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking - CVE-2022-1998: (unk) fanotify: Fix stale file descriptor in copy_event_to_user() CVE-2022-20132: (unk) HID: add hid_is_usb() function to make it simpler for USB detection CVE-2022-20141: (unk) igmp: Add ip_mc_list lock in ip_check_mc_rcu CVE-2022-20148: (unk) f2fs: fix UAF in f2fs_available_free_memory - CVE-2022-20153: (unk) io_uring: return back safer resurrect - CVE-2022-20154: (unk) sctp: use call_rcu to free endpoint CVE-2022-20166: (unk) drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions - CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-21499: (unk) lockdown: also lock down previous kgdb use + CVE-2022-2153: (unk) KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-23036: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23037: (unk) xen/netfront: don't use gnttab_query_foreign_access() for mapped status CVE-2022-23038: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23039: (unk) xen/gntalloc: don't use gnttab_query_foreign_access() CVE-2022-23040: (unk) xen/xenbus: don't let xenbus_grant_ring() remove grants in error case - CVE-2022-23041: (unk) xen/9p: use alloc/free_pages_exact() CVE-2022-23042: (unk) xen/netfront: react properly to failing gnttab_end_foreign_access_ref() CVE-2022-23222: (unk) bpf: Replace PTR_TO_XXX_OR_NULL with PTR_TO_XXX | PTR_MAYBE_NULL CVE-2022-23960: (unk) ARM: report Spectre v2 status through sysfs @@ -1150,21 +1116,15 @@ CVE-2022-25258: (unk) USB: gadget: validate interface OS descriptor requests CVE-2022-25265: (unk) CVE-2022-25375: (unk) usb: gadget: rndis: check size of RNDIS_MSG_SET command - CVE-2022-25636: (unk) netfilter: nf_tables_offload: incorrect flow offload action array size CVE-2022-26490: (unk) nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION - CVE-2022-26878: (unk) CVE-2022-26966: (unk) sr9700: sanity check for packet length CVE-2022-27223: (unk) USB: gadget: validate endpoint index for xilinx udc - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe CVE-2022-28356: (unk) llc: fix netdevice reference leaks in llc_ui_bind() CVE-2022-28388: (unk) can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28389: (unk) can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: (unk) can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race - CVE-2022-28893: (unk) SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() - CVE-2022-29156: (unk) RDMA/rtrs-clt: Fix possible double free in error case - CVE-2022-29582: (unk) io_uring: fix race between timeout flush and removal - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb - CVE-2022-30594: (unk) ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE + CVE-2022-32250: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 CVE-2022-32981: (unk) powerpc/32: Fix overread/overwrite of thread_struct via ptrace + CVE-2022-33981: (unk) floppy: disable FDRAWCMD by default + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/4.10/4.10_CVEs.txt b/data/4.10/4.10_CVEs.txt index 4f31427..1b36623 100644 --- a/data/4.10/4.10_CVEs.txt +++ b/data/4.10/4.10_CVEs.txt
@@ -354,7 +354,7 @@ CVE-2018-9568: Fix not seen in stream CVE-2019-0136: Fix not seen in stream CVE-2019-0145: Fix not seen in stream -CVE-2019-0146: Fix unknown +CVE-2019-0146: Fix not seen in stream CVE-2019-0147: Fix not seen in stream CVE-2019-0148: Fix not seen in stream CVE-2019-0154: Fix not seen in stream @@ -673,7 +673,7 @@ CVE-2020-26145: Fix not seen in stream CVE-2020-26147: Fix not seen in stream CVE-2020-26541: Fix not seen in stream -CVE-2020-26555: Fix unknown +CVE-2020-26555: Fix not seen in stream CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26558: Fix not seen in stream @@ -729,7 +729,6 @@ CVE-2021-0512: Fix not seen in stream CVE-2021-0605: Fix not seen in stream CVE-2021-0695: Fix unknown -CVE-2021-0707: Fix not seen in stream CVE-2021-0920: Fix not seen in stream CVE-2021-0929: Fix not seen in stream CVE-2021-0937: Fix not seen in stream @@ -777,7 +776,6 @@ CVE-2021-33034: Fix not seen in stream CVE-2021-33061: Fix not seen in stream CVE-2021-33098: Fix not seen in stream -CVE-2021-33135: Fix unknown CVE-2021-3348: Fix not seen in stream CVE-2021-33909: Fix not seen in stream CVE-2021-34556: Fix not seen in stream @@ -818,7 +816,6 @@ CVE-2021-3847: Fix unknown CVE-2021-3864: Fix unknown CVE-2021-3892: Fix unknown -CVE-2021-3894: Fix not seen in stream CVE-2021-3896: Fix not seen in stream CVE-2021-39633: Fix not seen in stream CVE-2021-39634: Fix not seen in stream @@ -828,8 +825,6 @@ CVE-2021-39685: Fix not seen in stream CVE-2021-39686: Fix not seen in stream CVE-2021-39698: Fix not seen in stream -CVE-2021-39711: Fix not seen in stream -CVE-2021-39713: Fix not seen in stream CVE-2021-39714: Fix not seen in stream CVE-2021-39800: Fix unknown CVE-2021-39801: Fix unknown @@ -839,7 +834,6 @@ CVE-2021-4037: Fix not seen in stream CVE-2021-40490: Fix not seen in stream CVE-2021-4083: Fix not seen in stream -CVE-2021-4148: Fix not seen in stream CVE-2021-4149: Fix not seen in stream CVE-2021-4150: Fix not seen in stream CVE-2021-4155: Fix not seen in stream @@ -864,7 +858,6 @@ CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream -CVE-2022-0171: Fix unknown CVE-2022-0330: Fix not seen in stream CVE-2022-0382: Fix not seen in stream CVE-2022-0400: Fix unknown @@ -873,30 +866,20 @@ CVE-2022-0487: Fix not seen in stream CVE-2022-0492: Fix not seen in stream CVE-2022-0494: Fix not seen in stream -CVE-2022-0500: Fix not seen in stream CVE-2022-0617: Fix not seen in stream CVE-2022-0644: Fix not seen in stream -CVE-2022-0742: Fix not seen in stream CVE-2022-0812: Fix not seen in stream CVE-2022-0850: Fix not seen in stream -CVE-2022-0854: Fix not seen in stream -CVE-2022-0995: Fix not seen in stream -CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fix not seen in stream CVE-2022-1012: Fix not seen in stream -CVE-2022-1015: Fix not seen in stream CVE-2022-1016: Fix not seen in stream -CVE-2022-1043: Fix not seen in stream CVE-2022-1048: Fix not seen in stream -CVE-2022-1055: Fix not seen in stream CVE-2022-1116: Fix unknown -CVE-2022-1158: Fix not seen in stream -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fix not seen in stream CVE-2022-1195: Fix not seen in stream CVE-2022-1198: Fix not seen in stream CVE-2022-1199: Fix not seen in stream CVE-2022-1204: Fix not seen in stream -CVE-2022-1205: Fix not seen in stream CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream @@ -904,40 +887,27 @@ CVE-2022-1419: Fix not seen in stream CVE-2022-1462: Fix unknown CVE-2022-1508: Fix not seen in stream -CVE-2022-1516: Fix not seen in stream -CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown -CVE-2022-1671: Fix not seen in stream +CVE-2022-1652: Fix not seen in stream CVE-2022-1679: Fix unknown CVE-2022-1729: Fix not seen in stream CVE-2022-1734: Fix not seen in stream CVE-2022-1786: Fix not seen in stream -CVE-2022-1789: Fix not seen in stream CVE-2022-1836: Fix not seen in stream -CVE-2022-1852: Fix not seen in stream CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fix not seen in stream -CVE-2022-1972: Fix not seen in stream -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fix not seen in stream CVE-2022-1975: Fix not seen in stream -CVE-2022-1976: Fix not seen in stream -CVE-2022-1998: Fix not seen in stream CVE-2022-20132: Fix not seen in stream CVE-2022-20141: Fix not seen in stream CVE-2022-20148: Fix not seen in stream -CVE-2022-20153: Fix not seen in stream -CVE-2022-20154: Fix not seen in stream CVE-2022-20166: Fix not seen in stream -CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fix not seen in stream +CVE-2022-2153: Fix not seen in stream CVE-2022-23036: Fix not seen in stream CVE-2022-23037: Fix not seen in stream CVE-2022-23038: Fix not seen in stream CVE-2022-23039: Fix not seen in stream CVE-2022-23040: Fix not seen in stream -CVE-2022-23041: Fix not seen in stream CVE-2022-23042: Fix not seen in stream CVE-2022-23222: Fix not seen in stream CVE-2022-23960: Fix not seen in stream @@ -946,21 +916,16 @@ CVE-2022-25258: Fix not seen in stream CVE-2022-25265: Fix unknown CVE-2022-25375: Fix not seen in stream -CVE-2022-25636: Fix not seen in stream CVE-2022-26490: Fix not seen in stream -CVE-2022-26878: Fix unknown CVE-2022-26966: Fix not seen in stream CVE-2022-27223: Fix not seen in stream -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fix not seen in stream CVE-2022-28388: Fix not seen in stream -CVE-2022-28389: Fix not seen in stream CVE-2022-28390: Fix not seen in stream -CVE-2022-28796: Fix not seen in stream -CVE-2022-28893: Fix not seen in stream -CVE-2022-29156: Fix not seen in stream -CVE-2022-29582: Fix not seen in stream -CVE-2022-29968: Fix not seen in stream CVE-2022-30594: Fix not seen in stream +CVE-2022-32250: Fix not seen in stream CVE-2022-32296: Fix not seen in stream CVE-2022-32981: Fix not seen in stream +CVE-2022-33981: Fix not seen in stream +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/4.10/4.10_security.txt b/data/4.10/4.10_security.txt index 21bfb24..aa21d7b 100644 --- a/data/4.10/4.10_security.txt +++ b/data/4.10/4.10_security.txt
@@ -388,7 +388,7 @@ CVE-2018-9568: (unk) net: Set sk_prot_creator when cloning sockets to the right proto CVE-2019-0136: (unk) mac80211: drop robust management frames from unknown TA CVE-2019-0145: (unk) i40e: add num_vectors checker in iwarp handler - CVE-2019-0146: (unk) + CVE-2019-0146: (unk) i40e: add num_vectors checker in iwarp handler CVE-2019-0147: (unk) i40e: add num_vectors checker in iwarp handler CVE-2019-0148: (unk) i40e: Wrong truncation from u16 to u8 CVE-2019-0154: (unk) drm/i915: Lower RM timeout to avoid DSI hard hangs @@ -707,7 +707,7 @@ CVE-2020-26145: (unk) ath10k: drop fragments with multicast DA for PCIe CVE-2020-26147: (unk) mac80211: assure all fragments are encrypted CVE-2020-26541: (unk) certs: Add EFI_CERT_X509_GUID support for dbx entries - CVE-2020-26555: (unk) + CVE-2020-26555: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26558: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical @@ -763,7 +763,6 @@ CVE-2021-0512: (unk) HID: make arrays usage and value to be the same CVE-2021-0605: (unk) af_key: pfkey_dump needs parameter validation CVE-2021-0695: (unk) - CVE-2021-0707: (unk) dmabuf: fix use-after-free of dmabuf's file->f_inode CVE-2021-0920: (unk) af_unix: fix garbage collect vs MSG_PEEK CVE-2021-0929: (unk) staging/android/ion: delete dma_buf->kmap/unmap implemenation CVE-2021-0937: (unk) netfilter: x_tables: fix compat match/target pad out-of-bound write @@ -811,7 +810,6 @@ CVE-2021-33034: (unk) Bluetooth: verify AMP hci_chan before amp_destroy CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality CVE-2021-33098: (unk) ixgbe: fix large MTU request from VF - CVE-2021-33135: (unk) CVE-2021-3348: (unk) nbd: freeze the queue while we're adding connections CVE-2021-33909: (unk) seq_file: disallow extremely large seq buffer allocations CVE-2021-34556: (unk) bpf: Introduce BPF nospec instruction for mitigating Spectre v4 @@ -852,7 +850,6 @@ CVE-2021-3847: (unk) CVE-2021-3864: (unk) CVE-2021-3892: (unk) - CVE-2021-3894: (unk) sctp: account stream padding length for reconf chunk CVE-2021-3896: (unk) isdn: cpai: check ctr->cnr to avoid array index out of bound CVE-2021-39633: (unk) ip_gre: add validation for csum_start CVE-2021-39634: (unk) epoll: do not insert into poll queues until all sanity checks are done @@ -862,8 +859,6 @@ CVE-2021-39685: (unk) USB: gadget: detect too-big endpoint 0 requests CVE-2021-39686: (unk) binder: use euid from cred instead of using task CVE-2021-39698: (unk) wait: add wake_up_pollfree() - CVE-2021-39711: (unk) bpf: fix panic due to oob in bpf_prog_test_run_skb - CVE-2021-39713: (unk) net: sched: use Qdisc rcu API instead of relying on rtnl lock CVE-2021-39714: (unk) staging: android: ion: Drop ion_map_kernel interface CVE-2021-39800: (unk) CVE-2021-39801: (unk) @@ -873,7 +868,6 @@ CVE-2021-4037: (unk) xfs: fix up non-directory creation in SGID directories CVE-2021-40490: (unk) ext4: fix race writing to an inline_data file while its xattrs are changing CVE-2021-4083: (unk) fget: check that the fd still exists after getting a ref to it - CVE-2021-4148: (unk) mm: khugepaged: skip huge page collapse for special files CVE-2021-4149: (unk) btrfs: unlock newly allocated extent buffer after error CVE-2021-4150: (unk) block: fix incorrect references to disk objects CVE-2021-4155: (unk) xfs: map unwritten blocks in XFS_IOC_{ALLOC,FREE}SP just like fallocate @@ -898,7 +892,6 @@ CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() - CVE-2022-0171: (unk) CVE-2022-0330: (unk) drm/i915: Flush TLBs before releasing backing store CVE-2022-0382: (unk) net ticp:fix a kernel-infoleak in __tipc_sendmsg() CVE-2022-0400: (unk) @@ -907,30 +900,20 @@ CVE-2022-0487: (unk) moxart: fix potential use-after-free on remove path CVE-2022-0492: (unk) cgroup-v1: Require capabilities to set release_agent CVE-2022-0494: (unk) block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern - CVE-2022-0500: (unk) bpf: Introduce MEM_RDONLY flag CVE-2022-0617: (unk) udf: Fix NULL ptr deref when converting from inline format CVE-2022-0644: (unk) vfs: check fd has read access in kernel_read_file_from_fd() - CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() CVE-2022-0812: (unk) xprtrdma: fix incorrect header size calculations CVE-2022-0850: (unk) ext4: fix kernel infoleak via ext4_extent_header - CVE-2022-0854: (unk) swiotlb: rework "fix info leak with DMA_FROM_DEVICE" - CVE-2022-0995: (unk) watch_queue: Fix filter limit check - CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling CVE-2022-1011: (unk) fuse: fix pipe buffer lifetime for direct_io CVE-2022-1012: (unk) secure_seq: use the 64 bits of the siphash for port offset calculation - CVE-2022-1015: (unk) netfilter: nf_tables: validate registers coming from userspace. CVE-2022-1016: (unk) netfilter: nf_tables: initialize registers in nft_do_chain() - CVE-2022-1043: (unk) io_uring: fix xa_alloc_cycle() error return value check CVE-2022-1048: (unk) ALSA: pcm: Fix races among concurrent hw_params and hw_free calls - CVE-2022-1055: (unk) net: sched: fix use-after-free in tc_new_tfilter() CVE-2022-1116: (unk) - CVE-2022-1158: (unk) KVM: x86/mmu: do compare-and-exchange of gPTE via the user address - CVE-2022-1184: (unk) + CVE-2022-1184: (unk) ext4: verify dir block before splitting it CVE-2022-1195: (unk) hamradio: improve the incomplete fix to avoid NPD CVE-2022-1198: (unk) drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() CVE-2022-1199: (unk) ax25: Fix NULL pointer dereference in ax25_kill_by_device CVE-2022-1204: (unk) ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: (unk) ax25: Fix NULL pointer dereferences in ax25 timers CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector @@ -938,40 +921,27 @@ CVE-2022-1419: (unk) drm/vgem: Close use-after-free race in vgem_gem_create CVE-2022-1462: (unk) CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters - CVE-2022-1516: (unk) net/x25: Fix null-ptr-deref caused by x25_disconnect - CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) - CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c + CVE-2022-1652: (unk) floppy: use a statically allocated error counter CVE-2022-1679: (unk) CVE-2022-1729: (unk) perf: Fix sys_perf_event_open() race against self CVE-2022-1734: (unk) nfc: nfcmrvl: main: reorder destructive operations in nfcmrvl_nci_unregister_dev to avoid bugs CVE-2022-1786: (unk) io_uring: remove io_identity - CVE-2022-1789: (unk) KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID CVE-2022-1836: (unk) floppy: disable FDRAWCMD by default - CVE-2022-1852: (unk) KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse CVE-2022-1966: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier - CVE-2022-1972: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay CVE-2022-1974: (unk) nfc: replace improper check device_is_registered() in netlink related functions CVE-2022-1975: (unk) NFC: netlink: fix sleep in atomic bug when firmware download timeout - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking - CVE-2022-1998: (unk) fanotify: Fix stale file descriptor in copy_event_to_user() CVE-2022-20132: (unk) HID: add hid_is_usb() function to make it simpler for USB detection CVE-2022-20141: (unk) igmp: Add ip_mc_list lock in ip_check_mc_rcu CVE-2022-20148: (unk) f2fs: fix UAF in f2fs_available_free_memory - CVE-2022-20153: (unk) io_uring: return back safer resurrect - CVE-2022-20154: (unk) sctp: use call_rcu to free endpoint CVE-2022-20166: (unk) drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions - CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-21499: (unk) lockdown: also lock down previous kgdb use + CVE-2022-2153: (unk) KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-23036: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23037: (unk) xen/netfront: don't use gnttab_query_foreign_access() for mapped status CVE-2022-23038: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23039: (unk) xen/gntalloc: don't use gnttab_query_foreign_access() CVE-2022-23040: (unk) xen/xenbus: don't let xenbus_grant_ring() remove grants in error case - CVE-2022-23041: (unk) xen/9p: use alloc/free_pages_exact() CVE-2022-23042: (unk) xen/netfront: react properly to failing gnttab_end_foreign_access_ref() CVE-2022-23222: (unk) bpf: Replace PTR_TO_XXX_OR_NULL with PTR_TO_XXX | PTR_MAYBE_NULL CVE-2022-23960: (unk) ARM: report Spectre v2 status through sysfs @@ -980,21 +950,16 @@ CVE-2022-25258: (unk) USB: gadget: validate interface OS descriptor requests CVE-2022-25265: (unk) CVE-2022-25375: (unk) usb: gadget: rndis: check size of RNDIS_MSG_SET command - CVE-2022-25636: (unk) netfilter: nf_tables_offload: incorrect flow offload action array size CVE-2022-26490: (unk) nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION - CVE-2022-26878: (unk) CVE-2022-26966: (unk) sr9700: sanity check for packet length CVE-2022-27223: (unk) USB: gadget: validate endpoint index for xilinx udc - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe CVE-2022-28356: (unk) llc: fix netdevice reference leaks in llc_ui_bind() CVE-2022-28388: (unk) can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28389: (unk) can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: (unk) can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race - CVE-2022-28893: (unk) SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() - CVE-2022-29156: (unk) RDMA/rtrs-clt: Fix possible double free in error case - CVE-2022-29582: (unk) io_uring: fix race between timeout flush and removal - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb CVE-2022-30594: (unk) ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE + CVE-2022-32250: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 CVE-2022-32981: (unk) powerpc/32: Fix overread/overwrite of thread_struct via ptrace + CVE-2022-33981: (unk) floppy: disable FDRAWCMD by default + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/4.11/4.11_CVEs.txt b/data/4.11/4.11_CVEs.txt index d10c1c6..354077c 100644 --- a/data/4.11/4.11_CVEs.txt +++ b/data/4.11/4.11_CVEs.txt
@@ -319,7 +319,7 @@ CVE-2018-9568: Fix not seen in stream CVE-2019-0136: Fix not seen in stream CVE-2019-0145: Fix not seen in stream -CVE-2019-0146: Fix unknown +CVE-2019-0146: Fix not seen in stream CVE-2019-0147: Fix not seen in stream CVE-2019-0148: Fix not seen in stream CVE-2019-0154: Fix not seen in stream @@ -641,7 +641,7 @@ CVE-2020-26145: Fix not seen in stream CVE-2020-26147: Fix not seen in stream CVE-2020-26541: Fix not seen in stream -CVE-2020-26555: Fix unknown +CVE-2020-26555: Fix not seen in stream CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26558: Fix not seen in stream @@ -698,7 +698,6 @@ CVE-2021-0512: Fix not seen in stream CVE-2021-0605: Fix not seen in stream CVE-2021-0695: Fix unknown -CVE-2021-0707: Fix not seen in stream CVE-2021-0920: Fix not seen in stream CVE-2021-0929: Fix not seen in stream CVE-2021-0937: Fix not seen in stream @@ -746,7 +745,6 @@ CVE-2021-33034: Fix not seen in stream CVE-2021-33061: Fix not seen in stream CVE-2021-33098: Fix not seen in stream -CVE-2021-33135: Fix unknown CVE-2021-3348: Fix not seen in stream CVE-2021-33909: Fix not seen in stream CVE-2021-34556: Fix not seen in stream @@ -797,8 +795,6 @@ CVE-2021-39685: Fix not seen in stream CVE-2021-39686: Fix not seen in stream CVE-2021-39698: Fix not seen in stream -CVE-2021-39711: Fix not seen in stream -CVE-2021-39713: Fix not seen in stream CVE-2021-39714: Fix not seen in stream CVE-2021-39800: Fix unknown CVE-2021-39801: Fix unknown @@ -808,7 +804,6 @@ CVE-2021-4037: Fix not seen in stream CVE-2021-40490: Fix not seen in stream CVE-2021-4083: Fix not seen in stream -CVE-2021-4148: Fix not seen in stream CVE-2021-4149: Fix not seen in stream CVE-2021-4150: Fix not seen in stream CVE-2021-4155: Fix not seen in stream @@ -833,7 +828,6 @@ CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream -CVE-2022-0171: Fix unknown CVE-2022-0322: Fix not seen in stream CVE-2022-0330: Fix not seen in stream CVE-2022-0382: Fix not seen in stream @@ -843,30 +837,20 @@ CVE-2022-0487: Fix not seen in stream CVE-2022-0492: Fix not seen in stream CVE-2022-0494: Fix not seen in stream -CVE-2022-0500: Fix not seen in stream CVE-2022-0617: Fix not seen in stream CVE-2022-0644: Fix not seen in stream -CVE-2022-0742: Fix not seen in stream CVE-2022-0812: Fix not seen in stream CVE-2022-0850: Fix not seen in stream -CVE-2022-0854: Fix not seen in stream -CVE-2022-0995: Fix not seen in stream -CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fix not seen in stream CVE-2022-1012: Fix not seen in stream -CVE-2022-1015: Fix not seen in stream CVE-2022-1016: Fix not seen in stream -CVE-2022-1043: Fix not seen in stream CVE-2022-1048: Fix not seen in stream -CVE-2022-1055: Fix not seen in stream CVE-2022-1116: Fix unknown -CVE-2022-1158: Fix not seen in stream -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fix not seen in stream CVE-2022-1195: Fix not seen in stream CVE-2022-1198: Fix not seen in stream CVE-2022-1199: Fix not seen in stream CVE-2022-1204: Fix not seen in stream -CVE-2022-1205: Fix not seen in stream CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream @@ -874,40 +858,27 @@ CVE-2022-1419: Fix not seen in stream CVE-2022-1462: Fix unknown CVE-2022-1508: Fix not seen in stream -CVE-2022-1516: Fix not seen in stream -CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown -CVE-2022-1671: Fix not seen in stream +CVE-2022-1652: Fix not seen in stream CVE-2022-1679: Fix unknown CVE-2022-1729: Fix not seen in stream CVE-2022-1734: Fix not seen in stream CVE-2022-1786: Fix not seen in stream -CVE-2022-1789: Fix not seen in stream CVE-2022-1836: Fix not seen in stream -CVE-2022-1852: Fix not seen in stream CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fix not seen in stream -CVE-2022-1972: Fix not seen in stream -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fix not seen in stream CVE-2022-1975: Fix not seen in stream -CVE-2022-1976: Fix not seen in stream -CVE-2022-1998: Fix not seen in stream CVE-2022-20132: Fix not seen in stream CVE-2022-20141: Fix not seen in stream CVE-2022-20148: Fix not seen in stream -CVE-2022-20153: Fix not seen in stream -CVE-2022-20154: Fix not seen in stream CVE-2022-20166: Fix not seen in stream -CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fix not seen in stream +CVE-2022-2153: Fix not seen in stream CVE-2022-23036: Fix not seen in stream CVE-2022-23037: Fix not seen in stream CVE-2022-23038: Fix not seen in stream CVE-2022-23039: Fix not seen in stream CVE-2022-23040: Fix not seen in stream -CVE-2022-23041: Fix not seen in stream CVE-2022-23042: Fix not seen in stream CVE-2022-23222: Fix not seen in stream CVE-2022-23960: Fix not seen in stream @@ -916,22 +887,17 @@ CVE-2022-25258: Fix not seen in stream CVE-2022-25265: Fix unknown CVE-2022-25375: Fix not seen in stream -CVE-2022-25636: Fix not seen in stream CVE-2022-26490: Fix not seen in stream -CVE-2022-26878: Fix unknown CVE-2022-26966: Fix not seen in stream CVE-2022-27223: Fix not seen in stream CVE-2022-27666: Fix not seen in stream -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fix not seen in stream CVE-2022-28388: Fix not seen in stream -CVE-2022-28389: Fix not seen in stream CVE-2022-28390: Fix not seen in stream -CVE-2022-28796: Fix not seen in stream -CVE-2022-28893: Fix not seen in stream -CVE-2022-29156: Fix not seen in stream -CVE-2022-29582: Fix not seen in stream -CVE-2022-29968: Fix not seen in stream CVE-2022-30594: Fix not seen in stream +CVE-2022-32250: Fix not seen in stream CVE-2022-32296: Fix not seen in stream CVE-2022-32981: Fix not seen in stream +CVE-2022-33981: Fix not seen in stream +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/4.11/4.11_security.txt b/data/4.11/4.11_security.txt index 7e9d29e..678edca 100644 --- a/data/4.11/4.11_security.txt +++ b/data/4.11/4.11_security.txt
@@ -342,7 +342,7 @@ CVE-2018-9568: (unk) net: Set sk_prot_creator when cloning sockets to the right proto CVE-2019-0136: (unk) mac80211: drop robust management frames from unknown TA CVE-2019-0145: (unk) i40e: add num_vectors checker in iwarp handler - CVE-2019-0146: (unk) + CVE-2019-0146: (unk) i40e: add num_vectors checker in iwarp handler CVE-2019-0147: (unk) i40e: add num_vectors checker in iwarp handler CVE-2019-0148: (unk) i40e: Wrong truncation from u16 to u8 CVE-2019-0154: (unk) drm/i915: Lower RM timeout to avoid DSI hard hangs @@ -663,7 +663,7 @@ CVE-2020-26145: (unk) ath10k: drop fragments with multicast DA for PCIe CVE-2020-26147: (unk) mac80211: assure all fragments are encrypted CVE-2020-26541: (unk) certs: Add EFI_CERT_X509_GUID support for dbx entries - CVE-2020-26555: (unk) + CVE-2020-26555: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26558: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical @@ -720,7 +720,6 @@ CVE-2021-0512: (unk) HID: make arrays usage and value to be the same CVE-2021-0605: (unk) af_key: pfkey_dump needs parameter validation CVE-2021-0695: (unk) - CVE-2021-0707: (unk) dmabuf: fix use-after-free of dmabuf's file->f_inode CVE-2021-0920: (unk) af_unix: fix garbage collect vs MSG_PEEK CVE-2021-0929: (unk) staging/android/ion: delete dma_buf->kmap/unmap implemenation CVE-2021-0937: (unk) netfilter: x_tables: fix compat match/target pad out-of-bound write @@ -768,7 +767,6 @@ CVE-2021-33034: (unk) Bluetooth: verify AMP hci_chan before amp_destroy CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality CVE-2021-33098: (unk) ixgbe: fix large MTU request from VF - CVE-2021-33135: (unk) CVE-2021-3348: (unk) nbd: freeze the queue while we're adding connections CVE-2021-33909: (unk) seq_file: disallow extremely large seq buffer allocations CVE-2021-34556: (unk) bpf: Introduce BPF nospec instruction for mitigating Spectre v4 @@ -819,8 +817,6 @@ CVE-2021-39685: (unk) USB: gadget: detect too-big endpoint 0 requests CVE-2021-39686: (unk) binder: use euid from cred instead of using task CVE-2021-39698: (unk) wait: add wake_up_pollfree() - CVE-2021-39711: (unk) bpf: fix panic due to oob in bpf_prog_test_run_skb - CVE-2021-39713: (unk) net: sched: use Qdisc rcu API instead of relying on rtnl lock CVE-2021-39714: (unk) staging: android: ion: Drop ion_map_kernel interface CVE-2021-39800: (unk) CVE-2021-39801: (unk) @@ -830,7 +826,6 @@ CVE-2021-4037: (unk) xfs: fix up non-directory creation in SGID directories CVE-2021-40490: (unk) ext4: fix race writing to an inline_data file while its xattrs are changing CVE-2021-4083: (unk) fget: check that the fd still exists after getting a ref to it - CVE-2021-4148: (unk) mm: khugepaged: skip huge page collapse for special files CVE-2021-4149: (unk) btrfs: unlock newly allocated extent buffer after error CVE-2021-4150: (unk) block: fix incorrect references to disk objects CVE-2021-4155: (unk) xfs: map unwritten blocks in XFS_IOC_{ALLOC,FREE}SP just like fallocate @@ -855,7 +850,6 @@ CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() - CVE-2022-0171: (unk) CVE-2022-0322: (unk) sctp: account stream padding length for reconf chunk CVE-2022-0330: (unk) drm/i915: Flush TLBs before releasing backing store CVE-2022-0382: (unk) net ticp:fix a kernel-infoleak in __tipc_sendmsg() @@ -865,30 +859,20 @@ CVE-2022-0487: (unk) moxart: fix potential use-after-free on remove path CVE-2022-0492: (unk) cgroup-v1: Require capabilities to set release_agent CVE-2022-0494: (unk) block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern - CVE-2022-0500: (unk) bpf: Introduce MEM_RDONLY flag CVE-2022-0617: (unk) udf: Fix NULL ptr deref when converting from inline format CVE-2022-0644: (unk) vfs: check fd has read access in kernel_read_file_from_fd() - CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() CVE-2022-0812: (unk) xprtrdma: fix incorrect header size calculations CVE-2022-0850: (unk) ext4: fix kernel infoleak via ext4_extent_header - CVE-2022-0854: (unk) swiotlb: rework "fix info leak with DMA_FROM_DEVICE" - CVE-2022-0995: (unk) watch_queue: Fix filter limit check - CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling CVE-2022-1011: (unk) fuse: fix pipe buffer lifetime for direct_io CVE-2022-1012: (unk) secure_seq: use the 64 bits of the siphash for port offset calculation - CVE-2022-1015: (unk) netfilter: nf_tables: validate registers coming from userspace. CVE-2022-1016: (unk) netfilter: nf_tables: initialize registers in nft_do_chain() - CVE-2022-1043: (unk) io_uring: fix xa_alloc_cycle() error return value check CVE-2022-1048: (unk) ALSA: pcm: Fix races among concurrent hw_params and hw_free calls - CVE-2022-1055: (unk) net: sched: fix use-after-free in tc_new_tfilter() CVE-2022-1116: (unk) - CVE-2022-1158: (unk) KVM: x86/mmu: do compare-and-exchange of gPTE via the user address - CVE-2022-1184: (unk) + CVE-2022-1184: (unk) ext4: verify dir block before splitting it CVE-2022-1195: (unk) hamradio: improve the incomplete fix to avoid NPD CVE-2022-1198: (unk) drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() CVE-2022-1199: (unk) ax25: Fix NULL pointer dereference in ax25_kill_by_device CVE-2022-1204: (unk) ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: (unk) ax25: Fix NULL pointer dereferences in ax25 timers CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector @@ -896,40 +880,27 @@ CVE-2022-1419: (unk) drm/vgem: Close use-after-free race in vgem_gem_create CVE-2022-1462: (unk) CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters - CVE-2022-1516: (unk) net/x25: Fix null-ptr-deref caused by x25_disconnect - CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) - CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c + CVE-2022-1652: (unk) floppy: use a statically allocated error counter CVE-2022-1679: (unk) CVE-2022-1729: (unk) perf: Fix sys_perf_event_open() race against self CVE-2022-1734: (unk) nfc: nfcmrvl: main: reorder destructive operations in nfcmrvl_nci_unregister_dev to avoid bugs CVE-2022-1786: (unk) io_uring: remove io_identity - CVE-2022-1789: (unk) KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID CVE-2022-1836: (unk) floppy: disable FDRAWCMD by default - CVE-2022-1852: (unk) KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse CVE-2022-1966: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier - CVE-2022-1972: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay CVE-2022-1974: (unk) nfc: replace improper check device_is_registered() in netlink related functions CVE-2022-1975: (unk) NFC: netlink: fix sleep in atomic bug when firmware download timeout - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking - CVE-2022-1998: (unk) fanotify: Fix stale file descriptor in copy_event_to_user() CVE-2022-20132: (unk) HID: add hid_is_usb() function to make it simpler for USB detection CVE-2022-20141: (unk) igmp: Add ip_mc_list lock in ip_check_mc_rcu CVE-2022-20148: (unk) f2fs: fix UAF in f2fs_available_free_memory - CVE-2022-20153: (unk) io_uring: return back safer resurrect - CVE-2022-20154: (unk) sctp: use call_rcu to free endpoint CVE-2022-20166: (unk) drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions - CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-21499: (unk) lockdown: also lock down previous kgdb use + CVE-2022-2153: (unk) KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-23036: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23037: (unk) xen/netfront: don't use gnttab_query_foreign_access() for mapped status CVE-2022-23038: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23039: (unk) xen/gntalloc: don't use gnttab_query_foreign_access() CVE-2022-23040: (unk) xen/xenbus: don't let xenbus_grant_ring() remove grants in error case - CVE-2022-23041: (unk) xen/9p: use alloc/free_pages_exact() CVE-2022-23042: (unk) xen/netfront: react properly to failing gnttab_end_foreign_access_ref() CVE-2022-23222: (unk) bpf: Replace PTR_TO_XXX_OR_NULL with PTR_TO_XXX | PTR_MAYBE_NULL CVE-2022-23960: (unk) ARM: report Spectre v2 status through sysfs @@ -938,22 +909,17 @@ CVE-2022-25258: (unk) USB: gadget: validate interface OS descriptor requests CVE-2022-25265: (unk) CVE-2022-25375: (unk) usb: gadget: rndis: check size of RNDIS_MSG_SET command - CVE-2022-25636: (unk) netfilter: nf_tables_offload: incorrect flow offload action array size CVE-2022-26490: (unk) nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION - CVE-2022-26878: (unk) CVE-2022-26966: (unk) sr9700: sanity check for packet length CVE-2022-27223: (unk) USB: gadget: validate endpoint index for xilinx udc CVE-2022-27666: (unk) esp: Fix possible buffer overflow in ESP transformation - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe CVE-2022-28356: (unk) llc: fix netdevice reference leaks in llc_ui_bind() CVE-2022-28388: (unk) can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28389: (unk) can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: (unk) can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race - CVE-2022-28893: (unk) SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() - CVE-2022-29156: (unk) RDMA/rtrs-clt: Fix possible double free in error case - CVE-2022-29582: (unk) io_uring: fix race between timeout flush and removal - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb CVE-2022-30594: (unk) ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE + CVE-2022-32250: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 CVE-2022-32981: (unk) powerpc/32: Fix overread/overwrite of thread_struct via ptrace + CVE-2022-33981: (unk) floppy: disable FDRAWCMD by default + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/4.12/4.12_CVEs.txt b/data/4.12/4.12_CVEs.txt index 93c2c0b..f62607c 100644 --- a/data/4.12/4.12_CVEs.txt +++ b/data/4.12/4.12_CVEs.txt
@@ -286,7 +286,7 @@ CVE-2018-9568: Fix not seen in stream CVE-2019-0136: Fix not seen in stream CVE-2019-0145: Fix not seen in stream -CVE-2019-0146: Fix unknown +CVE-2019-0146: Fix not seen in stream CVE-2019-0147: Fix not seen in stream CVE-2019-0148: Fix not seen in stream CVE-2019-0154: Fix not seen in stream @@ -615,7 +615,7 @@ CVE-2020-26145: Fix not seen in stream CVE-2020-26147: Fix not seen in stream CVE-2020-26541: Fix not seen in stream -CVE-2020-26555: Fix unknown +CVE-2020-26555: Fix not seen in stream CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26558: Fix not seen in stream @@ -673,7 +673,6 @@ CVE-2021-0512: Fix not seen in stream CVE-2021-0605: Fix not seen in stream CVE-2021-0695: Fix unknown -CVE-2021-0707: Fix not seen in stream CVE-2021-0920: Fix not seen in stream CVE-2021-0929: Fix not seen in stream CVE-2021-0935: Fix not seen in stream @@ -722,7 +721,6 @@ CVE-2021-33034: Fix not seen in stream CVE-2021-33061: Fix not seen in stream CVE-2021-33098: Fix not seen in stream -CVE-2021-33135: Fix unknown CVE-2021-3348: Fix not seen in stream CVE-2021-33909: Fix not seen in stream CVE-2021-34556: Fix not seen in stream @@ -776,7 +774,6 @@ CVE-2021-39686: Fix not seen in stream CVE-2021-39698: Fix not seen in stream CVE-2021-39711: Fix not seen in stream -CVE-2021-39713: Fix not seen in stream CVE-2021-39800: Fix unknown CVE-2021-39801: Fix unknown CVE-2021-39802: Fix unknown @@ -785,7 +782,6 @@ CVE-2021-4037: Fix not seen in stream CVE-2021-40490: Fix not seen in stream CVE-2021-4083: Fix not seen in stream -CVE-2021-4148: Fix not seen in stream CVE-2021-4149: Fix not seen in stream CVE-2021-4150: Fix not seen in stream CVE-2021-4155: Fix not seen in stream @@ -812,7 +808,6 @@ CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream -CVE-2022-0171: Fix unknown CVE-2022-0322: Fix not seen in stream CVE-2022-0330: Fix not seen in stream CVE-2022-0382: Fix not seen in stream @@ -822,30 +817,20 @@ CVE-2022-0487: Fix not seen in stream CVE-2022-0492: Fix not seen in stream CVE-2022-0494: Fix not seen in stream -CVE-2022-0500: Fix not seen in stream CVE-2022-0617: Fix not seen in stream CVE-2022-0644: Fix not seen in stream -CVE-2022-0742: Fix not seen in stream CVE-2022-0812: Fix not seen in stream CVE-2022-0850: Fix not seen in stream -CVE-2022-0854: Fix not seen in stream -CVE-2022-0995: Fix not seen in stream -CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fix not seen in stream CVE-2022-1012: Fix not seen in stream -CVE-2022-1015: Fix not seen in stream CVE-2022-1016: Fix not seen in stream -CVE-2022-1043: Fix not seen in stream CVE-2022-1048: Fix not seen in stream -CVE-2022-1055: Fix not seen in stream CVE-2022-1116: Fix unknown -CVE-2022-1158: Fix not seen in stream -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fix not seen in stream CVE-2022-1195: Fix not seen in stream CVE-2022-1198: Fix not seen in stream CVE-2022-1199: Fix not seen in stream CVE-2022-1204: Fix not seen in stream -CVE-2022-1205: Fix not seen in stream CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream @@ -853,34 +838,22 @@ CVE-2022-1419: Fix not seen in stream CVE-2022-1462: Fix unknown CVE-2022-1508: Fix not seen in stream -CVE-2022-1516: Fix not seen in stream -CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown -CVE-2022-1671: Fix not seen in stream +CVE-2022-1652: Fix not seen in stream CVE-2022-1679: Fix unknown CVE-2022-1729: Fix not seen in stream CVE-2022-1734: Fix not seen in stream CVE-2022-1786: Fix not seen in stream -CVE-2022-1789: Fix not seen in stream CVE-2022-1836: Fix not seen in stream -CVE-2022-1852: Fix not seen in stream CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fix not seen in stream -CVE-2022-1972: Fix not seen in stream -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fix not seen in stream CVE-2022-1975: Fix not seen in stream -CVE-2022-1976: Fix not seen in stream -CVE-2022-1998: Fix not seen in stream CVE-2022-20132: Fix not seen in stream CVE-2022-20141: Fix not seen in stream CVE-2022-20148: Fix not seen in stream -CVE-2022-20153: Fix not seen in stream -CVE-2022-20154: Fix not seen in stream CVE-2022-20166: Fix not seen in stream -CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fix not seen in stream +CVE-2022-2153: Fix not seen in stream CVE-2022-23036: Fix not seen in stream CVE-2022-23037: Fix not seen in stream CVE-2022-23038: Fix not seen in stream @@ -895,22 +868,18 @@ CVE-2022-25258: Fix not seen in stream CVE-2022-25265: Fix unknown CVE-2022-25375: Fix not seen in stream -CVE-2022-25636: Fix not seen in stream CVE-2022-26490: Fix not seen in stream -CVE-2022-26878: Fix unknown CVE-2022-26966: Fix not seen in stream CVE-2022-27223: Fix not seen in stream CVE-2022-27666: Fix not seen in stream -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fix not seen in stream CVE-2022-28388: Fix not seen in stream CVE-2022-28389: Fix not seen in stream CVE-2022-28390: Fix not seen in stream -CVE-2022-28796: Fix not seen in stream -CVE-2022-28893: Fix not seen in stream -CVE-2022-29156: Fix not seen in stream -CVE-2022-29582: Fix not seen in stream -CVE-2022-29968: Fix not seen in stream CVE-2022-30594: Fix not seen in stream +CVE-2022-32250: Fix not seen in stream CVE-2022-32296: Fix not seen in stream CVE-2022-32981: Fix not seen in stream +CVE-2022-33981: Fix not seen in stream +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/4.12/4.12_security.txt b/data/4.12/4.12_security.txt index 98bcff5..a6667b5 100644 --- a/data/4.12/4.12_security.txt +++ b/data/4.12/4.12_security.txt
@@ -313,7 +313,7 @@ CVE-2018-9568: (unk) net: Set sk_prot_creator when cloning sockets to the right proto CVE-2019-0136: (unk) mac80211: drop robust management frames from unknown TA CVE-2019-0145: (unk) i40e: add num_vectors checker in iwarp handler - CVE-2019-0146: (unk) + CVE-2019-0146: (unk) i40e: add num_vectors checker in iwarp handler CVE-2019-0147: (unk) i40e: add num_vectors checker in iwarp handler CVE-2019-0148: (unk) i40e: Wrong truncation from u16 to u8 CVE-2019-0154: (unk) drm/i915: Lower RM timeout to avoid DSI hard hangs @@ -641,7 +641,7 @@ CVE-2020-26145: (unk) ath10k: drop fragments with multicast DA for PCIe CVE-2020-26147: (unk) mac80211: assure all fragments are encrypted CVE-2020-26541: (unk) certs: Add EFI_CERT_X509_GUID support for dbx entries - CVE-2020-26555: (unk) + CVE-2020-26555: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26558: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical @@ -699,7 +699,6 @@ CVE-2021-0512: (unk) HID: make arrays usage and value to be the same CVE-2021-0605: (unk) af_key: pfkey_dump needs parameter validation CVE-2021-0695: (unk) - CVE-2021-0707: (unk) dmabuf: fix use-after-free of dmabuf's file->f_inode CVE-2021-0920: (unk) af_unix: fix garbage collect vs MSG_PEEK CVE-2021-0929: (unk) staging/android/ion: delete dma_buf->kmap/unmap implemenation CVE-2021-0935: (unk) net: ipv6: keep sk status consistent after datagram connect failure @@ -748,7 +747,6 @@ CVE-2021-33034: (unk) Bluetooth: verify AMP hci_chan before amp_destroy CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality CVE-2021-33098: (unk) ixgbe: fix large MTU request from VF - CVE-2021-33135: (unk) CVE-2021-3348: (unk) nbd: freeze the queue while we're adding connections CVE-2021-33909: (unk) seq_file: disallow extremely large seq buffer allocations CVE-2021-34556: (unk) bpf: Introduce BPF nospec instruction for mitigating Spectre v4 @@ -802,7 +800,6 @@ CVE-2021-39686: (unk) binder: use euid from cred instead of using task CVE-2021-39698: (unk) wait: add wake_up_pollfree() CVE-2021-39711: (unk) bpf: fix panic due to oob in bpf_prog_test_run_skb - CVE-2021-39713: (unk) net: sched: use Qdisc rcu API instead of relying on rtnl lock CVE-2021-39800: (unk) CVE-2021-39801: (unk) CVE-2021-39802: (unk) @@ -811,7 +808,6 @@ CVE-2021-4037: (unk) xfs: fix up non-directory creation in SGID directories CVE-2021-40490: (unk) ext4: fix race writing to an inline_data file while its xattrs are changing CVE-2021-4083: (unk) fget: check that the fd still exists after getting a ref to it - CVE-2021-4148: (unk) mm: khugepaged: skip huge page collapse for special files CVE-2021-4149: (unk) btrfs: unlock newly allocated extent buffer after error CVE-2021-4150: (unk) block: fix incorrect references to disk objects CVE-2021-4155: (unk) xfs: map unwritten blocks in XFS_IOC_{ALLOC,FREE}SP just like fallocate @@ -838,7 +834,6 @@ CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() - CVE-2022-0171: (unk) CVE-2022-0322: (unk) sctp: account stream padding length for reconf chunk CVE-2022-0330: (unk) drm/i915: Flush TLBs before releasing backing store CVE-2022-0382: (unk) net ticp:fix a kernel-infoleak in __tipc_sendmsg() @@ -848,30 +843,20 @@ CVE-2022-0487: (unk) moxart: fix potential use-after-free on remove path CVE-2022-0492: (unk) cgroup-v1: Require capabilities to set release_agent CVE-2022-0494: (unk) block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern - CVE-2022-0500: (unk) bpf: Introduce MEM_RDONLY flag CVE-2022-0617: (unk) udf: Fix NULL ptr deref when converting from inline format CVE-2022-0644: (unk) vfs: check fd has read access in kernel_read_file_from_fd() - CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() CVE-2022-0812: (unk) xprtrdma: fix incorrect header size calculations CVE-2022-0850: (unk) ext4: fix kernel infoleak via ext4_extent_header - CVE-2022-0854: (unk) swiotlb: rework "fix info leak with DMA_FROM_DEVICE" - CVE-2022-0995: (unk) watch_queue: Fix filter limit check - CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling CVE-2022-1011: (unk) fuse: fix pipe buffer lifetime for direct_io CVE-2022-1012: (unk) secure_seq: use the 64 bits of the siphash for port offset calculation - CVE-2022-1015: (unk) netfilter: nf_tables: validate registers coming from userspace. CVE-2022-1016: (unk) netfilter: nf_tables: initialize registers in nft_do_chain() - CVE-2022-1043: (unk) io_uring: fix xa_alloc_cycle() error return value check CVE-2022-1048: (unk) ALSA: pcm: Fix races among concurrent hw_params and hw_free calls - CVE-2022-1055: (unk) net: sched: fix use-after-free in tc_new_tfilter() CVE-2022-1116: (unk) - CVE-2022-1158: (unk) KVM: x86/mmu: do compare-and-exchange of gPTE via the user address - CVE-2022-1184: (unk) + CVE-2022-1184: (unk) ext4: verify dir block before splitting it CVE-2022-1195: (unk) hamradio: improve the incomplete fix to avoid NPD CVE-2022-1198: (unk) drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() CVE-2022-1199: (unk) ax25: Fix NULL pointer dereference in ax25_kill_by_device CVE-2022-1204: (unk) ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: (unk) ax25: Fix NULL pointer dereferences in ax25 timers CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector @@ -879,34 +864,22 @@ CVE-2022-1419: (unk) drm/vgem: Close use-after-free race in vgem_gem_create CVE-2022-1462: (unk) CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters - CVE-2022-1516: (unk) net/x25: Fix null-ptr-deref caused by x25_disconnect - CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) - CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c + CVE-2022-1652: (unk) floppy: use a statically allocated error counter CVE-2022-1679: (unk) CVE-2022-1729: (unk) perf: Fix sys_perf_event_open() race against self CVE-2022-1734: (unk) nfc: nfcmrvl: main: reorder destructive operations in nfcmrvl_nci_unregister_dev to avoid bugs CVE-2022-1786: (unk) io_uring: remove io_identity - CVE-2022-1789: (unk) KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID CVE-2022-1836: (unk) floppy: disable FDRAWCMD by default - CVE-2022-1852: (unk) KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse CVE-2022-1966: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier - CVE-2022-1972: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay CVE-2022-1974: (unk) nfc: replace improper check device_is_registered() in netlink related functions CVE-2022-1975: (unk) NFC: netlink: fix sleep in atomic bug when firmware download timeout - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking - CVE-2022-1998: (unk) fanotify: Fix stale file descriptor in copy_event_to_user() CVE-2022-20132: (unk) HID: add hid_is_usb() function to make it simpler for USB detection CVE-2022-20141: (unk) igmp: Add ip_mc_list lock in ip_check_mc_rcu CVE-2022-20148: (unk) f2fs: fix UAF in f2fs_available_free_memory - CVE-2022-20153: (unk) io_uring: return back safer resurrect - CVE-2022-20154: (unk) sctp: use call_rcu to free endpoint CVE-2022-20166: (unk) drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions - CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-21499: (unk) lockdown: also lock down previous kgdb use + CVE-2022-2153: (unk) KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-23036: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23037: (unk) xen/netfront: don't use gnttab_query_foreign_access() for mapped status CVE-2022-23038: (unk) xen/grant-table: add gnttab_try_end_foreign_access() @@ -921,22 +894,18 @@ CVE-2022-25258: (unk) USB: gadget: validate interface OS descriptor requests CVE-2022-25265: (unk) CVE-2022-25375: (unk) usb: gadget: rndis: check size of RNDIS_MSG_SET command - CVE-2022-25636: (unk) netfilter: nf_tables_offload: incorrect flow offload action array size CVE-2022-26490: (unk) nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION - CVE-2022-26878: (unk) CVE-2022-26966: (unk) sr9700: sanity check for packet length CVE-2022-27223: (unk) USB: gadget: validate endpoint index for xilinx udc CVE-2022-27666: (unk) esp: Fix possible buffer overflow in ESP transformation - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe CVE-2022-28356: (unk) llc: fix netdevice reference leaks in llc_ui_bind() CVE-2022-28388: (unk) can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path CVE-2022-28389: (unk) can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: (unk) can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race - CVE-2022-28893: (unk) SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() - CVE-2022-29156: (unk) RDMA/rtrs-clt: Fix possible double free in error case - CVE-2022-29582: (unk) io_uring: fix race between timeout flush and removal - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb CVE-2022-30594: (unk) ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE + CVE-2022-32250: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 CVE-2022-32981: (unk) powerpc/32: Fix overread/overwrite of thread_struct via ptrace + CVE-2022-33981: (unk) floppy: disable FDRAWCMD by default + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/4.13/4.13_CVEs.txt b/data/4.13/4.13_CVEs.txt index 3953dd6..0a7f188 100644 --- a/data/4.13/4.13_CVEs.txt +++ b/data/4.13/4.13_CVEs.txt
@@ -263,7 +263,7 @@ CVE-2018-9568: Fixed with 4.13.6 CVE-2019-0136: Fix not seen in stream CVE-2019-0145: Fix not seen in stream -CVE-2019-0146: Fix unknown +CVE-2019-0146: Fix not seen in stream CVE-2019-0147: Fix not seen in stream CVE-2019-0148: Fix not seen in stream CVE-2019-0154: Fix not seen in stream @@ -595,7 +595,7 @@ CVE-2020-26145: Fix not seen in stream CVE-2020-26147: Fix not seen in stream CVE-2020-26541: Fix not seen in stream -CVE-2020-26555: Fix unknown +CVE-2020-26555: Fix not seen in stream CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26558: Fix not seen in stream @@ -655,7 +655,6 @@ CVE-2021-0512: Fix not seen in stream CVE-2021-0605: Fix not seen in stream CVE-2021-0695: Fix unknown -CVE-2021-0707: Fix not seen in stream CVE-2021-0920: Fix not seen in stream CVE-2021-0929: Fix not seen in stream CVE-2021-0935: Fix not seen in stream @@ -704,7 +703,6 @@ CVE-2021-33034: Fix not seen in stream CVE-2021-33061: Fix not seen in stream CVE-2021-33098: Fix not seen in stream -CVE-2021-33135: Fix unknown CVE-2021-3348: Fix not seen in stream CVE-2021-33909: Fix not seen in stream CVE-2021-34556: Fix not seen in stream @@ -759,7 +757,6 @@ CVE-2021-39686: Fix not seen in stream CVE-2021-39698: Fix not seen in stream CVE-2021-39711: Fix not seen in stream -CVE-2021-39713: Fix not seen in stream CVE-2021-39800: Fix unknown CVE-2021-39801: Fix unknown CVE-2021-39802: Fix unknown @@ -768,7 +765,6 @@ CVE-2021-4037: Fix not seen in stream CVE-2021-40490: Fix not seen in stream CVE-2021-4083: Fix not seen in stream -CVE-2021-4148: Fix not seen in stream CVE-2021-4149: Fix not seen in stream CVE-2021-4150: Fix not seen in stream CVE-2021-4155: Fix not seen in stream @@ -795,7 +791,6 @@ CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream -CVE-2022-0171: Fix unknown CVE-2022-0322: Fix not seen in stream CVE-2022-0330: Fix not seen in stream CVE-2022-0382: Fix not seen in stream @@ -805,30 +800,20 @@ CVE-2022-0487: Fix not seen in stream CVE-2022-0492: Fix not seen in stream CVE-2022-0494: Fix not seen in stream -CVE-2022-0500: Fix not seen in stream CVE-2022-0617: Fix not seen in stream CVE-2022-0644: Fix not seen in stream -CVE-2022-0742: Fix not seen in stream CVE-2022-0812: Fix not seen in stream CVE-2022-0850: Fix not seen in stream -CVE-2022-0854: Fix not seen in stream -CVE-2022-0995: Fix not seen in stream -CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fix not seen in stream CVE-2022-1012: Fix not seen in stream -CVE-2022-1015: Fix not seen in stream CVE-2022-1016: Fix not seen in stream -CVE-2022-1043: Fix not seen in stream CVE-2022-1048: Fix not seen in stream -CVE-2022-1055: Fix not seen in stream CVE-2022-1116: Fix unknown -CVE-2022-1158: Fix not seen in stream -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fix not seen in stream CVE-2022-1195: Fix not seen in stream CVE-2022-1198: Fix not seen in stream CVE-2022-1199: Fix not seen in stream CVE-2022-1204: Fix not seen in stream -CVE-2022-1205: Fix not seen in stream CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream @@ -836,34 +821,22 @@ CVE-2022-1419: Fix not seen in stream CVE-2022-1462: Fix unknown CVE-2022-1508: Fix not seen in stream -CVE-2022-1516: Fix not seen in stream -CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown -CVE-2022-1671: Fix not seen in stream +CVE-2022-1652: Fix not seen in stream CVE-2022-1679: Fix unknown CVE-2022-1729: Fix not seen in stream CVE-2022-1734: Fix not seen in stream CVE-2022-1786: Fix not seen in stream -CVE-2022-1789: Fix not seen in stream CVE-2022-1836: Fix not seen in stream -CVE-2022-1852: Fix not seen in stream CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fix not seen in stream -CVE-2022-1972: Fix not seen in stream -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fix not seen in stream CVE-2022-1975: Fix not seen in stream -CVE-2022-1976: Fix not seen in stream -CVE-2022-1998: Fix not seen in stream CVE-2022-20132: Fix not seen in stream CVE-2022-20141: Fix not seen in stream CVE-2022-20148: Fix not seen in stream -CVE-2022-20153: Fix not seen in stream -CVE-2022-20154: Fix not seen in stream CVE-2022-20166: Fix not seen in stream -CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fix not seen in stream +CVE-2022-2153: Fix not seen in stream CVE-2022-23036: Fix not seen in stream CVE-2022-23037: Fix not seen in stream CVE-2022-23038: Fix not seen in stream @@ -878,22 +851,18 @@ CVE-2022-25258: Fix not seen in stream CVE-2022-25265: Fix unknown CVE-2022-25375: Fix not seen in stream -CVE-2022-25636: Fix not seen in stream CVE-2022-26490: Fix not seen in stream -CVE-2022-26878: Fix unknown CVE-2022-26966: Fix not seen in stream CVE-2022-27223: Fix not seen in stream CVE-2022-27666: Fix not seen in stream -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fix not seen in stream CVE-2022-28388: Fix not seen in stream CVE-2022-28389: Fix not seen in stream CVE-2022-28390: Fix not seen in stream -CVE-2022-28796: Fix not seen in stream -CVE-2022-28893: Fix not seen in stream -CVE-2022-29156: Fix not seen in stream -CVE-2022-29582: Fix not seen in stream -CVE-2022-29968: Fix not seen in stream CVE-2022-30594: Fix not seen in stream +CVE-2022-32250: Fix not seen in stream CVE-2022-32296: Fix not seen in stream CVE-2022-32981: Fix not seen in stream +CVE-2022-33981: Fix not seen in stream +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/4.13/4.13_security.txt b/data/4.13/4.13_security.txt index 15d6930..e45bdf1 100644 --- a/data/4.13/4.13_security.txt +++ b/data/4.13/4.13_security.txt
@@ -293,7 +293,7 @@ CVE-2018-9518: (unk) NFC: llcp: Limit size of SDP URI CVE-2019-0136: (unk) mac80211: drop robust management frames from unknown TA CVE-2019-0145: (unk) i40e: add num_vectors checker in iwarp handler - CVE-2019-0146: (unk) + CVE-2019-0146: (unk) i40e: add num_vectors checker in iwarp handler CVE-2019-0147: (unk) i40e: add num_vectors checker in iwarp handler CVE-2019-0148: (unk) i40e: Wrong truncation from u16 to u8 CVE-2019-0154: (unk) drm/i915: Lower RM timeout to avoid DSI hard hangs @@ -624,7 +624,7 @@ CVE-2020-26145: (unk) ath10k: drop fragments with multicast DA for PCIe CVE-2020-26147: (unk) mac80211: assure all fragments are encrypted CVE-2020-26541: (unk) certs: Add EFI_CERT_X509_GUID support for dbx entries - CVE-2020-26555: (unk) + CVE-2020-26555: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26558: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical @@ -683,7 +683,6 @@ CVE-2021-0512: (unk) HID: make arrays usage and value to be the same CVE-2021-0605: (unk) af_key: pfkey_dump needs parameter validation CVE-2021-0695: (unk) - CVE-2021-0707: (unk) dmabuf: fix use-after-free of dmabuf's file->f_inode CVE-2021-0920: (unk) af_unix: fix garbage collect vs MSG_PEEK CVE-2021-0929: (unk) staging/android/ion: delete dma_buf->kmap/unmap implemenation CVE-2021-0935: (unk) net: ipv6: keep sk status consistent after datagram connect failure @@ -732,7 +731,6 @@ CVE-2021-33034: (unk) Bluetooth: verify AMP hci_chan before amp_destroy CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality CVE-2021-33098: (unk) ixgbe: fix large MTU request from VF - CVE-2021-33135: (unk) CVE-2021-3348: (unk) nbd: freeze the queue while we're adding connections CVE-2021-33909: (unk) seq_file: disallow extremely large seq buffer allocations CVE-2021-34556: (unk) bpf: Introduce BPF nospec instruction for mitigating Spectre v4 @@ -787,7 +785,6 @@ CVE-2021-39686: (unk) binder: use euid from cred instead of using task CVE-2021-39698: (unk) wait: add wake_up_pollfree() CVE-2021-39711: (unk) bpf: fix panic due to oob in bpf_prog_test_run_skb - CVE-2021-39713: (unk) net: sched: use Qdisc rcu API instead of relying on rtnl lock CVE-2021-39800: (unk) CVE-2021-39801: (unk) CVE-2021-39802: (unk) @@ -796,7 +793,6 @@ CVE-2021-4037: (unk) xfs: fix up non-directory creation in SGID directories CVE-2021-40490: (unk) ext4: fix race writing to an inline_data file while its xattrs are changing CVE-2021-4083: (unk) fget: check that the fd still exists after getting a ref to it - CVE-2021-4148: (unk) mm: khugepaged: skip huge page collapse for special files CVE-2021-4149: (unk) btrfs: unlock newly allocated extent buffer after error CVE-2021-4150: (unk) block: fix incorrect references to disk objects CVE-2021-4155: (unk) xfs: map unwritten blocks in XFS_IOC_{ALLOC,FREE}SP just like fallocate @@ -823,7 +819,6 @@ CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() - CVE-2022-0171: (unk) CVE-2022-0322: (unk) sctp: account stream padding length for reconf chunk CVE-2022-0330: (unk) drm/i915: Flush TLBs before releasing backing store CVE-2022-0382: (unk) net ticp:fix a kernel-infoleak in __tipc_sendmsg() @@ -833,30 +828,20 @@ CVE-2022-0487: (unk) moxart: fix potential use-after-free on remove path CVE-2022-0492: (unk) cgroup-v1: Require capabilities to set release_agent CVE-2022-0494: (unk) block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern - CVE-2022-0500: (unk) bpf: Introduce MEM_RDONLY flag CVE-2022-0617: (unk) udf: Fix NULL ptr deref when converting from inline format CVE-2022-0644: (unk) vfs: check fd has read access in kernel_read_file_from_fd() - CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() CVE-2022-0812: (unk) xprtrdma: fix incorrect header size calculations CVE-2022-0850: (unk) ext4: fix kernel infoleak via ext4_extent_header - CVE-2022-0854: (unk) swiotlb: rework "fix info leak with DMA_FROM_DEVICE" - CVE-2022-0995: (unk) watch_queue: Fix filter limit check - CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling CVE-2022-1011: (unk) fuse: fix pipe buffer lifetime for direct_io CVE-2022-1012: (unk) secure_seq: use the 64 bits of the siphash for port offset calculation - CVE-2022-1015: (unk) netfilter: nf_tables: validate registers coming from userspace. CVE-2022-1016: (unk) netfilter: nf_tables: initialize registers in nft_do_chain() - CVE-2022-1043: (unk) io_uring: fix xa_alloc_cycle() error return value check CVE-2022-1048: (unk) ALSA: pcm: Fix races among concurrent hw_params and hw_free calls - CVE-2022-1055: (unk) net: sched: fix use-after-free in tc_new_tfilter() CVE-2022-1116: (unk) - CVE-2022-1158: (unk) KVM: x86/mmu: do compare-and-exchange of gPTE via the user address - CVE-2022-1184: (unk) + CVE-2022-1184: (unk) ext4: verify dir block before splitting it CVE-2022-1195: (unk) hamradio: improve the incomplete fix to avoid NPD CVE-2022-1198: (unk) drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() CVE-2022-1199: (unk) ax25: Fix NULL pointer dereference in ax25_kill_by_device CVE-2022-1204: (unk) ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: (unk) ax25: Fix NULL pointer dereferences in ax25 timers CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector @@ -864,34 +849,22 @@ CVE-2022-1419: (unk) drm/vgem: Close use-after-free race in vgem_gem_create CVE-2022-1462: (unk) CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters - CVE-2022-1516: (unk) net/x25: Fix null-ptr-deref caused by x25_disconnect - CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) - CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c + CVE-2022-1652: (unk) floppy: use a statically allocated error counter CVE-2022-1679: (unk) CVE-2022-1729: (unk) perf: Fix sys_perf_event_open() race against self CVE-2022-1734: (unk) nfc: nfcmrvl: main: reorder destructive operations in nfcmrvl_nci_unregister_dev to avoid bugs CVE-2022-1786: (unk) io_uring: remove io_identity - CVE-2022-1789: (unk) KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID CVE-2022-1836: (unk) floppy: disable FDRAWCMD by default - CVE-2022-1852: (unk) KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse CVE-2022-1966: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier - CVE-2022-1972: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay CVE-2022-1974: (unk) nfc: replace improper check device_is_registered() in netlink related functions CVE-2022-1975: (unk) NFC: netlink: fix sleep in atomic bug when firmware download timeout - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking - CVE-2022-1998: (unk) fanotify: Fix stale file descriptor in copy_event_to_user() CVE-2022-20132: (unk) HID: add hid_is_usb() function to make it simpler for USB detection CVE-2022-20141: (unk) igmp: Add ip_mc_list lock in ip_check_mc_rcu CVE-2022-20148: (unk) f2fs: fix UAF in f2fs_available_free_memory - CVE-2022-20153: (unk) io_uring: return back safer resurrect - CVE-2022-20154: (unk) sctp: use call_rcu to free endpoint CVE-2022-20166: (unk) drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions - CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-21499: (unk) lockdown: also lock down previous kgdb use + CVE-2022-2153: (unk) KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-23036: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23037: (unk) xen/netfront: don't use gnttab_query_foreign_access() for mapped status CVE-2022-23038: (unk) xen/grant-table: add gnttab_try_end_foreign_access() @@ -906,22 +879,18 @@ CVE-2022-25258: (unk) USB: gadget: validate interface OS descriptor requests CVE-2022-25265: (unk) CVE-2022-25375: (unk) usb: gadget: rndis: check size of RNDIS_MSG_SET command - CVE-2022-25636: (unk) netfilter: nf_tables_offload: incorrect flow offload action array size CVE-2022-26490: (unk) nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION - CVE-2022-26878: (unk) CVE-2022-26966: (unk) sr9700: sanity check for packet length CVE-2022-27223: (unk) USB: gadget: validate endpoint index for xilinx udc CVE-2022-27666: (unk) esp: Fix possible buffer overflow in ESP transformation - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe CVE-2022-28356: (unk) llc: fix netdevice reference leaks in llc_ui_bind() CVE-2022-28388: (unk) can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path CVE-2022-28389: (unk) can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: (unk) can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race - CVE-2022-28893: (unk) SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() - CVE-2022-29156: (unk) RDMA/rtrs-clt: Fix possible double free in error case - CVE-2022-29582: (unk) io_uring: fix race between timeout flush and removal - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb CVE-2022-30594: (unk) ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE + CVE-2022-32250: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 CVE-2022-32981: (unk) powerpc/32: Fix overread/overwrite of thread_struct via ptrace + CVE-2022-33981: (unk) floppy: disable FDRAWCMD by default + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/4.14/4.14_CVEs.txt b/data/4.14/4.14_CVEs.txt index aebd659..378aa3b 100644 --- a/data/4.14/4.14_CVEs.txt +++ b/data/4.14/4.14_CVEs.txt
@@ -223,7 +223,7 @@ CVE-2018-9518: Fixed with 4.14.45 CVE-2019-0136: Fixed with 4.14.130 CVE-2019-0145: Fixed with 4.14.205 -CVE-2019-0146: Fix unknown +CVE-2019-0146: Fixed with 4.14.205 CVE-2019-0147: Fixed with 4.14.205 CVE-2019-0148: Fixed with 4.14.205 CVE-2019-0154: Fixed with 4.14.154 @@ -560,7 +560,7 @@ CVE-2020-26145: Fix not seen in stream CVE-2020-26147: Fixed with 4.14.235 CVE-2020-26541: Fix not seen in stream -CVE-2020-26555: Fix unknown +CVE-2020-26555: Fixed with 4.14.234 CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26558: Fixed with 4.14.234 @@ -620,7 +620,6 @@ CVE-2021-0512: Fixed with 4.14.223 CVE-2021-0605: Fixed with 4.14.200 CVE-2021-0695: Fix unknown -CVE-2021-0707: Fix not seen in stream CVE-2021-0920: Fixed with 4.14.242 CVE-2021-0929: Fix not seen in stream CVE-2021-0935: Fixed with 4.14.32 @@ -669,7 +668,6 @@ CVE-2021-33034: Fixed with 4.14.233 CVE-2021-33061: Fix not seen in stream CVE-2021-33098: Fixed with 4.14.235 -CVE-2021-33135: Fix unknown CVE-2021-3348: Fixed with 4.14.219 CVE-2021-33909: Fixed with 4.14.240 CVE-2021-34556: Fix not seen in stream @@ -724,7 +722,6 @@ CVE-2021-39686: Fixed with 4.14.256 CVE-2021-39698: Fixed with 4.14.258 CVE-2021-39711: Fixed with 4.14.259 -CVE-2021-39713: Fix not seen in stream CVE-2021-39800: Fix unknown CVE-2021-39801: Fix unknown CVE-2021-39802: Fix unknown @@ -733,7 +730,6 @@ CVE-2021-4037: Fix not seen in stream CVE-2021-40490: Fixed with 4.14.247 CVE-2021-4083: Fixed with 4.14.257 -CVE-2021-4148: Fix not seen in stream CVE-2021-4149: Fixed with 4.14.272 CVE-2021-4150: Fix not seen in stream CVE-2021-4155: Fixed with 4.14.262 @@ -760,7 +756,6 @@ CVE-2022-0001: Fixed with 4.14.271 CVE-2022-0002: Fixed with 4.14.271 CVE-2022-0168: Fix not seen in stream -CVE-2022-0171: Fix unknown CVE-2022-0322: Fixed with 4.14.252 CVE-2022-0330: Fixed with 4.14.264 CVE-2022-0382: Fix not seen in stream @@ -770,30 +765,20 @@ CVE-2022-0487: Fixed with 4.14.266 CVE-2022-0492: Fixed with 4.14.266 CVE-2022-0494: Fixed with 4.14.282 -CVE-2022-0500: Fix not seen in stream CVE-2022-0617: Fixed with 4.14.265 CVE-2022-0644: Fixed with 4.14.253 -CVE-2022-0742: Fix not seen in stream -CVE-2022-0812: Fix not seen in stream +CVE-2022-0812: Fixed with 4.14.285 CVE-2022-0850: Fixed with 4.14.240 -CVE-2022-0854: Fixed with 4.14.281 -CVE-2022-0995: Fix not seen in stream -CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fixed with 4.14.276 CVE-2022-1012: Fixed with 4.14.282 -CVE-2022-1015: Fix not seen in stream CVE-2022-1016: Fixed with 4.14.274 -CVE-2022-1043: Fix not seen in stream CVE-2022-1048: Fixed with 4.14.279 -CVE-2022-1055: Fix not seen in stream CVE-2022-1116: Fix unknown -CVE-2022-1158: Fix not seen in stream -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fixed with 4.14.283 CVE-2022-1195: Fixed with 4.14.260 CVE-2022-1198: Fixed with 4.14.276 CVE-2022-1199: Fixed with 4.14.272 CVE-2022-1204: Fixed with 4.14.277 -CVE-2022-1205: Fixed with 4.14.277 CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream @@ -801,34 +786,23 @@ CVE-2022-1419: Fixed with 4.14.278 CVE-2022-1462: Fix unknown CVE-2022-1508: Fix not seen in stream -CVE-2022-1516: Fixed with 4.14.276 -CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown -CVE-2022-1671: Fix not seen in stream +CVE-2022-1652: Fixed with 4.14.281 CVE-2022-1679: Fix unknown CVE-2022-1729: Fixed with 4.14.281 CVE-2022-1734: Fixed with 4.14.278 CVE-2022-1786: Fix not seen in stream -CVE-2022-1789: Fix not seen in stream CVE-2022-1836: Fixed with 4.14.278 -CVE-2022-1852: Fix not seen in stream CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fixed with 4.14.283 -CVE-2022-1972: Fix not seen in stream -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fixed with 4.14.278 CVE-2022-1975: Fixed with 4.14.278 -CVE-2022-1976: Fix not seen in stream -CVE-2022-1998: Fix not seen in stream CVE-2022-20132: Fixed with 4.14.258 CVE-2022-20141: Fixed with 4.14.247 CVE-2022-20148: Fix not seen in stream -CVE-2022-20153: Fix not seen in stream CVE-2022-20154: Fixed with 4.14.261 CVE-2022-20166: Fix not seen in stream -CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fix not seen in stream +CVE-2022-2153: Fix not seen in stream CVE-2022-22942: Fixed with 4.14.264 CVE-2022-23036: Fixed with 4.14.271 CVE-2022-23037: Fixed with 4.14.271 @@ -844,23 +818,19 @@ CVE-2022-25258: Fixed with 4.14.267 CVE-2022-25265: Fix unknown CVE-2022-25375: Fixed with 4.14.267 -CVE-2022-25636: Fix not seen in stream CVE-2022-26490: Fixed with 4.14.274 -CVE-2022-26878: Fix unknown CVE-2022-26966: Fixed with 4.14.269 CVE-2022-27223: Fixed with 4.14.269 CVE-2022-27666: Fixed with 4.14.274 -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fixed with 4.14.274 CVE-2022-28388: Fixed with 4.14.277 CVE-2022-28389: Fixed with 4.14.276 CVE-2022-28390: Fixed with 4.14.276 -CVE-2022-28796: Fix not seen in stream -CVE-2022-28893: Fix not seen in stream -CVE-2022-29156: Fix not seen in stream CVE-2022-29581: Fixed with 4.14.278 -CVE-2022-29582: Fix not seen in stream -CVE-2022-29968: Fix not seen in stream CVE-2022-30594: Fixed with 4.14.276 -CVE-2022-32296: Fix not seen in stream +CVE-2022-32250: Fixed with 4.14.283 +CVE-2022-32296: Fixed with 4.14.285 CVE-2022-32981: Fixed with 4.14.283 +CVE-2022-33981: Fixed with 4.14.278 +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/4.14/4.14_security.txt b/data/4.14/4.14_security.txt index c03cd88..84f8a17 100644 --- a/data/4.14/4.14_security.txt +++ b/data/4.14/4.14_security.txt
@@ -805,6 +805,7 @@ CVEs fixed in 4.14.205: CVE-2019-0145: 978c31f09d59cdd52cadc462f12862376e72f618 i40e: add num_vectors checker in iwarp handler + CVE-2019-0146: 978c31f09d59cdd52cadc462f12862376e72f618 i40e: add num_vectors checker in iwarp handler CVE-2019-0147: 978c31f09d59cdd52cadc462f12862376e72f618 i40e: add num_vectors checker in iwarp handler CVE-2019-0148: 9900bf4d433be6a2ed8c158779137c7a4742ab67 i40e: Wrong truncation from u16 to u8 CVE-2019-19770: 8268f88785ca9476c68da06d1f93c3d0d9747d28 blktrace: fix debugfs use after free @@ -920,6 +921,7 @@ CVE-2021-4157: 40286f0852d2ecfa713438199557c706dc6a8db3 pNFS/flexfiles: fix incorrect size check in decode_nfs_fh() CVEs fixed in 4.14.234: + CVE-2020-26555: 4555cee33f7d75c1ee69902c872c9d1e9568ebd5 Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26558: 4555cee33f7d75c1ee69902c872c9d1e9568ebd5 Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2021-0129: 4555cee33f7d75c1ee69902c872c9d1e9568ebd5 Bluetooth: SMP: Fail if remote and local public keys are identical @@ -1111,14 +1113,12 @@ CVE-2022-1011: 0ab55e14cf5fd40c39109969c8b04a25870f5d1e fuse: fix pipe buffer lifetime for direct_io CVE-2022-1198: a2793cb58444d4411810cc555eb45b8f4a228018 drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() CVE-2022-1353: fcdaaeb7eb5d52941ceb2fdcec0e2170c9bf3031 af_key: add __GFP_ZERO flag for compose_sadb_supported in function pfkey_register - CVE-2022-1516: 858642789ada1b48630f322e59416ca9fca3e6b7 net/x25: Fix null-ptr-deref caused by x25_disconnect CVE-2022-28389: cdced1015a63a7f100b5867ebb9a40271f891411 can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: 29d967c18737ce04f372831c4542e71da1a8d5c8 can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path CVE-2022-30594: f1442ed84c43610ca8ab77deb9ca991e7354746c ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE CVEs fixed in 4.14.277: CVE-2022-1204: c44a453ffe16eb08acdc6129ac4fa0192dbc0456 ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: 331210983ba5ce82bf63b827bca0e1c833f293db ax25: Fix NULL pointer dereferences in ax25 timers CVE-2022-28388: a5e2259173eb52a728bbf32e02aa9a388451e614 can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path CVEs fixed in 4.14.278: @@ -1128,12 +1128,13 @@ CVE-2022-1974: 6f0ac4cd0377ab4e0b49b8f6efd37057c21336a9 nfc: replace improper check device_is_registered() in netlink related functions CVE-2022-1975: c33b2afffe8ae90e0bd4790e0505edd92addf14c NFC: netlink: fix sleep in atomic bug when firmware download timeout CVE-2022-29581: 0511cdd41a03ab396602dded4e778c5edcd8dcd1 net/sched: cls_u32: fix netns refcount changes in u32_change() + CVE-2022-33981: b7fa84ae1171a3c5ea5d710899080a6e63cfe084 floppy: disable FDRAWCMD by default CVEs fixed in 4.14.279: CVE-2022-1048: a42aa926843acca96c0dfbde2e835b8137f2f092 ALSA: pcm: Fix races among concurrent hw_params and hw_free calls CVEs fixed in 4.14.281: - CVE-2022-0854: aaf166f37eb6bb55d81c3e40a2a460c8875c8813 swiotlb: rework "fix info leak with DMA_FROM_DEVICE" + CVE-2022-1652: dc650d53bad770f169e498f1231671c51b0b321d floppy: use a statically allocated error counter CVE-2022-1729: dee63319e2d1abd5d37a89de046ccf32ca8a8451 perf: Fix sys_perf_event_open() race against self CVEs fixed in 4.14.282: @@ -1141,9 +1142,15 @@ CVE-2022-1012: 40d20f3186ddd9b6b94598f4ef3d07644b0fa43c secure_seq: use the 64 bits of the siphash for port offset calculation CVEs fixed in 4.14.283: + CVE-2022-1184: d27d3caddbeff10871982d5e25e6557be0fdc29a ext4: verify dir block before splitting it CVE-2022-1966: 5b732a9e8e22395d911b3e6c343cbed0e1cec275 netfilter: nf_tables: disallow non-stateful expression in sets earlier + CVE-2022-32250: 5b732a9e8e22395d911b3e6c343cbed0e1cec275 netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-32981: d13c94c4b6f816e79b8e4df193db1bdcc7253610 powerpc/32: Fix overread/overwrite of thread_struct via ptrace +CVEs fixed in 4.14.285: + CVE-2022-0812: 4779af1ec4a6c88a7005c8aabe69f409cf926d58 xprtrdma: fix incorrect header size calculations + CVE-2022-32296: 9044e70fadec49482c3cb3c2f49e81825796ea6d tcp: increase source port perturb table to 2^16 + Outstanding CVEs: CVE-2005-3660: (unk) CVE-2007-3719: (unk) @@ -1176,7 +1183,6 @@ CVE-2018-20855: (unk) IB/mlx5: Fix leaking stack memory to userspace CVE-2018-7273: (unk) printk: hash addresses printed with %p CVE-2018-7754: (unk) printk: hash addresses printed with %p - CVE-2019-0146: (unk) CVE-2019-10220: (unk) Convert filldir[64]() from __put_user() to unsafe_put_user() CVE-2019-11191: (unk) x86: Deprecate a.out support CVE-2019-12378: (unk) ipv6_sockglue: Fix a missing-check bug in ip6_ra_control() @@ -1228,7 +1234,6 @@ CVE-2020-26143: (unk) CVE-2020-26145: (unk) ath10k: drop fragments with multicast DA for PCIe CVE-2020-26541: (unk) certs: Add EFI_CERT_X509_GUID support for dbx entries - CVE-2020-26555: (unk) CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26559: (unk) @@ -1245,13 +1250,11 @@ CVE-2020-8834: (unk) KVM: PPC: Book3S HV: Factor fake-suspend handling out of kvmppc_save/restore_tm CVE-2021-0399: (unk) CVE-2021-0695: (unk) - CVE-2021-0707: (unk) dmabuf: fix use-after-free of dmabuf's file->f_inode CVE-2021-0929: (unk) staging/android/ion: delete dma_buf->kmap/unmap implemenation CVE-2021-28951: (unk) io_uring: ensure that SQPOLL thread is started for exit CVE-2021-29155: (unk) bpf: Use correct permission flag for mixed signed bounds arithmetic CVE-2021-32078: (unk) ARM: footbridge: remove personal server platform CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality - CVE-2021-33135: (unk) CVE-2021-34556: (unk) bpf: Introduce BPF nospec instruction for mitigating Spectre v4 CVE-2021-3506: (unk) f2fs: fix to avoid out-of-bounds memory access CVE-2021-3542: (unk) @@ -1262,65 +1265,34 @@ CVE-2021-3847: (unk) CVE-2021-3864: (unk) CVE-2021-3892: (unk) - CVE-2021-39713: (unk) net: sched: use Qdisc rcu API instead of relying on rtnl lock CVE-2021-39800: (unk) CVE-2021-39801: (unk) CVE-2021-39802: (unk) CVE-2021-4023: (unk) io-wq: fix cancellation on create-worker failure CVE-2021-4037: (unk) xfs: fix up non-directory creation in SGID directories - CVE-2021-4148: (unk) mm: khugepaged: skip huge page collapse for special files CVE-2021-4150: (unk) block: fix incorrect references to disk objects CVE-2021-4159: (unk) bpf: Verifer, adjust_scalar_min_max_vals to always call update_reg_bounds() CVE-2021-4218: (unk) sysctl: pass kernel pointers to ->proc_handler CVE-2021-43975: (unk) atlantic: Fix OOB read and write in hw_atl_utils_fw_rpc_wait CVE-2021-44879: (unk) f2fs: fix to do sanity check on inode type during garbage collection CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() - CVE-2022-0171: (unk) CVE-2022-0382: (unk) net ticp:fix a kernel-infoleak in __tipc_sendmsg() CVE-2022-0400: (unk) CVE-2022-0480: (unk) memcg: enable accounting for file lock caches - CVE-2022-0500: (unk) bpf: Introduce MEM_RDONLY flag - CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() - CVE-2022-0812: (unk) xprtrdma: fix incorrect header size calculations - CVE-2022-0995: (unk) watch_queue: Fix filter limit check - CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling - CVE-2022-1015: (unk) netfilter: nf_tables: validate registers coming from userspace. - CVE-2022-1043: (unk) io_uring: fix xa_alloc_cycle() error return value check - CVE-2022-1055: (unk) net: sched: fix use-after-free in tc_new_tfilter() CVE-2022-1116: (unk) - CVE-2022-1158: (unk) KVM: x86/mmu: do compare-and-exchange of gPTE via the user address - CVE-2022-1184: (unk) CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector CVE-2022-1462: (unk) CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters - CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) - CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c CVE-2022-1679: (unk) CVE-2022-1786: (unk) io_uring: remove io_identity - CVE-2022-1789: (unk) KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID - CVE-2022-1852: (unk) KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse - CVE-2022-1972: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking - CVE-2022-1998: (unk) fanotify: Fix stale file descriptor in copy_event_to_user() CVE-2022-20148: (unk) f2fs: fix UAF in f2fs_available_free_memory - CVE-2022-20153: (unk) io_uring: return back safer resurrect CVE-2022-20166: (unk) drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions - CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-21499: (unk) lockdown: also lock down previous kgdb use + CVE-2022-2153: (unk) KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-23222: (unk) bpf: Replace PTR_TO_XXX_OR_NULL with PTR_TO_XXX | PTR_MAYBE_NULL CVE-2022-25265: (unk) - CVE-2022-25636: (unk) netfilter: nf_tables_offload: incorrect flow offload action array size - CVE-2022-26878: (unk) - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race - CVE-2022-28893: (unk) SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() - CVE-2022-29156: (unk) RDMA/rtrs-clt: Fix possible double free in error case - CVE-2022-29582: (unk) io_uring: fix race between timeout flush and removal - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb - CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/4.15/4.15_CVEs.txt b/data/4.15/4.15_CVEs.txt index 41c3bfc..51db363 100644 --- a/data/4.15/4.15_CVEs.txt +++ b/data/4.15/4.15_CVEs.txt
@@ -158,7 +158,7 @@ CVE-2018-9518: Fix not seen in stream CVE-2019-0136: Fix not seen in stream CVE-2019-0145: Fix not seen in stream -CVE-2019-0146: Fix unknown +CVE-2019-0146: Fix not seen in stream CVE-2019-0147: Fix not seen in stream CVE-2019-0148: Fix not seen in stream CVE-2019-0154: Fix not seen in stream @@ -503,7 +503,7 @@ CVE-2020-26145: Fix not seen in stream CVE-2020-26147: Fix not seen in stream CVE-2020-26541: Fix not seen in stream -CVE-2020-26555: Fix unknown +CVE-2020-26555: Fix not seen in stream CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26558: Fix not seen in stream @@ -563,7 +563,6 @@ CVE-2021-0512: Fix not seen in stream CVE-2021-0605: Fix not seen in stream CVE-2021-0695: Fix unknown -CVE-2021-0707: Fix not seen in stream CVE-2021-0920: Fix not seen in stream CVE-2021-0929: Fix not seen in stream CVE-2021-0935: Fixed with 4.15.15 @@ -613,7 +612,6 @@ CVE-2021-33034: Fix not seen in stream CVE-2021-33061: Fix not seen in stream CVE-2021-33098: Fix not seen in stream -CVE-2021-33135: Fix unknown CVE-2021-3347: Fix not seen in stream CVE-2021-3348: Fix not seen in stream CVE-2021-33624: Fix not seen in stream @@ -674,7 +672,6 @@ CVE-2021-39686: Fix not seen in stream CVE-2021-39698: Fix not seen in stream CVE-2021-39711: Fix not seen in stream -CVE-2021-39713: Fix not seen in stream CVE-2021-39800: Fix unknown CVE-2021-39801: Fix unknown CVE-2021-39802: Fix unknown @@ -683,7 +680,6 @@ CVE-2021-4037: Fix not seen in stream CVE-2021-40490: Fix not seen in stream CVE-2021-4083: Fix not seen in stream -CVE-2021-4148: Fix not seen in stream CVE-2021-4149: Fix not seen in stream CVE-2021-4150: Fix not seen in stream CVE-2021-4155: Fix not seen in stream @@ -710,7 +706,6 @@ CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream -CVE-2022-0171: Fix unknown CVE-2022-0322: Fix not seen in stream CVE-2022-0330: Fix not seen in stream CVE-2022-0382: Fix not seen in stream @@ -720,30 +715,20 @@ CVE-2022-0487: Fix not seen in stream CVE-2022-0492: Fix not seen in stream CVE-2022-0494: Fix not seen in stream -CVE-2022-0500: Fix not seen in stream CVE-2022-0617: Fix not seen in stream CVE-2022-0644: Fix not seen in stream -CVE-2022-0742: Fix not seen in stream CVE-2022-0812: Fix not seen in stream CVE-2022-0850: Fix not seen in stream -CVE-2022-0854: Fix not seen in stream -CVE-2022-0995: Fix not seen in stream -CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fix not seen in stream CVE-2022-1012: Fix not seen in stream -CVE-2022-1015: Fix not seen in stream CVE-2022-1016: Fix not seen in stream -CVE-2022-1043: Fix not seen in stream CVE-2022-1048: Fix not seen in stream -CVE-2022-1055: Fix not seen in stream CVE-2022-1116: Fix unknown -CVE-2022-1158: Fix not seen in stream -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fix not seen in stream CVE-2022-1195: Fix not seen in stream CVE-2022-1198: Fix not seen in stream CVE-2022-1199: Fix not seen in stream CVE-2022-1204: Fix not seen in stream -CVE-2022-1205: Fix not seen in stream CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream @@ -751,34 +736,23 @@ CVE-2022-1419: Fix not seen in stream CVE-2022-1462: Fix unknown CVE-2022-1508: Fix not seen in stream -CVE-2022-1516: Fix not seen in stream -CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown -CVE-2022-1671: Fix not seen in stream +CVE-2022-1652: Fix not seen in stream CVE-2022-1679: Fix unknown CVE-2022-1729: Fix not seen in stream CVE-2022-1734: Fix not seen in stream CVE-2022-1786: Fix not seen in stream -CVE-2022-1789: Fix not seen in stream CVE-2022-1836: Fix not seen in stream -CVE-2022-1852: Fix not seen in stream CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fix not seen in stream -CVE-2022-1972: Fix not seen in stream -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fix not seen in stream CVE-2022-1975: Fix not seen in stream -CVE-2022-1976: Fix not seen in stream -CVE-2022-1998: Fix not seen in stream CVE-2022-20132: Fix not seen in stream CVE-2022-20141: Fix not seen in stream CVE-2022-20148: Fix not seen in stream -CVE-2022-20153: Fix not seen in stream CVE-2022-20154: Fix not seen in stream CVE-2022-20166: Fix not seen in stream -CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fix not seen in stream +CVE-2022-2153: Fix not seen in stream CVE-2022-22942: Fix not seen in stream CVE-2022-23036: Fix not seen in stream CVE-2022-23037: Fix not seen in stream @@ -794,23 +768,19 @@ CVE-2022-25258: Fix not seen in stream CVE-2022-25265: Fix unknown CVE-2022-25375: Fix not seen in stream -CVE-2022-25636: Fix not seen in stream CVE-2022-26490: Fix not seen in stream -CVE-2022-26878: Fix unknown CVE-2022-26966: Fix not seen in stream CVE-2022-27223: Fix not seen in stream CVE-2022-27666: Fix not seen in stream -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fix not seen in stream CVE-2022-28388: Fix not seen in stream CVE-2022-28389: Fix not seen in stream CVE-2022-28390: Fix not seen in stream -CVE-2022-28796: Fix not seen in stream -CVE-2022-28893: Fix not seen in stream -CVE-2022-29156: Fix not seen in stream CVE-2022-29581: Fix not seen in stream -CVE-2022-29582: Fix not seen in stream -CVE-2022-29968: Fix not seen in stream CVE-2022-30594: Fix not seen in stream +CVE-2022-32250: Fix not seen in stream CVE-2022-32296: Fix not seen in stream CVE-2022-32981: Fix not seen in stream +CVE-2022-33981: Fix not seen in stream +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/4.15/4.15_security.txt b/data/4.15/4.15_security.txt index a264750..f72ee13 100644 --- a/data/4.15/4.15_security.txt +++ b/data/4.15/4.15_security.txt
@@ -196,7 +196,7 @@ CVE-2018-9518: (unk) NFC: llcp: Limit size of SDP URI CVE-2019-0136: (unk) mac80211: drop robust management frames from unknown TA CVE-2019-0145: (unk) i40e: add num_vectors checker in iwarp handler - CVE-2019-0146: (unk) + CVE-2019-0146: (unk) i40e: add num_vectors checker in iwarp handler CVE-2019-0147: (unk) i40e: add num_vectors checker in iwarp handler CVE-2019-0148: (unk) i40e: Wrong truncation from u16 to u8 CVE-2019-0154: (unk) drm/i915: Lower RM timeout to avoid DSI hard hangs @@ -537,7 +537,7 @@ CVE-2020-26145: (unk) ath10k: drop fragments with multicast DA for PCIe CVE-2020-26147: (unk) mac80211: assure all fragments are encrypted CVE-2020-26541: (unk) certs: Add EFI_CERT_X509_GUID support for dbx entries - CVE-2020-26555: (unk) + CVE-2020-26555: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26558: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical @@ -596,7 +596,6 @@ CVE-2021-0512: (unk) HID: make arrays usage and value to be the same CVE-2021-0605: (unk) af_key: pfkey_dump needs parameter validation CVE-2021-0695: (unk) - CVE-2021-0707: (unk) dmabuf: fix use-after-free of dmabuf's file->f_inode CVE-2021-0920: (unk) af_unix: fix garbage collect vs MSG_PEEK CVE-2021-0929: (unk) staging/android/ion: delete dma_buf->kmap/unmap implemenation CVE-2021-0937: (unk) netfilter: x_tables: fix compat match/target pad out-of-bound write @@ -645,7 +644,6 @@ CVE-2021-33034: (unk) Bluetooth: verify AMP hci_chan before amp_destroy CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality CVE-2021-33098: (unk) ixgbe: fix large MTU request from VF - CVE-2021-33135: (unk) CVE-2021-3347: (unk) futex: Ensure the correct return value from futex_lock_pi() CVE-2021-3348: (unk) nbd: freeze the queue while we're adding connections CVE-2021-33624: (unk) bpf: Inherit expanded/patched seen count from old aux data @@ -706,7 +704,6 @@ CVE-2021-39686: (unk) binder: use euid from cred instead of using task CVE-2021-39698: (unk) wait: add wake_up_pollfree() CVE-2021-39711: (unk) bpf: fix panic due to oob in bpf_prog_test_run_skb - CVE-2021-39713: (unk) net: sched: use Qdisc rcu API instead of relying on rtnl lock CVE-2021-39800: (unk) CVE-2021-39801: (unk) CVE-2021-39802: (unk) @@ -715,7 +712,6 @@ CVE-2021-4037: (unk) xfs: fix up non-directory creation in SGID directories CVE-2021-40490: (unk) ext4: fix race writing to an inline_data file while its xattrs are changing CVE-2021-4083: (unk) fget: check that the fd still exists after getting a ref to it - CVE-2021-4148: (unk) mm: khugepaged: skip huge page collapse for special files CVE-2021-4149: (unk) btrfs: unlock newly allocated extent buffer after error CVE-2021-4150: (unk) block: fix incorrect references to disk objects CVE-2021-4155: (unk) xfs: map unwritten blocks in XFS_IOC_{ALLOC,FREE}SP just like fallocate @@ -742,7 +738,6 @@ CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() - CVE-2022-0171: (unk) CVE-2022-0322: (unk) sctp: account stream padding length for reconf chunk CVE-2022-0330: (unk) drm/i915: Flush TLBs before releasing backing store CVE-2022-0382: (unk) net ticp:fix a kernel-infoleak in __tipc_sendmsg() @@ -752,30 +747,20 @@ CVE-2022-0487: (unk) moxart: fix potential use-after-free on remove path CVE-2022-0492: (unk) cgroup-v1: Require capabilities to set release_agent CVE-2022-0494: (unk) block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern - CVE-2022-0500: (unk) bpf: Introduce MEM_RDONLY flag CVE-2022-0617: (unk) udf: Fix NULL ptr deref when converting from inline format CVE-2022-0644: (unk) vfs: check fd has read access in kernel_read_file_from_fd() - CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() CVE-2022-0812: (unk) xprtrdma: fix incorrect header size calculations CVE-2022-0850: (unk) ext4: fix kernel infoleak via ext4_extent_header - CVE-2022-0854: (unk) swiotlb: rework "fix info leak with DMA_FROM_DEVICE" - CVE-2022-0995: (unk) watch_queue: Fix filter limit check - CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling CVE-2022-1011: (unk) fuse: fix pipe buffer lifetime for direct_io CVE-2022-1012: (unk) secure_seq: use the 64 bits of the siphash for port offset calculation - CVE-2022-1015: (unk) netfilter: nf_tables: validate registers coming from userspace. CVE-2022-1016: (unk) netfilter: nf_tables: initialize registers in nft_do_chain() - CVE-2022-1043: (unk) io_uring: fix xa_alloc_cycle() error return value check CVE-2022-1048: (unk) ALSA: pcm: Fix races among concurrent hw_params and hw_free calls - CVE-2022-1055: (unk) net: sched: fix use-after-free in tc_new_tfilter() CVE-2022-1116: (unk) - CVE-2022-1158: (unk) KVM: x86/mmu: do compare-and-exchange of gPTE via the user address - CVE-2022-1184: (unk) + CVE-2022-1184: (unk) ext4: verify dir block before splitting it CVE-2022-1195: (unk) hamradio: improve the incomplete fix to avoid NPD CVE-2022-1198: (unk) drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() CVE-2022-1199: (unk) ax25: Fix NULL pointer dereference in ax25_kill_by_device CVE-2022-1204: (unk) ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: (unk) ax25: Fix NULL pointer dereferences in ax25 timers CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector @@ -783,34 +768,23 @@ CVE-2022-1419: (unk) drm/vgem: Close use-after-free race in vgem_gem_create CVE-2022-1462: (unk) CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters - CVE-2022-1516: (unk) net/x25: Fix null-ptr-deref caused by x25_disconnect - CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) - CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c + CVE-2022-1652: (unk) floppy: use a statically allocated error counter CVE-2022-1679: (unk) CVE-2022-1729: (unk) perf: Fix sys_perf_event_open() race against self CVE-2022-1734: (unk) nfc: nfcmrvl: main: reorder destructive operations in nfcmrvl_nci_unregister_dev to avoid bugs CVE-2022-1786: (unk) io_uring: remove io_identity - CVE-2022-1789: (unk) KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID CVE-2022-1836: (unk) floppy: disable FDRAWCMD by default - CVE-2022-1852: (unk) KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse CVE-2022-1966: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier - CVE-2022-1972: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay CVE-2022-1974: (unk) nfc: replace improper check device_is_registered() in netlink related functions CVE-2022-1975: (unk) NFC: netlink: fix sleep in atomic bug when firmware download timeout - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking - CVE-2022-1998: (unk) fanotify: Fix stale file descriptor in copy_event_to_user() CVE-2022-20132: (unk) HID: add hid_is_usb() function to make it simpler for USB detection CVE-2022-20141: (unk) igmp: Add ip_mc_list lock in ip_check_mc_rcu CVE-2022-20148: (unk) f2fs: fix UAF in f2fs_available_free_memory - CVE-2022-20153: (unk) io_uring: return back safer resurrect CVE-2022-20154: (unk) sctp: use call_rcu to free endpoint CVE-2022-20166: (unk) drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions - CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-21499: (unk) lockdown: also lock down previous kgdb use + CVE-2022-2153: (unk) KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-22942: (unk) drm/vmwgfx: Fix stale file descriptors on failed usercopy CVE-2022-23036: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23037: (unk) xen/netfront: don't use gnttab_query_foreign_access() for mapped status @@ -826,23 +800,19 @@ CVE-2022-25258: (unk) USB: gadget: validate interface OS descriptor requests CVE-2022-25265: (unk) CVE-2022-25375: (unk) usb: gadget: rndis: check size of RNDIS_MSG_SET command - CVE-2022-25636: (unk) netfilter: nf_tables_offload: incorrect flow offload action array size CVE-2022-26490: (unk) nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION - CVE-2022-26878: (unk) CVE-2022-26966: (unk) sr9700: sanity check for packet length CVE-2022-27223: (unk) USB: gadget: validate endpoint index for xilinx udc CVE-2022-27666: (unk) esp: Fix possible buffer overflow in ESP transformation - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe CVE-2022-28356: (unk) llc: fix netdevice reference leaks in llc_ui_bind() CVE-2022-28388: (unk) can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path CVE-2022-28389: (unk) can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: (unk) can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race - CVE-2022-28893: (unk) SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() - CVE-2022-29156: (unk) RDMA/rtrs-clt: Fix possible double free in error case CVE-2022-29581: (unk) net/sched: cls_u32: fix netns refcount changes in u32_change() - CVE-2022-29582: (unk) io_uring: fix race between timeout flush and removal - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb CVE-2022-30594: (unk) ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE + CVE-2022-32250: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 CVE-2022-32981: (unk) powerpc/32: Fix overread/overwrite of thread_struct via ptrace + CVE-2022-33981: (unk) floppy: disable FDRAWCMD by default + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/4.16/4.16_CVEs.txt b/data/4.16/4.16_CVEs.txt index 3a62a51..bcbbcf9 100644 --- a/data/4.16/4.16_CVEs.txt +++ b/data/4.16/4.16_CVEs.txt
@@ -134,7 +134,7 @@ CVE-2018-9516: Fix not seen in stream CVE-2019-0136: Fix not seen in stream CVE-2019-0145: Fix not seen in stream -CVE-2019-0146: Fix unknown +CVE-2019-0146: Fix not seen in stream CVE-2019-0147: Fix not seen in stream CVE-2019-0148: Fix not seen in stream CVE-2019-0154: Fix not seen in stream @@ -481,7 +481,7 @@ CVE-2020-26145: Fix not seen in stream CVE-2020-26147: Fix not seen in stream CVE-2020-26541: Fix not seen in stream -CVE-2020-26555: Fix unknown +CVE-2020-26555: Fix not seen in stream CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26558: Fix not seen in stream @@ -541,7 +541,6 @@ CVE-2021-0512: Fix not seen in stream CVE-2021-0605: Fix not seen in stream CVE-2021-0695: Fix unknown -CVE-2021-0707: Fix not seen in stream CVE-2021-0920: Fix not seen in stream CVE-2021-0929: Fix not seen in stream CVE-2021-0937: Fix not seen in stream @@ -590,7 +589,6 @@ CVE-2021-33034: Fix not seen in stream CVE-2021-33061: Fix not seen in stream CVE-2021-33098: Fix not seen in stream -CVE-2021-33135: Fix unknown CVE-2021-3347: Fix not seen in stream CVE-2021-3348: Fix not seen in stream CVE-2021-33624: Fix not seen in stream @@ -651,7 +649,6 @@ CVE-2021-39686: Fix not seen in stream CVE-2021-39698: Fix not seen in stream CVE-2021-39711: Fix not seen in stream -CVE-2021-39713: Fix not seen in stream CVE-2021-39800: Fix unknown CVE-2021-39801: Fix unknown CVE-2021-39802: Fix unknown @@ -661,7 +658,6 @@ CVE-2021-40490: Fix not seen in stream CVE-2021-4083: Fix not seen in stream CVE-2021-4135: Fix not seen in stream -CVE-2021-4148: Fix not seen in stream CVE-2021-4149: Fix not seen in stream CVE-2021-4150: Fix not seen in stream CVE-2021-4155: Fix not seen in stream @@ -688,7 +684,6 @@ CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream -CVE-2022-0171: Fix unknown CVE-2022-0322: Fix not seen in stream CVE-2022-0330: Fix not seen in stream CVE-2022-0382: Fix not seen in stream @@ -698,30 +693,20 @@ CVE-2022-0487: Fix not seen in stream CVE-2022-0492: Fix not seen in stream CVE-2022-0494: Fix not seen in stream -CVE-2022-0500: Fix not seen in stream CVE-2022-0617: Fix not seen in stream CVE-2022-0644: Fix not seen in stream -CVE-2022-0742: Fix not seen in stream CVE-2022-0812: Fix not seen in stream CVE-2022-0850: Fix not seen in stream -CVE-2022-0854: Fix not seen in stream -CVE-2022-0995: Fix not seen in stream -CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fix not seen in stream CVE-2022-1012: Fix not seen in stream -CVE-2022-1015: Fix not seen in stream CVE-2022-1016: Fix not seen in stream -CVE-2022-1043: Fix not seen in stream CVE-2022-1048: Fix not seen in stream -CVE-2022-1055: Fix not seen in stream CVE-2022-1116: Fix unknown -CVE-2022-1158: Fix not seen in stream -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fix not seen in stream CVE-2022-1195: Fix not seen in stream CVE-2022-1198: Fix not seen in stream CVE-2022-1199: Fix not seen in stream CVE-2022-1204: Fix not seen in stream -CVE-2022-1205: Fix not seen in stream CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream @@ -729,35 +714,24 @@ CVE-2022-1419: Fix not seen in stream CVE-2022-1462: Fix unknown CVE-2022-1508: Fix not seen in stream -CVE-2022-1516: Fix not seen in stream -CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown -CVE-2022-1671: Fix not seen in stream +CVE-2022-1652: Fix not seen in stream CVE-2022-1679: Fix unknown CVE-2022-1729: Fix not seen in stream CVE-2022-1734: Fix not seen in stream CVE-2022-1786: Fix not seen in stream -CVE-2022-1789: Fix not seen in stream CVE-2022-1836: Fix not seen in stream -CVE-2022-1852: Fix not seen in stream CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fix not seen in stream -CVE-2022-1972: Fix not seen in stream -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fix not seen in stream CVE-2022-1975: Fix not seen in stream -CVE-2022-1976: Fix not seen in stream -CVE-2022-1998: Fix not seen in stream CVE-2022-20008: Fix not seen in stream CVE-2022-20132: Fix not seen in stream CVE-2022-20141: Fix not seen in stream CVE-2022-20148: Fix not seen in stream -CVE-2022-20153: Fix not seen in stream CVE-2022-20154: Fix not seen in stream CVE-2022-20166: Fix not seen in stream -CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fix not seen in stream +CVE-2022-2153: Fix not seen in stream CVE-2022-22942: Fix not seen in stream CVE-2022-23036: Fix not seen in stream CVE-2022-23037: Fix not seen in stream @@ -773,23 +747,19 @@ CVE-2022-25258: Fix not seen in stream CVE-2022-25265: Fix unknown CVE-2022-25375: Fix not seen in stream -CVE-2022-25636: Fix not seen in stream CVE-2022-26490: Fix not seen in stream -CVE-2022-26878: Fix unknown CVE-2022-26966: Fix not seen in stream CVE-2022-27223: Fix not seen in stream CVE-2022-27666: Fix not seen in stream -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fix not seen in stream CVE-2022-28388: Fix not seen in stream CVE-2022-28389: Fix not seen in stream CVE-2022-28390: Fix not seen in stream -CVE-2022-28796: Fix not seen in stream -CVE-2022-28893: Fix not seen in stream -CVE-2022-29156: Fix not seen in stream CVE-2022-29581: Fix not seen in stream -CVE-2022-29582: Fix not seen in stream -CVE-2022-29968: Fix not seen in stream CVE-2022-30594: Fix not seen in stream +CVE-2022-32250: Fix not seen in stream CVE-2022-32296: Fix not seen in stream CVE-2022-32981: Fix not seen in stream +CVE-2022-33981: Fix not seen in stream +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/4.16/4.16_security.txt b/data/4.16/4.16_security.txt index d17a67e..9092d8a 100644 --- a/data/4.16/4.16_security.txt +++ b/data/4.16/4.16_security.txt
@@ -170,7 +170,7 @@ CVE-2018-9516: (unk) HID: debug: check length before copy_to_user() CVE-2019-0136: (unk) mac80211: drop robust management frames from unknown TA CVE-2019-0145: (unk) i40e: add num_vectors checker in iwarp handler - CVE-2019-0146: (unk) + CVE-2019-0146: (unk) i40e: add num_vectors checker in iwarp handler CVE-2019-0147: (unk) i40e: add num_vectors checker in iwarp handler CVE-2019-0148: (unk) i40e: Wrong truncation from u16 to u8 CVE-2019-0154: (unk) drm/i915: Lower RM timeout to avoid DSI hard hangs @@ -514,7 +514,7 @@ CVE-2020-26145: (unk) ath10k: drop fragments with multicast DA for PCIe CVE-2020-26147: (unk) mac80211: assure all fragments are encrypted CVE-2020-26541: (unk) certs: Add EFI_CERT_X509_GUID support for dbx entries - CVE-2020-26555: (unk) + CVE-2020-26555: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26558: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical @@ -573,7 +573,6 @@ CVE-2021-0512: (unk) HID: make arrays usage and value to be the same CVE-2021-0605: (unk) af_key: pfkey_dump needs parameter validation CVE-2021-0695: (unk) - CVE-2021-0707: (unk) dmabuf: fix use-after-free of dmabuf's file->f_inode CVE-2021-0920: (unk) af_unix: fix garbage collect vs MSG_PEEK CVE-2021-0929: (unk) staging/android/ion: delete dma_buf->kmap/unmap implemenation CVE-2021-0937: (unk) netfilter: x_tables: fix compat match/target pad out-of-bound write @@ -622,7 +621,6 @@ CVE-2021-33034: (unk) Bluetooth: verify AMP hci_chan before amp_destroy CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality CVE-2021-33098: (unk) ixgbe: fix large MTU request from VF - CVE-2021-33135: (unk) CVE-2021-3347: (unk) futex: Ensure the correct return value from futex_lock_pi() CVE-2021-3348: (unk) nbd: freeze the queue while we're adding connections CVE-2021-33624: (unk) bpf: Inherit expanded/patched seen count from old aux data @@ -683,7 +681,6 @@ CVE-2021-39686: (unk) binder: use euid from cred instead of using task CVE-2021-39698: (unk) wait: add wake_up_pollfree() CVE-2021-39711: (unk) bpf: fix panic due to oob in bpf_prog_test_run_skb - CVE-2021-39713: (unk) net: sched: use Qdisc rcu API instead of relying on rtnl lock CVE-2021-39800: (unk) CVE-2021-39801: (unk) CVE-2021-39802: (unk) @@ -693,7 +690,6 @@ CVE-2021-40490: (unk) ext4: fix race writing to an inline_data file while its xattrs are changing CVE-2021-4083: (unk) fget: check that the fd still exists after getting a ref to it CVE-2021-4135: (unk) netdevsim: Zero-initialize memory for new map's value in function nsim_bpf_map_alloc - CVE-2021-4148: (unk) mm: khugepaged: skip huge page collapse for special files CVE-2021-4149: (unk) btrfs: unlock newly allocated extent buffer after error CVE-2021-4150: (unk) block: fix incorrect references to disk objects CVE-2021-4155: (unk) xfs: map unwritten blocks in XFS_IOC_{ALLOC,FREE}SP just like fallocate @@ -720,7 +716,6 @@ CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() - CVE-2022-0171: (unk) CVE-2022-0322: (unk) sctp: account stream padding length for reconf chunk CVE-2022-0330: (unk) drm/i915: Flush TLBs before releasing backing store CVE-2022-0382: (unk) net ticp:fix a kernel-infoleak in __tipc_sendmsg() @@ -730,30 +725,20 @@ CVE-2022-0487: (unk) moxart: fix potential use-after-free on remove path CVE-2022-0492: (unk) cgroup-v1: Require capabilities to set release_agent CVE-2022-0494: (unk) block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern - CVE-2022-0500: (unk) bpf: Introduce MEM_RDONLY flag CVE-2022-0617: (unk) udf: Fix NULL ptr deref when converting from inline format CVE-2022-0644: (unk) vfs: check fd has read access in kernel_read_file_from_fd() - CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() CVE-2022-0812: (unk) xprtrdma: fix incorrect header size calculations CVE-2022-0850: (unk) ext4: fix kernel infoleak via ext4_extent_header - CVE-2022-0854: (unk) swiotlb: rework "fix info leak with DMA_FROM_DEVICE" - CVE-2022-0995: (unk) watch_queue: Fix filter limit check - CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling CVE-2022-1011: (unk) fuse: fix pipe buffer lifetime for direct_io CVE-2022-1012: (unk) secure_seq: use the 64 bits of the siphash for port offset calculation - CVE-2022-1015: (unk) netfilter: nf_tables: validate registers coming from userspace. CVE-2022-1016: (unk) netfilter: nf_tables: initialize registers in nft_do_chain() - CVE-2022-1043: (unk) io_uring: fix xa_alloc_cycle() error return value check CVE-2022-1048: (unk) ALSA: pcm: Fix races among concurrent hw_params and hw_free calls - CVE-2022-1055: (unk) net: sched: fix use-after-free in tc_new_tfilter() CVE-2022-1116: (unk) - CVE-2022-1158: (unk) KVM: x86/mmu: do compare-and-exchange of gPTE via the user address - CVE-2022-1184: (unk) + CVE-2022-1184: (unk) ext4: verify dir block before splitting it CVE-2022-1195: (unk) hamradio: improve the incomplete fix to avoid NPD CVE-2022-1198: (unk) drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() CVE-2022-1199: (unk) ax25: Fix NULL pointer dereference in ax25_kill_by_device CVE-2022-1204: (unk) ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: (unk) ax25: Fix NULL pointer dereferences in ax25 timers CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector @@ -761,35 +746,24 @@ CVE-2022-1419: (unk) drm/vgem: Close use-after-free race in vgem_gem_create CVE-2022-1462: (unk) CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters - CVE-2022-1516: (unk) net/x25: Fix null-ptr-deref caused by x25_disconnect - CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) - CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c + CVE-2022-1652: (unk) floppy: use a statically allocated error counter CVE-2022-1679: (unk) CVE-2022-1729: (unk) perf: Fix sys_perf_event_open() race against self CVE-2022-1734: (unk) nfc: nfcmrvl: main: reorder destructive operations in nfcmrvl_nci_unregister_dev to avoid bugs CVE-2022-1786: (unk) io_uring: remove io_identity - CVE-2022-1789: (unk) KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID CVE-2022-1836: (unk) floppy: disable FDRAWCMD by default - CVE-2022-1852: (unk) KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse CVE-2022-1966: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier - CVE-2022-1972: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay CVE-2022-1974: (unk) nfc: replace improper check device_is_registered() in netlink related functions CVE-2022-1975: (unk) NFC: netlink: fix sleep in atomic bug when firmware download timeout - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking - CVE-2022-1998: (unk) fanotify: Fix stale file descriptor in copy_event_to_user() CVE-2022-20008: (unk) mmc: block: fix read single on recovery logic CVE-2022-20132: (unk) HID: add hid_is_usb() function to make it simpler for USB detection CVE-2022-20141: (unk) igmp: Add ip_mc_list lock in ip_check_mc_rcu CVE-2022-20148: (unk) f2fs: fix UAF in f2fs_available_free_memory - CVE-2022-20153: (unk) io_uring: return back safer resurrect CVE-2022-20154: (unk) sctp: use call_rcu to free endpoint CVE-2022-20166: (unk) drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions - CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-21499: (unk) lockdown: also lock down previous kgdb use + CVE-2022-2153: (unk) KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-22942: (unk) drm/vmwgfx: Fix stale file descriptors on failed usercopy CVE-2022-23036: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23037: (unk) xen/netfront: don't use gnttab_query_foreign_access() for mapped status @@ -805,23 +779,19 @@ CVE-2022-25258: (unk) USB: gadget: validate interface OS descriptor requests CVE-2022-25265: (unk) CVE-2022-25375: (unk) usb: gadget: rndis: check size of RNDIS_MSG_SET command - CVE-2022-25636: (unk) netfilter: nf_tables_offload: incorrect flow offload action array size CVE-2022-26490: (unk) nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION - CVE-2022-26878: (unk) CVE-2022-26966: (unk) sr9700: sanity check for packet length CVE-2022-27223: (unk) USB: gadget: validate endpoint index for xilinx udc CVE-2022-27666: (unk) esp: Fix possible buffer overflow in ESP transformation - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe CVE-2022-28356: (unk) llc: fix netdevice reference leaks in llc_ui_bind() CVE-2022-28388: (unk) can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path CVE-2022-28389: (unk) can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: (unk) can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race - CVE-2022-28893: (unk) SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() - CVE-2022-29156: (unk) RDMA/rtrs-clt: Fix possible double free in error case CVE-2022-29581: (unk) net/sched: cls_u32: fix netns refcount changes in u32_change() - CVE-2022-29582: (unk) io_uring: fix race between timeout flush and removal - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb CVE-2022-30594: (unk) ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE + CVE-2022-32250: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 CVE-2022-32981: (unk) powerpc/32: Fix overread/overwrite of thread_struct via ptrace + CVE-2022-33981: (unk) floppy: disable FDRAWCMD by default + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/4.17/4.17_CVEs.txt b/data/4.17/4.17_CVEs.txt index ed68dc6..15d38b1 100644 --- a/data/4.17/4.17_CVEs.txt +++ b/data/4.17/4.17_CVEs.txt
@@ -110,7 +110,7 @@ CVE-2018-9516: Fixed with 4.17.6 CVE-2019-0136: Fix not seen in stream CVE-2019-0145: Fix not seen in stream -CVE-2019-0146: Fix unknown +CVE-2019-0146: Fix not seen in stream CVE-2019-0147: Fix not seen in stream CVE-2019-0148: Fix not seen in stream CVE-2019-0149: Fix not seen in stream @@ -462,7 +462,7 @@ CVE-2020-26145: Fix not seen in stream CVE-2020-26147: Fix not seen in stream CVE-2020-26541: Fix not seen in stream -CVE-2020-26555: Fix unknown +CVE-2020-26555: Fix not seen in stream CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26558: Fix not seen in stream @@ -521,7 +521,6 @@ CVE-2021-0512: Fix not seen in stream CVE-2021-0605: Fix not seen in stream CVE-2021-0695: Fix unknown -CVE-2021-0707: Fix not seen in stream CVE-2021-0920: Fix not seen in stream CVE-2021-0929: Fix not seen in stream CVE-2021-0937: Fix not seen in stream @@ -570,7 +569,6 @@ CVE-2021-33034: Fix not seen in stream CVE-2021-33061: Fix not seen in stream CVE-2021-33098: Fix not seen in stream -CVE-2021-33135: Fix unknown CVE-2021-3347: Fix not seen in stream CVE-2021-3348: Fix not seen in stream CVE-2021-33624: Fix not seen in stream @@ -631,7 +629,6 @@ CVE-2021-39686: Fix not seen in stream CVE-2021-39698: Fix not seen in stream CVE-2021-39711: Fix not seen in stream -CVE-2021-39713: Fix not seen in stream CVE-2021-39800: Fix unknown CVE-2021-39801: Fix unknown CVE-2021-39802: Fix unknown @@ -641,7 +638,6 @@ CVE-2021-40490: Fix not seen in stream CVE-2021-4083: Fix not seen in stream CVE-2021-4135: Fix not seen in stream -CVE-2021-4148: Fix not seen in stream CVE-2021-4149: Fix not seen in stream CVE-2021-4150: Fix not seen in stream CVE-2021-4155: Fix not seen in stream @@ -668,7 +664,6 @@ CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream -CVE-2022-0171: Fix unknown CVE-2022-0322: Fix not seen in stream CVE-2022-0330: Fix not seen in stream CVE-2022-0382: Fix not seen in stream @@ -678,30 +673,20 @@ CVE-2022-0487: Fix not seen in stream CVE-2022-0492: Fix not seen in stream CVE-2022-0494: Fix not seen in stream -CVE-2022-0500: Fix not seen in stream CVE-2022-0617: Fix not seen in stream CVE-2022-0644: Fix not seen in stream -CVE-2022-0742: Fix not seen in stream CVE-2022-0812: Fix not seen in stream CVE-2022-0850: Fix not seen in stream -CVE-2022-0854: Fix not seen in stream -CVE-2022-0995: Fix not seen in stream -CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fix not seen in stream CVE-2022-1012: Fix not seen in stream -CVE-2022-1015: Fix not seen in stream CVE-2022-1016: Fix not seen in stream -CVE-2022-1043: Fix not seen in stream CVE-2022-1048: Fix not seen in stream -CVE-2022-1055: Fix not seen in stream CVE-2022-1116: Fix unknown -CVE-2022-1158: Fix not seen in stream -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fix not seen in stream CVE-2022-1195: Fix not seen in stream CVE-2022-1198: Fix not seen in stream CVE-2022-1199: Fix not seen in stream CVE-2022-1204: Fix not seen in stream -CVE-2022-1205: Fix not seen in stream CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream @@ -709,35 +694,24 @@ CVE-2022-1419: Fix not seen in stream CVE-2022-1462: Fix unknown CVE-2022-1508: Fix not seen in stream -CVE-2022-1516: Fix not seen in stream -CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown -CVE-2022-1671: Fix not seen in stream +CVE-2022-1652: Fix not seen in stream CVE-2022-1679: Fix unknown CVE-2022-1729: Fix not seen in stream CVE-2022-1734: Fix not seen in stream CVE-2022-1786: Fix not seen in stream -CVE-2022-1789: Fix not seen in stream CVE-2022-1836: Fix not seen in stream -CVE-2022-1852: Fix not seen in stream CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fix not seen in stream -CVE-2022-1972: Fix not seen in stream -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fix not seen in stream CVE-2022-1975: Fix not seen in stream -CVE-2022-1976: Fix not seen in stream -CVE-2022-1998: Fix not seen in stream CVE-2022-20008: Fix not seen in stream CVE-2022-20132: Fix not seen in stream CVE-2022-20141: Fix not seen in stream CVE-2022-20148: Fix not seen in stream -CVE-2022-20153: Fix not seen in stream CVE-2022-20154: Fix not seen in stream CVE-2022-20166: Fix not seen in stream -CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fix not seen in stream +CVE-2022-2153: Fix not seen in stream CVE-2022-22942: Fix not seen in stream CVE-2022-23036: Fix not seen in stream CVE-2022-23037: Fix not seen in stream @@ -753,23 +727,19 @@ CVE-2022-25258: Fix not seen in stream CVE-2022-25265: Fix unknown CVE-2022-25375: Fix not seen in stream -CVE-2022-25636: Fix not seen in stream CVE-2022-26490: Fix not seen in stream -CVE-2022-26878: Fix unknown CVE-2022-26966: Fix not seen in stream CVE-2022-27223: Fix not seen in stream CVE-2022-27666: Fix not seen in stream -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fix not seen in stream CVE-2022-28388: Fix not seen in stream CVE-2022-28389: Fix not seen in stream CVE-2022-28390: Fix not seen in stream -CVE-2022-28796: Fix not seen in stream -CVE-2022-28893: Fix not seen in stream -CVE-2022-29156: Fix not seen in stream CVE-2022-29581: Fix not seen in stream -CVE-2022-29582: Fix not seen in stream -CVE-2022-29968: Fix not seen in stream CVE-2022-30594: Fix not seen in stream +CVE-2022-32250: Fix not seen in stream CVE-2022-32296: Fix not seen in stream CVE-2022-32981: Fix not seen in stream +CVE-2022-33981: Fix not seen in stream +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/4.17/4.17_security.txt b/data/4.17/4.17_security.txt index 49e6e4f..db01df0 100644 --- a/data/4.17/4.17_security.txt +++ b/data/4.17/4.17_security.txt
@@ -145,7 +145,7 @@ CVE-2018-7755: (unk) floppy: Do not copy a kernel pointer to user memory in FDGETPRM ioctl CVE-2019-0136: (unk) mac80211: drop robust management frames from unknown TA CVE-2019-0145: (unk) i40e: add num_vectors checker in iwarp handler - CVE-2019-0146: (unk) + CVE-2019-0146: (unk) i40e: add num_vectors checker in iwarp handler CVE-2019-0147: (unk) i40e: add num_vectors checker in iwarp handler CVE-2019-0148: (unk) i40e: Wrong truncation from u16 to u8 CVE-2019-0149: (unk) i40e: Add bounds check for ch[] array @@ -494,7 +494,7 @@ CVE-2020-26145: (unk) ath10k: drop fragments with multicast DA for PCIe CVE-2020-26147: (unk) mac80211: assure all fragments are encrypted CVE-2020-26541: (unk) certs: Add EFI_CERT_X509_GUID support for dbx entries - CVE-2020-26555: (unk) + CVE-2020-26555: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26558: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical @@ -553,7 +553,6 @@ CVE-2021-0512: (unk) HID: make arrays usage and value to be the same CVE-2021-0605: (unk) af_key: pfkey_dump needs parameter validation CVE-2021-0695: (unk) - CVE-2021-0707: (unk) dmabuf: fix use-after-free of dmabuf's file->f_inode CVE-2021-0920: (unk) af_unix: fix garbage collect vs MSG_PEEK CVE-2021-0929: (unk) staging/android/ion: delete dma_buf->kmap/unmap implemenation CVE-2021-0937: (unk) netfilter: x_tables: fix compat match/target pad out-of-bound write @@ -602,7 +601,6 @@ CVE-2021-33034: (unk) Bluetooth: verify AMP hci_chan before amp_destroy CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality CVE-2021-33098: (unk) ixgbe: fix large MTU request from VF - CVE-2021-33135: (unk) CVE-2021-3347: (unk) futex: Ensure the correct return value from futex_lock_pi() CVE-2021-3348: (unk) nbd: freeze the queue while we're adding connections CVE-2021-33624: (unk) bpf: Inherit expanded/patched seen count from old aux data @@ -663,7 +661,6 @@ CVE-2021-39686: (unk) binder: use euid from cred instead of using task CVE-2021-39698: (unk) wait: add wake_up_pollfree() CVE-2021-39711: (unk) bpf: fix panic due to oob in bpf_prog_test_run_skb - CVE-2021-39713: (unk) net: sched: use Qdisc rcu API instead of relying on rtnl lock CVE-2021-39800: (unk) CVE-2021-39801: (unk) CVE-2021-39802: (unk) @@ -673,7 +670,6 @@ CVE-2021-40490: (unk) ext4: fix race writing to an inline_data file while its xattrs are changing CVE-2021-4083: (unk) fget: check that the fd still exists after getting a ref to it CVE-2021-4135: (unk) netdevsim: Zero-initialize memory for new map's value in function nsim_bpf_map_alloc - CVE-2021-4148: (unk) mm: khugepaged: skip huge page collapse for special files CVE-2021-4149: (unk) btrfs: unlock newly allocated extent buffer after error CVE-2021-4150: (unk) block: fix incorrect references to disk objects CVE-2021-4155: (unk) xfs: map unwritten blocks in XFS_IOC_{ALLOC,FREE}SP just like fallocate @@ -700,7 +696,6 @@ CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() - CVE-2022-0171: (unk) CVE-2022-0322: (unk) sctp: account stream padding length for reconf chunk CVE-2022-0330: (unk) drm/i915: Flush TLBs before releasing backing store CVE-2022-0382: (unk) net ticp:fix a kernel-infoleak in __tipc_sendmsg() @@ -710,30 +705,20 @@ CVE-2022-0487: (unk) moxart: fix potential use-after-free on remove path CVE-2022-0492: (unk) cgroup-v1: Require capabilities to set release_agent CVE-2022-0494: (unk) block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern - CVE-2022-0500: (unk) bpf: Introduce MEM_RDONLY flag CVE-2022-0617: (unk) udf: Fix NULL ptr deref when converting from inline format CVE-2022-0644: (unk) vfs: check fd has read access in kernel_read_file_from_fd() - CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() CVE-2022-0812: (unk) xprtrdma: fix incorrect header size calculations CVE-2022-0850: (unk) ext4: fix kernel infoleak via ext4_extent_header - CVE-2022-0854: (unk) swiotlb: rework "fix info leak with DMA_FROM_DEVICE" - CVE-2022-0995: (unk) watch_queue: Fix filter limit check - CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling CVE-2022-1011: (unk) fuse: fix pipe buffer lifetime for direct_io CVE-2022-1012: (unk) secure_seq: use the 64 bits of the siphash for port offset calculation - CVE-2022-1015: (unk) netfilter: nf_tables: validate registers coming from userspace. CVE-2022-1016: (unk) netfilter: nf_tables: initialize registers in nft_do_chain() - CVE-2022-1043: (unk) io_uring: fix xa_alloc_cycle() error return value check CVE-2022-1048: (unk) ALSA: pcm: Fix races among concurrent hw_params and hw_free calls - CVE-2022-1055: (unk) net: sched: fix use-after-free in tc_new_tfilter() CVE-2022-1116: (unk) - CVE-2022-1158: (unk) KVM: x86/mmu: do compare-and-exchange of gPTE via the user address - CVE-2022-1184: (unk) + CVE-2022-1184: (unk) ext4: verify dir block before splitting it CVE-2022-1195: (unk) hamradio: improve the incomplete fix to avoid NPD CVE-2022-1198: (unk) drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() CVE-2022-1199: (unk) ax25: Fix NULL pointer dereference in ax25_kill_by_device CVE-2022-1204: (unk) ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: (unk) ax25: Fix NULL pointer dereferences in ax25 timers CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector @@ -741,35 +726,24 @@ CVE-2022-1419: (unk) drm/vgem: Close use-after-free race in vgem_gem_create CVE-2022-1462: (unk) CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters - CVE-2022-1516: (unk) net/x25: Fix null-ptr-deref caused by x25_disconnect - CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) - CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c + CVE-2022-1652: (unk) floppy: use a statically allocated error counter CVE-2022-1679: (unk) CVE-2022-1729: (unk) perf: Fix sys_perf_event_open() race against self CVE-2022-1734: (unk) nfc: nfcmrvl: main: reorder destructive operations in nfcmrvl_nci_unregister_dev to avoid bugs CVE-2022-1786: (unk) io_uring: remove io_identity - CVE-2022-1789: (unk) KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID CVE-2022-1836: (unk) floppy: disable FDRAWCMD by default - CVE-2022-1852: (unk) KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse CVE-2022-1966: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier - CVE-2022-1972: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay CVE-2022-1974: (unk) nfc: replace improper check device_is_registered() in netlink related functions CVE-2022-1975: (unk) NFC: netlink: fix sleep in atomic bug when firmware download timeout - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking - CVE-2022-1998: (unk) fanotify: Fix stale file descriptor in copy_event_to_user() CVE-2022-20008: (unk) mmc: block: fix read single on recovery logic CVE-2022-20132: (unk) HID: add hid_is_usb() function to make it simpler for USB detection CVE-2022-20141: (unk) igmp: Add ip_mc_list lock in ip_check_mc_rcu CVE-2022-20148: (unk) f2fs: fix UAF in f2fs_available_free_memory - CVE-2022-20153: (unk) io_uring: return back safer resurrect CVE-2022-20154: (unk) sctp: use call_rcu to free endpoint CVE-2022-20166: (unk) drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions - CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-21499: (unk) lockdown: also lock down previous kgdb use + CVE-2022-2153: (unk) KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-22942: (unk) drm/vmwgfx: Fix stale file descriptors on failed usercopy CVE-2022-23036: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23037: (unk) xen/netfront: don't use gnttab_query_foreign_access() for mapped status @@ -785,23 +759,19 @@ CVE-2022-25258: (unk) USB: gadget: validate interface OS descriptor requests CVE-2022-25265: (unk) CVE-2022-25375: (unk) usb: gadget: rndis: check size of RNDIS_MSG_SET command - CVE-2022-25636: (unk) netfilter: nf_tables_offload: incorrect flow offload action array size CVE-2022-26490: (unk) nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION - CVE-2022-26878: (unk) CVE-2022-26966: (unk) sr9700: sanity check for packet length CVE-2022-27223: (unk) USB: gadget: validate endpoint index for xilinx udc CVE-2022-27666: (unk) esp: Fix possible buffer overflow in ESP transformation - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe CVE-2022-28356: (unk) llc: fix netdevice reference leaks in llc_ui_bind() CVE-2022-28388: (unk) can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path CVE-2022-28389: (unk) can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: (unk) can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race - CVE-2022-28893: (unk) SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() - CVE-2022-29156: (unk) RDMA/rtrs-clt: Fix possible double free in error case CVE-2022-29581: (unk) net/sched: cls_u32: fix netns refcount changes in u32_change() - CVE-2022-29582: (unk) io_uring: fix race between timeout flush and removal - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb CVE-2022-30594: (unk) ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE + CVE-2022-32250: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 CVE-2022-32981: (unk) powerpc/32: Fix overread/overwrite of thread_struct via ptrace + CVE-2022-33981: (unk) floppy: disable FDRAWCMD by default + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/4.18/4.18_CVEs.txt b/data/4.18/4.18_CVEs.txt index 2511a1f..d6e3e3b 100644 --- a/data/4.18/4.18_CVEs.txt +++ b/data/4.18/4.18_CVEs.txt
@@ -80,7 +80,7 @@ CVE-2018-9363: Fixed with 4.18.2 CVE-2019-0136: Fix not seen in stream CVE-2019-0145: Fix not seen in stream -CVE-2019-0146: Fix unknown +CVE-2019-0146: Fix not seen in stream CVE-2019-0147: Fix not seen in stream CVE-2019-0148: Fix not seen in stream CVE-2019-0149: Fix not seen in stream @@ -440,7 +440,7 @@ CVE-2020-26145: Fix not seen in stream CVE-2020-26147: Fix not seen in stream CVE-2020-26541: Fix not seen in stream -CVE-2020-26555: Fix unknown +CVE-2020-26555: Fix not seen in stream CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26558: Fix not seen in stream @@ -498,7 +498,6 @@ CVE-2021-0512: Fix not seen in stream CVE-2021-0605: Fix not seen in stream CVE-2021-0695: Fix unknown -CVE-2021-0707: Fix not seen in stream CVE-2021-0920: Fix not seen in stream CVE-2021-0929: Fix not seen in stream CVE-2021-0937: Fix not seen in stream @@ -548,7 +547,6 @@ CVE-2021-33034: Fix not seen in stream CVE-2021-33061: Fix not seen in stream CVE-2021-33098: Fix not seen in stream -CVE-2021-33135: Fix unknown CVE-2021-3347: Fix not seen in stream CVE-2021-3348: Fix not seen in stream CVE-2021-33624: Fix not seen in stream @@ -608,7 +606,6 @@ CVE-2021-39685: Fix not seen in stream CVE-2021-39686: Fix not seen in stream CVE-2021-39698: Fix not seen in stream -CVE-2021-39713: Fix not seen in stream CVE-2021-39800: Fix unknown CVE-2021-39801: Fix unknown CVE-2021-39802: Fix unknown @@ -618,7 +615,6 @@ CVE-2021-40490: Fix not seen in stream CVE-2021-4083: Fix not seen in stream CVE-2021-4135: Fix not seen in stream -CVE-2021-4148: Fix not seen in stream CVE-2021-4149: Fix not seen in stream CVE-2021-4150: Fix not seen in stream CVE-2021-4155: Fix not seen in stream @@ -645,7 +641,6 @@ CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream -CVE-2022-0171: Fix unknown CVE-2022-0322: Fix not seen in stream CVE-2022-0330: Fix not seen in stream CVE-2022-0382: Fix not seen in stream @@ -655,30 +650,20 @@ CVE-2022-0487: Fix not seen in stream CVE-2022-0492: Fix not seen in stream CVE-2022-0494: Fix not seen in stream -CVE-2022-0500: Fix not seen in stream CVE-2022-0617: Fix not seen in stream CVE-2022-0644: Fix not seen in stream -CVE-2022-0742: Fix not seen in stream CVE-2022-0812: Fix not seen in stream CVE-2022-0850: Fix not seen in stream -CVE-2022-0854: Fix not seen in stream -CVE-2022-0995: Fix not seen in stream -CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fix not seen in stream CVE-2022-1012: Fix not seen in stream -CVE-2022-1015: Fix not seen in stream CVE-2022-1016: Fix not seen in stream -CVE-2022-1043: Fix not seen in stream CVE-2022-1048: Fix not seen in stream -CVE-2022-1055: Fix not seen in stream CVE-2022-1116: Fix unknown -CVE-2022-1158: Fix not seen in stream -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fix not seen in stream CVE-2022-1195: Fix not seen in stream CVE-2022-1198: Fix not seen in stream CVE-2022-1199: Fix not seen in stream CVE-2022-1204: Fix not seen in stream -CVE-2022-1205: Fix not seen in stream CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream @@ -686,36 +671,25 @@ CVE-2022-1419: Fix not seen in stream CVE-2022-1462: Fix unknown CVE-2022-1508: Fix not seen in stream -CVE-2022-1516: Fix not seen in stream -CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown -CVE-2022-1671: Fix not seen in stream +CVE-2022-1652: Fix not seen in stream CVE-2022-1678: Fix not seen in stream CVE-2022-1679: Fix unknown CVE-2022-1729: Fix not seen in stream CVE-2022-1734: Fix not seen in stream CVE-2022-1786: Fix not seen in stream -CVE-2022-1789: Fix not seen in stream CVE-2022-1836: Fix not seen in stream -CVE-2022-1852: Fix not seen in stream CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fix not seen in stream -CVE-2022-1972: Fix not seen in stream -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fix not seen in stream CVE-2022-1975: Fix not seen in stream -CVE-2022-1976: Fix not seen in stream -CVE-2022-1998: Fix not seen in stream CVE-2022-20008: Fix not seen in stream CVE-2022-20132: Fix not seen in stream CVE-2022-20141: Fix not seen in stream CVE-2022-20148: Fix not seen in stream -CVE-2022-20153: Fix not seen in stream CVE-2022-20154: Fix not seen in stream CVE-2022-20166: Fix not seen in stream -CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fix not seen in stream +CVE-2022-2153: Fix not seen in stream CVE-2022-22942: Fix not seen in stream CVE-2022-23036: Fix not seen in stream CVE-2022-23037: Fix not seen in stream @@ -731,23 +705,19 @@ CVE-2022-25258: Fix not seen in stream CVE-2022-25265: Fix unknown CVE-2022-25375: Fix not seen in stream -CVE-2022-25636: Fix not seen in stream CVE-2022-26490: Fix not seen in stream -CVE-2022-26878: Fix unknown CVE-2022-26966: Fix not seen in stream CVE-2022-27223: Fix not seen in stream CVE-2022-27666: Fix not seen in stream -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fix not seen in stream CVE-2022-28388: Fix not seen in stream CVE-2022-28389: Fix not seen in stream CVE-2022-28390: Fix not seen in stream -CVE-2022-28796: Fix not seen in stream -CVE-2022-28893: Fix not seen in stream -CVE-2022-29156: Fix not seen in stream CVE-2022-29581: Fix not seen in stream -CVE-2022-29582: Fix not seen in stream -CVE-2022-29968: Fix not seen in stream CVE-2022-30594: Fix not seen in stream +CVE-2022-32250: Fix not seen in stream CVE-2022-32296: Fix not seen in stream CVE-2022-32981: Fix not seen in stream +CVE-2022-33981: Fix not seen in stream +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/4.18/4.18_security.txt b/data/4.18/4.18_security.txt index b6324bf..4f943d0 100644 --- a/data/4.18/4.18_security.txt +++ b/data/4.18/4.18_security.txt
@@ -114,7 +114,7 @@ CVE-2018-5391: (unk) ip: discard IPv4 datagrams with overlapping segments. CVE-2019-0136: (unk) mac80211: drop robust management frames from unknown TA CVE-2019-0145: (unk) i40e: add num_vectors checker in iwarp handler - CVE-2019-0146: (unk) + CVE-2019-0146: (unk) i40e: add num_vectors checker in iwarp handler CVE-2019-0147: (unk) i40e: add num_vectors checker in iwarp handler CVE-2019-0148: (unk) i40e: Wrong truncation from u16 to u8 CVE-2019-0149: (unk) i40e: Add bounds check for ch[] array @@ -472,7 +472,7 @@ CVE-2020-26145: (unk) ath10k: drop fragments with multicast DA for PCIe CVE-2020-26147: (unk) mac80211: assure all fragments are encrypted CVE-2020-26541: (unk) certs: Add EFI_CERT_X509_GUID support for dbx entries - CVE-2020-26555: (unk) + CVE-2020-26555: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26558: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical @@ -530,7 +530,6 @@ CVE-2021-0512: (unk) HID: make arrays usage and value to be the same CVE-2021-0605: (unk) af_key: pfkey_dump needs parameter validation CVE-2021-0695: (unk) - CVE-2021-0707: (unk) dmabuf: fix use-after-free of dmabuf's file->f_inode CVE-2021-0920: (unk) af_unix: fix garbage collect vs MSG_PEEK CVE-2021-0929: (unk) staging/android/ion: delete dma_buf->kmap/unmap implemenation CVE-2021-0937: (unk) netfilter: x_tables: fix compat match/target pad out-of-bound write @@ -580,7 +579,6 @@ CVE-2021-33034: (unk) Bluetooth: verify AMP hci_chan before amp_destroy CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality CVE-2021-33098: (unk) ixgbe: fix large MTU request from VF - CVE-2021-33135: (unk) CVE-2021-3347: (unk) futex: Ensure the correct return value from futex_lock_pi() CVE-2021-3348: (unk) nbd: freeze the queue while we're adding connections CVE-2021-33624: (unk) bpf: Inherit expanded/patched seen count from old aux data @@ -640,7 +638,6 @@ CVE-2021-39685: (unk) USB: gadget: detect too-big endpoint 0 requests CVE-2021-39686: (unk) binder: use euid from cred instead of using task CVE-2021-39698: (unk) wait: add wake_up_pollfree() - CVE-2021-39713: (unk) net: sched: use Qdisc rcu API instead of relying on rtnl lock CVE-2021-39800: (unk) CVE-2021-39801: (unk) CVE-2021-39802: (unk) @@ -650,7 +647,6 @@ CVE-2021-40490: (unk) ext4: fix race writing to an inline_data file while its xattrs are changing CVE-2021-4083: (unk) fget: check that the fd still exists after getting a ref to it CVE-2021-4135: (unk) netdevsim: Zero-initialize memory for new map's value in function nsim_bpf_map_alloc - CVE-2021-4148: (unk) mm: khugepaged: skip huge page collapse for special files CVE-2021-4149: (unk) btrfs: unlock newly allocated extent buffer after error CVE-2021-4150: (unk) block: fix incorrect references to disk objects CVE-2021-4155: (unk) xfs: map unwritten blocks in XFS_IOC_{ALLOC,FREE}SP just like fallocate @@ -677,7 +673,6 @@ CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() - CVE-2022-0171: (unk) CVE-2022-0322: (unk) sctp: account stream padding length for reconf chunk CVE-2022-0330: (unk) drm/i915: Flush TLBs before releasing backing store CVE-2022-0382: (unk) net ticp:fix a kernel-infoleak in __tipc_sendmsg() @@ -687,30 +682,20 @@ CVE-2022-0487: (unk) moxart: fix potential use-after-free on remove path CVE-2022-0492: (unk) cgroup-v1: Require capabilities to set release_agent CVE-2022-0494: (unk) block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern - CVE-2022-0500: (unk) bpf: Introduce MEM_RDONLY flag CVE-2022-0617: (unk) udf: Fix NULL ptr deref when converting from inline format CVE-2022-0644: (unk) vfs: check fd has read access in kernel_read_file_from_fd() - CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() CVE-2022-0812: (unk) xprtrdma: fix incorrect header size calculations CVE-2022-0850: (unk) ext4: fix kernel infoleak via ext4_extent_header - CVE-2022-0854: (unk) swiotlb: rework "fix info leak with DMA_FROM_DEVICE" - CVE-2022-0995: (unk) watch_queue: Fix filter limit check - CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling CVE-2022-1011: (unk) fuse: fix pipe buffer lifetime for direct_io CVE-2022-1012: (unk) secure_seq: use the 64 bits of the siphash for port offset calculation - CVE-2022-1015: (unk) netfilter: nf_tables: validate registers coming from userspace. CVE-2022-1016: (unk) netfilter: nf_tables: initialize registers in nft_do_chain() - CVE-2022-1043: (unk) io_uring: fix xa_alloc_cycle() error return value check CVE-2022-1048: (unk) ALSA: pcm: Fix races among concurrent hw_params and hw_free calls - CVE-2022-1055: (unk) net: sched: fix use-after-free in tc_new_tfilter() CVE-2022-1116: (unk) - CVE-2022-1158: (unk) KVM: x86/mmu: do compare-and-exchange of gPTE via the user address - CVE-2022-1184: (unk) + CVE-2022-1184: (unk) ext4: verify dir block before splitting it CVE-2022-1195: (unk) hamradio: improve the incomplete fix to avoid NPD CVE-2022-1198: (unk) drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() CVE-2022-1199: (unk) ax25: Fix NULL pointer dereference in ax25_kill_by_device CVE-2022-1204: (unk) ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: (unk) ax25: Fix NULL pointer dereferences in ax25 timers CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector @@ -718,36 +703,25 @@ CVE-2022-1419: (unk) drm/vgem: Close use-after-free race in vgem_gem_create CVE-2022-1462: (unk) CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters - CVE-2022-1516: (unk) net/x25: Fix null-ptr-deref caused by x25_disconnect - CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) - CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c + CVE-2022-1652: (unk) floppy: use a statically allocated error counter CVE-2022-1678: (unk) tcp: optimize tcp internal pacing CVE-2022-1679: (unk) CVE-2022-1729: (unk) perf: Fix sys_perf_event_open() race against self CVE-2022-1734: (unk) nfc: nfcmrvl: main: reorder destructive operations in nfcmrvl_nci_unregister_dev to avoid bugs CVE-2022-1786: (unk) io_uring: remove io_identity - CVE-2022-1789: (unk) KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID CVE-2022-1836: (unk) floppy: disable FDRAWCMD by default - CVE-2022-1852: (unk) KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse CVE-2022-1966: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier - CVE-2022-1972: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay CVE-2022-1974: (unk) nfc: replace improper check device_is_registered() in netlink related functions CVE-2022-1975: (unk) NFC: netlink: fix sleep in atomic bug when firmware download timeout - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking - CVE-2022-1998: (unk) fanotify: Fix stale file descriptor in copy_event_to_user() CVE-2022-20008: (unk) mmc: block: fix read single on recovery logic CVE-2022-20132: (unk) HID: add hid_is_usb() function to make it simpler for USB detection CVE-2022-20141: (unk) igmp: Add ip_mc_list lock in ip_check_mc_rcu CVE-2022-20148: (unk) f2fs: fix UAF in f2fs_available_free_memory - CVE-2022-20153: (unk) io_uring: return back safer resurrect CVE-2022-20154: (unk) sctp: use call_rcu to free endpoint CVE-2022-20166: (unk) drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions - CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-21499: (unk) lockdown: also lock down previous kgdb use + CVE-2022-2153: (unk) KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-22942: (unk) drm/vmwgfx: Fix stale file descriptors on failed usercopy CVE-2022-23036: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23037: (unk) xen/netfront: don't use gnttab_query_foreign_access() for mapped status @@ -763,23 +737,19 @@ CVE-2022-25258: (unk) USB: gadget: validate interface OS descriptor requests CVE-2022-25265: (unk) CVE-2022-25375: (unk) usb: gadget: rndis: check size of RNDIS_MSG_SET command - CVE-2022-25636: (unk) netfilter: nf_tables_offload: incorrect flow offload action array size CVE-2022-26490: (unk) nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION - CVE-2022-26878: (unk) CVE-2022-26966: (unk) sr9700: sanity check for packet length CVE-2022-27223: (unk) USB: gadget: validate endpoint index for xilinx udc CVE-2022-27666: (unk) esp: Fix possible buffer overflow in ESP transformation - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe CVE-2022-28356: (unk) llc: fix netdevice reference leaks in llc_ui_bind() CVE-2022-28388: (unk) can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path CVE-2022-28389: (unk) can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: (unk) can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race - CVE-2022-28893: (unk) SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() - CVE-2022-29156: (unk) RDMA/rtrs-clt: Fix possible double free in error case CVE-2022-29581: (unk) net/sched: cls_u32: fix netns refcount changes in u32_change() - CVE-2022-29582: (unk) io_uring: fix race between timeout flush and removal - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb CVE-2022-30594: (unk) ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE + CVE-2022-32250: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 CVE-2022-32981: (unk) powerpc/32: Fix overread/overwrite of thread_struct via ptrace + CVE-2022-33981: (unk) floppy: disable FDRAWCMD by default + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/4.19/4.19_CVEs.txt b/data/4.19/4.19_CVEs.txt index b657cd4..8b4ce1b 100644 --- a/data/4.19/4.19_CVEs.txt +++ b/data/4.19/4.19_CVEs.txt
@@ -43,7 +43,7 @@ CVE-2018-20854: Fix not seen in stream CVE-2019-0136: Fixed with 4.19.56 CVE-2019-0145: Fixed with 4.19.139 -CVE-2019-0146: Fix unknown +CVE-2019-0146: Fixed with 4.19.139 CVE-2019-0147: Fixed with 4.19.139 CVE-2019-0148: Fixed with 4.19.139 CVE-2019-0149: Fix not seen in stream @@ -409,7 +409,7 @@ CVE-2020-26145: Fix not seen in stream CVE-2020-26147: Fixed with 4.19.193 CVE-2020-26541: Fix not seen in stream -CVE-2020-26555: Fix unknown +CVE-2020-26555: Fixed with 4.19.192 CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26558: Fixed with 4.19.192 @@ -468,7 +468,6 @@ CVE-2021-0512: Fixed with 4.19.178 CVE-2021-0605: Fixed with 4.19.148 CVE-2021-0695: Fix unknown -CVE-2021-0707: Fix not seen in stream CVE-2021-0920: Fixed with 4.19.200 CVE-2021-0929: Fix not seen in stream CVE-2021-0937: Fixed with 4.19.188 @@ -520,7 +519,6 @@ CVE-2021-33034: Fixed with 4.19.191 CVE-2021-33061: Fix not seen in stream CVE-2021-33098: Fixed with 4.19.193 -CVE-2021-33135: Fix unknown CVE-2021-3347: Fixed with 4.19.172 CVE-2021-3348: Fixed with 4.19.173 CVE-2021-33624: Fixed with 4.19.204 @@ -590,7 +588,6 @@ CVE-2021-40490: Fixed with 4.19.207 CVE-2021-4083: Fixed with 4.19.220 CVE-2021-4135: Fixed with 4.19.222 -CVE-2021-4148: Fix not seen in stream CVE-2021-4149: Fixed with 4.19.235 CVE-2021-4150: Fix not seen in stream CVE-2021-4155: Fixed with 4.19.225 @@ -617,7 +614,6 @@ CVE-2022-0001: Fixed with 4.19.234 CVE-2022-0002: Fixed with 4.19.234 CVE-2022-0168: Fix not seen in stream -CVE-2022-0171: Fix unknown CVE-2022-0322: Fixed with 4.19.213 CVE-2022-0330: Fixed with 4.19.227 CVE-2022-0382: Fix not seen in stream @@ -627,30 +623,20 @@ CVE-2022-0487: Fixed with 4.19.229 CVE-2022-0492: Fixed with 4.19.229 CVE-2022-0494: Fixed with 4.19.246 -CVE-2022-0500: Fix not seen in stream CVE-2022-0617: Fixed with 4.19.228 CVE-2022-0644: Fixed with 4.19.214 -CVE-2022-0742: Fix not seen in stream -CVE-2022-0812: Fix not seen in stream +CVE-2022-0812: Fixed with 4.19.249 CVE-2022-0850: Fixed with 4.19.198 -CVE-2022-0854: Fixed with 4.19.245 -CVE-2022-0995: Fix not seen in stream -CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fixed with 4.19.238 CVE-2022-1012: Fixed with 4.19.246 -CVE-2022-1015: Fix not seen in stream CVE-2022-1016: Fixed with 4.19.237 -CVE-2022-1043: Fix not seen in stream CVE-2022-1048: Fixed with 4.19.243 -CVE-2022-1055: Fix not seen in stream CVE-2022-1116: Fix unknown -CVE-2022-1158: Fix not seen in stream -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fixed with 4.19.247 CVE-2022-1195: Fixed with 4.19.223 CVE-2022-1198: Fixed with 4.19.238 CVE-2022-1199: Fixed with 4.19.235 CVE-2022-1204: Fixed with 4.19.240 -CVE-2022-1205: Fixed with 4.19.240 CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream @@ -658,10 +644,7 @@ CVE-2022-1419: Fixed with 4.19.242 CVE-2022-1462: Fix unknown CVE-2022-1508: Fix not seen in stream -CVE-2022-1516: Fixed with 4.19.238 -CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown -CVE-2022-1671: Fix not seen in stream +CVE-2022-1652: Fixed with 4.19.245 CVE-2022-1678: Fixed with 4.19.228 CVE-2022-1679: Fix unknown CVE-2022-1729: Fixed with 4.19.245 @@ -669,25 +652,18 @@ CVE-2022-1786: Fix not seen in stream CVE-2022-1789: Fix not seen in stream CVE-2022-1836: Fixed with 4.19.241 -CVE-2022-1852: Fix not seen in stream CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fixed with 4.19.247 -CVE-2022-1972: Fix not seen in stream -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fixed with 4.19.242 CVE-2022-1975: Fixed with 4.19.242 -CVE-2022-1976: Fix not seen in stream -CVE-2022-1998: Fix not seen in stream CVE-2022-20008: Fixed with 4.19.231 CVE-2022-20132: Fixed with 4.19.221 CVE-2022-20141: Fixed with 4.19.207 CVE-2022-20148: Fix not seen in stream -CVE-2022-20153: Fix not seen in stream CVE-2022-20154: Fixed with 4.19.224 CVE-2022-20166: Fix not seen in stream -CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fix not seen in stream +CVE-2022-2153: Fix not seen in stream CVE-2022-22942: Fixed with 4.19.227 CVE-2022-23036: Fixed with 4.19.234 CVE-2022-23037: Fixed with 4.19.234 @@ -704,23 +680,19 @@ CVE-2022-25258: Fixed with 4.19.230 CVE-2022-25265: Fix unknown CVE-2022-25375: Fixed with 4.19.230 -CVE-2022-25636: Fix not seen in stream CVE-2022-26490: Fixed with 4.19.237 -CVE-2022-26878: Fix unknown CVE-2022-26966: Fixed with 4.19.232 CVE-2022-27223: Fixed with 4.19.232 CVE-2022-27666: Fixed with 4.19.237 -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fixed with 4.19.237 CVE-2022-28388: Fixed with 4.19.240 CVE-2022-28389: Fixed with 4.19.238 CVE-2022-28390: Fixed with 4.19.238 -CVE-2022-28796: Fix not seen in stream -CVE-2022-28893: Fix not seen in stream -CVE-2022-29156: Fix not seen in stream CVE-2022-29581: Fixed with 4.19.241 -CVE-2022-29582: Fix not seen in stream -CVE-2022-29968: Fix not seen in stream CVE-2022-30594: Fixed with 4.19.238 -CVE-2022-32296: Fix not seen in stream +CVE-2022-32250: Fixed with 4.19.247 +CVE-2022-32296: Fixed with 4.19.249 CVE-2022-32981: Fixed with 4.19.247 +CVE-2022-33981: Fixed with 4.19.241 +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/4.19/4.19_security.txt b/data/4.19/4.19_security.txt index be71106..ababcfd 100644 --- a/data/4.19/4.19_security.txt +++ b/data/4.19/4.19_security.txt
@@ -531,6 +531,7 @@ CVEs fixed in 4.19.139: CVE-2019-0145: 43a7e1cf606e96ee43f8897129972f0b79390367 i40e: add num_vectors checker in iwarp handler + CVE-2019-0146: 43a7e1cf606e96ee43f8897129972f0b79390367 i40e: add num_vectors checker in iwarp handler CVE-2019-0147: 43a7e1cf606e96ee43f8897129972f0b79390367 i40e: add num_vectors checker in iwarp handler CVE-2019-0148: 48a9be93ff2c5a09e308ef93560ea1f4ecbd22f6 i40e: Wrong truncation from u16 to u8 CVE-2020-14331: 61219546f3036d2b4a1898be7a38da22e97a3b62 vgacon: Fix for missing check in scrollback handling @@ -711,6 +712,7 @@ CVE-2021-4157: f27638a92f77d8107efbaf48a0d3bfa24da8cdad pNFS/flexfiles: fix incorrect size check in decode_nfs_fh() CVEs fixed in 4.19.192: + CVE-2020-26555: 30126d4ba73119565f1748b116b9869ac6bbda6b Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26558: 30126d4ba73119565f1748b116b9869ac6bbda6b Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2021-0129: 30126d4ba73119565f1748b116b9869ac6bbda6b Bluetooth: SMP: Fail if remote and local public keys are identical @@ -917,19 +919,18 @@ CVE-2022-1011: 99db28212be68030c1db3a525f6bbdce39b039e9 fuse: fix pipe buffer lifetime for direct_io CVE-2022-1198: 79e2f40c210a47f283bca352745068207798fbb9 drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() CVE-2022-1353: 693fe8af9a2625139de07bd1ae212a7d89c37795 af_key: add __GFP_ZERO flag for compose_sadb_supported in function pfkey_register - CVE-2022-1516: 4c240c5a105557e4546d0836e694868f22fd09b0 net/x25: Fix null-ptr-deref caused by x25_disconnect CVE-2022-28389: a8bba9fd73775e66b4021b18f2193f769ce48a59 can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: dec3ed0c76483748268bf36ec278af660b0f80ba can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path CVE-2022-30594: b1f438f872dcda10a79e6aeaf06fd52dfb15a6ab ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE CVEs fixed in 4.19.240: CVE-2022-1204: de55a1338e6a48ff1e41ea8db1432496fbe2a62b ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: 512f09df261b51b088f17d86dbdf300a3492523d ax25: Fix NULL pointer dereferences in ax25 timers CVE-2022-28388: 8eb78da898079c0d7250c32ebf0c35fb81737abe can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path CVEs fixed in 4.19.241: CVE-2022-1836: 0e535976774504af36fab1dfb54f3d4d6cc577a9 floppy: disable FDRAWCMD by default CVE-2022-29581: 75b0cc7904da7b40c6e8f2cf3ec4223b292b1184 net/sched: cls_u32: fix netns refcount changes in u32_change() + CVE-2022-33981: 0e535976774504af36fab1dfb54f3d4d6cc577a9 floppy: disable FDRAWCMD by default CVEs fixed in 4.19.242: CVE-2022-1419: df2c1f38939aabb8c6beca108f08b90f050b9ebc drm/vgem: Close use-after-free race in vgem_gem_create @@ -941,7 +942,7 @@ CVE-2022-1048: 9cb6c40a6ebe4a0cfc9d6a181958211682cffea9 ALSA: pcm: Fix races among concurrent hw_params and hw_free calls CVEs fixed in 4.19.245: - CVE-2022-0854: 06cb238b0f7ac1669cb06390704c61794724c191 swiotlb: rework "fix info leak with DMA_FROM_DEVICE" + CVE-2022-1652: 3392d8711ad9e5b688999c948fd36d798c0d075d floppy: use a statically allocated error counter CVE-2022-1729: 6cdd53a49aa7413e53c14ece27d826f0b628b18a perf: Fix sys_perf_event_open() race against self CVEs fixed in 4.19.246: @@ -949,9 +950,15 @@ CVE-2022-1012: 695309c5c71526d32f5539f008bbf20ed2218528 secure_seq: use the 64 bits of the siphash for port offset calculation CVEs fixed in 4.19.247: + CVE-2022-1184: 78398c2b2cc14f9a9c8592cf6d334c5a479ed611 ext4: verify dir block before splitting it CVE-2022-1966: ed44398b45add3d9be56b7457cc9e05282e518b4 netfilter: nf_tables: disallow non-stateful expression in sets earlier + CVE-2022-32250: ed44398b45add3d9be56b7457cc9e05282e518b4 netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-32981: a0e38a2808ea708beb4196a8873cecc23efb8e64 powerpc/32: Fix overread/overwrite of thread_struct via ptrace +CVEs fixed in 4.19.249: + CVE-2022-0812: 4103bc54d8684a099615ae1fbab0590cf2167024 xprtrdma: fix incorrect header size calculations + CVE-2022-32296: 514cd2859c5017fdc487165b093b328e24afe954 tcp: increase source port perturb table to 2^16 + Outstanding CVEs: CVE-2005-3660: (unk) CVE-2007-3719: (unk) @@ -973,7 +980,6 @@ CVE-2018-12931: (unk) CVE-2018-17977: (unk) CVE-2018-20854: (unk) phy: ocelot-serdes: fix out-of-bounds read - CVE-2019-0146: (unk) CVE-2019-0149: (unk) i40e: Add bounds check for ch[] array CVE-2019-10220: (unk) Convert filldir[64]() from __put_user() to unsafe_put_user() CVE-2019-11191: (unk) x86: Deprecate a.out support @@ -1019,7 +1025,6 @@ CVE-2020-26143: (unk) CVE-2020-26145: (unk) ath10k: drop fragments with multicast DA for PCIe CVE-2020-26541: (unk) certs: Add EFI_CERT_X509_GUID support for dbx entries - CVE-2020-26555: (unk) CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26559: (unk) @@ -1034,7 +1039,6 @@ CVE-2020-7053: (unk) drm/i915: Introduce a mutex for file_priv->context_idr CVE-2021-0399: (unk) CVE-2021-0695: (unk) - CVE-2021-0707: (unk) dmabuf: fix use-after-free of dmabuf's file->f_inode CVE-2021-0929: (unk) staging/android/ion: delete dma_buf->kmap/unmap implemenation CVE-2021-20177: (unk) netfilter: add and use nf_hook_slow_list() CVE-2021-26934: (unk) @@ -1042,7 +1046,6 @@ CVE-2021-29155: (unk) bpf: Use correct permission flag for mixed signed bounds arithmetic CVE-2021-32078: (unk) ARM: footbridge: remove personal server platform CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality - CVE-2021-33135: (unk) CVE-2021-3542: (unk) CVE-2021-3669: (unk) ipc: replace costly bailout check in sysvipc_find_ipc() CVE-2021-3714: (unk) @@ -1055,58 +1058,29 @@ CVE-2021-39802: (unk) CVE-2021-4023: (unk) io-wq: fix cancellation on create-worker failure CVE-2021-4037: (unk) xfs: fix up non-directory creation in SGID directories - CVE-2021-4148: (unk) mm: khugepaged: skip huge page collapse for special files CVE-2021-4150: (unk) block: fix incorrect references to disk objects CVE-2021-4159: (unk) bpf: Verifer, adjust_scalar_min_max_vals to always call update_reg_bounds() CVE-2021-4218: (unk) sysctl: pass kernel pointers to ->proc_handler CVE-2021-44879: (unk) f2fs: fix to do sanity check on inode type during garbage collection CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() - CVE-2022-0171: (unk) CVE-2022-0382: (unk) net ticp:fix a kernel-infoleak in __tipc_sendmsg() CVE-2022-0400: (unk) CVE-2022-0480: (unk) memcg: enable accounting for file lock caches - CVE-2022-0500: (unk) bpf: Introduce MEM_RDONLY flag - CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() - CVE-2022-0812: (unk) xprtrdma: fix incorrect header size calculations - CVE-2022-0995: (unk) watch_queue: Fix filter limit check - CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling - CVE-2022-1015: (unk) netfilter: nf_tables: validate registers coming from userspace. - CVE-2022-1043: (unk) io_uring: fix xa_alloc_cycle() error return value check - CVE-2022-1055: (unk) net: sched: fix use-after-free in tc_new_tfilter() CVE-2022-1116: (unk) - CVE-2022-1158: (unk) KVM: x86/mmu: do compare-and-exchange of gPTE via the user address - CVE-2022-1184: (unk) CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector CVE-2022-1462: (unk) CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters - CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) - CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c CVE-2022-1679: (unk) CVE-2022-1786: (unk) io_uring: remove io_identity CVE-2022-1789: (unk) KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID - CVE-2022-1852: (unk) KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse - CVE-2022-1972: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking - CVE-2022-1998: (unk) fanotify: Fix stale file descriptor in copy_event_to_user() CVE-2022-20148: (unk) f2fs: fix UAF in f2fs_available_free_memory - CVE-2022-20153: (unk) io_uring: return back safer resurrect CVE-2022-20166: (unk) drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions - CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-21499: (unk) lockdown: also lock down previous kgdb use + CVE-2022-2153: (unk) KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-23222: (unk) bpf: Replace PTR_TO_XXX_OR_NULL with PTR_TO_XXX | PTR_MAYBE_NULL CVE-2022-25265: (unk) - CVE-2022-25636: (unk) netfilter: nf_tables_offload: incorrect flow offload action array size - CVE-2022-26878: (unk) - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race - CVE-2022-28893: (unk) SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() - CVE-2022-29156: (unk) RDMA/rtrs-clt: Fix possible double free in error case - CVE-2022-29582: (unk) io_uring: fix race between timeout flush and removal - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb - CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/4.20/4.20_CVEs.txt b/data/4.20/4.20_CVEs.txt index a5d8ba2..4f1c390 100644 --- a/data/4.20/4.20_CVEs.txt +++ b/data/4.20/4.20_CVEs.txt
@@ -29,7 +29,7 @@ CVE-2018-20784: Fixed with 4.20.2 CVE-2019-0136: Fix not seen in stream CVE-2019-0145: Fix not seen in stream -CVE-2019-0146: Fix unknown +CVE-2019-0146: Fix not seen in stream CVE-2019-0147: Fix not seen in stream CVE-2019-0148: Fix not seen in stream CVE-2019-0149: Fix not seen in stream @@ -397,7 +397,7 @@ CVE-2020-26145: Fix not seen in stream CVE-2020-26147: Fix not seen in stream CVE-2020-26541: Fix not seen in stream -CVE-2020-26555: Fix unknown +CVE-2020-26555: Fix not seen in stream CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26558: Fix not seen in stream @@ -457,7 +457,6 @@ CVE-2021-0512: Fix not seen in stream CVE-2021-0605: Fix not seen in stream CVE-2021-0695: Fix unknown -CVE-2021-0707: Fix not seen in stream CVE-2021-0920: Fix not seen in stream CVE-2021-0929: Fix not seen in stream CVE-2021-0937: Fix not seen in stream @@ -509,7 +508,6 @@ CVE-2021-33034: Fix not seen in stream CVE-2021-33061: Fix not seen in stream CVE-2021-33098: Fix not seen in stream -CVE-2021-33135: Fix unknown CVE-2021-3347: Fix not seen in stream CVE-2021-3348: Fix not seen in stream CVE-2021-33624: Fix not seen in stream @@ -579,7 +577,6 @@ CVE-2021-40490: Fix not seen in stream CVE-2021-4083: Fix not seen in stream CVE-2021-4135: Fix not seen in stream -CVE-2021-4148: Fix not seen in stream CVE-2021-4149: Fix not seen in stream CVE-2021-4150: Fix not seen in stream CVE-2021-4155: Fix not seen in stream @@ -606,7 +603,6 @@ CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream -CVE-2022-0171: Fix unknown CVE-2022-0322: Fix not seen in stream CVE-2022-0330: Fix not seen in stream CVE-2022-0382: Fix not seen in stream @@ -616,30 +612,20 @@ CVE-2022-0487: Fix not seen in stream CVE-2022-0492: Fix not seen in stream CVE-2022-0494: Fix not seen in stream -CVE-2022-0500: Fix not seen in stream CVE-2022-0617: Fix not seen in stream CVE-2022-0644: Fix not seen in stream -CVE-2022-0742: Fix not seen in stream CVE-2022-0812: Fix not seen in stream CVE-2022-0850: Fix not seen in stream -CVE-2022-0854: Fix not seen in stream -CVE-2022-0995: Fix not seen in stream -CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fix not seen in stream CVE-2022-1012: Fix not seen in stream -CVE-2022-1015: Fix not seen in stream CVE-2022-1016: Fix not seen in stream -CVE-2022-1043: Fix not seen in stream CVE-2022-1048: Fix not seen in stream -CVE-2022-1055: Fix not seen in stream CVE-2022-1116: Fix unknown -CVE-2022-1158: Fix not seen in stream -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fix not seen in stream CVE-2022-1195: Fix not seen in stream CVE-2022-1198: Fix not seen in stream CVE-2022-1199: Fix not seen in stream CVE-2022-1204: Fix not seen in stream -CVE-2022-1205: Fix not seen in stream CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream @@ -647,35 +633,25 @@ CVE-2022-1419: Fix not seen in stream CVE-2022-1462: Fix unknown CVE-2022-1508: Fix not seen in stream -CVE-2022-1516: Fix not seen in stream -CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown -CVE-2022-1671: Fix not seen in stream +CVE-2022-1652: Fix not seen in stream CVE-2022-1679: Fix unknown CVE-2022-1729: Fix not seen in stream CVE-2022-1734: Fix not seen in stream CVE-2022-1786: Fix not seen in stream CVE-2022-1789: Fix not seen in stream CVE-2022-1836: Fix not seen in stream -CVE-2022-1852: Fix not seen in stream CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fix not seen in stream -CVE-2022-1972: Fix not seen in stream -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fix not seen in stream CVE-2022-1975: Fix not seen in stream -CVE-2022-1976: Fix not seen in stream -CVE-2022-1998: Fix not seen in stream CVE-2022-20008: Fix not seen in stream CVE-2022-20132: Fix not seen in stream CVE-2022-20141: Fix not seen in stream CVE-2022-20148: Fix not seen in stream -CVE-2022-20153: Fix not seen in stream CVE-2022-20154: Fix not seen in stream CVE-2022-20166: Fix not seen in stream -CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fix not seen in stream +CVE-2022-2153: Fix not seen in stream CVE-2022-22942: Fix not seen in stream CVE-2022-23036: Fix not seen in stream CVE-2022-23037: Fix not seen in stream @@ -692,23 +668,19 @@ CVE-2022-25258: Fix not seen in stream CVE-2022-25265: Fix unknown CVE-2022-25375: Fix not seen in stream -CVE-2022-25636: Fix not seen in stream CVE-2022-26490: Fix not seen in stream -CVE-2022-26878: Fix unknown CVE-2022-26966: Fix not seen in stream CVE-2022-27223: Fix not seen in stream CVE-2022-27666: Fix not seen in stream -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fix not seen in stream CVE-2022-28388: Fix not seen in stream CVE-2022-28389: Fix not seen in stream CVE-2022-28390: Fix not seen in stream -CVE-2022-28796: Fix not seen in stream -CVE-2022-28893: Fix not seen in stream -CVE-2022-29156: Fix not seen in stream CVE-2022-29581: Fix not seen in stream -CVE-2022-29582: Fix not seen in stream -CVE-2022-29968: Fix not seen in stream CVE-2022-30594: Fix not seen in stream +CVE-2022-32250: Fix not seen in stream CVE-2022-32296: Fix not seen in stream CVE-2022-32981: Fix not seen in stream +CVE-2022-33981: Fix not seen in stream +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/4.20/4.20_security.txt b/data/4.20/4.20_security.txt index fa211f6..d969d16 100644 --- a/data/4.20/4.20_security.txt +++ b/data/4.20/4.20_security.txt
@@ -85,7 +85,7 @@ CVE-2018-20669: (unk) make 'user_access_begin()' do 'access_ok()' CVE-2019-0136: (unk) mac80211: drop robust management frames from unknown TA CVE-2019-0145: (unk) i40e: add num_vectors checker in iwarp handler - CVE-2019-0146: (unk) + CVE-2019-0146: (unk) i40e: add num_vectors checker in iwarp handler CVE-2019-0147: (unk) i40e: add num_vectors checker in iwarp handler CVE-2019-0148: (unk) i40e: Wrong truncation from u16 to u8 CVE-2019-0149: (unk) i40e: Add bounds check for ch[] array @@ -429,7 +429,7 @@ CVE-2020-26145: (unk) ath10k: drop fragments with multicast DA for PCIe CVE-2020-26147: (unk) mac80211: assure all fragments are encrypted CVE-2020-26541: (unk) certs: Add EFI_CERT_X509_GUID support for dbx entries - CVE-2020-26555: (unk) + CVE-2020-26555: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26558: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical @@ -489,7 +489,6 @@ CVE-2021-0512: (unk) HID: make arrays usage and value to be the same CVE-2021-0605: (unk) af_key: pfkey_dump needs parameter validation CVE-2021-0695: (unk) - CVE-2021-0707: (unk) dmabuf: fix use-after-free of dmabuf's file->f_inode CVE-2021-0920: (unk) af_unix: fix garbage collect vs MSG_PEEK CVE-2021-0929: (unk) staging/android/ion: delete dma_buf->kmap/unmap implemenation CVE-2021-0937: (unk) netfilter: x_tables: fix compat match/target pad out-of-bound write @@ -541,7 +540,6 @@ CVE-2021-33034: (unk) Bluetooth: verify AMP hci_chan before amp_destroy CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality CVE-2021-33098: (unk) ixgbe: fix large MTU request from VF - CVE-2021-33135: (unk) CVE-2021-3347: (unk) futex: Ensure the correct return value from futex_lock_pi() CVE-2021-3348: (unk) nbd: freeze the queue while we're adding connections CVE-2021-33624: (unk) bpf: Inherit expanded/patched seen count from old aux data @@ -611,7 +609,6 @@ CVE-2021-40490: (unk) ext4: fix race writing to an inline_data file while its xattrs are changing CVE-2021-4083: (unk) fget: check that the fd still exists after getting a ref to it CVE-2021-4135: (unk) netdevsim: Zero-initialize memory for new map's value in function nsim_bpf_map_alloc - CVE-2021-4148: (unk) mm: khugepaged: skip huge page collapse for special files CVE-2021-4149: (unk) btrfs: unlock newly allocated extent buffer after error CVE-2021-4150: (unk) block: fix incorrect references to disk objects CVE-2021-4155: (unk) xfs: map unwritten blocks in XFS_IOC_{ALLOC,FREE}SP just like fallocate @@ -638,7 +635,6 @@ CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() - CVE-2022-0171: (unk) CVE-2022-0322: (unk) sctp: account stream padding length for reconf chunk CVE-2022-0330: (unk) drm/i915: Flush TLBs before releasing backing store CVE-2022-0382: (unk) net ticp:fix a kernel-infoleak in __tipc_sendmsg() @@ -648,30 +644,20 @@ CVE-2022-0487: (unk) moxart: fix potential use-after-free on remove path CVE-2022-0492: (unk) cgroup-v1: Require capabilities to set release_agent CVE-2022-0494: (unk) block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern - CVE-2022-0500: (unk) bpf: Introduce MEM_RDONLY flag CVE-2022-0617: (unk) udf: Fix NULL ptr deref when converting from inline format CVE-2022-0644: (unk) vfs: check fd has read access in kernel_read_file_from_fd() - CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() CVE-2022-0812: (unk) xprtrdma: fix incorrect header size calculations CVE-2022-0850: (unk) ext4: fix kernel infoleak via ext4_extent_header - CVE-2022-0854: (unk) swiotlb: rework "fix info leak with DMA_FROM_DEVICE" - CVE-2022-0995: (unk) watch_queue: Fix filter limit check - CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling CVE-2022-1011: (unk) fuse: fix pipe buffer lifetime for direct_io CVE-2022-1012: (unk) secure_seq: use the 64 bits of the siphash for port offset calculation - CVE-2022-1015: (unk) netfilter: nf_tables: validate registers coming from userspace. CVE-2022-1016: (unk) netfilter: nf_tables: initialize registers in nft_do_chain() - CVE-2022-1043: (unk) io_uring: fix xa_alloc_cycle() error return value check CVE-2022-1048: (unk) ALSA: pcm: Fix races among concurrent hw_params and hw_free calls - CVE-2022-1055: (unk) net: sched: fix use-after-free in tc_new_tfilter() CVE-2022-1116: (unk) - CVE-2022-1158: (unk) KVM: x86/mmu: do compare-and-exchange of gPTE via the user address - CVE-2022-1184: (unk) + CVE-2022-1184: (unk) ext4: verify dir block before splitting it CVE-2022-1195: (unk) hamradio: improve the incomplete fix to avoid NPD CVE-2022-1198: (unk) drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() CVE-2022-1199: (unk) ax25: Fix NULL pointer dereference in ax25_kill_by_device CVE-2022-1204: (unk) ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: (unk) ax25: Fix NULL pointer dereferences in ax25 timers CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector @@ -679,35 +665,25 @@ CVE-2022-1419: (unk) drm/vgem: Close use-after-free race in vgem_gem_create CVE-2022-1462: (unk) CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters - CVE-2022-1516: (unk) net/x25: Fix null-ptr-deref caused by x25_disconnect - CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) - CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c + CVE-2022-1652: (unk) floppy: use a statically allocated error counter CVE-2022-1679: (unk) CVE-2022-1729: (unk) perf: Fix sys_perf_event_open() race against self CVE-2022-1734: (unk) nfc: nfcmrvl: main: reorder destructive operations in nfcmrvl_nci_unregister_dev to avoid bugs CVE-2022-1786: (unk) io_uring: remove io_identity CVE-2022-1789: (unk) KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID CVE-2022-1836: (unk) floppy: disable FDRAWCMD by default - CVE-2022-1852: (unk) KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse CVE-2022-1966: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier - CVE-2022-1972: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay CVE-2022-1974: (unk) nfc: replace improper check device_is_registered() in netlink related functions CVE-2022-1975: (unk) NFC: netlink: fix sleep in atomic bug when firmware download timeout - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking - CVE-2022-1998: (unk) fanotify: Fix stale file descriptor in copy_event_to_user() CVE-2022-20008: (unk) mmc: block: fix read single on recovery logic CVE-2022-20132: (unk) HID: add hid_is_usb() function to make it simpler for USB detection CVE-2022-20141: (unk) igmp: Add ip_mc_list lock in ip_check_mc_rcu CVE-2022-20148: (unk) f2fs: fix UAF in f2fs_available_free_memory - CVE-2022-20153: (unk) io_uring: return back safer resurrect CVE-2022-20154: (unk) sctp: use call_rcu to free endpoint CVE-2022-20166: (unk) drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions - CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-21499: (unk) lockdown: also lock down previous kgdb use + CVE-2022-2153: (unk) KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-22942: (unk) drm/vmwgfx: Fix stale file descriptors on failed usercopy CVE-2022-23036: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23037: (unk) xen/netfront: don't use gnttab_query_foreign_access() for mapped status @@ -724,23 +700,19 @@ CVE-2022-25258: (unk) USB: gadget: validate interface OS descriptor requests CVE-2022-25265: (unk) CVE-2022-25375: (unk) usb: gadget: rndis: check size of RNDIS_MSG_SET command - CVE-2022-25636: (unk) netfilter: nf_tables_offload: incorrect flow offload action array size CVE-2022-26490: (unk) nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION - CVE-2022-26878: (unk) CVE-2022-26966: (unk) sr9700: sanity check for packet length CVE-2022-27223: (unk) USB: gadget: validate endpoint index for xilinx udc CVE-2022-27666: (unk) esp: Fix possible buffer overflow in ESP transformation - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe CVE-2022-28356: (unk) llc: fix netdevice reference leaks in llc_ui_bind() CVE-2022-28388: (unk) can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path CVE-2022-28389: (unk) can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: (unk) can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race - CVE-2022-28893: (unk) SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() - CVE-2022-29156: (unk) RDMA/rtrs-clt: Fix possible double free in error case CVE-2022-29581: (unk) net/sched: cls_u32: fix netns refcount changes in u32_change() - CVE-2022-29582: (unk) io_uring: fix race between timeout flush and removal - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb CVE-2022-30594: (unk) ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE + CVE-2022-32250: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 CVE-2022-32981: (unk) powerpc/32: Fix overread/overwrite of thread_struct via ptrace + CVE-2022-33981: (unk) floppy: disable FDRAWCMD by default + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/4.3/4.3_CVEs.txt b/data/4.3/4.3_CVEs.txt index 245b5ee..5ee41d5 100644 --- a/data/4.3/4.3_CVEs.txt +++ b/data/4.3/4.3_CVEs.txt
@@ -498,7 +498,6 @@ CVE-2018-9518: Fix not seen in stream CVE-2018-9568: Fix not seen in stream CVE-2019-0136: Fix not seen in stream -CVE-2019-0146: Fix unknown CVE-2019-0148: Fix not seen in stream CVE-2019-0154: Fix not seen in stream CVE-2019-0155: Fix not seen in stream @@ -789,7 +788,7 @@ CVE-2020-26145: Fix not seen in stream CVE-2020-26147: Fix not seen in stream CVE-2020-26541: Fix not seen in stream -CVE-2020-26555: Fix unknown +CVE-2020-26555: Fix not seen in stream CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26558: Fix not seen in stream @@ -841,7 +840,6 @@ CVE-2021-0512: Fix not seen in stream CVE-2021-0605: Fix not seen in stream CVE-2021-0695: Fix unknown -CVE-2021-0707: Fix not seen in stream CVE-2021-0920: Fix not seen in stream CVE-2021-0929: Fix not seen in stream CVE-2021-0937: Fix not seen in stream @@ -886,7 +884,6 @@ CVE-2021-33034: Fix not seen in stream CVE-2021-33061: Fix not seen in stream CVE-2021-33098: Fix not seen in stream -CVE-2021-33135: Fix unknown CVE-2021-33909: Fix not seen in stream CVE-2021-34556: Fix not seen in stream CVE-2021-34693: Fix not seen in stream @@ -924,7 +921,6 @@ CVE-2021-3847: Fix unknown CVE-2021-3864: Fix unknown CVE-2021-3892: Fix unknown -CVE-2021-3894: Fix not seen in stream CVE-2021-3896: Fix not seen in stream CVE-2021-39633: Fix not seen in stream CVE-2021-39634: Fix not seen in stream @@ -934,8 +930,6 @@ CVE-2021-39685: Fix not seen in stream CVE-2021-39686: Fix not seen in stream CVE-2021-39698: Fix not seen in stream -CVE-2021-39711: Fix not seen in stream -CVE-2021-39713: Fix not seen in stream CVE-2021-39714: Fix not seen in stream CVE-2021-39800: Fix unknown CVE-2021-39801: Fix unknown @@ -945,7 +939,6 @@ CVE-2021-4037: Fix not seen in stream CVE-2021-40490: Fix not seen in stream CVE-2021-4083: Fix not seen in stream -CVE-2021-4148: Fix not seen in stream CVE-2021-4149: Fix not seen in stream CVE-2021-4150: Fix not seen in stream CVE-2021-4155: Fix not seen in stream @@ -969,7 +962,6 @@ CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream -CVE-2022-0171: Fix unknown CVE-2022-0330: Fix not seen in stream CVE-2022-0382: Fix not seen in stream CVE-2022-0400: Fix unknown @@ -977,30 +969,18 @@ CVE-2022-0487: Fix not seen in stream CVE-2022-0492: Fix not seen in stream CVE-2022-0494: Fix not seen in stream -CVE-2022-0500: Fix not seen in stream CVE-2022-0617: Fix not seen in stream -CVE-2022-0644: Fix not seen in stream -CVE-2022-0742: Fix not seen in stream -CVE-2022-0812: Fix not seen in stream CVE-2022-0850: Fix not seen in stream -CVE-2022-0854: Fix not seen in stream -CVE-2022-0995: Fix not seen in stream -CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fix not seen in stream CVE-2022-1012: Fix not seen in stream -CVE-2022-1015: Fix not seen in stream CVE-2022-1016: Fix not seen in stream -CVE-2022-1043: Fix not seen in stream CVE-2022-1048: Fix not seen in stream -CVE-2022-1055: Fix not seen in stream CVE-2022-1116: Fix unknown -CVE-2022-1158: Fix not seen in stream -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fix not seen in stream CVE-2022-1195: Fix not seen in stream CVE-2022-1198: Fix not seen in stream CVE-2022-1199: Fix not seen in stream CVE-2022-1204: Fix not seen in stream -CVE-2022-1205: Fix not seen in stream CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream @@ -1008,39 +988,26 @@ CVE-2022-1419: Fix not seen in stream CVE-2022-1462: Fix unknown CVE-2022-1508: Fix not seen in stream -CVE-2022-1516: Fix not seen in stream -CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown -CVE-2022-1671: Fix not seen in stream +CVE-2022-1652: Fix not seen in stream CVE-2022-1679: Fix unknown CVE-2022-1729: Fix not seen in stream CVE-2022-1786: Fix not seen in stream -CVE-2022-1789: Fix not seen in stream CVE-2022-1836: Fix not seen in stream -CVE-2022-1852: Fix not seen in stream CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fix not seen in stream -CVE-2022-1972: Fix not seen in stream -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fix not seen in stream CVE-2022-1975: Fix not seen in stream -CVE-2022-1976: Fix not seen in stream -CVE-2022-1998: Fix not seen in stream CVE-2022-20132: Fix not seen in stream CVE-2022-20141: Fix not seen in stream CVE-2022-20148: Fix not seen in stream -CVE-2022-20153: Fix not seen in stream -CVE-2022-20154: Fix not seen in stream CVE-2022-20166: Fix not seen in stream -CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fix not seen in stream +CVE-2022-2153: Fix not seen in stream CVE-2022-23036: Fix not seen in stream CVE-2022-23037: Fix not seen in stream CVE-2022-23038: Fix not seen in stream CVE-2022-23039: Fix not seen in stream CVE-2022-23040: Fix not seen in stream -CVE-2022-23041: Fix not seen in stream CVE-2022-23042: Fix not seen in stream CVE-2022-23222: Fix not seen in stream CVE-2022-23960: Fix not seen in stream @@ -1049,21 +1016,16 @@ CVE-2022-25258: Fix not seen in stream CVE-2022-25265: Fix unknown CVE-2022-25375: Fix not seen in stream -CVE-2022-25636: Fix not seen in stream CVE-2022-26490: Fix not seen in stream -CVE-2022-26878: Fix unknown CVE-2022-26966: Fix not seen in stream CVE-2022-27223: Fix not seen in stream -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fix not seen in stream CVE-2022-28388: Fix not seen in stream -CVE-2022-28389: Fix not seen in stream CVE-2022-28390: Fix not seen in stream -CVE-2022-28796: Fix not seen in stream -CVE-2022-28893: Fix not seen in stream -CVE-2022-29156: Fix not seen in stream -CVE-2022-29582: Fix not seen in stream -CVE-2022-29968: Fix not seen in stream CVE-2022-30594: Fix not seen in stream +CVE-2022-32250: Fix not seen in stream CVE-2022-32296: Fix not seen in stream CVE-2022-32981: Fix not seen in stream +CVE-2022-33981: Fix not seen in stream +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/4.3/4.3_security.txt b/data/4.3/4.3_security.txt index 7ac1b72..34ce9e9 100644 --- a/data/4.3/4.3_security.txt +++ b/data/4.3/4.3_security.txt
@@ -514,7 +514,6 @@ CVE-2018-9518: (unk) NFC: llcp: Limit size of SDP URI CVE-2018-9568: (unk) net: Set sk_prot_creator when cloning sockets to the right proto CVE-2019-0136: (unk) mac80211: drop robust management frames from unknown TA - CVE-2019-0146: (unk) CVE-2019-0148: (unk) i40e: Wrong truncation from u16 to u8 CVE-2019-0154: (unk) drm/i915: Lower RM timeout to avoid DSI hard hangs CVE-2019-0155: (unk) drm/i915: Rename gen7 cmdparser tables @@ -805,7 +804,7 @@ CVE-2020-26145: (unk) ath10k: drop fragments with multicast DA for PCIe CVE-2020-26147: (unk) mac80211: assure all fragments are encrypted CVE-2020-26541: (unk) certs: Add EFI_CERT_X509_GUID support for dbx entries - CVE-2020-26555: (unk) + CVE-2020-26555: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26558: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical @@ -857,7 +856,6 @@ CVE-2021-0512: (unk) HID: make arrays usage and value to be the same CVE-2021-0605: (unk) af_key: pfkey_dump needs parameter validation CVE-2021-0695: (unk) - CVE-2021-0707: (unk) dmabuf: fix use-after-free of dmabuf's file->f_inode CVE-2021-0920: (unk) af_unix: fix garbage collect vs MSG_PEEK CVE-2021-0929: (unk) staging/android/ion: delete dma_buf->kmap/unmap implemenation CVE-2021-0937: (unk) netfilter: x_tables: fix compat match/target pad out-of-bound write @@ -902,7 +900,6 @@ CVE-2021-33034: (unk) Bluetooth: verify AMP hci_chan before amp_destroy CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality CVE-2021-33098: (unk) ixgbe: fix large MTU request from VF - CVE-2021-33135: (unk) CVE-2021-33909: (unk) seq_file: disallow extremely large seq buffer allocations CVE-2021-34556: (unk) bpf: Introduce BPF nospec instruction for mitigating Spectre v4 CVE-2021-34693: (unk) can: bcm: fix infoleak in struct bcm_msg_head @@ -940,7 +937,6 @@ CVE-2021-3847: (unk) CVE-2021-3864: (unk) CVE-2021-3892: (unk) - CVE-2021-3894: (unk) sctp: account stream padding length for reconf chunk CVE-2021-3896: (unk) isdn: cpai: check ctr->cnr to avoid array index out of bound CVE-2021-39633: (unk) ip_gre: add validation for csum_start CVE-2021-39634: (unk) epoll: do not insert into poll queues until all sanity checks are done @@ -950,8 +946,6 @@ CVE-2021-39685: (unk) USB: gadget: detect too-big endpoint 0 requests CVE-2021-39686: (unk) binder: use euid from cred instead of using task CVE-2021-39698: (unk) wait: add wake_up_pollfree() - CVE-2021-39711: (unk) bpf: fix panic due to oob in bpf_prog_test_run_skb - CVE-2021-39713: (unk) net: sched: use Qdisc rcu API instead of relying on rtnl lock CVE-2021-39714: (unk) staging: android: ion: Drop ion_map_kernel interface CVE-2021-39800: (unk) CVE-2021-39801: (unk) @@ -961,7 +955,6 @@ CVE-2021-4037: (unk) xfs: fix up non-directory creation in SGID directories CVE-2021-40490: (unk) ext4: fix race writing to an inline_data file while its xattrs are changing CVE-2021-4083: (unk) fget: check that the fd still exists after getting a ref to it - CVE-2021-4148: (unk) mm: khugepaged: skip huge page collapse for special files CVE-2021-4149: (unk) btrfs: unlock newly allocated extent buffer after error CVE-2021-4150: (unk) block: fix incorrect references to disk objects CVE-2021-4155: (unk) xfs: map unwritten blocks in XFS_IOC_{ALLOC,FREE}SP just like fallocate @@ -985,7 +978,6 @@ CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() - CVE-2022-0171: (unk) CVE-2022-0330: (unk) drm/i915: Flush TLBs before releasing backing store CVE-2022-0382: (unk) net ticp:fix a kernel-infoleak in __tipc_sendmsg() CVE-2022-0400: (unk) @@ -993,30 +985,18 @@ CVE-2022-0487: (unk) moxart: fix potential use-after-free on remove path CVE-2022-0492: (unk) cgroup-v1: Require capabilities to set release_agent CVE-2022-0494: (unk) block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern - CVE-2022-0500: (unk) bpf: Introduce MEM_RDONLY flag CVE-2022-0617: (unk) udf: Fix NULL ptr deref when converting from inline format - CVE-2022-0644: (unk) vfs: check fd has read access in kernel_read_file_from_fd() - CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() - CVE-2022-0812: (unk) xprtrdma: fix incorrect header size calculations CVE-2022-0850: (unk) ext4: fix kernel infoleak via ext4_extent_header - CVE-2022-0854: (unk) swiotlb: rework "fix info leak with DMA_FROM_DEVICE" - CVE-2022-0995: (unk) watch_queue: Fix filter limit check - CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling CVE-2022-1011: (unk) fuse: fix pipe buffer lifetime for direct_io CVE-2022-1012: (unk) secure_seq: use the 64 bits of the siphash for port offset calculation - CVE-2022-1015: (unk) netfilter: nf_tables: validate registers coming from userspace. CVE-2022-1016: (unk) netfilter: nf_tables: initialize registers in nft_do_chain() - CVE-2022-1043: (unk) io_uring: fix xa_alloc_cycle() error return value check CVE-2022-1048: (unk) ALSA: pcm: Fix races among concurrent hw_params and hw_free calls - CVE-2022-1055: (unk) net: sched: fix use-after-free in tc_new_tfilter() CVE-2022-1116: (unk) - CVE-2022-1158: (unk) KVM: x86/mmu: do compare-and-exchange of gPTE via the user address - CVE-2022-1184: (unk) + CVE-2022-1184: (unk) ext4: verify dir block before splitting it CVE-2022-1195: (unk) hamradio: improve the incomplete fix to avoid NPD CVE-2022-1198: (unk) drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() CVE-2022-1199: (unk) ax25: Fix NULL pointer dereference in ax25_kill_by_device CVE-2022-1204: (unk) ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: (unk) ax25: Fix NULL pointer dereferences in ax25 timers CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector @@ -1024,39 +1004,26 @@ CVE-2022-1419: (unk) drm/vgem: Close use-after-free race in vgem_gem_create CVE-2022-1462: (unk) CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters - CVE-2022-1516: (unk) net/x25: Fix null-ptr-deref caused by x25_disconnect - CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) - CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c + CVE-2022-1652: (unk) floppy: use a statically allocated error counter CVE-2022-1679: (unk) CVE-2022-1729: (unk) perf: Fix sys_perf_event_open() race against self CVE-2022-1786: (unk) io_uring: remove io_identity - CVE-2022-1789: (unk) KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID CVE-2022-1836: (unk) floppy: disable FDRAWCMD by default - CVE-2022-1852: (unk) KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse CVE-2022-1966: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier - CVE-2022-1972: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay CVE-2022-1974: (unk) nfc: replace improper check device_is_registered() in netlink related functions CVE-2022-1975: (unk) NFC: netlink: fix sleep in atomic bug when firmware download timeout - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking - CVE-2022-1998: (unk) fanotify: Fix stale file descriptor in copy_event_to_user() CVE-2022-20132: (unk) HID: add hid_is_usb() function to make it simpler for USB detection CVE-2022-20141: (unk) igmp: Add ip_mc_list lock in ip_check_mc_rcu CVE-2022-20148: (unk) f2fs: fix UAF in f2fs_available_free_memory - CVE-2022-20153: (unk) io_uring: return back safer resurrect - CVE-2022-20154: (unk) sctp: use call_rcu to free endpoint CVE-2022-20166: (unk) drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions - CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-21499: (unk) lockdown: also lock down previous kgdb use + CVE-2022-2153: (unk) KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-23036: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23037: (unk) xen/netfront: don't use gnttab_query_foreign_access() for mapped status CVE-2022-23038: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23039: (unk) xen/gntalloc: don't use gnttab_query_foreign_access() CVE-2022-23040: (unk) xen/xenbus: don't let xenbus_grant_ring() remove grants in error case - CVE-2022-23041: (unk) xen/9p: use alloc/free_pages_exact() CVE-2022-23042: (unk) xen/netfront: react properly to failing gnttab_end_foreign_access_ref() CVE-2022-23222: (unk) bpf: Replace PTR_TO_XXX_OR_NULL with PTR_TO_XXX | PTR_MAYBE_NULL CVE-2022-23960: (unk) ARM: report Spectre v2 status through sysfs @@ -1065,21 +1032,16 @@ CVE-2022-25258: (unk) USB: gadget: validate interface OS descriptor requests CVE-2022-25265: (unk) CVE-2022-25375: (unk) usb: gadget: rndis: check size of RNDIS_MSG_SET command - CVE-2022-25636: (unk) netfilter: nf_tables_offload: incorrect flow offload action array size CVE-2022-26490: (unk) nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION - CVE-2022-26878: (unk) CVE-2022-26966: (unk) sr9700: sanity check for packet length CVE-2022-27223: (unk) USB: gadget: validate endpoint index for xilinx udc - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe CVE-2022-28356: (unk) llc: fix netdevice reference leaks in llc_ui_bind() CVE-2022-28388: (unk) can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28389: (unk) can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: (unk) can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race - CVE-2022-28893: (unk) SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() - CVE-2022-29156: (unk) RDMA/rtrs-clt: Fix possible double free in error case - CVE-2022-29582: (unk) io_uring: fix race between timeout flush and removal - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb CVE-2022-30594: (unk) ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE + CVE-2022-32250: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 CVE-2022-32981: (unk) powerpc/32: Fix overread/overwrite of thread_struct via ptrace + CVE-2022-33981: (unk) floppy: disable FDRAWCMD by default + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/4.4/4.4_CVEs.txt b/data/4.4/4.4_CVEs.txt index f331c24..142a5b9 100644 --- a/data/4.4/4.4_CVEs.txt +++ b/data/4.4/4.4_CVEs.txt
@@ -476,7 +476,6 @@ CVE-2018-9518: Fixed with 4.4.134 CVE-2018-9568: Fixed with 4.4.94 CVE-2019-0136: Fixed with 4.4.185 -CVE-2019-0146: Fix unknown CVE-2019-0148: Fixed with 4.4.244 CVE-2019-0154: Fixed with 4.4.201 CVE-2019-0155: Fixed with 4.4.201 @@ -768,7 +767,7 @@ CVE-2020-26145: Fix not seen in stream CVE-2020-26147: Fixed with 4.4.271 CVE-2020-26541: Fix not seen in stream -CVE-2020-26555: Fix unknown +CVE-2020-26555: Fixed with 4.4.270 CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26558: Fixed with 4.4.270 @@ -820,7 +819,6 @@ CVE-2021-0512: Fixed with 4.4.259 CVE-2021-0605: Fixed with 4.4.238 CVE-2021-0695: Fix unknown -CVE-2021-0707: Fix not seen in stream CVE-2021-0920: Fixed with 4.4.278 CVE-2021-0929: Fix not seen in stream CVE-2021-0937: Fixed with 4.4.267 @@ -865,7 +863,6 @@ CVE-2021-33034: Fixed with 4.4.269 CVE-2021-33061: Fix not seen in stream CVE-2021-33098: Fix not seen in stream -CVE-2021-33135: Fix unknown CVE-2021-33909: Fixed with 4.4.276 CVE-2021-34556: Fix not seen in stream CVE-2021-34693: Fixed with 4.4.274 @@ -903,7 +900,6 @@ CVE-2021-3847: Fix unknown CVE-2021-3864: Fix unknown CVE-2021-3892: Fix unknown -CVE-2021-3894: Fix not seen in stream CVE-2021-3896: Fixed with 4.4.290 CVE-2021-39633: Fix not seen in stream CVE-2021-39634: Fixed with 4.4.239 @@ -913,8 +909,6 @@ CVE-2021-39685: Fixed with 4.4.295 CVE-2021-39686: Fixed with 4.4.293 CVE-2021-39698: Fixed with 4.4.295 -CVE-2021-39711: Fix not seen in stream -CVE-2021-39713: Fix not seen in stream CVE-2021-39714: Fix not seen in stream CVE-2021-39800: Fix unknown CVE-2021-39801: Fix unknown @@ -924,7 +918,6 @@ CVE-2021-4037: Fix not seen in stream CVE-2021-40490: Fixed with 4.4.284 CVE-2021-4083: Fixed with 4.4.294 -CVE-2021-4148: Fix not seen in stream CVE-2021-4149: Fix not seen in stream CVE-2021-4150: Fix not seen in stream CVE-2021-4155: Fixed with 4.4.299 @@ -948,7 +941,6 @@ CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream -CVE-2022-0171: Fix unknown CVE-2022-0330: Fixed with 4.4.301 CVE-2022-0382: Fix not seen in stream CVE-2022-0400: Fix unknown @@ -956,30 +948,18 @@ CVE-2022-0487: Fix not seen in stream CVE-2022-0492: Fix not seen in stream CVE-2022-0494: Fix not seen in stream -CVE-2022-0500: Fix not seen in stream CVE-2022-0617: Fixed with 4.4.302 -CVE-2022-0644: Fix not seen in stream -CVE-2022-0742: Fix not seen in stream -CVE-2022-0812: Fix not seen in stream CVE-2022-0850: Fixed with 4.4.276 -CVE-2022-0854: Fix not seen in stream -CVE-2022-0995: Fix not seen in stream -CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fix not seen in stream CVE-2022-1012: Fix not seen in stream -CVE-2022-1015: Fix not seen in stream CVE-2022-1016: Fix not seen in stream -CVE-2022-1043: Fix not seen in stream CVE-2022-1048: Fix not seen in stream -CVE-2022-1055: Fix not seen in stream CVE-2022-1116: Fix unknown -CVE-2022-1158: Fix not seen in stream -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fix not seen in stream CVE-2022-1195: Fixed with 4.4.297 CVE-2022-1198: Fix not seen in stream CVE-2022-1199: Fix not seen in stream CVE-2022-1204: Fix not seen in stream -CVE-2022-1205: Fix not seen in stream CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream @@ -987,40 +967,27 @@ CVE-2022-1419: Fix not seen in stream CVE-2022-1462: Fix unknown CVE-2022-1508: Fix not seen in stream -CVE-2022-1516: Fix not seen in stream -CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown -CVE-2022-1671: Fix not seen in stream +CVE-2022-1652: Fix not seen in stream CVE-2022-1679: Fix unknown CVE-2022-1729: Fix not seen in stream CVE-2022-1734: Fix not seen in stream CVE-2022-1786: Fix not seen in stream -CVE-2022-1789: Fix not seen in stream CVE-2022-1836: Fix not seen in stream -CVE-2022-1852: Fix not seen in stream CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fix not seen in stream -CVE-2022-1972: Fix not seen in stream -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fix not seen in stream CVE-2022-1975: Fix not seen in stream -CVE-2022-1976: Fix not seen in stream -CVE-2022-1998: Fix not seen in stream CVE-2022-20132: Fixed with 4.4.295 CVE-2022-20141: Fixed with 4.4.284 CVE-2022-20148: Fix not seen in stream -CVE-2022-20153: Fix not seen in stream -CVE-2022-20154: Fix not seen in stream CVE-2022-20166: Fix not seen in stream -CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fix not seen in stream +CVE-2022-2153: Fix not seen in stream CVE-2022-23036: Fix not seen in stream CVE-2022-23037: Fix not seen in stream CVE-2022-23038: Fix not seen in stream CVE-2022-23039: Fix not seen in stream CVE-2022-23040: Fix not seen in stream -CVE-2022-23041: Fix not seen in stream CVE-2022-23042: Fix not seen in stream CVE-2022-23222: Fix not seen in stream CVE-2022-23960: Fix not seen in stream @@ -1029,21 +996,16 @@ CVE-2022-25258: Fix not seen in stream CVE-2022-25265: Fix unknown CVE-2022-25375: Fix not seen in stream -CVE-2022-25636: Fix not seen in stream CVE-2022-26490: Fix not seen in stream -CVE-2022-26878: Fix unknown CVE-2022-26966: Fix not seen in stream CVE-2022-27223: Fix not seen in stream -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fix not seen in stream CVE-2022-28388: Fix not seen in stream -CVE-2022-28389: Fix not seen in stream CVE-2022-28390: Fix not seen in stream -CVE-2022-28796: Fix not seen in stream -CVE-2022-28893: Fix not seen in stream -CVE-2022-29156: Fix not seen in stream -CVE-2022-29582: Fix not seen in stream -CVE-2022-29968: Fix not seen in stream CVE-2022-30594: Fix not seen in stream +CVE-2022-32250: Fix not seen in stream CVE-2022-32296: Fix not seen in stream CVE-2022-32981: Fix not seen in stream +CVE-2022-33981: Fix not seen in stream +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/4.4/4.4_security.txt b/data/4.4/4.4_security.txt index f2fd6ae..f671d6c 100644 --- a/data/4.4/4.4_security.txt +++ b/data/4.4/4.4_security.txt
@@ -1135,6 +1135,7 @@ CVE-2021-4157: 0c5ccd5e2a2e291774618c24c459fa397fd1b7da pNFS/flexfiles: fix incorrect size check in decode_nfs_fh() CVEs fixed in 4.4.270: + CVE-2020-26555: 75523bbfb0eaead670c97fbcf096ca2ab556f0c0 Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26558: 75523bbfb0eaead670c97fbcf096ca2ab556f0c0 Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2021-0129: 75523bbfb0eaead670c97fbcf096ca2ab556f0c0 Bluetooth: SMP: Fail if remote and local public keys are identical @@ -1307,7 +1308,6 @@ CVE-2018-7273: (unk) printk: hash addresses printed with %p CVE-2018-7754: (unk) printk: hash addresses printed with %p CVE-2018-9465: (unk) binder: fix proc->files use-after-free - CVE-2019-0146: (unk) CVE-2019-10220: (unk) Convert filldir[64]() from __put_user() to unsafe_put_user() CVE-2019-11091: (unk) s390/speculation: Support 'mitigations=' cmdline option CVE-2019-11191: (unk) x86: Deprecate a.out support @@ -1372,7 +1372,6 @@ CVE-2020-26143: (unk) CVE-2020-26145: (unk) ath10k: drop fragments with multicast DA for PCIe CVE-2020-26541: (unk) certs: Add EFI_CERT_X509_GUID support for dbx entries - CVE-2020-26555: (unk) CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26559: (unk) @@ -1388,7 +1387,6 @@ CVE-2020-8832: (unk) drm/i915: Record the default hw state after reset upon load CVE-2021-0399: (unk) CVE-2021-0695: (unk) - CVE-2021-0707: (unk) dmabuf: fix use-after-free of dmabuf's file->f_inode CVE-2021-0929: (unk) staging/android/ion: delete dma_buf->kmap/unmap implemenation CVE-2021-0941: (unk) bpf: Remove MTU check in __bpf_skb_max_len CVE-2021-20292: (unk) drm/ttm/nouveau: don't call tt destroy callback on alloc failure. @@ -1401,7 +1399,6 @@ CVE-2021-32078: (unk) ARM: footbridge: remove personal server platform CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality CVE-2021-33098: (unk) ixgbe: fix large MTU request from VF - CVE-2021-33135: (unk) CVE-2021-34556: (unk) bpf: Introduce BPF nospec instruction for mitigating Spectre v4 CVE-2021-3506: (unk) f2fs: fix to avoid out-of-bounds memory access CVE-2021-3542: (unk) @@ -1413,19 +1410,15 @@ CVE-2021-3847: (unk) CVE-2021-3864: (unk) CVE-2021-3892: (unk) - CVE-2021-3894: (unk) sctp: account stream padding length for reconf chunk CVE-2021-39633: (unk) ip_gre: add validation for csum_start CVE-2021-39636: (unk) netfilter: x_tables: fix pointer leaks to userspace CVE-2021-39648: (unk) usb: gadget: configfs: Fix use-after-free issue with udc_name - CVE-2021-39711: (unk) bpf: fix panic due to oob in bpf_prog_test_run_skb - CVE-2021-39713: (unk) net: sched: use Qdisc rcu API instead of relying on rtnl lock CVE-2021-39714: (unk) staging: android: ion: Drop ion_map_kernel interface CVE-2021-39800: (unk) CVE-2021-39801: (unk) CVE-2021-39802: (unk) CVE-2021-4023: (unk) io-wq: fix cancellation on create-worker failure CVE-2021-4037: (unk) xfs: fix up non-directory creation in SGID directories - CVE-2021-4148: (unk) mm: khugepaged: skip huge page collapse for special files CVE-2021-4149: (unk) btrfs: unlock newly allocated extent buffer after error CVE-2021-4150: (unk) block: fix incorrect references to disk objects CVE-2021-4159: (unk) bpf: Verifer, adjust_scalar_min_max_vals to always call update_reg_bounds() @@ -1438,34 +1431,21 @@ CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() - CVE-2022-0171: (unk) CVE-2022-0382: (unk) net ticp:fix a kernel-infoleak in __tipc_sendmsg() CVE-2022-0400: (unk) CVE-2022-0480: (unk) memcg: enable accounting for file lock caches CVE-2022-0487: (unk) moxart: fix potential use-after-free on remove path CVE-2022-0492: (unk) cgroup-v1: Require capabilities to set release_agent CVE-2022-0494: (unk) block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern - CVE-2022-0500: (unk) bpf: Introduce MEM_RDONLY flag - CVE-2022-0644: (unk) vfs: check fd has read access in kernel_read_file_from_fd() - CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() - CVE-2022-0812: (unk) xprtrdma: fix incorrect header size calculations - CVE-2022-0854: (unk) swiotlb: rework "fix info leak with DMA_FROM_DEVICE" - CVE-2022-0995: (unk) watch_queue: Fix filter limit check - CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling CVE-2022-1011: (unk) fuse: fix pipe buffer lifetime for direct_io CVE-2022-1012: (unk) secure_seq: use the 64 bits of the siphash for port offset calculation - CVE-2022-1015: (unk) netfilter: nf_tables: validate registers coming from userspace. CVE-2022-1016: (unk) netfilter: nf_tables: initialize registers in nft_do_chain() - CVE-2022-1043: (unk) io_uring: fix xa_alloc_cycle() error return value check CVE-2022-1048: (unk) ALSA: pcm: Fix races among concurrent hw_params and hw_free calls - CVE-2022-1055: (unk) net: sched: fix use-after-free in tc_new_tfilter() CVE-2022-1116: (unk) - CVE-2022-1158: (unk) KVM: x86/mmu: do compare-and-exchange of gPTE via the user address - CVE-2022-1184: (unk) + CVE-2022-1184: (unk) ext4: verify dir block before splitting it CVE-2022-1198: (unk) drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() CVE-2022-1199: (unk) ax25: Fix NULL pointer dereference in ax25_kill_by_device CVE-2022-1204: (unk) ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: (unk) ax25: Fix NULL pointer dereferences in ax25 timers CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector @@ -1473,38 +1453,25 @@ CVE-2022-1419: (unk) drm/vgem: Close use-after-free race in vgem_gem_create CVE-2022-1462: (unk) CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters - CVE-2022-1516: (unk) net/x25: Fix null-ptr-deref caused by x25_disconnect - CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) - CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c + CVE-2022-1652: (unk) floppy: use a statically allocated error counter CVE-2022-1679: (unk) CVE-2022-1729: (unk) perf: Fix sys_perf_event_open() race against self CVE-2022-1734: (unk) nfc: nfcmrvl: main: reorder destructive operations in nfcmrvl_nci_unregister_dev to avoid bugs CVE-2022-1786: (unk) io_uring: remove io_identity - CVE-2022-1789: (unk) KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID CVE-2022-1836: (unk) floppy: disable FDRAWCMD by default - CVE-2022-1852: (unk) KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse CVE-2022-1966: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier - CVE-2022-1972: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay CVE-2022-1974: (unk) nfc: replace improper check device_is_registered() in netlink related functions CVE-2022-1975: (unk) NFC: netlink: fix sleep in atomic bug when firmware download timeout - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking - CVE-2022-1998: (unk) fanotify: Fix stale file descriptor in copy_event_to_user() CVE-2022-20148: (unk) f2fs: fix UAF in f2fs_available_free_memory - CVE-2022-20153: (unk) io_uring: return back safer resurrect - CVE-2022-20154: (unk) sctp: use call_rcu to free endpoint CVE-2022-20166: (unk) drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions - CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-21499: (unk) lockdown: also lock down previous kgdb use + CVE-2022-2153: (unk) KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-23036: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23037: (unk) xen/netfront: don't use gnttab_query_foreign_access() for mapped status CVE-2022-23038: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23039: (unk) xen/gntalloc: don't use gnttab_query_foreign_access() CVE-2022-23040: (unk) xen/xenbus: don't let xenbus_grant_ring() remove grants in error case - CVE-2022-23041: (unk) xen/9p: use alloc/free_pages_exact() CVE-2022-23042: (unk) xen/netfront: react properly to failing gnttab_end_foreign_access_ref() CVE-2022-23222: (unk) bpf: Replace PTR_TO_XXX_OR_NULL with PTR_TO_XXX | PTR_MAYBE_NULL CVE-2022-23960: (unk) ARM: report Spectre v2 status through sysfs @@ -1513,21 +1480,16 @@ CVE-2022-25258: (unk) USB: gadget: validate interface OS descriptor requests CVE-2022-25265: (unk) CVE-2022-25375: (unk) usb: gadget: rndis: check size of RNDIS_MSG_SET command - CVE-2022-25636: (unk) netfilter: nf_tables_offload: incorrect flow offload action array size CVE-2022-26490: (unk) nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION - CVE-2022-26878: (unk) CVE-2022-26966: (unk) sr9700: sanity check for packet length CVE-2022-27223: (unk) USB: gadget: validate endpoint index for xilinx udc - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe CVE-2022-28356: (unk) llc: fix netdevice reference leaks in llc_ui_bind() CVE-2022-28388: (unk) can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28389: (unk) can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: (unk) can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race - CVE-2022-28893: (unk) SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() - CVE-2022-29156: (unk) RDMA/rtrs-clt: Fix possible double free in error case - CVE-2022-29582: (unk) io_uring: fix race between timeout flush and removal - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb CVE-2022-30594: (unk) ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE + CVE-2022-32250: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 CVE-2022-32981: (unk) powerpc/32: Fix overread/overwrite of thread_struct via ptrace + CVE-2022-33981: (unk) floppy: disable FDRAWCMD by default + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/4.5/4.5_CVEs.txt b/data/4.5/4.5_CVEs.txt index 0729ac8..7eb6fa9 100644 --- a/data/4.5/4.5_CVEs.txt +++ b/data/4.5/4.5_CVEs.txt
@@ -454,7 +454,6 @@ CVE-2018-9518: Fix not seen in stream CVE-2018-9568: Fix not seen in stream CVE-2019-0136: Fix not seen in stream -CVE-2019-0146: Fix unknown CVE-2019-0148: Fix not seen in stream CVE-2019-0154: Fix not seen in stream CVE-2019-0155: Fix not seen in stream @@ -750,7 +749,7 @@ CVE-2020-26145: Fix not seen in stream CVE-2020-26147: Fix not seen in stream CVE-2020-26541: Fix not seen in stream -CVE-2020-26555: Fix unknown +CVE-2020-26555: Fix not seen in stream CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26558: Fix not seen in stream @@ -802,7 +801,6 @@ CVE-2021-0512: Fix not seen in stream CVE-2021-0605: Fix not seen in stream CVE-2021-0695: Fix unknown -CVE-2021-0707: Fix not seen in stream CVE-2021-0920: Fix not seen in stream CVE-2021-0929: Fix not seen in stream CVE-2021-0937: Fix not seen in stream @@ -846,7 +844,6 @@ CVE-2021-33034: Fix not seen in stream CVE-2021-33061: Fix not seen in stream CVE-2021-33098: Fix not seen in stream -CVE-2021-33135: Fix unknown CVE-2021-33909: Fix not seen in stream CVE-2021-34556: Fix not seen in stream CVE-2021-34693: Fix not seen in stream @@ -885,7 +882,6 @@ CVE-2021-3847: Fix unknown CVE-2021-3864: Fix unknown CVE-2021-3892: Fix unknown -CVE-2021-3894: Fix not seen in stream CVE-2021-3896: Fix not seen in stream CVE-2021-39633: Fix not seen in stream CVE-2021-39634: Fix not seen in stream @@ -895,8 +891,6 @@ CVE-2021-39685: Fix not seen in stream CVE-2021-39686: Fix not seen in stream CVE-2021-39698: Fix not seen in stream -CVE-2021-39711: Fix not seen in stream -CVE-2021-39713: Fix not seen in stream CVE-2021-39714: Fix not seen in stream CVE-2021-39800: Fix unknown CVE-2021-39801: Fix unknown @@ -906,7 +900,6 @@ CVE-2021-4037: Fix not seen in stream CVE-2021-40490: Fix not seen in stream CVE-2021-4083: Fix not seen in stream -CVE-2021-4148: Fix not seen in stream CVE-2021-4149: Fix not seen in stream CVE-2021-4150: Fix not seen in stream CVE-2021-4155: Fix not seen in stream @@ -930,7 +923,6 @@ CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream -CVE-2022-0171: Fix unknown CVE-2022-0330: Fix not seen in stream CVE-2022-0382: Fix not seen in stream CVE-2022-0400: Fix unknown @@ -938,30 +930,18 @@ CVE-2022-0487: Fix not seen in stream CVE-2022-0492: Fix not seen in stream CVE-2022-0494: Fix not seen in stream -CVE-2022-0500: Fix not seen in stream CVE-2022-0617: Fix not seen in stream -CVE-2022-0644: Fix not seen in stream -CVE-2022-0742: Fix not seen in stream -CVE-2022-0812: Fix not seen in stream CVE-2022-0850: Fix not seen in stream -CVE-2022-0854: Fix not seen in stream -CVE-2022-0995: Fix not seen in stream -CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fix not seen in stream CVE-2022-1012: Fix not seen in stream -CVE-2022-1015: Fix not seen in stream CVE-2022-1016: Fix not seen in stream -CVE-2022-1043: Fix not seen in stream CVE-2022-1048: Fix not seen in stream -CVE-2022-1055: Fix not seen in stream CVE-2022-1116: Fix unknown -CVE-2022-1158: Fix not seen in stream -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fix not seen in stream CVE-2022-1195: Fix not seen in stream CVE-2022-1198: Fix not seen in stream CVE-2022-1199: Fix not seen in stream CVE-2022-1204: Fix not seen in stream -CVE-2022-1205: Fix not seen in stream CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream @@ -969,40 +949,27 @@ CVE-2022-1419: Fix not seen in stream CVE-2022-1462: Fix unknown CVE-2022-1508: Fix not seen in stream -CVE-2022-1516: Fix not seen in stream -CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown -CVE-2022-1671: Fix not seen in stream +CVE-2022-1652: Fix not seen in stream CVE-2022-1679: Fix unknown CVE-2022-1729: Fix not seen in stream CVE-2022-1734: Fix not seen in stream CVE-2022-1786: Fix not seen in stream -CVE-2022-1789: Fix not seen in stream CVE-2022-1836: Fix not seen in stream -CVE-2022-1852: Fix not seen in stream CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fix not seen in stream -CVE-2022-1972: Fix not seen in stream -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fix not seen in stream CVE-2022-1975: Fix not seen in stream -CVE-2022-1976: Fix not seen in stream -CVE-2022-1998: Fix not seen in stream CVE-2022-20132: Fix not seen in stream CVE-2022-20141: Fix not seen in stream CVE-2022-20148: Fix not seen in stream -CVE-2022-20153: Fix not seen in stream -CVE-2022-20154: Fix not seen in stream CVE-2022-20166: Fix not seen in stream -CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fix not seen in stream +CVE-2022-2153: Fix not seen in stream CVE-2022-23036: Fix not seen in stream CVE-2022-23037: Fix not seen in stream CVE-2022-23038: Fix not seen in stream CVE-2022-23039: Fix not seen in stream CVE-2022-23040: Fix not seen in stream -CVE-2022-23041: Fix not seen in stream CVE-2022-23042: Fix not seen in stream CVE-2022-23222: Fix not seen in stream CVE-2022-23960: Fix not seen in stream @@ -1011,21 +978,16 @@ CVE-2022-25258: Fix not seen in stream CVE-2022-25265: Fix unknown CVE-2022-25375: Fix not seen in stream -CVE-2022-25636: Fix not seen in stream CVE-2022-26490: Fix not seen in stream -CVE-2022-26878: Fix unknown CVE-2022-26966: Fix not seen in stream CVE-2022-27223: Fix not seen in stream -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fix not seen in stream CVE-2022-28388: Fix not seen in stream -CVE-2022-28389: Fix not seen in stream CVE-2022-28390: Fix not seen in stream -CVE-2022-28796: Fix not seen in stream -CVE-2022-28893: Fix not seen in stream -CVE-2022-29156: Fix not seen in stream -CVE-2022-29582: Fix not seen in stream -CVE-2022-29968: Fix not seen in stream CVE-2022-30594: Fix not seen in stream +CVE-2022-32250: Fix not seen in stream CVE-2022-32296: Fix not seen in stream CVE-2022-32981: Fix not seen in stream +CVE-2022-33981: Fix not seen in stream +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/4.5/4.5_security.txt b/data/4.5/4.5_security.txt index 6cdc497..3171560 100644 --- a/data/4.5/4.5_security.txt +++ b/data/4.5/4.5_security.txt
@@ -471,7 +471,6 @@ CVE-2018-9518: (unk) NFC: llcp: Limit size of SDP URI CVE-2018-9568: (unk) net: Set sk_prot_creator when cloning sockets to the right proto CVE-2019-0136: (unk) mac80211: drop robust management frames from unknown TA - CVE-2019-0146: (unk) CVE-2019-0148: (unk) i40e: Wrong truncation from u16 to u8 CVE-2019-0154: (unk) drm/i915: Lower RM timeout to avoid DSI hard hangs CVE-2019-0155: (unk) drm/i915: Rename gen7 cmdparser tables @@ -766,7 +765,7 @@ CVE-2020-26145: (unk) ath10k: drop fragments with multicast DA for PCIe CVE-2020-26147: (unk) mac80211: assure all fragments are encrypted CVE-2020-26541: (unk) certs: Add EFI_CERT_X509_GUID support for dbx entries - CVE-2020-26555: (unk) + CVE-2020-26555: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26558: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical @@ -818,7 +817,6 @@ CVE-2021-0512: (unk) HID: make arrays usage and value to be the same CVE-2021-0605: (unk) af_key: pfkey_dump needs parameter validation CVE-2021-0695: (unk) - CVE-2021-0707: (unk) dmabuf: fix use-after-free of dmabuf's file->f_inode CVE-2021-0920: (unk) af_unix: fix garbage collect vs MSG_PEEK CVE-2021-0929: (unk) staging/android/ion: delete dma_buf->kmap/unmap implemenation CVE-2021-0937: (unk) netfilter: x_tables: fix compat match/target pad out-of-bound write @@ -862,7 +860,6 @@ CVE-2021-33034: (unk) Bluetooth: verify AMP hci_chan before amp_destroy CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality CVE-2021-33098: (unk) ixgbe: fix large MTU request from VF - CVE-2021-33135: (unk) CVE-2021-33909: (unk) seq_file: disallow extremely large seq buffer allocations CVE-2021-34556: (unk) bpf: Introduce BPF nospec instruction for mitigating Spectre v4 CVE-2021-34693: (unk) can: bcm: fix infoleak in struct bcm_msg_head @@ -901,7 +898,6 @@ CVE-2021-3847: (unk) CVE-2021-3864: (unk) CVE-2021-3892: (unk) - CVE-2021-3894: (unk) sctp: account stream padding length for reconf chunk CVE-2021-3896: (unk) isdn: cpai: check ctr->cnr to avoid array index out of bound CVE-2021-39633: (unk) ip_gre: add validation for csum_start CVE-2021-39634: (unk) epoll: do not insert into poll queues until all sanity checks are done @@ -911,8 +907,6 @@ CVE-2021-39685: (unk) USB: gadget: detect too-big endpoint 0 requests CVE-2021-39686: (unk) binder: use euid from cred instead of using task CVE-2021-39698: (unk) wait: add wake_up_pollfree() - CVE-2021-39711: (unk) bpf: fix panic due to oob in bpf_prog_test_run_skb - CVE-2021-39713: (unk) net: sched: use Qdisc rcu API instead of relying on rtnl lock CVE-2021-39714: (unk) staging: android: ion: Drop ion_map_kernel interface CVE-2021-39800: (unk) CVE-2021-39801: (unk) @@ -922,7 +916,6 @@ CVE-2021-4037: (unk) xfs: fix up non-directory creation in SGID directories CVE-2021-40490: (unk) ext4: fix race writing to an inline_data file while its xattrs are changing CVE-2021-4083: (unk) fget: check that the fd still exists after getting a ref to it - CVE-2021-4148: (unk) mm: khugepaged: skip huge page collapse for special files CVE-2021-4149: (unk) btrfs: unlock newly allocated extent buffer after error CVE-2021-4150: (unk) block: fix incorrect references to disk objects CVE-2021-4155: (unk) xfs: map unwritten blocks in XFS_IOC_{ALLOC,FREE}SP just like fallocate @@ -946,7 +939,6 @@ CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() - CVE-2022-0171: (unk) CVE-2022-0330: (unk) drm/i915: Flush TLBs before releasing backing store CVE-2022-0382: (unk) net ticp:fix a kernel-infoleak in __tipc_sendmsg() CVE-2022-0400: (unk) @@ -954,30 +946,18 @@ CVE-2022-0487: (unk) moxart: fix potential use-after-free on remove path CVE-2022-0492: (unk) cgroup-v1: Require capabilities to set release_agent CVE-2022-0494: (unk) block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern - CVE-2022-0500: (unk) bpf: Introduce MEM_RDONLY flag CVE-2022-0617: (unk) udf: Fix NULL ptr deref when converting from inline format - CVE-2022-0644: (unk) vfs: check fd has read access in kernel_read_file_from_fd() - CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() - CVE-2022-0812: (unk) xprtrdma: fix incorrect header size calculations CVE-2022-0850: (unk) ext4: fix kernel infoleak via ext4_extent_header - CVE-2022-0854: (unk) swiotlb: rework "fix info leak with DMA_FROM_DEVICE" - CVE-2022-0995: (unk) watch_queue: Fix filter limit check - CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling CVE-2022-1011: (unk) fuse: fix pipe buffer lifetime for direct_io CVE-2022-1012: (unk) secure_seq: use the 64 bits of the siphash for port offset calculation - CVE-2022-1015: (unk) netfilter: nf_tables: validate registers coming from userspace. CVE-2022-1016: (unk) netfilter: nf_tables: initialize registers in nft_do_chain() - CVE-2022-1043: (unk) io_uring: fix xa_alloc_cycle() error return value check CVE-2022-1048: (unk) ALSA: pcm: Fix races among concurrent hw_params and hw_free calls - CVE-2022-1055: (unk) net: sched: fix use-after-free in tc_new_tfilter() CVE-2022-1116: (unk) - CVE-2022-1158: (unk) KVM: x86/mmu: do compare-and-exchange of gPTE via the user address - CVE-2022-1184: (unk) + CVE-2022-1184: (unk) ext4: verify dir block before splitting it CVE-2022-1195: (unk) hamradio: improve the incomplete fix to avoid NPD CVE-2022-1198: (unk) drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() CVE-2022-1199: (unk) ax25: Fix NULL pointer dereference in ax25_kill_by_device CVE-2022-1204: (unk) ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: (unk) ax25: Fix NULL pointer dereferences in ax25 timers CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector @@ -985,40 +965,27 @@ CVE-2022-1419: (unk) drm/vgem: Close use-after-free race in vgem_gem_create CVE-2022-1462: (unk) CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters - CVE-2022-1516: (unk) net/x25: Fix null-ptr-deref caused by x25_disconnect - CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) - CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c + CVE-2022-1652: (unk) floppy: use a statically allocated error counter CVE-2022-1679: (unk) CVE-2022-1729: (unk) perf: Fix sys_perf_event_open() race against self CVE-2022-1734: (unk) nfc: nfcmrvl: main: reorder destructive operations in nfcmrvl_nci_unregister_dev to avoid bugs CVE-2022-1786: (unk) io_uring: remove io_identity - CVE-2022-1789: (unk) KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID CVE-2022-1836: (unk) floppy: disable FDRAWCMD by default - CVE-2022-1852: (unk) KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse CVE-2022-1966: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier - CVE-2022-1972: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay CVE-2022-1974: (unk) nfc: replace improper check device_is_registered() in netlink related functions CVE-2022-1975: (unk) NFC: netlink: fix sleep in atomic bug when firmware download timeout - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking - CVE-2022-1998: (unk) fanotify: Fix stale file descriptor in copy_event_to_user() CVE-2022-20132: (unk) HID: add hid_is_usb() function to make it simpler for USB detection CVE-2022-20141: (unk) igmp: Add ip_mc_list lock in ip_check_mc_rcu CVE-2022-20148: (unk) f2fs: fix UAF in f2fs_available_free_memory - CVE-2022-20153: (unk) io_uring: return back safer resurrect - CVE-2022-20154: (unk) sctp: use call_rcu to free endpoint CVE-2022-20166: (unk) drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions - CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-21499: (unk) lockdown: also lock down previous kgdb use + CVE-2022-2153: (unk) KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-23036: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23037: (unk) xen/netfront: don't use gnttab_query_foreign_access() for mapped status CVE-2022-23038: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23039: (unk) xen/gntalloc: don't use gnttab_query_foreign_access() CVE-2022-23040: (unk) xen/xenbus: don't let xenbus_grant_ring() remove grants in error case - CVE-2022-23041: (unk) xen/9p: use alloc/free_pages_exact() CVE-2022-23042: (unk) xen/netfront: react properly to failing gnttab_end_foreign_access_ref() CVE-2022-23222: (unk) bpf: Replace PTR_TO_XXX_OR_NULL with PTR_TO_XXX | PTR_MAYBE_NULL CVE-2022-23960: (unk) ARM: report Spectre v2 status through sysfs @@ -1027,21 +994,16 @@ CVE-2022-25258: (unk) USB: gadget: validate interface OS descriptor requests CVE-2022-25265: (unk) CVE-2022-25375: (unk) usb: gadget: rndis: check size of RNDIS_MSG_SET command - CVE-2022-25636: (unk) netfilter: nf_tables_offload: incorrect flow offload action array size CVE-2022-26490: (unk) nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION - CVE-2022-26878: (unk) CVE-2022-26966: (unk) sr9700: sanity check for packet length CVE-2022-27223: (unk) USB: gadget: validate endpoint index for xilinx udc - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe CVE-2022-28356: (unk) llc: fix netdevice reference leaks in llc_ui_bind() CVE-2022-28388: (unk) can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28389: (unk) can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: (unk) can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race - CVE-2022-28893: (unk) SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() - CVE-2022-29156: (unk) RDMA/rtrs-clt: Fix possible double free in error case - CVE-2022-29582: (unk) io_uring: fix race between timeout flush and removal - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb CVE-2022-30594: (unk) ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE + CVE-2022-32250: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 CVE-2022-32981: (unk) powerpc/32: Fix overread/overwrite of thread_struct via ptrace + CVE-2022-33981: (unk) floppy: disable FDRAWCMD by default + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/4.6/4.6_CVEs.txt b/data/4.6/4.6_CVEs.txt index d04c5c6..ec8bfbd 100644 --- a/data/4.6/4.6_CVEs.txt +++ b/data/4.6/4.6_CVEs.txt
@@ -419,7 +419,7 @@ CVE-2018-9568: Fix not seen in stream CVE-2019-0136: Fix not seen in stream CVE-2019-0145: Fix not seen in stream -CVE-2019-0146: Fix unknown +CVE-2019-0146: Fix not seen in stream CVE-2019-0147: Fix not seen in stream CVE-2019-0148: Fix not seen in stream CVE-2019-0154: Fix not seen in stream @@ -718,7 +718,7 @@ CVE-2020-26145: Fix not seen in stream CVE-2020-26147: Fix not seen in stream CVE-2020-26541: Fix not seen in stream -CVE-2020-26555: Fix unknown +CVE-2020-26555: Fix not seen in stream CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26558: Fix not seen in stream @@ -771,7 +771,6 @@ CVE-2021-0512: Fix not seen in stream CVE-2021-0605: Fix not seen in stream CVE-2021-0695: Fix unknown -CVE-2021-0707: Fix not seen in stream CVE-2021-0920: Fix not seen in stream CVE-2021-0929: Fix not seen in stream CVE-2021-0937: Fix not seen in stream @@ -815,7 +814,6 @@ CVE-2021-33034: Fix not seen in stream CVE-2021-33061: Fix not seen in stream CVE-2021-33098: Fix not seen in stream -CVE-2021-33135: Fix unknown CVE-2021-33909: Fix not seen in stream CVE-2021-34556: Fix not seen in stream CVE-2021-34693: Fix not seen in stream @@ -854,7 +852,6 @@ CVE-2021-3847: Fix unknown CVE-2021-3864: Fix unknown CVE-2021-3892: Fix unknown -CVE-2021-3894: Fix not seen in stream CVE-2021-3896: Fix not seen in stream CVE-2021-39633: Fix not seen in stream CVE-2021-39634: Fix not seen in stream @@ -864,8 +861,6 @@ CVE-2021-39685: Fix not seen in stream CVE-2021-39686: Fix not seen in stream CVE-2021-39698: Fix not seen in stream -CVE-2021-39711: Fix not seen in stream -CVE-2021-39713: Fix not seen in stream CVE-2021-39714: Fix not seen in stream CVE-2021-39800: Fix unknown CVE-2021-39801: Fix unknown @@ -875,7 +870,6 @@ CVE-2021-4037: Fix not seen in stream CVE-2021-40490: Fix not seen in stream CVE-2021-4083: Fix not seen in stream -CVE-2021-4148: Fix not seen in stream CVE-2021-4149: Fix not seen in stream CVE-2021-4150: Fix not seen in stream CVE-2021-4155: Fix not seen in stream @@ -900,7 +894,6 @@ CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream -CVE-2022-0171: Fix unknown CVE-2022-0330: Fix not seen in stream CVE-2022-0382: Fix not seen in stream CVE-2022-0400: Fix unknown @@ -908,30 +901,19 @@ CVE-2022-0487: Fix not seen in stream CVE-2022-0492: Fix not seen in stream CVE-2022-0494: Fix not seen in stream -CVE-2022-0500: Fix not seen in stream CVE-2022-0617: Fix not seen in stream CVE-2022-0644: Fix not seen in stream -CVE-2022-0742: Fix not seen in stream -CVE-2022-0812: Fix not seen in stream CVE-2022-0850: Fix not seen in stream -CVE-2022-0854: Fix not seen in stream -CVE-2022-0995: Fix not seen in stream -CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fix not seen in stream CVE-2022-1012: Fix not seen in stream -CVE-2022-1015: Fix not seen in stream CVE-2022-1016: Fix not seen in stream -CVE-2022-1043: Fix not seen in stream CVE-2022-1048: Fix not seen in stream -CVE-2022-1055: Fix not seen in stream CVE-2022-1116: Fix unknown -CVE-2022-1158: Fix not seen in stream -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fix not seen in stream CVE-2022-1195: Fix not seen in stream CVE-2022-1198: Fix not seen in stream CVE-2022-1199: Fix not seen in stream CVE-2022-1204: Fix not seen in stream -CVE-2022-1205: Fix not seen in stream CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream @@ -939,40 +921,27 @@ CVE-2022-1419: Fix not seen in stream CVE-2022-1462: Fix unknown CVE-2022-1508: Fix not seen in stream -CVE-2022-1516: Fix not seen in stream -CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown -CVE-2022-1671: Fix not seen in stream +CVE-2022-1652: Fix not seen in stream CVE-2022-1679: Fix unknown CVE-2022-1729: Fix not seen in stream CVE-2022-1734: Fix not seen in stream CVE-2022-1786: Fix not seen in stream -CVE-2022-1789: Fix not seen in stream CVE-2022-1836: Fix not seen in stream -CVE-2022-1852: Fix not seen in stream CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fix not seen in stream -CVE-2022-1972: Fix not seen in stream -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fix not seen in stream CVE-2022-1975: Fix not seen in stream -CVE-2022-1976: Fix not seen in stream -CVE-2022-1998: Fix not seen in stream CVE-2022-20132: Fix not seen in stream CVE-2022-20141: Fix not seen in stream CVE-2022-20148: Fix not seen in stream -CVE-2022-20153: Fix not seen in stream -CVE-2022-20154: Fix not seen in stream CVE-2022-20166: Fix not seen in stream -CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fix not seen in stream +CVE-2022-2153: Fix not seen in stream CVE-2022-23036: Fix not seen in stream CVE-2022-23037: Fix not seen in stream CVE-2022-23038: Fix not seen in stream CVE-2022-23039: Fix not seen in stream CVE-2022-23040: Fix not seen in stream -CVE-2022-23041: Fix not seen in stream CVE-2022-23042: Fix not seen in stream CVE-2022-23222: Fix not seen in stream CVE-2022-23960: Fix not seen in stream @@ -981,21 +950,16 @@ CVE-2022-25258: Fix not seen in stream CVE-2022-25265: Fix unknown CVE-2022-25375: Fix not seen in stream -CVE-2022-25636: Fix not seen in stream CVE-2022-26490: Fix not seen in stream -CVE-2022-26878: Fix unknown CVE-2022-26966: Fix not seen in stream CVE-2022-27223: Fix not seen in stream -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fix not seen in stream CVE-2022-28388: Fix not seen in stream -CVE-2022-28389: Fix not seen in stream CVE-2022-28390: Fix not seen in stream -CVE-2022-28796: Fix not seen in stream -CVE-2022-28893: Fix not seen in stream -CVE-2022-29156: Fix not seen in stream -CVE-2022-29582: Fix not seen in stream -CVE-2022-29968: Fix not seen in stream CVE-2022-30594: Fix not seen in stream +CVE-2022-32250: Fix not seen in stream CVE-2022-32296: Fix not seen in stream CVE-2022-32981: Fix not seen in stream +CVE-2022-33981: Fix not seen in stream +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/4.6/4.6_security.txt b/data/4.6/4.6_security.txt index ce4226c..3665e3a 100644 --- a/data/4.6/4.6_security.txt +++ b/data/4.6/4.6_security.txt
@@ -437,7 +437,7 @@ CVE-2018-9568: (unk) net: Set sk_prot_creator when cloning sockets to the right proto CVE-2019-0136: (unk) mac80211: drop robust management frames from unknown TA CVE-2019-0145: (unk) i40e: add num_vectors checker in iwarp handler - CVE-2019-0146: (unk) + CVE-2019-0146: (unk) i40e: add num_vectors checker in iwarp handler CVE-2019-0147: (unk) i40e: add num_vectors checker in iwarp handler CVE-2019-0148: (unk) i40e: Wrong truncation from u16 to u8 CVE-2019-0154: (unk) drm/i915: Lower RM timeout to avoid DSI hard hangs @@ -736,7 +736,7 @@ CVE-2020-26145: (unk) ath10k: drop fragments with multicast DA for PCIe CVE-2020-26147: (unk) mac80211: assure all fragments are encrypted CVE-2020-26541: (unk) certs: Add EFI_CERT_X509_GUID support for dbx entries - CVE-2020-26555: (unk) + CVE-2020-26555: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26558: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical @@ -789,7 +789,6 @@ CVE-2021-0512: (unk) HID: make arrays usage and value to be the same CVE-2021-0605: (unk) af_key: pfkey_dump needs parameter validation CVE-2021-0695: (unk) - CVE-2021-0707: (unk) dmabuf: fix use-after-free of dmabuf's file->f_inode CVE-2021-0920: (unk) af_unix: fix garbage collect vs MSG_PEEK CVE-2021-0929: (unk) staging/android/ion: delete dma_buf->kmap/unmap implemenation CVE-2021-0937: (unk) netfilter: x_tables: fix compat match/target pad out-of-bound write @@ -833,7 +832,6 @@ CVE-2021-33034: (unk) Bluetooth: verify AMP hci_chan before amp_destroy CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality CVE-2021-33098: (unk) ixgbe: fix large MTU request from VF - CVE-2021-33135: (unk) CVE-2021-33909: (unk) seq_file: disallow extremely large seq buffer allocations CVE-2021-34556: (unk) bpf: Introduce BPF nospec instruction for mitigating Spectre v4 CVE-2021-34693: (unk) can: bcm: fix infoleak in struct bcm_msg_head @@ -872,7 +870,6 @@ CVE-2021-3847: (unk) CVE-2021-3864: (unk) CVE-2021-3892: (unk) - CVE-2021-3894: (unk) sctp: account stream padding length for reconf chunk CVE-2021-3896: (unk) isdn: cpai: check ctr->cnr to avoid array index out of bound CVE-2021-39633: (unk) ip_gre: add validation for csum_start CVE-2021-39634: (unk) epoll: do not insert into poll queues until all sanity checks are done @@ -882,8 +879,6 @@ CVE-2021-39685: (unk) USB: gadget: detect too-big endpoint 0 requests CVE-2021-39686: (unk) binder: use euid from cred instead of using task CVE-2021-39698: (unk) wait: add wake_up_pollfree() - CVE-2021-39711: (unk) bpf: fix panic due to oob in bpf_prog_test_run_skb - CVE-2021-39713: (unk) net: sched: use Qdisc rcu API instead of relying on rtnl lock CVE-2021-39714: (unk) staging: android: ion: Drop ion_map_kernel interface CVE-2021-39800: (unk) CVE-2021-39801: (unk) @@ -893,7 +888,6 @@ CVE-2021-4037: (unk) xfs: fix up non-directory creation in SGID directories CVE-2021-40490: (unk) ext4: fix race writing to an inline_data file while its xattrs are changing CVE-2021-4083: (unk) fget: check that the fd still exists after getting a ref to it - CVE-2021-4148: (unk) mm: khugepaged: skip huge page collapse for special files CVE-2021-4149: (unk) btrfs: unlock newly allocated extent buffer after error CVE-2021-4150: (unk) block: fix incorrect references to disk objects CVE-2021-4155: (unk) xfs: map unwritten blocks in XFS_IOC_{ALLOC,FREE}SP just like fallocate @@ -918,7 +912,6 @@ CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() - CVE-2022-0171: (unk) CVE-2022-0330: (unk) drm/i915: Flush TLBs before releasing backing store CVE-2022-0382: (unk) net ticp:fix a kernel-infoleak in __tipc_sendmsg() CVE-2022-0400: (unk) @@ -926,30 +919,19 @@ CVE-2022-0487: (unk) moxart: fix potential use-after-free on remove path CVE-2022-0492: (unk) cgroup-v1: Require capabilities to set release_agent CVE-2022-0494: (unk) block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern - CVE-2022-0500: (unk) bpf: Introduce MEM_RDONLY flag CVE-2022-0617: (unk) udf: Fix NULL ptr deref when converting from inline format CVE-2022-0644: (unk) vfs: check fd has read access in kernel_read_file_from_fd() - CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() - CVE-2022-0812: (unk) xprtrdma: fix incorrect header size calculations CVE-2022-0850: (unk) ext4: fix kernel infoleak via ext4_extent_header - CVE-2022-0854: (unk) swiotlb: rework "fix info leak with DMA_FROM_DEVICE" - CVE-2022-0995: (unk) watch_queue: Fix filter limit check - CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling CVE-2022-1011: (unk) fuse: fix pipe buffer lifetime for direct_io CVE-2022-1012: (unk) secure_seq: use the 64 bits of the siphash for port offset calculation - CVE-2022-1015: (unk) netfilter: nf_tables: validate registers coming from userspace. CVE-2022-1016: (unk) netfilter: nf_tables: initialize registers in nft_do_chain() - CVE-2022-1043: (unk) io_uring: fix xa_alloc_cycle() error return value check CVE-2022-1048: (unk) ALSA: pcm: Fix races among concurrent hw_params and hw_free calls - CVE-2022-1055: (unk) net: sched: fix use-after-free in tc_new_tfilter() CVE-2022-1116: (unk) - CVE-2022-1158: (unk) KVM: x86/mmu: do compare-and-exchange of gPTE via the user address - CVE-2022-1184: (unk) + CVE-2022-1184: (unk) ext4: verify dir block before splitting it CVE-2022-1195: (unk) hamradio: improve the incomplete fix to avoid NPD CVE-2022-1198: (unk) drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() CVE-2022-1199: (unk) ax25: Fix NULL pointer dereference in ax25_kill_by_device CVE-2022-1204: (unk) ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: (unk) ax25: Fix NULL pointer dereferences in ax25 timers CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector @@ -957,40 +939,27 @@ CVE-2022-1419: (unk) drm/vgem: Close use-after-free race in vgem_gem_create CVE-2022-1462: (unk) CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters - CVE-2022-1516: (unk) net/x25: Fix null-ptr-deref caused by x25_disconnect - CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) - CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c + CVE-2022-1652: (unk) floppy: use a statically allocated error counter CVE-2022-1679: (unk) CVE-2022-1729: (unk) perf: Fix sys_perf_event_open() race against self CVE-2022-1734: (unk) nfc: nfcmrvl: main: reorder destructive operations in nfcmrvl_nci_unregister_dev to avoid bugs CVE-2022-1786: (unk) io_uring: remove io_identity - CVE-2022-1789: (unk) KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID CVE-2022-1836: (unk) floppy: disable FDRAWCMD by default - CVE-2022-1852: (unk) KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse CVE-2022-1966: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier - CVE-2022-1972: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay CVE-2022-1974: (unk) nfc: replace improper check device_is_registered() in netlink related functions CVE-2022-1975: (unk) NFC: netlink: fix sleep in atomic bug when firmware download timeout - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking - CVE-2022-1998: (unk) fanotify: Fix stale file descriptor in copy_event_to_user() CVE-2022-20132: (unk) HID: add hid_is_usb() function to make it simpler for USB detection CVE-2022-20141: (unk) igmp: Add ip_mc_list lock in ip_check_mc_rcu CVE-2022-20148: (unk) f2fs: fix UAF in f2fs_available_free_memory - CVE-2022-20153: (unk) io_uring: return back safer resurrect - CVE-2022-20154: (unk) sctp: use call_rcu to free endpoint CVE-2022-20166: (unk) drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions - CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-21499: (unk) lockdown: also lock down previous kgdb use + CVE-2022-2153: (unk) KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-23036: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23037: (unk) xen/netfront: don't use gnttab_query_foreign_access() for mapped status CVE-2022-23038: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23039: (unk) xen/gntalloc: don't use gnttab_query_foreign_access() CVE-2022-23040: (unk) xen/xenbus: don't let xenbus_grant_ring() remove grants in error case - CVE-2022-23041: (unk) xen/9p: use alloc/free_pages_exact() CVE-2022-23042: (unk) xen/netfront: react properly to failing gnttab_end_foreign_access_ref() CVE-2022-23222: (unk) bpf: Replace PTR_TO_XXX_OR_NULL with PTR_TO_XXX | PTR_MAYBE_NULL CVE-2022-23960: (unk) ARM: report Spectre v2 status through sysfs @@ -999,21 +968,16 @@ CVE-2022-25258: (unk) USB: gadget: validate interface OS descriptor requests CVE-2022-25265: (unk) CVE-2022-25375: (unk) usb: gadget: rndis: check size of RNDIS_MSG_SET command - CVE-2022-25636: (unk) netfilter: nf_tables_offload: incorrect flow offload action array size CVE-2022-26490: (unk) nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION - CVE-2022-26878: (unk) CVE-2022-26966: (unk) sr9700: sanity check for packet length CVE-2022-27223: (unk) USB: gadget: validate endpoint index for xilinx udc - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe CVE-2022-28356: (unk) llc: fix netdevice reference leaks in llc_ui_bind() CVE-2022-28388: (unk) can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28389: (unk) can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: (unk) can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race - CVE-2022-28893: (unk) SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() - CVE-2022-29156: (unk) RDMA/rtrs-clt: Fix possible double free in error case - CVE-2022-29582: (unk) io_uring: fix race between timeout flush and removal - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb CVE-2022-30594: (unk) ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE + CVE-2022-32250: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 CVE-2022-32981: (unk) powerpc/32: Fix overread/overwrite of thread_struct via ptrace + CVE-2022-33981: (unk) floppy: disable FDRAWCMD by default + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/4.7/4.7_CVEs.txt b/data/4.7/4.7_CVEs.txt index 9a2487d..138bc2f 100644 --- a/data/4.7/4.7_CVEs.txt +++ b/data/4.7/4.7_CVEs.txt
@@ -395,7 +395,7 @@ CVE-2018-9568: Fix not seen in stream CVE-2019-0136: Fix not seen in stream CVE-2019-0145: Fix not seen in stream -CVE-2019-0146: Fix unknown +CVE-2019-0146: Fix not seen in stream CVE-2019-0147: Fix not seen in stream CVE-2019-0148: Fix not seen in stream CVE-2019-0154: Fix not seen in stream @@ -698,7 +698,7 @@ CVE-2020-26145: Fix not seen in stream CVE-2020-26147: Fix not seen in stream CVE-2020-26541: Fix not seen in stream -CVE-2020-26555: Fix unknown +CVE-2020-26555: Fix not seen in stream CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26558: Fix not seen in stream @@ -751,7 +751,6 @@ CVE-2021-0512: Fix not seen in stream CVE-2021-0605: Fix not seen in stream CVE-2021-0695: Fix unknown -CVE-2021-0707: Fix not seen in stream CVE-2021-0920: Fix not seen in stream CVE-2021-0929: Fix not seen in stream CVE-2021-0937: Fix not seen in stream @@ -796,7 +795,6 @@ CVE-2021-33034: Fix not seen in stream CVE-2021-33061: Fix not seen in stream CVE-2021-33098: Fix not seen in stream -CVE-2021-33135: Fix unknown CVE-2021-33909: Fix not seen in stream CVE-2021-34556: Fix not seen in stream CVE-2021-34693: Fix not seen in stream @@ -835,7 +833,6 @@ CVE-2021-3847: Fix unknown CVE-2021-3864: Fix unknown CVE-2021-3892: Fix unknown -CVE-2021-3894: Fix not seen in stream CVE-2021-3896: Fix not seen in stream CVE-2021-39633: Fix not seen in stream CVE-2021-39634: Fix not seen in stream @@ -845,8 +842,6 @@ CVE-2021-39685: Fix not seen in stream CVE-2021-39686: Fix not seen in stream CVE-2021-39698: Fix not seen in stream -CVE-2021-39711: Fix not seen in stream -CVE-2021-39713: Fix not seen in stream CVE-2021-39714: Fix not seen in stream CVE-2021-39800: Fix unknown CVE-2021-39801: Fix unknown @@ -856,7 +851,6 @@ CVE-2021-4037: Fix not seen in stream CVE-2021-40490: Fix not seen in stream CVE-2021-4083: Fix not seen in stream -CVE-2021-4148: Fix not seen in stream CVE-2021-4149: Fix not seen in stream CVE-2021-4150: Fix not seen in stream CVE-2021-4155: Fix not seen in stream @@ -881,7 +875,6 @@ CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream -CVE-2022-0171: Fix unknown CVE-2022-0330: Fix not seen in stream CVE-2022-0382: Fix not seen in stream CVE-2022-0400: Fix unknown @@ -889,30 +882,20 @@ CVE-2022-0487: Fix not seen in stream CVE-2022-0492: Fix not seen in stream CVE-2022-0494: Fix not seen in stream -CVE-2022-0500: Fix not seen in stream CVE-2022-0617: Fix not seen in stream CVE-2022-0644: Fix not seen in stream -CVE-2022-0742: Fix not seen in stream CVE-2022-0812: Fix not seen in stream CVE-2022-0850: Fix not seen in stream -CVE-2022-0854: Fix not seen in stream -CVE-2022-0995: Fix not seen in stream -CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fix not seen in stream CVE-2022-1012: Fix not seen in stream -CVE-2022-1015: Fix not seen in stream CVE-2022-1016: Fix not seen in stream -CVE-2022-1043: Fix not seen in stream CVE-2022-1048: Fix not seen in stream -CVE-2022-1055: Fix not seen in stream CVE-2022-1116: Fix unknown -CVE-2022-1158: Fix not seen in stream -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fix not seen in stream CVE-2022-1195: Fix not seen in stream CVE-2022-1198: Fix not seen in stream CVE-2022-1199: Fix not seen in stream CVE-2022-1204: Fix not seen in stream -CVE-2022-1205: Fix not seen in stream CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream @@ -920,40 +903,27 @@ CVE-2022-1419: Fix not seen in stream CVE-2022-1462: Fix unknown CVE-2022-1508: Fix not seen in stream -CVE-2022-1516: Fix not seen in stream -CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown -CVE-2022-1671: Fix not seen in stream +CVE-2022-1652: Fix not seen in stream CVE-2022-1679: Fix unknown CVE-2022-1729: Fix not seen in stream CVE-2022-1734: Fix not seen in stream CVE-2022-1786: Fix not seen in stream -CVE-2022-1789: Fix not seen in stream CVE-2022-1836: Fix not seen in stream -CVE-2022-1852: Fix not seen in stream CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fix not seen in stream -CVE-2022-1972: Fix not seen in stream -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fix not seen in stream CVE-2022-1975: Fix not seen in stream -CVE-2022-1976: Fix not seen in stream -CVE-2022-1998: Fix not seen in stream CVE-2022-20132: Fix not seen in stream CVE-2022-20141: Fix not seen in stream CVE-2022-20148: Fix not seen in stream -CVE-2022-20153: Fix not seen in stream -CVE-2022-20154: Fix not seen in stream CVE-2022-20166: Fix not seen in stream -CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fix not seen in stream +CVE-2022-2153: Fix not seen in stream CVE-2022-23036: Fix not seen in stream CVE-2022-23037: Fix not seen in stream CVE-2022-23038: Fix not seen in stream CVE-2022-23039: Fix not seen in stream CVE-2022-23040: Fix not seen in stream -CVE-2022-23041: Fix not seen in stream CVE-2022-23042: Fix not seen in stream CVE-2022-23222: Fix not seen in stream CVE-2022-23960: Fix not seen in stream @@ -962,21 +932,16 @@ CVE-2022-25258: Fix not seen in stream CVE-2022-25265: Fix unknown CVE-2022-25375: Fix not seen in stream -CVE-2022-25636: Fix not seen in stream CVE-2022-26490: Fix not seen in stream -CVE-2022-26878: Fix unknown CVE-2022-26966: Fix not seen in stream CVE-2022-27223: Fix not seen in stream -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fix not seen in stream CVE-2022-28388: Fix not seen in stream -CVE-2022-28389: Fix not seen in stream CVE-2022-28390: Fix not seen in stream -CVE-2022-28796: Fix not seen in stream -CVE-2022-28893: Fix not seen in stream -CVE-2022-29156: Fix not seen in stream -CVE-2022-29582: Fix not seen in stream -CVE-2022-29968: Fix not seen in stream CVE-2022-30594: Fix not seen in stream +CVE-2022-32250: Fix not seen in stream CVE-2022-32296: Fix not seen in stream CVE-2022-32981: Fix not seen in stream +CVE-2022-33981: Fix not seen in stream +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/4.7/4.7_security.txt b/data/4.7/4.7_security.txt index 436ce13..46bfc52 100644 --- a/data/4.7/4.7_security.txt +++ b/data/4.7/4.7_security.txt
@@ -415,7 +415,7 @@ CVE-2018-9568: (unk) net: Set sk_prot_creator when cloning sockets to the right proto CVE-2019-0136: (unk) mac80211: drop robust management frames from unknown TA CVE-2019-0145: (unk) i40e: add num_vectors checker in iwarp handler - CVE-2019-0146: (unk) + CVE-2019-0146: (unk) i40e: add num_vectors checker in iwarp handler CVE-2019-0147: (unk) i40e: add num_vectors checker in iwarp handler CVE-2019-0148: (unk) i40e: Wrong truncation from u16 to u8 CVE-2019-0154: (unk) drm/i915: Lower RM timeout to avoid DSI hard hangs @@ -718,7 +718,7 @@ CVE-2020-26145: (unk) ath10k: drop fragments with multicast DA for PCIe CVE-2020-26147: (unk) mac80211: assure all fragments are encrypted CVE-2020-26541: (unk) certs: Add EFI_CERT_X509_GUID support for dbx entries - CVE-2020-26555: (unk) + CVE-2020-26555: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26558: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical @@ -771,7 +771,6 @@ CVE-2021-0512: (unk) HID: make arrays usage and value to be the same CVE-2021-0605: (unk) af_key: pfkey_dump needs parameter validation CVE-2021-0695: (unk) - CVE-2021-0707: (unk) dmabuf: fix use-after-free of dmabuf's file->f_inode CVE-2021-0920: (unk) af_unix: fix garbage collect vs MSG_PEEK CVE-2021-0929: (unk) staging/android/ion: delete dma_buf->kmap/unmap implemenation CVE-2021-0937: (unk) netfilter: x_tables: fix compat match/target pad out-of-bound write @@ -816,7 +815,6 @@ CVE-2021-33034: (unk) Bluetooth: verify AMP hci_chan before amp_destroy CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality CVE-2021-33098: (unk) ixgbe: fix large MTU request from VF - CVE-2021-33135: (unk) CVE-2021-33909: (unk) seq_file: disallow extremely large seq buffer allocations CVE-2021-34556: (unk) bpf: Introduce BPF nospec instruction for mitigating Spectre v4 CVE-2021-34693: (unk) can: bcm: fix infoleak in struct bcm_msg_head @@ -855,7 +853,6 @@ CVE-2021-3847: (unk) CVE-2021-3864: (unk) CVE-2021-3892: (unk) - CVE-2021-3894: (unk) sctp: account stream padding length for reconf chunk CVE-2021-3896: (unk) isdn: cpai: check ctr->cnr to avoid array index out of bound CVE-2021-39633: (unk) ip_gre: add validation for csum_start CVE-2021-39634: (unk) epoll: do not insert into poll queues until all sanity checks are done @@ -865,8 +862,6 @@ CVE-2021-39685: (unk) USB: gadget: detect too-big endpoint 0 requests CVE-2021-39686: (unk) binder: use euid from cred instead of using task CVE-2021-39698: (unk) wait: add wake_up_pollfree() - CVE-2021-39711: (unk) bpf: fix panic due to oob in bpf_prog_test_run_skb - CVE-2021-39713: (unk) net: sched: use Qdisc rcu API instead of relying on rtnl lock CVE-2021-39714: (unk) staging: android: ion: Drop ion_map_kernel interface CVE-2021-39800: (unk) CVE-2021-39801: (unk) @@ -876,7 +871,6 @@ CVE-2021-4037: (unk) xfs: fix up non-directory creation in SGID directories CVE-2021-40490: (unk) ext4: fix race writing to an inline_data file while its xattrs are changing CVE-2021-4083: (unk) fget: check that the fd still exists after getting a ref to it - CVE-2021-4148: (unk) mm: khugepaged: skip huge page collapse for special files CVE-2021-4149: (unk) btrfs: unlock newly allocated extent buffer after error CVE-2021-4150: (unk) block: fix incorrect references to disk objects CVE-2021-4155: (unk) xfs: map unwritten blocks in XFS_IOC_{ALLOC,FREE}SP just like fallocate @@ -901,7 +895,6 @@ CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() - CVE-2022-0171: (unk) CVE-2022-0330: (unk) drm/i915: Flush TLBs before releasing backing store CVE-2022-0382: (unk) net ticp:fix a kernel-infoleak in __tipc_sendmsg() CVE-2022-0400: (unk) @@ -909,30 +902,20 @@ CVE-2022-0487: (unk) moxart: fix potential use-after-free on remove path CVE-2022-0492: (unk) cgroup-v1: Require capabilities to set release_agent CVE-2022-0494: (unk) block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern - CVE-2022-0500: (unk) bpf: Introduce MEM_RDONLY flag CVE-2022-0617: (unk) udf: Fix NULL ptr deref when converting from inline format CVE-2022-0644: (unk) vfs: check fd has read access in kernel_read_file_from_fd() - CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() CVE-2022-0812: (unk) xprtrdma: fix incorrect header size calculations CVE-2022-0850: (unk) ext4: fix kernel infoleak via ext4_extent_header - CVE-2022-0854: (unk) swiotlb: rework "fix info leak with DMA_FROM_DEVICE" - CVE-2022-0995: (unk) watch_queue: Fix filter limit check - CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling CVE-2022-1011: (unk) fuse: fix pipe buffer lifetime for direct_io CVE-2022-1012: (unk) secure_seq: use the 64 bits of the siphash for port offset calculation - CVE-2022-1015: (unk) netfilter: nf_tables: validate registers coming from userspace. CVE-2022-1016: (unk) netfilter: nf_tables: initialize registers in nft_do_chain() - CVE-2022-1043: (unk) io_uring: fix xa_alloc_cycle() error return value check CVE-2022-1048: (unk) ALSA: pcm: Fix races among concurrent hw_params and hw_free calls - CVE-2022-1055: (unk) net: sched: fix use-after-free in tc_new_tfilter() CVE-2022-1116: (unk) - CVE-2022-1158: (unk) KVM: x86/mmu: do compare-and-exchange of gPTE via the user address - CVE-2022-1184: (unk) + CVE-2022-1184: (unk) ext4: verify dir block before splitting it CVE-2022-1195: (unk) hamradio: improve the incomplete fix to avoid NPD CVE-2022-1198: (unk) drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() CVE-2022-1199: (unk) ax25: Fix NULL pointer dereference in ax25_kill_by_device CVE-2022-1204: (unk) ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: (unk) ax25: Fix NULL pointer dereferences in ax25 timers CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector @@ -940,40 +923,27 @@ CVE-2022-1419: (unk) drm/vgem: Close use-after-free race in vgem_gem_create CVE-2022-1462: (unk) CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters - CVE-2022-1516: (unk) net/x25: Fix null-ptr-deref caused by x25_disconnect - CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) - CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c + CVE-2022-1652: (unk) floppy: use a statically allocated error counter CVE-2022-1679: (unk) CVE-2022-1729: (unk) perf: Fix sys_perf_event_open() race against self CVE-2022-1734: (unk) nfc: nfcmrvl: main: reorder destructive operations in nfcmrvl_nci_unregister_dev to avoid bugs CVE-2022-1786: (unk) io_uring: remove io_identity - CVE-2022-1789: (unk) KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID CVE-2022-1836: (unk) floppy: disable FDRAWCMD by default - CVE-2022-1852: (unk) KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse CVE-2022-1966: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier - CVE-2022-1972: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay CVE-2022-1974: (unk) nfc: replace improper check device_is_registered() in netlink related functions CVE-2022-1975: (unk) NFC: netlink: fix sleep in atomic bug when firmware download timeout - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking - CVE-2022-1998: (unk) fanotify: Fix stale file descriptor in copy_event_to_user() CVE-2022-20132: (unk) HID: add hid_is_usb() function to make it simpler for USB detection CVE-2022-20141: (unk) igmp: Add ip_mc_list lock in ip_check_mc_rcu CVE-2022-20148: (unk) f2fs: fix UAF in f2fs_available_free_memory - CVE-2022-20153: (unk) io_uring: return back safer resurrect - CVE-2022-20154: (unk) sctp: use call_rcu to free endpoint CVE-2022-20166: (unk) drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions - CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-21499: (unk) lockdown: also lock down previous kgdb use + CVE-2022-2153: (unk) KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-23036: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23037: (unk) xen/netfront: don't use gnttab_query_foreign_access() for mapped status CVE-2022-23038: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23039: (unk) xen/gntalloc: don't use gnttab_query_foreign_access() CVE-2022-23040: (unk) xen/xenbus: don't let xenbus_grant_ring() remove grants in error case - CVE-2022-23041: (unk) xen/9p: use alloc/free_pages_exact() CVE-2022-23042: (unk) xen/netfront: react properly to failing gnttab_end_foreign_access_ref() CVE-2022-23222: (unk) bpf: Replace PTR_TO_XXX_OR_NULL with PTR_TO_XXX | PTR_MAYBE_NULL CVE-2022-23960: (unk) ARM: report Spectre v2 status through sysfs @@ -982,21 +952,16 @@ CVE-2022-25258: (unk) USB: gadget: validate interface OS descriptor requests CVE-2022-25265: (unk) CVE-2022-25375: (unk) usb: gadget: rndis: check size of RNDIS_MSG_SET command - CVE-2022-25636: (unk) netfilter: nf_tables_offload: incorrect flow offload action array size CVE-2022-26490: (unk) nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION - CVE-2022-26878: (unk) CVE-2022-26966: (unk) sr9700: sanity check for packet length CVE-2022-27223: (unk) USB: gadget: validate endpoint index for xilinx udc - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe CVE-2022-28356: (unk) llc: fix netdevice reference leaks in llc_ui_bind() CVE-2022-28388: (unk) can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28389: (unk) can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: (unk) can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race - CVE-2022-28893: (unk) SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() - CVE-2022-29156: (unk) RDMA/rtrs-clt: Fix possible double free in error case - CVE-2022-29582: (unk) io_uring: fix race between timeout flush and removal - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb CVE-2022-30594: (unk) ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE + CVE-2022-32250: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 CVE-2022-32981: (unk) powerpc/32: Fix overread/overwrite of thread_struct via ptrace + CVE-2022-33981: (unk) floppy: disable FDRAWCMD by default + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/4.8/4.8_CVEs.txt b/data/4.8/4.8_CVEs.txt index 1651e92..a5ccdba 100644 --- a/data/4.8/4.8_CVEs.txt +++ b/data/4.8/4.8_CVEs.txt
@@ -391,7 +391,7 @@ CVE-2018-9568: Fix not seen in stream CVE-2019-0136: Fix not seen in stream CVE-2019-0145: Fix not seen in stream -CVE-2019-0146: Fix unknown +CVE-2019-0146: Fix not seen in stream CVE-2019-0147: Fix not seen in stream CVE-2019-0148: Fix not seen in stream CVE-2019-0154: Fix not seen in stream @@ -696,7 +696,7 @@ CVE-2020-26145: Fix not seen in stream CVE-2020-26147: Fix not seen in stream CVE-2020-26541: Fix not seen in stream -CVE-2020-26555: Fix unknown +CVE-2020-26555: Fix not seen in stream CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26558: Fix not seen in stream @@ -751,7 +751,6 @@ CVE-2021-0512: Fix not seen in stream CVE-2021-0605: Fix not seen in stream CVE-2021-0695: Fix unknown -CVE-2021-0707: Fix not seen in stream CVE-2021-0920: Fix not seen in stream CVE-2021-0929: Fix not seen in stream CVE-2021-0937: Fix not seen in stream @@ -798,7 +797,6 @@ CVE-2021-33034: Fix not seen in stream CVE-2021-33061: Fix not seen in stream CVE-2021-33098: Fix not seen in stream -CVE-2021-33135: Fix unknown CVE-2021-33909: Fix not seen in stream CVE-2021-34556: Fix not seen in stream CVE-2021-34693: Fix not seen in stream @@ -838,7 +836,6 @@ CVE-2021-3847: Fix unknown CVE-2021-3864: Fix unknown CVE-2021-3892: Fix unknown -CVE-2021-3894: Fix not seen in stream CVE-2021-3896: Fix not seen in stream CVE-2021-39633: Fix not seen in stream CVE-2021-39634: Fix not seen in stream @@ -848,8 +845,6 @@ CVE-2021-39685: Fix not seen in stream CVE-2021-39686: Fix not seen in stream CVE-2021-39698: Fix not seen in stream -CVE-2021-39711: Fix not seen in stream -CVE-2021-39713: Fix not seen in stream CVE-2021-39714: Fix not seen in stream CVE-2021-39800: Fix unknown CVE-2021-39801: Fix unknown @@ -859,7 +854,6 @@ CVE-2021-4037: Fix not seen in stream CVE-2021-40490: Fix not seen in stream CVE-2021-4083: Fix not seen in stream -CVE-2021-4148: Fix not seen in stream CVE-2021-4149: Fix not seen in stream CVE-2021-4150: Fix not seen in stream CVE-2021-4155: Fix not seen in stream @@ -884,7 +878,6 @@ CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream -CVE-2022-0171: Fix unknown CVE-2022-0330: Fix not seen in stream CVE-2022-0382: Fix not seen in stream CVE-2022-0400: Fix unknown @@ -893,30 +886,20 @@ CVE-2022-0487: Fix not seen in stream CVE-2022-0492: Fix not seen in stream CVE-2022-0494: Fix not seen in stream -CVE-2022-0500: Fix not seen in stream CVE-2022-0617: Fix not seen in stream CVE-2022-0644: Fix not seen in stream -CVE-2022-0742: Fix not seen in stream CVE-2022-0812: Fix not seen in stream CVE-2022-0850: Fix not seen in stream -CVE-2022-0854: Fix not seen in stream -CVE-2022-0995: Fix not seen in stream -CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fix not seen in stream CVE-2022-1012: Fix not seen in stream -CVE-2022-1015: Fix not seen in stream CVE-2022-1016: Fix not seen in stream -CVE-2022-1043: Fix not seen in stream CVE-2022-1048: Fix not seen in stream -CVE-2022-1055: Fix not seen in stream CVE-2022-1116: Fix unknown -CVE-2022-1158: Fix not seen in stream -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fix not seen in stream CVE-2022-1195: Fix not seen in stream CVE-2022-1198: Fix not seen in stream CVE-2022-1199: Fix not seen in stream CVE-2022-1204: Fix not seen in stream -CVE-2022-1205: Fix not seen in stream CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream @@ -924,40 +907,27 @@ CVE-2022-1419: Fix not seen in stream CVE-2022-1462: Fix unknown CVE-2022-1508: Fix not seen in stream -CVE-2022-1516: Fix not seen in stream -CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown -CVE-2022-1671: Fix not seen in stream +CVE-2022-1652: Fix not seen in stream CVE-2022-1679: Fix unknown CVE-2022-1729: Fix not seen in stream CVE-2022-1734: Fix not seen in stream CVE-2022-1786: Fix not seen in stream -CVE-2022-1789: Fix not seen in stream CVE-2022-1836: Fix not seen in stream -CVE-2022-1852: Fix not seen in stream CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fix not seen in stream -CVE-2022-1972: Fix not seen in stream -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fix not seen in stream CVE-2022-1975: Fix not seen in stream -CVE-2022-1976: Fix not seen in stream -CVE-2022-1998: Fix not seen in stream CVE-2022-20132: Fix not seen in stream CVE-2022-20141: Fix not seen in stream CVE-2022-20148: Fix not seen in stream -CVE-2022-20153: Fix not seen in stream -CVE-2022-20154: Fix not seen in stream CVE-2022-20166: Fix not seen in stream -CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fix not seen in stream +CVE-2022-2153: Fix not seen in stream CVE-2022-23036: Fix not seen in stream CVE-2022-23037: Fix not seen in stream CVE-2022-23038: Fix not seen in stream CVE-2022-23039: Fix not seen in stream CVE-2022-23040: Fix not seen in stream -CVE-2022-23041: Fix not seen in stream CVE-2022-23042: Fix not seen in stream CVE-2022-23222: Fix not seen in stream CVE-2022-23960: Fix not seen in stream @@ -966,21 +936,16 @@ CVE-2022-25258: Fix not seen in stream CVE-2022-25265: Fix unknown CVE-2022-25375: Fix not seen in stream -CVE-2022-25636: Fix not seen in stream CVE-2022-26490: Fix not seen in stream -CVE-2022-26878: Fix unknown CVE-2022-26966: Fix not seen in stream CVE-2022-27223: Fix not seen in stream -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fix not seen in stream CVE-2022-28388: Fix not seen in stream -CVE-2022-28389: Fix not seen in stream CVE-2022-28390: Fix not seen in stream -CVE-2022-28796: Fix not seen in stream -CVE-2022-28893: Fix not seen in stream -CVE-2022-29156: Fix not seen in stream -CVE-2022-29582: Fix not seen in stream -CVE-2022-29968: Fix not seen in stream CVE-2022-30594: Fix not seen in stream +CVE-2022-32250: Fix not seen in stream CVE-2022-32296: Fix not seen in stream CVE-2022-32981: Fix not seen in stream +CVE-2022-33981: Fix not seen in stream +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/4.8/4.8_security.txt b/data/4.8/4.8_security.txt index de2e020..2aab555 100644 --- a/data/4.8/4.8_security.txt +++ b/data/4.8/4.8_security.txt
@@ -421,7 +421,7 @@ CVE-2018-9568: (unk) net: Set sk_prot_creator when cloning sockets to the right proto CVE-2019-0136: (unk) mac80211: drop robust management frames from unknown TA CVE-2019-0145: (unk) i40e: add num_vectors checker in iwarp handler - CVE-2019-0146: (unk) + CVE-2019-0146: (unk) i40e: add num_vectors checker in iwarp handler CVE-2019-0147: (unk) i40e: add num_vectors checker in iwarp handler CVE-2019-0148: (unk) i40e: Wrong truncation from u16 to u8 CVE-2019-0154: (unk) drm/i915: Lower RM timeout to avoid DSI hard hangs @@ -726,7 +726,7 @@ CVE-2020-26145: (unk) ath10k: drop fragments with multicast DA for PCIe CVE-2020-26147: (unk) mac80211: assure all fragments are encrypted CVE-2020-26541: (unk) certs: Add EFI_CERT_X509_GUID support for dbx entries - CVE-2020-26555: (unk) + CVE-2020-26555: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26558: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical @@ -781,7 +781,6 @@ CVE-2021-0512: (unk) HID: make arrays usage and value to be the same CVE-2021-0605: (unk) af_key: pfkey_dump needs parameter validation CVE-2021-0695: (unk) - CVE-2021-0707: (unk) dmabuf: fix use-after-free of dmabuf's file->f_inode CVE-2021-0920: (unk) af_unix: fix garbage collect vs MSG_PEEK CVE-2021-0929: (unk) staging/android/ion: delete dma_buf->kmap/unmap implemenation CVE-2021-0937: (unk) netfilter: x_tables: fix compat match/target pad out-of-bound write @@ -828,7 +827,6 @@ CVE-2021-33034: (unk) Bluetooth: verify AMP hci_chan before amp_destroy CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality CVE-2021-33098: (unk) ixgbe: fix large MTU request from VF - CVE-2021-33135: (unk) CVE-2021-33909: (unk) seq_file: disallow extremely large seq buffer allocations CVE-2021-34556: (unk) bpf: Introduce BPF nospec instruction for mitigating Spectre v4 CVE-2021-34693: (unk) can: bcm: fix infoleak in struct bcm_msg_head @@ -868,7 +866,6 @@ CVE-2021-3847: (unk) CVE-2021-3864: (unk) CVE-2021-3892: (unk) - CVE-2021-3894: (unk) sctp: account stream padding length for reconf chunk CVE-2021-3896: (unk) isdn: cpai: check ctr->cnr to avoid array index out of bound CVE-2021-39633: (unk) ip_gre: add validation for csum_start CVE-2021-39634: (unk) epoll: do not insert into poll queues until all sanity checks are done @@ -878,8 +875,6 @@ CVE-2021-39685: (unk) USB: gadget: detect too-big endpoint 0 requests CVE-2021-39686: (unk) binder: use euid from cred instead of using task CVE-2021-39698: (unk) wait: add wake_up_pollfree() - CVE-2021-39711: (unk) bpf: fix panic due to oob in bpf_prog_test_run_skb - CVE-2021-39713: (unk) net: sched: use Qdisc rcu API instead of relying on rtnl lock CVE-2021-39714: (unk) staging: android: ion: Drop ion_map_kernel interface CVE-2021-39800: (unk) CVE-2021-39801: (unk) @@ -889,7 +884,6 @@ CVE-2021-4037: (unk) xfs: fix up non-directory creation in SGID directories CVE-2021-40490: (unk) ext4: fix race writing to an inline_data file while its xattrs are changing CVE-2021-4083: (unk) fget: check that the fd still exists after getting a ref to it - CVE-2021-4148: (unk) mm: khugepaged: skip huge page collapse for special files CVE-2021-4149: (unk) btrfs: unlock newly allocated extent buffer after error CVE-2021-4150: (unk) block: fix incorrect references to disk objects CVE-2021-4155: (unk) xfs: map unwritten blocks in XFS_IOC_{ALLOC,FREE}SP just like fallocate @@ -914,7 +908,6 @@ CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() - CVE-2022-0171: (unk) CVE-2022-0330: (unk) drm/i915: Flush TLBs before releasing backing store CVE-2022-0382: (unk) net ticp:fix a kernel-infoleak in __tipc_sendmsg() CVE-2022-0400: (unk) @@ -923,30 +916,20 @@ CVE-2022-0487: (unk) moxart: fix potential use-after-free on remove path CVE-2022-0492: (unk) cgroup-v1: Require capabilities to set release_agent CVE-2022-0494: (unk) block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern - CVE-2022-0500: (unk) bpf: Introduce MEM_RDONLY flag CVE-2022-0617: (unk) udf: Fix NULL ptr deref when converting from inline format CVE-2022-0644: (unk) vfs: check fd has read access in kernel_read_file_from_fd() - CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() CVE-2022-0812: (unk) xprtrdma: fix incorrect header size calculations CVE-2022-0850: (unk) ext4: fix kernel infoleak via ext4_extent_header - CVE-2022-0854: (unk) swiotlb: rework "fix info leak with DMA_FROM_DEVICE" - CVE-2022-0995: (unk) watch_queue: Fix filter limit check - CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling CVE-2022-1011: (unk) fuse: fix pipe buffer lifetime for direct_io CVE-2022-1012: (unk) secure_seq: use the 64 bits of the siphash for port offset calculation - CVE-2022-1015: (unk) netfilter: nf_tables: validate registers coming from userspace. CVE-2022-1016: (unk) netfilter: nf_tables: initialize registers in nft_do_chain() - CVE-2022-1043: (unk) io_uring: fix xa_alloc_cycle() error return value check CVE-2022-1048: (unk) ALSA: pcm: Fix races among concurrent hw_params and hw_free calls - CVE-2022-1055: (unk) net: sched: fix use-after-free in tc_new_tfilter() CVE-2022-1116: (unk) - CVE-2022-1158: (unk) KVM: x86/mmu: do compare-and-exchange of gPTE via the user address - CVE-2022-1184: (unk) + CVE-2022-1184: (unk) ext4: verify dir block before splitting it CVE-2022-1195: (unk) hamradio: improve the incomplete fix to avoid NPD CVE-2022-1198: (unk) drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() CVE-2022-1199: (unk) ax25: Fix NULL pointer dereference in ax25_kill_by_device CVE-2022-1204: (unk) ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: (unk) ax25: Fix NULL pointer dereferences in ax25 timers CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector @@ -954,40 +937,27 @@ CVE-2022-1419: (unk) drm/vgem: Close use-after-free race in vgem_gem_create CVE-2022-1462: (unk) CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters - CVE-2022-1516: (unk) net/x25: Fix null-ptr-deref caused by x25_disconnect - CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) - CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c + CVE-2022-1652: (unk) floppy: use a statically allocated error counter CVE-2022-1679: (unk) CVE-2022-1729: (unk) perf: Fix sys_perf_event_open() race against self CVE-2022-1734: (unk) nfc: nfcmrvl: main: reorder destructive operations in nfcmrvl_nci_unregister_dev to avoid bugs CVE-2022-1786: (unk) io_uring: remove io_identity - CVE-2022-1789: (unk) KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID CVE-2022-1836: (unk) floppy: disable FDRAWCMD by default - CVE-2022-1852: (unk) KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse CVE-2022-1966: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier - CVE-2022-1972: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay CVE-2022-1974: (unk) nfc: replace improper check device_is_registered() in netlink related functions CVE-2022-1975: (unk) NFC: netlink: fix sleep in atomic bug when firmware download timeout - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking - CVE-2022-1998: (unk) fanotify: Fix stale file descriptor in copy_event_to_user() CVE-2022-20132: (unk) HID: add hid_is_usb() function to make it simpler for USB detection CVE-2022-20141: (unk) igmp: Add ip_mc_list lock in ip_check_mc_rcu CVE-2022-20148: (unk) f2fs: fix UAF in f2fs_available_free_memory - CVE-2022-20153: (unk) io_uring: return back safer resurrect - CVE-2022-20154: (unk) sctp: use call_rcu to free endpoint CVE-2022-20166: (unk) drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions - CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-21499: (unk) lockdown: also lock down previous kgdb use + CVE-2022-2153: (unk) KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-23036: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23037: (unk) xen/netfront: don't use gnttab_query_foreign_access() for mapped status CVE-2022-23038: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23039: (unk) xen/gntalloc: don't use gnttab_query_foreign_access() CVE-2022-23040: (unk) xen/xenbus: don't let xenbus_grant_ring() remove grants in error case - CVE-2022-23041: (unk) xen/9p: use alloc/free_pages_exact() CVE-2022-23042: (unk) xen/netfront: react properly to failing gnttab_end_foreign_access_ref() CVE-2022-23222: (unk) bpf: Replace PTR_TO_XXX_OR_NULL with PTR_TO_XXX | PTR_MAYBE_NULL CVE-2022-23960: (unk) ARM: report Spectre v2 status through sysfs @@ -996,21 +966,16 @@ CVE-2022-25258: (unk) USB: gadget: validate interface OS descriptor requests CVE-2022-25265: (unk) CVE-2022-25375: (unk) usb: gadget: rndis: check size of RNDIS_MSG_SET command - CVE-2022-25636: (unk) netfilter: nf_tables_offload: incorrect flow offload action array size CVE-2022-26490: (unk) nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION - CVE-2022-26878: (unk) CVE-2022-26966: (unk) sr9700: sanity check for packet length CVE-2022-27223: (unk) USB: gadget: validate endpoint index for xilinx udc - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe CVE-2022-28356: (unk) llc: fix netdevice reference leaks in llc_ui_bind() CVE-2022-28388: (unk) can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28389: (unk) can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: (unk) can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race - CVE-2022-28893: (unk) SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() - CVE-2022-29156: (unk) RDMA/rtrs-clt: Fix possible double free in error case - CVE-2022-29582: (unk) io_uring: fix race between timeout flush and removal - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb CVE-2022-30594: (unk) ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE + CVE-2022-32250: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 CVE-2022-32981: (unk) powerpc/32: Fix overread/overwrite of thread_struct via ptrace + CVE-2022-33981: (unk) floppy: disable FDRAWCMD by default + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/4.9/4.9_CVEs.txt b/data/4.9/4.9_CVEs.txt index 1b83705..c5a4e8b 100644 --- a/data/4.9/4.9_CVEs.txt +++ b/data/4.9/4.9_CVEs.txt
@@ -385,7 +385,7 @@ CVE-2018-9568: Fixed with 4.9.55 CVE-2019-0136: Fixed with 4.9.185 CVE-2019-0145: Fixed with 4.9.244 -CVE-2019-0146: Fix unknown +CVE-2019-0146: Fixed with 4.9.244 CVE-2019-0147: Fixed with 4.9.244 CVE-2019-0148: Fixed with 4.9.244 CVE-2019-0154: Fixed with 4.9.201 @@ -695,7 +695,7 @@ CVE-2020-26145: Fix not seen in stream CVE-2020-26147: Fixed with 4.9.271 CVE-2020-26541: Fix not seen in stream -CVE-2020-26555: Fix unknown +CVE-2020-26555: Fixed with 4.9.270 CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26558: Fixed with 4.9.270 @@ -750,7 +750,6 @@ CVE-2021-0512: Fixed with 4.9.259 CVE-2021-0605: Fixed with 4.9.238 CVE-2021-0695: Fix unknown -CVE-2021-0707: Fix not seen in stream CVE-2021-0920: Fixed with 4.9.278 CVE-2021-0929: Fix not seen in stream CVE-2021-0937: Fixed with 4.9.267 @@ -797,7 +796,6 @@ CVE-2021-33034: Fixed with 4.9.269 CVE-2021-33061: Fix not seen in stream CVE-2021-33098: Fix not seen in stream -CVE-2021-33135: Fix unknown CVE-2021-33909: Fixed with 4.9.276 CVE-2021-34556: Fix not seen in stream CVE-2021-34693: Fixed with 4.9.274 @@ -837,7 +835,6 @@ CVE-2021-3847: Fix unknown CVE-2021-3864: Fix unknown CVE-2021-3892: Fix unknown -CVE-2021-3894: Fix not seen in stream CVE-2021-3896: Fixed with 4.9.288 CVE-2021-39633: Fixed with 4.9.282 CVE-2021-39634: Fixed with 4.9.239 @@ -847,8 +844,6 @@ CVE-2021-39685: Fixed with 4.9.293 CVE-2021-39686: Fixed with 4.9.291 CVE-2021-39698: Fixed with 4.9.293 -CVE-2021-39711: Fix not seen in stream -CVE-2021-39713: Fix not seen in stream CVE-2021-39714: Fix not seen in stream CVE-2021-39800: Fix unknown CVE-2021-39801: Fix unknown @@ -858,7 +853,6 @@ CVE-2021-4037: Fix not seen in stream CVE-2021-40490: Fixed with 4.9.283 CVE-2021-4083: Fixed with 4.9.292 -CVE-2021-4148: Fix not seen in stream CVE-2021-4149: Fixed with 4.9.307 CVE-2021-4150: Fix not seen in stream CVE-2021-4155: Fixed with 4.9.297 @@ -883,7 +877,6 @@ CVE-2022-0001: Fixed with 4.9.306 CVE-2022-0002: Fixed with 4.9.306 CVE-2022-0168: Fix not seen in stream -CVE-2022-0171: Fix unknown CVE-2022-0330: Fixed with 4.9.299 CVE-2022-0382: Fix not seen in stream CVE-2022-0400: Fix unknown @@ -892,30 +885,20 @@ CVE-2022-0487: Fixed with 4.9.301 CVE-2022-0492: Fixed with 4.9.301 CVE-2022-0494: Fixed with 4.9.317 -CVE-2022-0500: Fix not seen in stream CVE-2022-0617: Fixed with 4.9.300 CVE-2022-0644: Fixed with 4.9.288 -CVE-2022-0742: Fix not seen in stream -CVE-2022-0812: Fix not seen in stream +CVE-2022-0812: Fixed with 4.9.320 CVE-2022-0850: Fixed with 4.9.276 -CVE-2022-0854: Fix not seen in stream -CVE-2022-0995: Fix not seen in stream -CVE-2022-0998: Fix not seen in stream -CVE-2022-1011: Fix not seen in stream -CVE-2022-1012: Fix not seen in stream -CVE-2022-1015: Fix not seen in stream +CVE-2022-1011: Fixed with 4.9.320 +CVE-2022-1012: Fixed with 4.9.320 CVE-2022-1016: Fixed with 4.9.309 -CVE-2022-1043: Fix not seen in stream CVE-2022-1048: Fix not seen in stream -CVE-2022-1055: Fix not seen in stream CVE-2022-1116: Fix unknown -CVE-2022-1158: Fix not seen in stream -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fixed with 4.9.318 CVE-2022-1195: Fixed with 4.9.295 CVE-2022-1198: Fixed with 4.9.311 CVE-2022-1199: Fixed with 4.9.307 CVE-2022-1204: Fix not seen in stream -CVE-2022-1205: Fix not seen in stream CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream @@ -923,40 +906,27 @@ CVE-2022-1419: Fix not seen in stream CVE-2022-1462: Fix unknown CVE-2022-1508: Fix not seen in stream -CVE-2022-1516: Fixed with 4.9.311 -CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown -CVE-2022-1671: Fix not seen in stream +CVE-2022-1652: Fixed with 4.9.316 CVE-2022-1679: Fix unknown CVE-2022-1729: Fixed with 4.9.316 CVE-2022-1734: Fixed with 4.9.313 CVE-2022-1786: Fix not seen in stream -CVE-2022-1789: Fix not seen in stream CVE-2022-1836: Fixed with 4.9.313 -CVE-2022-1852: Fix not seen in stream CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fixed with 4.9.318 -CVE-2022-1972: Fix not seen in stream -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fixed with 4.9.313 CVE-2022-1975: Fixed with 4.9.313 -CVE-2022-1976: Fix not seen in stream -CVE-2022-1998: Fix not seen in stream CVE-2022-20132: Fixed with 4.9.293 CVE-2022-20141: Fixed with 4.9.283 CVE-2022-20148: Fix not seen in stream -CVE-2022-20153: Fix not seen in stream -CVE-2022-20154: Fix not seen in stream CVE-2022-20166: Fix not seen in stream -CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fix not seen in stream +CVE-2022-2153: Fix not seen in stream CVE-2022-23036: Fixed with 4.9.306 CVE-2022-23037: Fixed with 4.9.306 CVE-2022-23038: Fixed with 4.9.306 CVE-2022-23039: Fixed with 4.9.306 CVE-2022-23040: Fixed with 4.9.306 -CVE-2022-23041: Fix not seen in stream CVE-2022-23042: Fixed with 4.9.306 CVE-2022-23222: Fix not seen in stream CVE-2022-23960: Fixed with 4.9.306 @@ -965,21 +935,16 @@ CVE-2022-25258: Fixed with 4.9.302 CVE-2022-25265: Fix unknown CVE-2022-25375: Fixed with 4.9.302 -CVE-2022-25636: Fix not seen in stream CVE-2022-26490: Fixed with 4.9.309 -CVE-2022-26878: Fix unknown CVE-2022-26966: Fixed with 4.9.304 CVE-2022-27223: Fixed with 4.9.304 -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fixed with 4.9.309 CVE-2022-28388: Fix not seen in stream -CVE-2022-28389: Fix not seen in stream CVE-2022-28390: Fixed with 4.9.311 -CVE-2022-28796: Fix not seen in stream -CVE-2022-28893: Fix not seen in stream -CVE-2022-29156: Fix not seen in stream -CVE-2022-29582: Fix not seen in stream -CVE-2022-29968: Fix not seen in stream CVE-2022-30594: Fixed with 4.9.311 -CVE-2022-32296: Fix not seen in stream +CVE-2022-32250: Fixed with 4.9.318 +CVE-2022-32296: Fixed with 4.9.320 CVE-2022-32981: Fixed with 4.9.318 +CVE-2022-33981: Fixed with 4.9.313 +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/4.9/4.9_security.txt b/data/4.9/4.9_security.txt index 76dac71..af27d26 100644 --- a/data/4.9/4.9_security.txt +++ b/data/4.9/4.9_security.txt
@@ -980,6 +980,7 @@ CVEs fixed in 4.9.244: CVE-2019-0145: f4a3ff4df40053000d56554f0d34aa98d4d917d6 i40e: add num_vectors checker in iwarp handler + CVE-2019-0146: f4a3ff4df40053000d56554f0d34aa98d4d917d6 i40e: add num_vectors checker in iwarp handler CVE-2019-0147: f4a3ff4df40053000d56554f0d34aa98d4d917d6 i40e: add num_vectors checker in iwarp handler CVE-2019-0148: b7715c9bb71fa4b95fdb9b98a8814d8e18cb7402 i40e: Wrong truncation from u16 to u8 CVE-2020-0427: 77440c3a37203e3f4667d06e37f76ef3968d2d8c pinctrl: devicetree: Avoid taking direct reference to device name string @@ -1077,6 +1078,7 @@ CVE-2021-4157: c621f3654bba1096ec913d0942e27bd032bb6090 pNFS/flexfiles: fix incorrect size check in decode_nfs_fh() CVEs fixed in 4.9.270: + CVE-2020-26555: 6555a006b21ab49090b9a7b36e92d0421db19328 Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26558: 6555a006b21ab49090b9a7b36e92d0421db19328 Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2021-0129: 6555a006b21ab49090b9a7b36e92d0421db19328 Bluetooth: SMP: Fail if remote and local public keys are identical @@ -1245,7 +1247,6 @@ CVEs fixed in 4.9.311: CVE-2022-1198: 45d1a63bacf2b6ab27f9b11b5a2431e19d34d01f drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() CVE-2022-1353: 7b0e01a9b7f2aaeb6fa73b35864b1d7dc6e795c4 af_key: add __GFP_ZERO flag for compose_sadb_supported in function pfkey_register - CVE-2022-1516: dffc859d1d9560da594e4282091781b8d2715f00 net/x25: Fix null-ptr-deref caused by x25_disconnect CVE-2022-28390: e9c4ee674586ff0b098d17638af719aa56c9c272 can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path CVE-2022-30594: 4f96b94a8342fac058117962f1a76fc7ebd1c245 ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE @@ -1254,17 +1255,27 @@ CVE-2022-1836: 0dd02ff72c6daf4e7800fb5dd1109fbacdde97dc floppy: disable FDRAWCMD by default CVE-2022-1974: fa2217b66467917a623993c14d671661ad625fb6 nfc: replace improper check device_is_registered() in netlink related functions CVE-2022-1975: a93ea9595fde438996d7b9322749d4d1921162f7 NFC: netlink: fix sleep in atomic bug when firmware download timeout + CVE-2022-33981: 0dd02ff72c6daf4e7800fb5dd1109fbacdde97dc floppy: disable FDRAWCMD by default CVEs fixed in 4.9.316: + CVE-2022-1652: 2adafe1c646b462c755e99216f966927eec96059 floppy: use a statically allocated error counter CVE-2022-1729: a1466528d8ae5d9a3bb29781f0098fa3476e9e1c perf: Fix sys_perf_event_open() race against self CVEs fixed in 4.9.317: CVE-2022-0494: d59073bedb7cf752b8cd4027dd0f67cf7ac4330f block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern CVEs fixed in 4.9.318: + CVE-2022-1184: 93bbf0498ba20eadcd7132bd3cfdaff54eb72751 ext4: verify dir block before splitting it CVE-2022-1966: 94e9b75919619ba8c4072abc4917011a7a888a79 netfilter: nf_tables: disallow non-stateful expression in sets earlier + CVE-2022-32250: 94e9b75919619ba8c4072abc4917011a7a888a79 netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-32981: 89dda10b73b7ce184caf18754907126ce7ce3fad powerpc/32: Fix overread/overwrite of thread_struct via ptrace +CVEs fixed in 4.9.320: + CVE-2022-0812: ca6226b5c5b4cf8c41ab7c759686c9aab43a2a33 xprtrdma: fix incorrect header size calculations + CVE-2022-1011: b79d4d0da659a3c7bd1d5913e62188ceb9be9c49 fuse: fix pipe buffer lifetime for direct_io + CVE-2022-1012: 576696ed0dee677ec868960c39d96ae3b8c95a3f secure_seq: use the 64 bits of the siphash for port offset calculation + CVE-2022-32296: 3c78eea640f69e2198b69128173e6d65a0bcdc02 tcp: increase source port perturb table to 2^16 + Outstanding CVEs: CVE-2005-3660: (unk) CVE-2007-3719: (unk) @@ -1311,7 +1322,6 @@ CVE-2018-25020: (unk) bpf: fix truncated jump targets on heavy expansions CVE-2018-7273: (unk) printk: hash addresses printed with %p CVE-2018-7754: (unk) printk: hash addresses printed with %p - CVE-2019-0146: (unk) CVE-2019-10220: (unk) Convert filldir[64]() from __put_user() to unsafe_put_user() CVE-2019-11091: (unk) s390/speculation: Support 'mitigations=' cmdline option CVE-2019-11191: (unk) x86: Deprecate a.out support @@ -1376,7 +1386,6 @@ CVE-2020-26143: (unk) CVE-2020-26145: (unk) ath10k: drop fragments with multicast DA for PCIe CVE-2020-26541: (unk) certs: Add EFI_CERT_X509_GUID support for dbx entries - CVE-2020-26555: (unk) CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26559: (unk) @@ -1393,14 +1402,12 @@ CVE-2020-8834: (unk) KVM: PPC: Book3S HV: Factor fake-suspend handling out of kvmppc_save/restore_tm CVE-2021-0399: (unk) CVE-2021-0695: (unk) - CVE-2021-0707: (unk) dmabuf: fix use-after-free of dmabuf's file->f_inode CVE-2021-0929: (unk) staging/android/ion: delete dma_buf->kmap/unmap implemenation CVE-2021-28951: (unk) io_uring: ensure that SQPOLL thread is started for exit CVE-2021-29155: (unk) bpf: Use correct permission flag for mixed signed bounds arithmetic CVE-2021-32078: (unk) ARM: footbridge: remove personal server platform CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality CVE-2021-33098: (unk) ixgbe: fix large MTU request from VF - CVE-2021-33135: (unk) CVE-2021-34556: (unk) bpf: Introduce BPF nospec instruction for mitigating Spectre v4 CVE-2021-3506: (unk) f2fs: fix to avoid out-of-bounds memory access CVE-2021-3542: (unk) @@ -1412,17 +1419,13 @@ CVE-2021-3847: (unk) CVE-2021-3864: (unk) CVE-2021-3892: (unk) - CVE-2021-3894: (unk) sctp: account stream padding length for reconf chunk CVE-2021-39636: (unk) netfilter: x_tables: fix pointer leaks to userspace - CVE-2021-39711: (unk) bpf: fix panic due to oob in bpf_prog_test_run_skb - CVE-2021-39713: (unk) net: sched: use Qdisc rcu API instead of relying on rtnl lock CVE-2021-39714: (unk) staging: android: ion: Drop ion_map_kernel interface CVE-2021-39800: (unk) CVE-2021-39801: (unk) CVE-2021-39802: (unk) CVE-2021-4023: (unk) io-wq: fix cancellation on create-worker failure CVE-2021-4037: (unk) xfs: fix up non-directory creation in SGID directories - CVE-2021-4148: (unk) mm: khugepaged: skip huge page collapse for special files CVE-2021-4150: (unk) block: fix incorrect references to disk objects CVE-2021-4159: (unk) bpf: Verifer, adjust_scalar_min_max_vals to always call update_reg_bounds() CVE-2021-4197: (unk) cgroup: Use open-time credentials for process migraton perm checks @@ -1431,63 +1434,27 @@ CVE-2021-44879: (unk) f2fs: fix to do sanity check on inode type during garbage collection CVE-2021-45469: (unk) f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr() CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() - CVE-2022-0171: (unk) CVE-2022-0382: (unk) net ticp:fix a kernel-infoleak in __tipc_sendmsg() CVE-2022-0400: (unk) CVE-2022-0480: (unk) memcg: enable accounting for file lock caches - CVE-2022-0500: (unk) bpf: Introduce MEM_RDONLY flag - CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() - CVE-2022-0812: (unk) xprtrdma: fix incorrect header size calculations - CVE-2022-0854: (unk) swiotlb: rework "fix info leak with DMA_FROM_DEVICE" - CVE-2022-0995: (unk) watch_queue: Fix filter limit check - CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling - CVE-2022-1011: (unk) fuse: fix pipe buffer lifetime for direct_io - CVE-2022-1012: (unk) secure_seq: use the 64 bits of the siphash for port offset calculation - CVE-2022-1015: (unk) netfilter: nf_tables: validate registers coming from userspace. - CVE-2022-1043: (unk) io_uring: fix xa_alloc_cycle() error return value check CVE-2022-1048: (unk) ALSA: pcm: Fix races among concurrent hw_params and hw_free calls - CVE-2022-1055: (unk) net: sched: fix use-after-free in tc_new_tfilter() CVE-2022-1116: (unk) - CVE-2022-1158: (unk) KVM: x86/mmu: do compare-and-exchange of gPTE via the user address - CVE-2022-1184: (unk) CVE-2022-1204: (unk) ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: (unk) ax25: Fix NULL pointer dereferences in ax25 timers CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector CVE-2022-1419: (unk) drm/vgem: Close use-after-free race in vgem_gem_create CVE-2022-1462: (unk) CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters - CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) - CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c CVE-2022-1679: (unk) CVE-2022-1786: (unk) io_uring: remove io_identity - CVE-2022-1789: (unk) KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID - CVE-2022-1852: (unk) KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse - CVE-2022-1972: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking - CVE-2022-1998: (unk) fanotify: Fix stale file descriptor in copy_event_to_user() CVE-2022-20148: (unk) f2fs: fix UAF in f2fs_available_free_memory - CVE-2022-20153: (unk) io_uring: return back safer resurrect - CVE-2022-20154: (unk) sctp: use call_rcu to free endpoint CVE-2022-20166: (unk) drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions - CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-21499: (unk) lockdown: also lock down previous kgdb use - CVE-2022-23041: (unk) xen/9p: use alloc/free_pages_exact() + CVE-2022-2153: (unk) KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-23222: (unk) bpf: Replace PTR_TO_XXX_OR_NULL with PTR_TO_XXX | PTR_MAYBE_NULL CVE-2022-25265: (unk) - CVE-2022-25636: (unk) netfilter: nf_tables_offload: incorrect flow offload action array size - CVE-2022-26878: (unk) - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe CVE-2022-28388: (unk) can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28389: (unk) can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race - CVE-2022-28893: (unk) SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() - CVE-2022-29156: (unk) RDMA/rtrs-clt: Fix possible double free in error case - CVE-2022-29582: (unk) io_uring: fix race between timeout flush and removal - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb - CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/5.0/5.0_CVEs.txt b/data/5.0/5.0_CVEs.txt index 0944ae0..ccb2cde 100644 --- a/data/5.0/5.0_CVEs.txt +++ b/data/5.0/5.0_CVEs.txt
@@ -23,7 +23,7 @@ CVE-2018-17977: Fix unknown CVE-2019-0136: Fix not seen in stream CVE-2019-0145: Fix not seen in stream -CVE-2019-0146: Fix unknown +CVE-2019-0146: Fix not seen in stream CVE-2019-0147: Fix not seen in stream CVE-2019-0148: Fix not seen in stream CVE-2019-0149: Fix not seen in stream @@ -376,7 +376,7 @@ CVE-2020-26145: Fix not seen in stream CVE-2020-26147: Fix not seen in stream CVE-2020-26541: Fix not seen in stream -CVE-2020-26555: Fix unknown +CVE-2020-26555: Fix not seen in stream CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26558: Fix not seen in stream @@ -436,7 +436,6 @@ CVE-2021-0512: Fix not seen in stream CVE-2021-0605: Fix not seen in stream CVE-2021-0695: Fix unknown -CVE-2021-0707: Fix not seen in stream CVE-2021-0920: Fix not seen in stream CVE-2021-0929: Fix not seen in stream CVE-2021-0937: Fix not seen in stream @@ -489,7 +488,6 @@ CVE-2021-33034: Fix not seen in stream CVE-2021-33061: Fix not seen in stream CVE-2021-33098: Fix not seen in stream -CVE-2021-33135: Fix unknown CVE-2021-3347: Fix not seen in stream CVE-2021-3348: Fix not seen in stream CVE-2021-33624: Fix not seen in stream @@ -559,7 +557,6 @@ CVE-2021-40490: Fix not seen in stream CVE-2021-4083: Fix not seen in stream CVE-2021-4135: Fix not seen in stream -CVE-2021-4148: Fix not seen in stream CVE-2021-4149: Fix not seen in stream CVE-2021-4150: Fix not seen in stream CVE-2021-4155: Fix not seen in stream @@ -586,7 +583,6 @@ CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream -CVE-2022-0171: Fix unknown CVE-2022-0322: Fix not seen in stream CVE-2022-0330: Fix not seen in stream CVE-2022-0382: Fix not seen in stream @@ -596,30 +592,20 @@ CVE-2022-0487: Fix not seen in stream CVE-2022-0492: Fix not seen in stream CVE-2022-0494: Fix not seen in stream -CVE-2022-0500: Fix not seen in stream CVE-2022-0617: Fix not seen in stream CVE-2022-0644: Fix not seen in stream -CVE-2022-0742: Fix not seen in stream CVE-2022-0812: Fix not seen in stream CVE-2022-0850: Fix not seen in stream -CVE-2022-0854: Fix not seen in stream -CVE-2022-0995: Fix not seen in stream -CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fix not seen in stream CVE-2022-1012: Fix not seen in stream -CVE-2022-1015: Fix not seen in stream CVE-2022-1016: Fix not seen in stream -CVE-2022-1043: Fix not seen in stream CVE-2022-1048: Fix not seen in stream -CVE-2022-1055: Fix not seen in stream CVE-2022-1116: Fix unknown -CVE-2022-1158: Fix not seen in stream -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fix not seen in stream CVE-2022-1195: Fix not seen in stream CVE-2022-1198: Fix not seen in stream CVE-2022-1199: Fix not seen in stream CVE-2022-1204: Fix not seen in stream -CVE-2022-1205: Fix not seen in stream CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream @@ -627,35 +613,25 @@ CVE-2022-1419: Fix not seen in stream CVE-2022-1462: Fix unknown CVE-2022-1508: Fix not seen in stream -CVE-2022-1516: Fix not seen in stream -CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown -CVE-2022-1671: Fix not seen in stream +CVE-2022-1652: Fix not seen in stream CVE-2022-1679: Fix unknown CVE-2022-1729: Fix not seen in stream CVE-2022-1734: Fix not seen in stream CVE-2022-1786: Fix not seen in stream CVE-2022-1789: Fix not seen in stream CVE-2022-1836: Fix not seen in stream -CVE-2022-1852: Fix not seen in stream CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fix not seen in stream -CVE-2022-1972: Fix not seen in stream -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fix not seen in stream CVE-2022-1975: Fix not seen in stream -CVE-2022-1976: Fix not seen in stream -CVE-2022-1998: Fix not seen in stream CVE-2022-20008: Fix not seen in stream CVE-2022-20132: Fix not seen in stream CVE-2022-20141: Fix not seen in stream CVE-2022-20148: Fix not seen in stream -CVE-2022-20153: Fix not seen in stream CVE-2022-20154: Fix not seen in stream CVE-2022-20166: Fix not seen in stream -CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fix not seen in stream +CVE-2022-2153: Fix not seen in stream CVE-2022-22942: Fix not seen in stream CVE-2022-23036: Fix not seen in stream CVE-2022-23037: Fix not seen in stream @@ -672,23 +648,19 @@ CVE-2022-25258: Fix not seen in stream CVE-2022-25265: Fix unknown CVE-2022-25375: Fix not seen in stream -CVE-2022-25636: Fix not seen in stream CVE-2022-26490: Fix not seen in stream -CVE-2022-26878: Fix unknown CVE-2022-26966: Fix not seen in stream CVE-2022-27223: Fix not seen in stream CVE-2022-27666: Fix not seen in stream -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fix not seen in stream CVE-2022-28388: Fix not seen in stream CVE-2022-28389: Fix not seen in stream CVE-2022-28390: Fix not seen in stream -CVE-2022-28796: Fix not seen in stream -CVE-2022-28893: Fix not seen in stream -CVE-2022-29156: Fix not seen in stream CVE-2022-29581: Fix not seen in stream -CVE-2022-29582: Fix not seen in stream -CVE-2022-29968: Fix not seen in stream CVE-2022-30594: Fix not seen in stream +CVE-2022-32250: Fix not seen in stream CVE-2022-32296: Fix not seen in stream CVE-2022-32981: Fix not seen in stream +CVE-2022-33981: Fix not seen in stream +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/5.0/5.0_security.txt b/data/5.0/5.0_security.txt index 0e5f028..637b530 100644 --- a/data/5.0/5.0_security.txt +++ b/data/5.0/5.0_security.txt
@@ -122,7 +122,7 @@ CVE-2018-17977: (unk) CVE-2019-0136: (unk) mac80211: drop robust management frames from unknown TA CVE-2019-0145: (unk) i40e: add num_vectors checker in iwarp handler - CVE-2019-0146: (unk) + CVE-2019-0146: (unk) i40e: add num_vectors checker in iwarp handler CVE-2019-0147: (unk) i40e: add num_vectors checker in iwarp handler CVE-2019-0148: (unk) i40e: Wrong truncation from u16 to u8 CVE-2019-0149: (unk) i40e: Add bounds check for ch[] array @@ -424,7 +424,7 @@ CVE-2020-26145: (unk) ath10k: drop fragments with multicast DA for PCIe CVE-2020-26147: (unk) mac80211: assure all fragments are encrypted CVE-2020-26541: (unk) certs: Add EFI_CERT_X509_GUID support for dbx entries - CVE-2020-26555: (unk) + CVE-2020-26555: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26558: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical @@ -484,7 +484,6 @@ CVE-2021-0512: (unk) HID: make arrays usage and value to be the same CVE-2021-0605: (unk) af_key: pfkey_dump needs parameter validation CVE-2021-0695: (unk) - CVE-2021-0707: (unk) dmabuf: fix use-after-free of dmabuf's file->f_inode CVE-2021-0920: (unk) af_unix: fix garbage collect vs MSG_PEEK CVE-2021-0929: (unk) staging/android/ion: delete dma_buf->kmap/unmap implemenation CVE-2021-0937: (unk) netfilter: x_tables: fix compat match/target pad out-of-bound write @@ -537,7 +536,6 @@ CVE-2021-33034: (unk) Bluetooth: verify AMP hci_chan before amp_destroy CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality CVE-2021-33098: (unk) ixgbe: fix large MTU request from VF - CVE-2021-33135: (unk) CVE-2021-3347: (unk) futex: Ensure the correct return value from futex_lock_pi() CVE-2021-3348: (unk) nbd: freeze the queue while we're adding connections CVE-2021-33624: (unk) bpf: Inherit expanded/patched seen count from old aux data @@ -607,7 +605,6 @@ CVE-2021-40490: (unk) ext4: fix race writing to an inline_data file while its xattrs are changing CVE-2021-4083: (unk) fget: check that the fd still exists after getting a ref to it CVE-2021-4135: (unk) netdevsim: Zero-initialize memory for new map's value in function nsim_bpf_map_alloc - CVE-2021-4148: (unk) mm: khugepaged: skip huge page collapse for special files CVE-2021-4149: (unk) btrfs: unlock newly allocated extent buffer after error CVE-2021-4150: (unk) block: fix incorrect references to disk objects CVE-2021-4155: (unk) xfs: map unwritten blocks in XFS_IOC_{ALLOC,FREE}SP just like fallocate @@ -634,7 +631,6 @@ CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() - CVE-2022-0171: (unk) CVE-2022-0322: (unk) sctp: account stream padding length for reconf chunk CVE-2022-0330: (unk) drm/i915: Flush TLBs before releasing backing store CVE-2022-0382: (unk) net ticp:fix a kernel-infoleak in __tipc_sendmsg() @@ -644,30 +640,20 @@ CVE-2022-0487: (unk) moxart: fix potential use-after-free on remove path CVE-2022-0492: (unk) cgroup-v1: Require capabilities to set release_agent CVE-2022-0494: (unk) block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern - CVE-2022-0500: (unk) bpf: Introduce MEM_RDONLY flag CVE-2022-0617: (unk) udf: Fix NULL ptr deref when converting from inline format CVE-2022-0644: (unk) vfs: check fd has read access in kernel_read_file_from_fd() - CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() CVE-2022-0812: (unk) xprtrdma: fix incorrect header size calculations CVE-2022-0850: (unk) ext4: fix kernel infoleak via ext4_extent_header - CVE-2022-0854: (unk) swiotlb: rework "fix info leak with DMA_FROM_DEVICE" - CVE-2022-0995: (unk) watch_queue: Fix filter limit check - CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling CVE-2022-1011: (unk) fuse: fix pipe buffer lifetime for direct_io CVE-2022-1012: (unk) secure_seq: use the 64 bits of the siphash for port offset calculation - CVE-2022-1015: (unk) netfilter: nf_tables: validate registers coming from userspace. CVE-2022-1016: (unk) netfilter: nf_tables: initialize registers in nft_do_chain() - CVE-2022-1043: (unk) io_uring: fix xa_alloc_cycle() error return value check CVE-2022-1048: (unk) ALSA: pcm: Fix races among concurrent hw_params and hw_free calls - CVE-2022-1055: (unk) net: sched: fix use-after-free in tc_new_tfilter() CVE-2022-1116: (unk) - CVE-2022-1158: (unk) KVM: x86/mmu: do compare-and-exchange of gPTE via the user address - CVE-2022-1184: (unk) + CVE-2022-1184: (unk) ext4: verify dir block before splitting it CVE-2022-1195: (unk) hamradio: improve the incomplete fix to avoid NPD CVE-2022-1198: (unk) drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() CVE-2022-1199: (unk) ax25: Fix NULL pointer dereference in ax25_kill_by_device CVE-2022-1204: (unk) ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: (unk) ax25: Fix NULL pointer dereferences in ax25 timers CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector @@ -675,35 +661,25 @@ CVE-2022-1419: (unk) drm/vgem: Close use-after-free race in vgem_gem_create CVE-2022-1462: (unk) CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters - CVE-2022-1516: (unk) net/x25: Fix null-ptr-deref caused by x25_disconnect - CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) - CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c + CVE-2022-1652: (unk) floppy: use a statically allocated error counter CVE-2022-1679: (unk) CVE-2022-1729: (unk) perf: Fix sys_perf_event_open() race against self CVE-2022-1734: (unk) nfc: nfcmrvl: main: reorder destructive operations in nfcmrvl_nci_unregister_dev to avoid bugs CVE-2022-1786: (unk) io_uring: remove io_identity CVE-2022-1789: (unk) KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID CVE-2022-1836: (unk) floppy: disable FDRAWCMD by default - CVE-2022-1852: (unk) KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse CVE-2022-1966: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier - CVE-2022-1972: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay CVE-2022-1974: (unk) nfc: replace improper check device_is_registered() in netlink related functions CVE-2022-1975: (unk) NFC: netlink: fix sleep in atomic bug when firmware download timeout - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking - CVE-2022-1998: (unk) fanotify: Fix stale file descriptor in copy_event_to_user() CVE-2022-20008: (unk) mmc: block: fix read single on recovery logic CVE-2022-20132: (unk) HID: add hid_is_usb() function to make it simpler for USB detection CVE-2022-20141: (unk) igmp: Add ip_mc_list lock in ip_check_mc_rcu CVE-2022-20148: (unk) f2fs: fix UAF in f2fs_available_free_memory - CVE-2022-20153: (unk) io_uring: return back safer resurrect CVE-2022-20154: (unk) sctp: use call_rcu to free endpoint CVE-2022-20166: (unk) drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions - CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-21499: (unk) lockdown: also lock down previous kgdb use + CVE-2022-2153: (unk) KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-22942: (unk) drm/vmwgfx: Fix stale file descriptors on failed usercopy CVE-2022-23036: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23037: (unk) xen/netfront: don't use gnttab_query_foreign_access() for mapped status @@ -720,23 +696,19 @@ CVE-2022-25258: (unk) USB: gadget: validate interface OS descriptor requests CVE-2022-25265: (unk) CVE-2022-25375: (unk) usb: gadget: rndis: check size of RNDIS_MSG_SET command - CVE-2022-25636: (unk) netfilter: nf_tables_offload: incorrect flow offload action array size CVE-2022-26490: (unk) nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION - CVE-2022-26878: (unk) CVE-2022-26966: (unk) sr9700: sanity check for packet length CVE-2022-27223: (unk) USB: gadget: validate endpoint index for xilinx udc CVE-2022-27666: (unk) esp: Fix possible buffer overflow in ESP transformation - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe CVE-2022-28356: (unk) llc: fix netdevice reference leaks in llc_ui_bind() CVE-2022-28388: (unk) can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path CVE-2022-28389: (unk) can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: (unk) can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race - CVE-2022-28893: (unk) SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() - CVE-2022-29156: (unk) RDMA/rtrs-clt: Fix possible double free in error case CVE-2022-29581: (unk) net/sched: cls_u32: fix netns refcount changes in u32_change() - CVE-2022-29582: (unk) io_uring: fix race between timeout flush and removal - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb CVE-2022-30594: (unk) ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE + CVE-2022-32250: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 CVE-2022-32981: (unk) powerpc/32: Fix overread/overwrite of thread_struct via ptrace + CVE-2022-33981: (unk) floppy: disable FDRAWCMD by default + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/5.1/5.1_CVEs.txt b/data/5.1/5.1_CVEs.txt index 8ec5da3..108ac7f 100644 --- a/data/5.1/5.1_CVEs.txt +++ b/data/5.1/5.1_CVEs.txt
@@ -23,7 +23,7 @@ CVE-2018-17977: Fix unknown CVE-2019-0136: Fixed with 5.1.15 CVE-2019-0145: Fix not seen in stream -CVE-2019-0146: Fix unknown +CVE-2019-0146: Fix not seen in stream CVE-2019-0147: Fix not seen in stream CVE-2019-0148: Fix not seen in stream CVE-2019-0149: Fix not seen in stream @@ -337,7 +337,7 @@ CVE-2020-26145: Fix not seen in stream CVE-2020-26147: Fix not seen in stream CVE-2020-26541: Fix not seen in stream -CVE-2020-26555: Fix unknown +CVE-2020-26555: Fix not seen in stream CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26558: Fix not seen in stream @@ -400,7 +400,6 @@ CVE-2021-0512: Fix not seen in stream CVE-2021-0605: Fix not seen in stream CVE-2021-0695: Fix unknown -CVE-2021-0707: Fix not seen in stream CVE-2021-0920: Fix not seen in stream CVE-2021-0929: Fix not seen in stream CVE-2021-0937: Fix not seen in stream @@ -454,7 +453,6 @@ CVE-2021-33034: Fix not seen in stream CVE-2021-33061: Fix not seen in stream CVE-2021-33098: Fix not seen in stream -CVE-2021-33135: Fix unknown CVE-2021-3347: Fix not seen in stream CVE-2021-3348: Fix not seen in stream CVE-2021-33624: Fix not seen in stream @@ -524,7 +522,6 @@ CVE-2021-40490: Fix not seen in stream CVE-2021-4083: Fix not seen in stream CVE-2021-4135: Fix not seen in stream -CVE-2021-4148: Fix not seen in stream CVE-2021-4149: Fix not seen in stream CVE-2021-4150: Fix not seen in stream CVE-2021-4154: Fix not seen in stream @@ -552,7 +549,6 @@ CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream -CVE-2022-0171: Fix unknown CVE-2022-0185: Fix not seen in stream CVE-2022-0322: Fix not seen in stream CVE-2022-0330: Fix not seen in stream @@ -563,30 +559,21 @@ CVE-2022-0487: Fix not seen in stream CVE-2022-0492: Fix not seen in stream CVE-2022-0494: Fix not seen in stream -CVE-2022-0500: Fix not seen in stream CVE-2022-0617: Fix not seen in stream CVE-2022-0644: Fix not seen in stream -CVE-2022-0742: Fix not seen in stream CVE-2022-0812: Fix not seen in stream CVE-2022-0850: Fix not seen in stream -CVE-2022-0854: Fix not seen in stream -CVE-2022-0995: Fix not seen in stream -CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fix not seen in stream CVE-2022-1012: Fix not seen in stream -CVE-2022-1015: Fix not seen in stream CVE-2022-1016: Fix not seen in stream -CVE-2022-1043: Fix not seen in stream CVE-2022-1048: Fix not seen in stream CVE-2022-1055: Fix not seen in stream CVE-2022-1116: Fix unknown -CVE-2022-1158: Fix not seen in stream -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fix not seen in stream CVE-2022-1195: Fix not seen in stream CVE-2022-1198: Fix not seen in stream CVE-2022-1199: Fix not seen in stream CVE-2022-1204: Fix not seen in stream -CVE-2022-1205: Fix not seen in stream CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream @@ -594,35 +581,25 @@ CVE-2022-1419: Fix not seen in stream CVE-2022-1462: Fix unknown CVE-2022-1508: Fix not seen in stream -CVE-2022-1516: Fix not seen in stream -CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown -CVE-2022-1671: Fix not seen in stream +CVE-2022-1652: Fix not seen in stream CVE-2022-1679: Fix unknown CVE-2022-1729: Fix not seen in stream CVE-2022-1734: Fix not seen in stream CVE-2022-1786: Fix not seen in stream CVE-2022-1789: Fix not seen in stream CVE-2022-1836: Fix not seen in stream -CVE-2022-1852: Fix not seen in stream CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fix not seen in stream -CVE-2022-1972: Fix not seen in stream -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fix not seen in stream CVE-2022-1975: Fix not seen in stream -CVE-2022-1976: Fix not seen in stream -CVE-2022-1998: Fix not seen in stream CVE-2022-20008: Fix not seen in stream CVE-2022-20132: Fix not seen in stream CVE-2022-20141: Fix not seen in stream CVE-2022-20148: Fix not seen in stream -CVE-2022-20153: Fix not seen in stream CVE-2022-20154: Fix not seen in stream CVE-2022-20166: Fix not seen in stream -CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fix not seen in stream +CVE-2022-2153: Fix not seen in stream CVE-2022-22942: Fix not seen in stream CVE-2022-23036: Fix not seen in stream CVE-2022-23037: Fix not seen in stream @@ -639,23 +616,20 @@ CVE-2022-25258: Fix not seen in stream CVE-2022-25265: Fix unknown CVE-2022-25375: Fix not seen in stream -CVE-2022-25636: Fix not seen in stream CVE-2022-26490: Fix not seen in stream -CVE-2022-26878: Fix unknown CVE-2022-26966: Fix not seen in stream CVE-2022-27223: Fix not seen in stream CVE-2022-27666: Fix not seen in stream -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fix not seen in stream CVE-2022-28388: Fix not seen in stream CVE-2022-28389: Fix not seen in stream CVE-2022-28390: Fix not seen in stream -CVE-2022-28796: Fix not seen in stream CVE-2022-28893: Fix not seen in stream -CVE-2022-29156: Fix not seen in stream CVE-2022-29581: Fix not seen in stream -CVE-2022-29582: Fix not seen in stream -CVE-2022-29968: Fix not seen in stream CVE-2022-30594: Fix not seen in stream +CVE-2022-32250: Fix not seen in stream CVE-2022-32296: Fix not seen in stream CVE-2022-32981: Fix not seen in stream +CVE-2022-33981: Fix not seen in stream +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/5.1/5.1_security.txt b/data/5.1/5.1_security.txt index 7f0b5af..dd78acd 100644 --- a/data/5.1/5.1_security.txt +++ b/data/5.1/5.1_security.txt
@@ -102,7 +102,7 @@ CVE-2018-12931: (unk) CVE-2018-17977: (unk) CVE-2019-0145: (unk) i40e: add num_vectors checker in iwarp handler - CVE-2019-0146: (unk) + CVE-2019-0146: (unk) i40e: add num_vectors checker in iwarp handler CVE-2019-0147: (unk) i40e: add num_vectors checker in iwarp handler CVE-2019-0148: (unk) i40e: Wrong truncation from u16 to u8 CVE-2019-0149: (unk) i40e: Add bounds check for ch[] array @@ -373,7 +373,7 @@ CVE-2020-26145: (unk) ath10k: drop fragments with multicast DA for PCIe CVE-2020-26147: (unk) mac80211: assure all fragments are encrypted CVE-2020-26541: (unk) certs: Add EFI_CERT_X509_GUID support for dbx entries - CVE-2020-26555: (unk) + CVE-2020-26555: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26558: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical @@ -436,7 +436,6 @@ CVE-2021-0512: (unk) HID: make arrays usage and value to be the same CVE-2021-0605: (unk) af_key: pfkey_dump needs parameter validation CVE-2021-0695: (unk) - CVE-2021-0707: (unk) dmabuf: fix use-after-free of dmabuf's file->f_inode CVE-2021-0920: (unk) af_unix: fix garbage collect vs MSG_PEEK CVE-2021-0929: (unk) staging/android/ion: delete dma_buf->kmap/unmap implemenation CVE-2021-0937: (unk) netfilter: x_tables: fix compat match/target pad out-of-bound write @@ -490,7 +489,6 @@ CVE-2021-33034: (unk) Bluetooth: verify AMP hci_chan before amp_destroy CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality CVE-2021-33098: (unk) ixgbe: fix large MTU request from VF - CVE-2021-33135: (unk) CVE-2021-3347: (unk) futex: Ensure the correct return value from futex_lock_pi() CVE-2021-3348: (unk) nbd: freeze the queue while we're adding connections CVE-2021-33624: (unk) bpf: Inherit expanded/patched seen count from old aux data @@ -560,7 +558,6 @@ CVE-2021-40490: (unk) ext4: fix race writing to an inline_data file while its xattrs are changing CVE-2021-4083: (unk) fget: check that the fd still exists after getting a ref to it CVE-2021-4135: (unk) netdevsim: Zero-initialize memory for new map's value in function nsim_bpf_map_alloc - CVE-2021-4148: (unk) mm: khugepaged: skip huge page collapse for special files CVE-2021-4149: (unk) btrfs: unlock newly allocated extent buffer after error CVE-2021-4150: (unk) block: fix incorrect references to disk objects CVE-2021-4154: (unk) cgroup: verify that source is a string @@ -588,7 +585,6 @@ CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() - CVE-2022-0171: (unk) CVE-2022-0185: (unk) vfs: fs_context: fix up param length parsing in legacy_parse_param CVE-2022-0322: (unk) sctp: account stream padding length for reconf chunk CVE-2022-0330: (unk) drm/i915: Flush TLBs before releasing backing store @@ -599,30 +595,21 @@ CVE-2022-0487: (unk) moxart: fix potential use-after-free on remove path CVE-2022-0492: (unk) cgroup-v1: Require capabilities to set release_agent CVE-2022-0494: (unk) block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern - CVE-2022-0500: (unk) bpf: Introduce MEM_RDONLY flag CVE-2022-0617: (unk) udf: Fix NULL ptr deref when converting from inline format CVE-2022-0644: (unk) vfs: check fd has read access in kernel_read_file_from_fd() - CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() CVE-2022-0812: (unk) xprtrdma: fix incorrect header size calculations CVE-2022-0850: (unk) ext4: fix kernel infoleak via ext4_extent_header - CVE-2022-0854: (unk) swiotlb: rework "fix info leak with DMA_FROM_DEVICE" - CVE-2022-0995: (unk) watch_queue: Fix filter limit check - CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling CVE-2022-1011: (unk) fuse: fix pipe buffer lifetime for direct_io CVE-2022-1012: (unk) secure_seq: use the 64 bits of the siphash for port offset calculation - CVE-2022-1015: (unk) netfilter: nf_tables: validate registers coming from userspace. CVE-2022-1016: (unk) netfilter: nf_tables: initialize registers in nft_do_chain() - CVE-2022-1043: (unk) io_uring: fix xa_alloc_cycle() error return value check CVE-2022-1048: (unk) ALSA: pcm: Fix races among concurrent hw_params and hw_free calls CVE-2022-1055: (unk) net: sched: fix use-after-free in tc_new_tfilter() CVE-2022-1116: (unk) - CVE-2022-1158: (unk) KVM: x86/mmu: do compare-and-exchange of gPTE via the user address - CVE-2022-1184: (unk) + CVE-2022-1184: (unk) ext4: verify dir block before splitting it CVE-2022-1195: (unk) hamradio: improve the incomplete fix to avoid NPD CVE-2022-1198: (unk) drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() CVE-2022-1199: (unk) ax25: Fix NULL pointer dereference in ax25_kill_by_device CVE-2022-1204: (unk) ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: (unk) ax25: Fix NULL pointer dereferences in ax25 timers CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector @@ -630,35 +617,25 @@ CVE-2022-1419: (unk) drm/vgem: Close use-after-free race in vgem_gem_create CVE-2022-1462: (unk) CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters - CVE-2022-1516: (unk) net/x25: Fix null-ptr-deref caused by x25_disconnect - CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) - CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c + CVE-2022-1652: (unk) floppy: use a statically allocated error counter CVE-2022-1679: (unk) CVE-2022-1729: (unk) perf: Fix sys_perf_event_open() race against self CVE-2022-1734: (unk) nfc: nfcmrvl: main: reorder destructive operations in nfcmrvl_nci_unregister_dev to avoid bugs CVE-2022-1786: (unk) io_uring: remove io_identity CVE-2022-1789: (unk) KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID CVE-2022-1836: (unk) floppy: disable FDRAWCMD by default - CVE-2022-1852: (unk) KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse CVE-2022-1966: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier - CVE-2022-1972: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay CVE-2022-1974: (unk) nfc: replace improper check device_is_registered() in netlink related functions CVE-2022-1975: (unk) NFC: netlink: fix sleep in atomic bug when firmware download timeout - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking - CVE-2022-1998: (unk) fanotify: Fix stale file descriptor in copy_event_to_user() CVE-2022-20008: (unk) mmc: block: fix read single on recovery logic CVE-2022-20132: (unk) HID: add hid_is_usb() function to make it simpler for USB detection CVE-2022-20141: (unk) igmp: Add ip_mc_list lock in ip_check_mc_rcu CVE-2022-20148: (unk) f2fs: fix UAF in f2fs_available_free_memory - CVE-2022-20153: (unk) io_uring: return back safer resurrect CVE-2022-20154: (unk) sctp: use call_rcu to free endpoint CVE-2022-20166: (unk) drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions - CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-21499: (unk) lockdown: also lock down previous kgdb use + CVE-2022-2153: (unk) KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-22942: (unk) drm/vmwgfx: Fix stale file descriptors on failed usercopy CVE-2022-23036: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23037: (unk) xen/netfront: don't use gnttab_query_foreign_access() for mapped status @@ -675,23 +652,20 @@ CVE-2022-25258: (unk) USB: gadget: validate interface OS descriptor requests CVE-2022-25265: (unk) CVE-2022-25375: (unk) usb: gadget: rndis: check size of RNDIS_MSG_SET command - CVE-2022-25636: (unk) netfilter: nf_tables_offload: incorrect flow offload action array size CVE-2022-26490: (unk) nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION - CVE-2022-26878: (unk) CVE-2022-26966: (unk) sr9700: sanity check for packet length CVE-2022-27223: (unk) USB: gadget: validate endpoint index for xilinx udc CVE-2022-27666: (unk) esp: Fix possible buffer overflow in ESP transformation - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe CVE-2022-28356: (unk) llc: fix netdevice reference leaks in llc_ui_bind() CVE-2022-28388: (unk) can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path CVE-2022-28389: (unk) can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: (unk) can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race CVE-2022-28893: (unk) SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() - CVE-2022-29156: (unk) RDMA/rtrs-clt: Fix possible double free in error case CVE-2022-29581: (unk) net/sched: cls_u32: fix netns refcount changes in u32_change() - CVE-2022-29582: (unk) io_uring: fix race between timeout flush and removal - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb CVE-2022-30594: (unk) ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE + CVE-2022-32250: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 CVE-2022-32981: (unk) powerpc/32: Fix overread/overwrite of thread_struct via ptrace + CVE-2022-33981: (unk) floppy: disable FDRAWCMD by default + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/5.10/5.10_CVEs.txt b/data/5.10/5.10_CVEs.txt index 77287d1..57a6743 100644 --- a/data/5.10/5.10_CVEs.txt +++ b/data/5.10/5.10_CVEs.txt
@@ -17,7 +17,6 @@ CVE-2018-12930: Fix unknown CVE-2018-12931: Fix unknown CVE-2018-17977: Fix unknown -CVE-2019-0146: Fix unknown CVE-2019-12456: Fix unknown CVE-2019-15239: Fix not seen in stream CVE-2019-15290: Fix unknown @@ -56,7 +55,7 @@ CVE-2020-26145: Fixed with 5.10.42 CVE-2020-26147: Fixed with 5.10.42 CVE-2020-26541: Fixed with 5.10.47 -CVE-2020-26555: Fix unknown +CVE-2020-26555: Fixed with 5.10.40 CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26558: Fixed with 5.10.40 @@ -138,7 +137,6 @@ CVE-2021-33034: Fixed with 5.10.37 CVE-2021-33061: Fix not seen in stream CVE-2021-33098: Fixed with 5.10.42 -CVE-2021-33135: Fix unknown CVE-2021-3347: Fixed with 5.10.12 CVE-2021-3348: Fixed with 5.10.13 CVE-2021-33624: Fixed with 5.10.46 @@ -252,7 +250,7 @@ CVE-2022-0001: Fixed with 5.10.105 CVE-2022-0002: Fixed with 5.10.105 CVE-2022-0168: Fixed with 5.10.110 -CVE-2022-0171: Fix unknown +CVE-2022-0171: Fix not seen in stream CVE-2022-0185: Fixed with 5.10.93 CVE-2022-0286: Fixed with 5.10.54 CVE-2022-0322: Fixed with 5.10.75 @@ -268,27 +266,22 @@ CVE-2022-0516: Fixed with 5.10.100 CVE-2022-0617: Fixed with 5.10.96 CVE-2022-0644: Fixed with 5.10.76 -CVE-2022-0742: Fix not seen in stream CVE-2022-0847: Fixed with 5.10.102 CVE-2022-0850: Fixed with 5.10.50 -CVE-2022-0854: Fixed with 5.10.118 CVE-2022-0995: Fixed with 5.10.106 CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fixed with 5.10.106 CVE-2022-1012: Fixed with 5.10.119 -CVE-2022-1015: Fix not seen in stream CVE-2022-1016: Fixed with 5.10.109 -CVE-2022-1043: Fixed with 5.10.61 CVE-2022-1048: Fixed with 5.10.109 CVE-2022-1055: Fixed with 5.10.97 CVE-2022-1116: Fix unknown CVE-2022-1158: Fixed with 5.10.110 -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fixed with 5.10.121 CVE-2022-1195: Fixed with 5.10.89 CVE-2022-1198: Fixed with 5.10.110 CVE-2022-1199: Fixed with 5.10.106 CVE-2022-1204: Fixed with 5.10.112 -CVE-2022-1205: Fixed with 5.10.112 CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream @@ -296,33 +289,26 @@ CVE-2022-1462: Fix unknown CVE-2022-1508: Fix not seen in stream CVE-2022-1516: Fixed with 5.10.110 -CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown -CVE-2022-1671: Fix not seen in stream +CVE-2022-1652: Fixed with 5.10.118 CVE-2022-1679: Fix unknown CVE-2022-1729: Fixed with 5.10.118 CVE-2022-1734: Fixed with 5.10.115 CVE-2022-1786: Fixed with 5.10.117 CVE-2022-1789: Fixed with 5.10.119 CVE-2022-1836: Fixed with 5.10.114 -CVE-2022-1852: Fixed with 5.10.120 CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fixed with 5.10.120 CVE-2022-1972: Fixed with 5.10.120 -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fixed with 5.10.115 CVE-2022-1975: Fixed with 5.10.115 -CVE-2022-1976: Fix not seen in stream -CVE-2022-1998: Fixed with 5.10.97 CVE-2022-20008: Fixed with 5.10.102 CVE-2022-20132: Fixed with 5.10.85 CVE-2022-20141: Fixed with 5.10.64 CVE-2022-20148: Fix not seen in stream -CVE-2022-20153: Fixed with 5.10.107 CVE-2022-20154: Fixed with 5.10.90 CVE-2022-2078: Fixed with 5.10.120 CVE-2022-21499: Fixed with 5.10.119 +CVE-2022-2153: Fix not seen in stream CVE-2022-22942: Fixed with 5.10.95 CVE-2022-23036: Fixed with 5.10.105 CVE-2022-23037: Fixed with 5.10.105 @@ -341,21 +327,20 @@ CVE-2022-25375: Fixed with 5.10.101 CVE-2022-25636: Fixed with 5.10.103 CVE-2022-26490: Fixed with 5.10.109 -CVE-2022-26878: Fix unknown CVE-2022-26966: Fixed with 5.10.103 CVE-2022-27223: Fixed with 5.10.103 CVE-2022-27666: Fixed with 5.10.108 -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fixed with 5.10.109 CVE-2022-28388: Fixed with 5.10.110 CVE-2022-28389: Fixed with 5.10.110 CVE-2022-28390: Fixed with 5.10.110 -CVE-2022-28796: Fix not seen in stream CVE-2022-28893: Fixed with 5.10.117 -CVE-2022-29156: Fixed with 5.10.103 CVE-2022-29581: Fixed with 5.10.113 CVE-2022-29582: Fixed with 5.10.111 -CVE-2022-29968: Fix not seen in stream CVE-2022-30594: Fixed with 5.10.110 -CVE-2022-32296: Fix not seen in stream +CVE-2022-32250: Fixed with 5.10.120 +CVE-2022-32296: Fixed with 5.10.125 CVE-2022-32981: Fixed with 5.10.122 +CVE-2022-33981: Fixed with 5.10.114 +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/5.10/5.10_security.txt b/data/5.10/5.10_security.txt index 523486d..44300a4 100644 --- a/data/5.10/5.10_security.txt +++ b/data/5.10/5.10_security.txt
@@ -131,6 +131,7 @@ CVE-2021-4157: 1fbea60ea658ab887fb899532d783732b04e53e6 pNFS/flexfiles: fix incorrect size check in decode_nfs_fh() CVEs fixed in 5.10.40: + CVE-2020-26555: d8d261c7cfb3a5dd921b4aeeb944718afc3f3961 Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26558: d8d261c7cfb3a5dd921b4aeeb944718afc3f3961 Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2021-0129: d8d261c7cfb3a5dd921b4aeeb944718afc3f3961 Bluetooth: SMP: Fail if remote and local public keys are identical @@ -207,7 +208,6 @@ CVEs fixed in 5.10.61: CVE-2020-3702: 8f05076983ddeaae1165457b6aa4eca9fe0e5498 ath: Use safer key clearing with key cache entries CVE-2021-42008: 85e0518f181a0ff060f5543d2655fb841a83d653 net: 6pack: fix slab-out-of-bounds in decode_data - CVE-2022-1043: 695ab28a7fa107d0350ab19eba8ec89fac45a95d io_uring: fix xa_alloc_cycle() error return value check CVEs fixed in 5.10.62: CVE-2021-34866: 9dd6f6d89693d8f09af53d2488afad22a8a44a57 bpf: Fix ringbuf helper function compatibility @@ -328,7 +328,6 @@ CVEs fixed in 5.10.97: CVE-2022-0492: 1fc3444cda9a78c65b769e3fa93455e09ff7a0d3 cgroup-v1: Require capabilities to set release_agent CVE-2022-1055: e7be56926397cf9d992be8913f74a76152f8f08d net: sched: fix use-after-free in tc_new_tfilter() - CVE-2022-1998: 7b4741644cf718c422187e74fb07661ef1d68e85 fanotify: Fix stale file descriptor in copy_event_to_user() CVEs fixed in 5.10.100: CVE-2022-0435: 3c7e5943553594f68bbc070683db6bb6f6e9e78e tipc: improve size validations for received domain records @@ -347,7 +346,6 @@ CVE-2022-25636: 68f19845f580a1d3ac1ef40e95b0250804e046bb netfilter: nf_tables_offload: incorrect flow offload action array size CVE-2022-26966: 4f5f5411f0c14ac0b61d5e6a77d996dd3d5b5fd3 sr9700: sanity check for packet length CVE-2022-27223: bfa8ffbaaaaf9752f66bc7cabcef2de715e7621f USB: gadget: validate endpoint index for xilinx udc - CVE-2022-29156: 8260f1800f83e667f26c80baa7f0b9d92ae271d7 RDMA/rtrs-clt: Fix possible double free in error case CVEs fixed in 5.10.104: CVE-2022-24958: c13159a588818a1d2cd6519f4d3b6f7e17a9ffbd usb: gadget: don't release an existing dev->buf @@ -370,9 +368,6 @@ CVE-2022-1011: ab5595b45f732212b3b1974041b43a257153edb7 fuse: fix pipe buffer lifetime for direct_io CVE-2022-1199: e2201ef32f933944ee02e59205adb566bafcdf91 ax25: Fix NULL pointer dereference in ax25_kill_by_device -CVEs fixed in 5.10.107: - CVE-2022-20153: dc1163203ae6e24b86168390fe5b4a3295fcba7f io_uring: return back safer resurrect - CVEs fixed in 5.10.108: CVE-2022-27666: 9248694dac20eda06e22d8503364dc9d03df4e2f esp: Fix possible buffer overflow in ESP transformation @@ -399,13 +394,13 @@ CVEs fixed in 5.10.112: CVE-2022-1204: b20a5ab0f5fb175750c6bafd4cf12daccf00c738 ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: f934fa478dd17411bc6884153dc824ff9e7505d8 ax25: Fix NULL pointer dereferences in ax25 timers CVEs fixed in 5.10.113: CVE-2022-29581: 43ce33a68e2bcc431097e1075aad5393d0bf53ba net/sched: cls_u32: fix netns refcount changes in u32_change() CVEs fixed in 5.10.114: CVE-2022-1836: 54c028cfc49624bfc27a571b94edecc79bbaaab4 floppy: disable FDRAWCMD by default + CVE-2022-33981: 54c028cfc49624bfc27a571b94edecc79bbaaab4 floppy: disable FDRAWCMD by default CVEs fixed in 5.10.115: CVE-2022-0494: a439819f4797f0846c7cffa9475f44aef23c541f block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern @@ -418,7 +413,7 @@ CVE-2022-28893: e68b60ae29de10c7bd7636e227164a8dbe305a82 SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() CVEs fixed in 5.10.118: - CVE-2022-0854: f3f2247ac31cb71d1f05f56536df5946c6652f4a swiotlb: rework "fix info leak with DMA_FROM_DEVICE" + CVE-2022-1652: 911b36267855501f7f80a75927c128c0ac03fe58 floppy: use a statically allocated error counter CVE-2022-1729: 3ee8e109c3c316073a3e0f83ec0769c7ee8a7375 perf: Fix sys_perf_event_open() race against self CVEs fixed in 5.10.119: @@ -427,14 +422,20 @@ CVE-2022-21499: a8f4d63142f947cd22fa615b8b3b8921cdaf4991 lockdown: also lock down previous kgdb use CVEs fixed in 5.10.120: - CVE-2022-1852: 3d8fc6e28f321d753ab727e3c3e740daf36a8fa3 KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1966: ea62d169b6e731e0b54abda1d692406f6bc6a696 netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-1972: c0aff1faf66b6b7a19103f83e6a5d0fdc64b9048 netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-2078: c0aff1faf66b6b7a19103f83e6a5d0fdc64b9048 netfilter: nf_tables: sanitize nft_set_desc_concat_parse() + CVE-2022-32250: ea62d169b6e731e0b54abda1d692406f6bc6a696 netfilter: nf_tables: disallow non-stateful expression in sets earlier + +CVEs fixed in 5.10.121: + CVE-2022-1184: da2f05919238c7bdc6e28c79539f55c8355408bb ext4: verify dir block before splitting it CVEs fixed in 5.10.122: CVE-2022-32981: 3be74fc0afbeadc2aff8dc69f3bf9716fbe66486 powerpc/32: Fix overread/overwrite of thread_struct via ptrace +CVEs fixed in 5.10.125: + CVE-2022-32296: 9429b75bc271b6f29e50dbb0ee0751800ff87dd9 tcp: increase source port perturb table to 2^16 + Outstanding CVEs: CVE-2005-3660: (unk) CVE-2007-3719: (unk) @@ -455,7 +456,6 @@ CVE-2018-12930: (unk) CVE-2018-12931: (unk) CVE-2018-17977: (unk) - CVE-2019-0146: (unk) CVE-2019-12456: (unk) CVE-2019-15239: (unk) unknown CVE-2019-15290: (unk) @@ -480,7 +480,6 @@ CVE-2020-26140: (unk) CVE-2020-26142: (unk) CVE-2020-26143: (unk) - CVE-2020-26555: (unk) CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26559: (unk) @@ -492,7 +491,6 @@ CVE-2021-26934: (unk) CVE-2021-32078: (unk) ARM: footbridge: remove personal server platform CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality - CVE-2021-33135: (unk) CVE-2021-3542: (unk) CVE-2021-3669: (unk) ipc: replace costly bailout check in sysvipc_find_ipc() CVE-2021-3714: (unk) @@ -508,34 +506,23 @@ CVE-2021-4150: (unk) block: fix incorrect references to disk objects CVE-2021-4204: (unk) bpf: Generalize check_ctx_reg for reuse with other types CVE-2021-44879: (unk) f2fs: fix to do sanity check on inode type during garbage collection - CVE-2022-0171: (unk) + CVE-2022-0171: (unk) KVM: SEV: add cache flush to solve SEV cache incoherency issues CVE-2022-0382: (unk) net ticp:fix a kernel-infoleak in __tipc_sendmsg() CVE-2022-0400: (unk) CVE-2022-0480: (unk) memcg: enable accounting for file lock caches CVE-2022-0500: (unk) bpf: Introduce MEM_RDONLY flag - CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling - CVE-2022-1015: (unk) netfilter: nf_tables: validate registers coming from userspace. CVE-2022-1116: (unk) - CVE-2022-1184: (unk) CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector CVE-2022-1462: (unk) CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters - CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) - CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c CVE-2022-1679: (unk) CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking CVE-2022-20148: (unk) f2fs: fix UAF in f2fs_available_free_memory + CVE-2022-2153: (unk) KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-23222: (unk) bpf: Replace PTR_TO_XXX_OR_NULL with PTR_TO_XXX | PTR_MAYBE_NULL CVE-2022-25265: (unk) - CVE-2022-26878: (unk) - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb - CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/5.11/5.11_CVEs.txt b/data/5.11/5.11_CVEs.txt index 4955753..150fd32 100644 --- a/data/5.11/5.11_CVEs.txt +++ b/data/5.11/5.11_CVEs.txt
@@ -17,7 +17,6 @@ CVE-2018-12930: Fix unknown CVE-2018-12931: Fix unknown CVE-2018-17977: Fix unknown -CVE-2019-0146: Fix unknown CVE-2019-12456: Fix unknown CVE-2019-15239: Fix not seen in stream CVE-2019-15290: Fix unknown @@ -53,7 +52,7 @@ CVE-2020-26145: Fix not seen in stream CVE-2020-26147: Fix not seen in stream CVE-2020-26541: Fix not seen in stream -CVE-2020-26555: Fix unknown +CVE-2020-26555: Fix not seen in stream CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26558: Fix not seen in stream @@ -126,7 +125,7 @@ CVE-2021-33034: Fixed with 5.11.21 CVE-2021-33061: Fix not seen in stream CVE-2021-33098: Fix not seen in stream -CVE-2021-33135: Fix unknown +CVE-2021-33135: Fix not seen in stream CVE-2021-33624: Fix not seen in stream CVE-2021-33909: Fix not seen in stream CVE-2021-3444: Fixed with 5.11.2 @@ -239,7 +238,7 @@ CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream -CVE-2022-0171: Fix unknown +CVE-2022-0171: Fix not seen in stream CVE-2022-0185: Fix not seen in stream CVE-2022-0286: Fix not seen in stream CVE-2022-0322: Fix not seen in stream @@ -255,27 +254,22 @@ CVE-2022-0516: Fix not seen in stream CVE-2022-0617: Fix not seen in stream CVE-2022-0644: Fix not seen in stream -CVE-2022-0742: Fix not seen in stream CVE-2022-0847: Fix not seen in stream CVE-2022-0850: Fix not seen in stream -CVE-2022-0854: Fix not seen in stream CVE-2022-0995: Fix not seen in stream CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fix not seen in stream CVE-2022-1012: Fix not seen in stream -CVE-2022-1015: Fix not seen in stream CVE-2022-1016: Fix not seen in stream -CVE-2022-1043: Fix not seen in stream CVE-2022-1048: Fix not seen in stream CVE-2022-1055: Fix not seen in stream CVE-2022-1116: Fix unknown CVE-2022-1158: Fix not seen in stream -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fix not seen in stream CVE-2022-1195: Fix not seen in stream CVE-2022-1198: Fix not seen in stream CVE-2022-1199: Fix not seen in stream CVE-2022-1204: Fix not seen in stream -CVE-2022-1205: Fix not seen in stream CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream @@ -283,8 +277,7 @@ CVE-2022-1462: Fix unknown CVE-2022-1508: Fix not seen in stream CVE-2022-1516: Fix not seen in stream -CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown +CVE-2022-1652: Fix not seen in stream CVE-2022-1671: Fix not seen in stream CVE-2022-1679: Fix unknown CVE-2022-1729: Fix not seen in stream @@ -292,24 +285,19 @@ CVE-2022-1786: Fix not seen in stream CVE-2022-1789: Fix not seen in stream CVE-2022-1836: Fix not seen in stream -CVE-2022-1852: Fix not seen in stream CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fix not seen in stream CVE-2022-1972: Fix not seen in stream -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fix not seen in stream CVE-2022-1975: Fix not seen in stream -CVE-2022-1976: Fix not seen in stream -CVE-2022-1998: Fix not seen in stream CVE-2022-20008: Fix not seen in stream CVE-2022-20132: Fix not seen in stream CVE-2022-20141: Fix not seen in stream CVE-2022-20148: Fix not seen in stream -CVE-2022-20153: Fix not seen in stream CVE-2022-20154: Fix not seen in stream CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fix not seen in stream +CVE-2022-2153: Fix not seen in stream CVE-2022-22942: Fix not seen in stream CVE-2022-23036: Fix not seen in stream CVE-2022-23037: Fix not seen in stream @@ -328,21 +316,20 @@ CVE-2022-25375: Fix not seen in stream CVE-2022-25636: Fix not seen in stream CVE-2022-26490: Fix not seen in stream -CVE-2022-26878: Fix unknown CVE-2022-26966: Fix not seen in stream CVE-2022-27223: Fix not seen in stream CVE-2022-27666: Fix not seen in stream -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fix not seen in stream CVE-2022-28388: Fix not seen in stream CVE-2022-28389: Fix not seen in stream CVE-2022-28390: Fix not seen in stream -CVE-2022-28796: Fix not seen in stream CVE-2022-28893: Fix not seen in stream -CVE-2022-29156: Fix not seen in stream CVE-2022-29581: Fix not seen in stream CVE-2022-29582: Fix not seen in stream -CVE-2022-29968: Fix not seen in stream CVE-2022-30594: Fix not seen in stream +CVE-2022-32250: Fix not seen in stream CVE-2022-32296: Fix not seen in stream CVE-2022-32981: Fix not seen in stream +CVE-2022-33981: Fix not seen in stream +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/5.11/5.11_security.txt b/data/5.11/5.11_security.txt index cac648e..8896516 100644 --- a/data/5.11/5.11_security.txt +++ b/data/5.11/5.11_security.txt
@@ -120,7 +120,6 @@ CVE-2018-12930: (unk) CVE-2018-12931: (unk) CVE-2018-17977: (unk) - CVE-2019-0146: (unk) CVE-2019-12456: (unk) CVE-2019-15239: (unk) unknown CVE-2019-15290: (unk) @@ -150,7 +149,7 @@ CVE-2020-26145: (unk) ath10k: drop fragments with multicast DA for PCIe CVE-2020-26147: (unk) mac80211: assure all fragments are encrypted CVE-2020-26541: (unk) certs: Add EFI_CERT_X509_GUID support for dbx entries - CVE-2020-26555: (unk) + CVE-2020-26555: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26558: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical @@ -181,7 +180,7 @@ CVE-2021-32606: (unk) can: isotp: prevent race between isotp_bind() and isotp_setsockopt() CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality CVE-2021-33098: (unk) ixgbe: fix large MTU request from VF - CVE-2021-33135: (unk) + CVE-2021-33135: (unk) x86/sgx: Free backing memory after faulting the enclave page CVE-2021-33624: (unk) bpf: Inherit expanded/patched seen count from old aux data CVE-2021-33909: (unk) seq_file: disallow extremely large seq buffer allocations CVE-2021-34556: (unk) bpf: Introduce BPF nospec instruction for mitigating Spectre v4 @@ -279,7 +278,7 @@ CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() - CVE-2022-0171: (unk) + CVE-2022-0171: (unk) KVM: SEV: add cache flush to solve SEV cache incoherency issues CVE-2022-0185: (unk) vfs: fs_context: fix up param length parsing in legacy_parse_param CVE-2022-0286: (unk) bonding: fix null dereference in bond_ipsec_add_sa() CVE-2022-0322: (unk) sctp: account stream padding length for reconf chunk @@ -295,27 +294,22 @@ CVE-2022-0516: (unk) KVM: s390: Return error on SIDA memop on normal guest CVE-2022-0617: (unk) udf: Fix NULL ptr deref when converting from inline format CVE-2022-0644: (unk) vfs: check fd has read access in kernel_read_file_from_fd() - CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() CVE-2022-0847: (unk) lib/iov_iter: initialize "flags" in new pipe_buffer CVE-2022-0850: (unk) ext4: fix kernel infoleak via ext4_extent_header - CVE-2022-0854: (unk) swiotlb: rework "fix info leak with DMA_FROM_DEVICE" CVE-2022-0995: (unk) watch_queue: Fix filter limit check CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling CVE-2022-1011: (unk) fuse: fix pipe buffer lifetime for direct_io CVE-2022-1012: (unk) secure_seq: use the 64 bits of the siphash for port offset calculation - CVE-2022-1015: (unk) netfilter: nf_tables: validate registers coming from userspace. CVE-2022-1016: (unk) netfilter: nf_tables: initialize registers in nft_do_chain() - CVE-2022-1043: (unk) io_uring: fix xa_alloc_cycle() error return value check CVE-2022-1048: (unk) ALSA: pcm: Fix races among concurrent hw_params and hw_free calls CVE-2022-1055: (unk) net: sched: fix use-after-free in tc_new_tfilter() CVE-2022-1116: (unk) CVE-2022-1158: (unk) KVM: x86/mmu: do compare-and-exchange of gPTE via the user address - CVE-2022-1184: (unk) + CVE-2022-1184: (unk) ext4: verify dir block before splitting it CVE-2022-1195: (unk) hamradio: improve the incomplete fix to avoid NPD CVE-2022-1198: (unk) drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() CVE-2022-1199: (unk) ax25: Fix NULL pointer dereference in ax25_kill_by_device CVE-2022-1204: (unk) ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: (unk) ax25: Fix NULL pointer dereferences in ax25 timers CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector @@ -323,8 +317,7 @@ CVE-2022-1462: (unk) CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters CVE-2022-1516: (unk) net/x25: Fix null-ptr-deref caused by x25_disconnect - CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) + CVE-2022-1652: (unk) floppy: use a statically allocated error counter CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c CVE-2022-1679: (unk) CVE-2022-1729: (unk) perf: Fix sys_perf_event_open() race against self @@ -332,24 +325,19 @@ CVE-2022-1786: (unk) io_uring: remove io_identity CVE-2022-1789: (unk) KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID CVE-2022-1836: (unk) floppy: disable FDRAWCMD by default - CVE-2022-1852: (unk) KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse CVE-2022-1966: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-1972: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay CVE-2022-1974: (unk) nfc: replace improper check device_is_registered() in netlink related functions CVE-2022-1975: (unk) NFC: netlink: fix sleep in atomic bug when firmware download timeout - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking - CVE-2022-1998: (unk) fanotify: Fix stale file descriptor in copy_event_to_user() CVE-2022-20008: (unk) mmc: block: fix read single on recovery logic CVE-2022-20132: (unk) HID: add hid_is_usb() function to make it simpler for USB detection CVE-2022-20141: (unk) igmp: Add ip_mc_list lock in ip_check_mc_rcu CVE-2022-20148: (unk) f2fs: fix UAF in f2fs_available_free_memory - CVE-2022-20153: (unk) io_uring: return back safer resurrect CVE-2022-20154: (unk) sctp: use call_rcu to free endpoint CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-21499: (unk) lockdown: also lock down previous kgdb use + CVE-2022-2153: (unk) KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-22942: (unk) drm/vmwgfx: Fix stale file descriptors on failed usercopy CVE-2022-23036: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23037: (unk) xen/netfront: don't use gnttab_query_foreign_access() for mapped status @@ -368,21 +356,20 @@ CVE-2022-25375: (unk) usb: gadget: rndis: check size of RNDIS_MSG_SET command CVE-2022-25636: (unk) netfilter: nf_tables_offload: incorrect flow offload action array size CVE-2022-26490: (unk) nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION - CVE-2022-26878: (unk) CVE-2022-26966: (unk) sr9700: sanity check for packet length CVE-2022-27223: (unk) USB: gadget: validate endpoint index for xilinx udc CVE-2022-27666: (unk) esp: Fix possible buffer overflow in ESP transformation - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe CVE-2022-28356: (unk) llc: fix netdevice reference leaks in llc_ui_bind() CVE-2022-28388: (unk) can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path CVE-2022-28389: (unk) can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: (unk) can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race CVE-2022-28893: (unk) SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() - CVE-2022-29156: (unk) RDMA/rtrs-clt: Fix possible double free in error case CVE-2022-29581: (unk) net/sched: cls_u32: fix netns refcount changes in u32_change() CVE-2022-29582: (unk) io_uring: fix race between timeout flush and removal - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb CVE-2022-30594: (unk) ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE + CVE-2022-32250: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 CVE-2022-32981: (unk) powerpc/32: Fix overread/overwrite of thread_struct via ptrace + CVE-2022-33981: (unk) floppy: disable FDRAWCMD by default + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/5.12/5.12_CVEs.txt b/data/5.12/5.12_CVEs.txt index bfda2d0..38aba38 100644 --- a/data/5.12/5.12_CVEs.txt +++ b/data/5.12/5.12_CVEs.txt
@@ -17,7 +17,6 @@ CVE-2018-12930: Fix unknown CVE-2018-12931: Fix unknown CVE-2018-17977: Fix unknown -CVE-2019-0146: Fix unknown CVE-2019-12456: Fix unknown CVE-2019-15239: Fix not seen in stream CVE-2019-15290: Fix unknown @@ -47,7 +46,7 @@ CVE-2020-26145: Fixed with 5.12.9 CVE-2020-26147: Fixed with 5.12.9 CVE-2020-26541: Fixed with 5.12.14 -CVE-2020-26555: Fix unknown +CVE-2020-26555: Fixed with 5.12.7 CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26558: Fixed with 5.12.7 @@ -82,7 +81,7 @@ CVE-2021-33034: Fixed with 5.12.4 CVE-2021-33061: Fix not seen in stream CVE-2021-33098: Fixed with 5.12.9 -CVE-2021-33135: Fix unknown +CVE-2021-33135: Fix not seen in stream CVE-2021-33200: Fixed with 5.12.8 CVE-2021-33624: Fixed with 5.12.13 CVE-2021-33909: Fixed with 5.12.19 @@ -189,7 +188,7 @@ CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream -CVE-2022-0171: Fix unknown +CVE-2022-0171: Fix not seen in stream CVE-2022-0185: Fix not seen in stream CVE-2022-0264: Fix not seen in stream CVE-2022-0286: Fix not seen in stream @@ -206,10 +205,8 @@ CVE-2022-0516: Fix not seen in stream CVE-2022-0617: Fix not seen in stream CVE-2022-0644: Fix not seen in stream -CVE-2022-0742: Fix not seen in stream CVE-2022-0847: Fix not seen in stream CVE-2022-0850: Fixed with 5.12.17 -CVE-2022-0854: Fix not seen in stream CVE-2022-0995: Fix not seen in stream CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fix not seen in stream @@ -221,12 +218,11 @@ CVE-2022-1055: Fix not seen in stream CVE-2022-1116: Fix unknown CVE-2022-1158: Fix not seen in stream -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fix not seen in stream CVE-2022-1195: Fix not seen in stream CVE-2022-1198: Fix not seen in stream CVE-2022-1199: Fix not seen in stream CVE-2022-1204: Fix not seen in stream -CVE-2022-1205: Fix not seen in stream CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream @@ -235,7 +231,7 @@ CVE-2022-1508: Fix not seen in stream CVE-2022-1516: Fix not seen in stream CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown +CVE-2022-1652: Fix not seen in stream CVE-2022-1671: Fix not seen in stream CVE-2022-1679: Fix unknown CVE-2022-1729: Fix not seen in stream @@ -244,14 +240,10 @@ CVE-2022-1836: Fix not seen in stream CVE-2022-1852: Fix not seen in stream CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fix not seen in stream CVE-2022-1972: Fix not seen in stream -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fix not seen in stream CVE-2022-1975: Fix not seen in stream -CVE-2022-1976: Fix not seen in stream -CVE-2022-1998: Fix not seen in stream CVE-2022-20008: Fix not seen in stream CVE-2022-20132: Fix not seen in stream CVE-2022-20141: Fix not seen in stream @@ -260,6 +252,7 @@ CVE-2022-20154: Fix not seen in stream CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fix not seen in stream +CVE-2022-2153: Fix not seen in stream CVE-2022-22942: Fix not seen in stream CVE-2022-23036: Fix not seen in stream CVE-2022-23037: Fix not seen in stream @@ -278,21 +271,21 @@ CVE-2022-25375: Fix not seen in stream CVE-2022-25636: Fix not seen in stream CVE-2022-26490: Fix not seen in stream -CVE-2022-26878: Fix unknown CVE-2022-26966: Fix not seen in stream CVE-2022-27223: Fix not seen in stream CVE-2022-27666: Fix not seen in stream -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fix not seen in stream CVE-2022-28388: Fix not seen in stream CVE-2022-28389: Fix not seen in stream CVE-2022-28390: Fix not seen in stream -CVE-2022-28796: Fix not seen in stream CVE-2022-28893: Fix not seen in stream CVE-2022-29156: Fix not seen in stream CVE-2022-29581: Fix not seen in stream CVE-2022-29582: Fix not seen in stream -CVE-2022-29968: Fix not seen in stream CVE-2022-30594: Fix not seen in stream +CVE-2022-32250: Fix not seen in stream CVE-2022-32296: Fix not seen in stream CVE-2022-32981: Fix not seen in stream +CVE-2022-33981: Fix not seen in stream +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/5.12/5.12_security.txt b/data/5.12/5.12_security.txt index 2d1347a..d7042e6 100644 --- a/data/5.12/5.12_security.txt +++ b/data/5.12/5.12_security.txt
@@ -24,6 +24,7 @@ CVE-2021-4157: 754efbbdaf4e99f9e8d9bd0ef1470ff639cdb5f4 pNFS/flexfiles: fix incorrect size check in decode_nfs_fh() CVEs fixed in 5.12.7: + CVE-2020-26555: 58cca5ec43be72a1af95f11966381e9953b0c9f5 Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26558: 58cca5ec43be72a1af95f11966381e9953b0c9f5 Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2021-0129: 58cca5ec43be72a1af95f11966381e9953b0c9f5 Bluetooth: SMP: Fail if remote and local public keys are identical @@ -102,7 +103,6 @@ CVE-2018-12930: (unk) CVE-2018-12931: (unk) CVE-2018-17977: (unk) - CVE-2019-0146: (unk) CVE-2019-12456: (unk) CVE-2019-15239: (unk) unknown CVE-2019-15290: (unk) @@ -123,7 +123,6 @@ CVE-2020-26140: (unk) CVE-2020-26142: (unk) CVE-2020-26143: (unk) - CVE-2020-26555: (unk) CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26559: (unk) @@ -147,7 +146,7 @@ CVE-2021-28715: (unk) xen/netback: don't queue unlimited number of packages CVE-2021-32078: (unk) ARM: footbridge: remove personal server platform CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality - CVE-2021-33135: (unk) + CVE-2021-33135: (unk) x86/sgx: Free backing memory after faulting the enclave page CVE-2021-34556: (unk) bpf: Introduce BPF nospec instruction for mitigating Spectre v4 CVE-2021-34866: (unk) bpf: Fix ringbuf helper function compatibility CVE-2021-3542: (unk) @@ -222,7 +221,7 @@ CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() - CVE-2022-0171: (unk) + CVE-2022-0171: (unk) KVM: SEV: add cache flush to solve SEV cache incoherency issues CVE-2022-0185: (unk) vfs: fs_context: fix up param length parsing in legacy_parse_param CVE-2022-0264: (unk) bpf: Fix kernel address leakage in atomic fetch CVE-2022-0286: (unk) bonding: fix null dereference in bond_ipsec_add_sa() @@ -239,9 +238,7 @@ CVE-2022-0516: (unk) KVM: s390: Return error on SIDA memop on normal guest CVE-2022-0617: (unk) udf: Fix NULL ptr deref when converting from inline format CVE-2022-0644: (unk) vfs: check fd has read access in kernel_read_file_from_fd() - CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() CVE-2022-0847: (unk) lib/iov_iter: initialize "flags" in new pipe_buffer - CVE-2022-0854: (unk) swiotlb: rework "fix info leak with DMA_FROM_DEVICE" CVE-2022-0995: (unk) watch_queue: Fix filter limit check CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling CVE-2022-1011: (unk) fuse: fix pipe buffer lifetime for direct_io @@ -253,12 +250,11 @@ CVE-2022-1055: (unk) net: sched: fix use-after-free in tc_new_tfilter() CVE-2022-1116: (unk) CVE-2022-1158: (unk) KVM: x86/mmu: do compare-and-exchange of gPTE via the user address - CVE-2022-1184: (unk) + CVE-2022-1184: (unk) ext4: verify dir block before splitting it CVE-2022-1195: (unk) hamradio: improve the incomplete fix to avoid NPD CVE-2022-1198: (unk) drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() CVE-2022-1199: (unk) ax25: Fix NULL pointer dereference in ax25_kill_by_device CVE-2022-1204: (unk) ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: (unk) ax25: Fix NULL pointer dereferences in ax25 timers CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector @@ -267,7 +263,7 @@ CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters CVE-2022-1516: (unk) net/x25: Fix null-ptr-deref caused by x25_disconnect CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) + CVE-2022-1652: (unk) floppy: use a statically allocated error counter CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c CVE-2022-1679: (unk) CVE-2022-1729: (unk) perf: Fix sys_perf_event_open() race against self @@ -276,14 +272,10 @@ CVE-2022-1836: (unk) floppy: disable FDRAWCMD by default CVE-2022-1852: (unk) KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse CVE-2022-1966: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-1972: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay CVE-2022-1974: (unk) nfc: replace improper check device_is_registered() in netlink related functions CVE-2022-1975: (unk) NFC: netlink: fix sleep in atomic bug when firmware download timeout - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking - CVE-2022-1998: (unk) fanotify: Fix stale file descriptor in copy_event_to_user() CVE-2022-20008: (unk) mmc: block: fix read single on recovery logic CVE-2022-20132: (unk) HID: add hid_is_usb() function to make it simpler for USB detection CVE-2022-20141: (unk) igmp: Add ip_mc_list lock in ip_check_mc_rcu @@ -292,6 +284,7 @@ CVE-2022-20154: (unk) sctp: use call_rcu to free endpoint CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-21499: (unk) lockdown: also lock down previous kgdb use + CVE-2022-2153: (unk) KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-22942: (unk) drm/vmwgfx: Fix stale file descriptors on failed usercopy CVE-2022-23036: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23037: (unk) xen/netfront: don't use gnttab_query_foreign_access() for mapped status @@ -310,21 +303,21 @@ CVE-2022-25375: (unk) usb: gadget: rndis: check size of RNDIS_MSG_SET command CVE-2022-25636: (unk) netfilter: nf_tables_offload: incorrect flow offload action array size CVE-2022-26490: (unk) nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION - CVE-2022-26878: (unk) CVE-2022-26966: (unk) sr9700: sanity check for packet length CVE-2022-27223: (unk) USB: gadget: validate endpoint index for xilinx udc CVE-2022-27666: (unk) esp: Fix possible buffer overflow in ESP transformation - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe CVE-2022-28356: (unk) llc: fix netdevice reference leaks in llc_ui_bind() CVE-2022-28388: (unk) can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path CVE-2022-28389: (unk) can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: (unk) can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race CVE-2022-28893: (unk) SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() CVE-2022-29156: (unk) RDMA/rtrs-clt: Fix possible double free in error case CVE-2022-29581: (unk) net/sched: cls_u32: fix netns refcount changes in u32_change() CVE-2022-29582: (unk) io_uring: fix race between timeout flush and removal - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb CVE-2022-30594: (unk) ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE + CVE-2022-32250: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 CVE-2022-32981: (unk) powerpc/32: Fix overread/overwrite of thread_struct via ptrace + CVE-2022-33981: (unk) floppy: disable FDRAWCMD by default + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/5.13/5.13_CVEs.txt b/data/5.13/5.13_CVEs.txt index 1f76e56..f62a64c 100644 --- a/data/5.13/5.13_CVEs.txt +++ b/data/5.13/5.13_CVEs.txt
@@ -17,7 +17,6 @@ CVE-2018-12930: Fix unknown CVE-2018-12931: Fix unknown CVE-2018-17977: Fix unknown -CVE-2019-0146: Fix unknown CVE-2019-12456: Fix unknown CVE-2019-15239: Fix not seen in stream CVE-2019-15290: Fix unknown @@ -38,7 +37,6 @@ CVE-2020-26140: Fix unknown CVE-2020-26142: Fix unknown CVE-2020-26143: Fix unknown -CVE-2020-26555: Fix unknown CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26559: Fix unknown @@ -62,7 +60,7 @@ CVE-2021-28714: Fix not seen in stream CVE-2021-28715: Fix not seen in stream CVE-2021-33061: Fix not seen in stream -CVE-2021-33135: Fix unknown +CVE-2021-33135: Fix not seen in stream CVE-2021-33909: Fixed with 5.13.4 CVE-2021-34556: Fixed with 5.13.8 CVE-2021-34866: Fixed with 5.13.14 @@ -152,7 +150,7 @@ CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream -CVE-2022-0171: Fix unknown +CVE-2022-0171: Fix not seen in stream CVE-2022-0185: Fix not seen in stream CVE-2022-0264: Fix not seen in stream CVE-2022-0286: Fixed with 5.13.6 @@ -172,7 +170,6 @@ CVE-2022-0742: Fix not seen in stream CVE-2022-0847: Fix not seen in stream CVE-2022-0850: Fixed with 5.13.2 -CVE-2022-0854: Fix not seen in stream CVE-2022-0995: Fix not seen in stream CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fix not seen in stream @@ -184,12 +181,11 @@ CVE-2022-1055: Fix not seen in stream CVE-2022-1116: Fix unknown CVE-2022-1158: Fix not seen in stream -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fix not seen in stream CVE-2022-1195: Fix not seen in stream CVE-2022-1198: Fix not seen in stream CVE-2022-1199: Fix not seen in stream CVE-2022-1204: Fix not seen in stream -CVE-2022-1205: Fix not seen in stream CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream @@ -198,7 +194,7 @@ CVE-2022-1508: Fix not seen in stream CVE-2022-1516: Fix not seen in stream CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown +CVE-2022-1652: Fix not seen in stream CVE-2022-1671: Fix not seen in stream CVE-2022-1679: Fix unknown CVE-2022-1729: Fix not seen in stream @@ -207,13 +203,10 @@ CVE-2022-1836: Fix not seen in stream CVE-2022-1852: Fix not seen in stream CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fix not seen in stream CVE-2022-1972: Fix not seen in stream -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fix not seen in stream CVE-2022-1975: Fix not seen in stream -CVE-2022-1976: Fix not seen in stream CVE-2022-1998: Fix not seen in stream CVE-2022-20008: Fix not seen in stream CVE-2022-20132: Fix not seen in stream @@ -222,6 +215,7 @@ CVE-2022-20154: Fix not seen in stream CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fix not seen in stream +CVE-2022-2153: Fix not seen in stream CVE-2022-22942: Fix not seen in stream CVE-2022-23036: Fix not seen in stream CVE-2022-23037: Fix not seen in stream @@ -244,17 +238,18 @@ CVE-2022-26966: Fix not seen in stream CVE-2022-27223: Fix not seen in stream CVE-2022-27666: Fix not seen in stream -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fix not seen in stream CVE-2022-28388: Fix not seen in stream CVE-2022-28389: Fix not seen in stream CVE-2022-28390: Fix not seen in stream -CVE-2022-28796: Fix not seen in stream CVE-2022-28893: Fix not seen in stream CVE-2022-29156: Fix not seen in stream CVE-2022-29581: Fix not seen in stream CVE-2022-29582: Fix not seen in stream -CVE-2022-29968: Fix not seen in stream CVE-2022-30594: Fix not seen in stream +CVE-2022-32250: Fix not seen in stream CVE-2022-32296: Fix not seen in stream CVE-2022-32981: Fix not seen in stream +CVE-2022-33981: Fix not seen in stream +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/5.13/5.13_security.txt b/data/5.13/5.13_security.txt index e408284..442a1ed 100644 --- a/data/5.13/5.13_security.txt +++ b/data/5.13/5.13_security.txt
@@ -86,7 +86,6 @@ CVE-2018-12930: (unk) CVE-2018-12931: (unk) CVE-2018-17977: (unk) - CVE-2019-0146: (unk) CVE-2019-12456: (unk) CVE-2019-15239: (unk) unknown CVE-2019-15290: (unk) @@ -107,7 +106,6 @@ CVE-2020-26140: (unk) CVE-2020-26142: (unk) CVE-2020-26143: (unk) - CVE-2020-26555: (unk) CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26559: (unk) @@ -128,7 +126,7 @@ CVE-2021-28714: (unk) xen/netback: fix rx queue stall detection CVE-2021-28715: (unk) xen/netback: don't queue unlimited number of packages CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality - CVE-2021-33135: (unk) + CVE-2021-33135: (unk) x86/sgx: Free backing memory after faulting the enclave page CVE-2021-3542: (unk) CVE-2021-3640: (unk) Bluetooth: sco: Fix lock_sock() blockage by memcpy_from_msg() CVE-2021-3669: (unk) ipc: replace costly bailout check in sysvipc_find_ipc() @@ -188,7 +186,7 @@ CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() - CVE-2022-0171: (unk) + CVE-2022-0171: (unk) KVM: SEV: add cache flush to solve SEV cache incoherency issues CVE-2022-0185: (unk) vfs: fs_context: fix up param length parsing in legacy_parse_param CVE-2022-0264: (unk) bpf: Fix kernel address leakage in atomic fetch CVE-2022-0322: (unk) sctp: account stream padding length for reconf chunk @@ -206,7 +204,6 @@ CVE-2022-0644: (unk) vfs: check fd has read access in kernel_read_file_from_fd() CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() CVE-2022-0847: (unk) lib/iov_iter: initialize "flags" in new pipe_buffer - CVE-2022-0854: (unk) swiotlb: rework "fix info leak with DMA_FROM_DEVICE" CVE-2022-0995: (unk) watch_queue: Fix filter limit check CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling CVE-2022-1011: (unk) fuse: fix pipe buffer lifetime for direct_io @@ -217,12 +214,11 @@ CVE-2022-1055: (unk) net: sched: fix use-after-free in tc_new_tfilter() CVE-2022-1116: (unk) CVE-2022-1158: (unk) KVM: x86/mmu: do compare-and-exchange of gPTE via the user address - CVE-2022-1184: (unk) + CVE-2022-1184: (unk) ext4: verify dir block before splitting it CVE-2022-1195: (unk) hamradio: improve the incomplete fix to avoid NPD CVE-2022-1198: (unk) drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() CVE-2022-1199: (unk) ax25: Fix NULL pointer dereference in ax25_kill_by_device CVE-2022-1204: (unk) ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: (unk) ax25: Fix NULL pointer dereferences in ax25 timers CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector @@ -231,7 +227,7 @@ CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters CVE-2022-1516: (unk) net/x25: Fix null-ptr-deref caused by x25_disconnect CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) + CVE-2022-1652: (unk) floppy: use a statically allocated error counter CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c CVE-2022-1679: (unk) CVE-2022-1729: (unk) perf: Fix sys_perf_event_open() race against self @@ -240,13 +236,10 @@ CVE-2022-1836: (unk) floppy: disable FDRAWCMD by default CVE-2022-1852: (unk) KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse CVE-2022-1966: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-1972: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay CVE-2022-1974: (unk) nfc: replace improper check device_is_registered() in netlink related functions CVE-2022-1975: (unk) NFC: netlink: fix sleep in atomic bug when firmware download timeout - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking CVE-2022-1998: (unk) fanotify: Fix stale file descriptor in copy_event_to_user() CVE-2022-20008: (unk) mmc: block: fix read single on recovery logic CVE-2022-20132: (unk) HID: add hid_is_usb() function to make it simpler for USB detection @@ -254,6 +247,7 @@ CVE-2022-20154: (unk) sctp: use call_rcu to free endpoint CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-21499: (unk) lockdown: also lock down previous kgdb use + CVE-2022-2153: (unk) KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-22942: (unk) drm/vmwgfx: Fix stale file descriptors on failed usercopy CVE-2022-23036: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23037: (unk) xen/netfront: don't use gnttab_query_foreign_access() for mapped status @@ -276,17 +270,18 @@ CVE-2022-26966: (unk) sr9700: sanity check for packet length CVE-2022-27223: (unk) USB: gadget: validate endpoint index for xilinx udc CVE-2022-27666: (unk) esp: Fix possible buffer overflow in ESP transformation - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe CVE-2022-28356: (unk) llc: fix netdevice reference leaks in llc_ui_bind() CVE-2022-28388: (unk) can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path CVE-2022-28389: (unk) can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: (unk) can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race CVE-2022-28893: (unk) SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() CVE-2022-29156: (unk) RDMA/rtrs-clt: Fix possible double free in error case CVE-2022-29581: (unk) net/sched: cls_u32: fix netns refcount changes in u32_change() CVE-2022-29582: (unk) io_uring: fix race between timeout flush and removal - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb CVE-2022-30594: (unk) ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE + CVE-2022-32250: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 CVE-2022-32981: (unk) powerpc/32: Fix overread/overwrite of thread_struct via ptrace + CVE-2022-33981: (unk) floppy: disable FDRAWCMD by default + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/5.14/5.14_CVEs.txt b/data/5.14/5.14_CVEs.txt index b86951c..04cb44c 100644 --- a/data/5.14/5.14_CVEs.txt +++ b/data/5.14/5.14_CVEs.txt
@@ -17,7 +17,6 @@ CVE-2018-12930: Fix unknown CVE-2018-12931: Fix unknown CVE-2018-17977: Fix unknown -CVE-2019-0146: Fix unknown CVE-2019-12456: Fix unknown CVE-2019-15239: Fix not seen in stream CVE-2019-15290: Fix unknown @@ -38,7 +37,6 @@ CVE-2020-26140: Fix unknown CVE-2020-26142: Fix unknown CVE-2020-26143: Fix unknown -CVE-2020-26555: Fix unknown CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26559: Fix unknown @@ -60,7 +58,7 @@ CVE-2021-28714: Fix not seen in stream CVE-2021-28715: Fix not seen in stream CVE-2021-33061: Fix not seen in stream -CVE-2021-33135: Fix unknown +CVE-2021-33135: Fix not seen in stream CVE-2021-34866: Fixed with 5.14 CVE-2021-3542: Fix unknown CVE-2021-3640: Fixed with 5.14.19 @@ -127,7 +125,7 @@ CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream -CVE-2022-0171: Fix unknown +CVE-2022-0171: Fix not seen in stream CVE-2022-0185: Fix not seen in stream CVE-2022-0264: Fix not seen in stream CVE-2022-0322: Fixed with 5.14.14 @@ -145,7 +143,6 @@ CVE-2022-0644: Fixed with 5.14.15 CVE-2022-0742: Fix not seen in stream CVE-2022-0847: Fix not seen in stream -CVE-2022-0854: Fix not seen in stream CVE-2022-0995: Fix not seen in stream CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fix not seen in stream @@ -156,12 +153,11 @@ CVE-2022-1055: Fix not seen in stream CVE-2022-1116: Fix unknown CVE-2022-1158: Fix not seen in stream -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fix not seen in stream CVE-2022-1195: Fix not seen in stream CVE-2022-1198: Fix not seen in stream CVE-2022-1199: Fix not seen in stream CVE-2022-1204: Fix not seen in stream -CVE-2022-1205: Fix not seen in stream CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream @@ -170,7 +166,7 @@ CVE-2022-1508: Fix not seen in stream CVE-2022-1516: Fix not seen in stream CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown +CVE-2022-1652: Fix not seen in stream CVE-2022-1671: Fix not seen in stream CVE-2022-1679: Fix unknown CVE-2022-1729: Fix not seen in stream @@ -179,13 +175,10 @@ CVE-2022-1836: Fix not seen in stream CVE-2022-1852: Fix not seen in stream CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fix not seen in stream CVE-2022-1972: Fix not seen in stream -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fix not seen in stream CVE-2022-1975: Fix not seen in stream -CVE-2022-1976: Fix not seen in stream CVE-2022-1998: Fix not seen in stream CVE-2022-20008: Fix not seen in stream CVE-2022-20132: Fix not seen in stream @@ -194,6 +187,7 @@ CVE-2022-20154: Fix not seen in stream CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fix not seen in stream +CVE-2022-2153: Fix not seen in stream CVE-2022-22942: Fix not seen in stream CVE-2022-23036: Fix not seen in stream CVE-2022-23037: Fix not seen in stream @@ -217,17 +211,18 @@ CVE-2022-26966: Fix not seen in stream CVE-2022-27223: Fix not seen in stream CVE-2022-27666: Fix not seen in stream -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fix not seen in stream CVE-2022-28388: Fix not seen in stream CVE-2022-28389: Fix not seen in stream CVE-2022-28390: Fix not seen in stream -CVE-2022-28796: Fix not seen in stream CVE-2022-28893: Fix not seen in stream CVE-2022-29156: Fix not seen in stream CVE-2022-29581: Fix not seen in stream CVE-2022-29582: Fix not seen in stream -CVE-2022-29968: Fix not seen in stream CVE-2022-30594: Fix not seen in stream +CVE-2022-32250: Fix not seen in stream CVE-2022-32296: Fix not seen in stream CVE-2022-32981: Fix not seen in stream +CVE-2022-33981: Fix not seen in stream +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/5.14/5.14_security.txt b/data/5.14/5.14_security.txt index 187b243..c328401 100644 --- a/data/5.14/5.14_security.txt +++ b/data/5.14/5.14_security.txt
@@ -90,7 +90,6 @@ CVE-2018-12930: (unk) CVE-2018-12931: (unk) CVE-2018-17977: (unk) - CVE-2019-0146: (unk) CVE-2019-12456: (unk) CVE-2019-15239: (unk) unknown CVE-2019-15290: (unk) @@ -110,7 +109,6 @@ CVE-2020-26140: (unk) CVE-2020-26142: (unk) CVE-2020-26143: (unk) - CVE-2020-26555: (unk) CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26559: (unk) @@ -129,7 +127,7 @@ CVE-2021-28714: (unk) xen/netback: fix rx queue stall detection CVE-2021-28715: (unk) xen/netback: don't queue unlimited number of packages CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality - CVE-2021-33135: (unk) + CVE-2021-33135: (unk) x86/sgx: Free backing memory after faulting the enclave page CVE-2021-3542: (unk) CVE-2021-3669: (unk) ipc: replace costly bailout check in sysvipc_find_ipc() CVE-2021-3714: (unk) @@ -165,7 +163,7 @@ CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() - CVE-2022-0171: (unk) + CVE-2022-0171: (unk) KVM: SEV: add cache flush to solve SEV cache incoherency issues CVE-2022-0185: (unk) vfs: fs_context: fix up param length parsing in legacy_parse_param CVE-2022-0264: (unk) bpf: Fix kernel address leakage in atomic fetch CVE-2022-0330: (unk) drm/i915: Flush TLBs before releasing backing store @@ -181,7 +179,6 @@ CVE-2022-0617: (unk) udf: Fix NULL ptr deref when converting from inline format CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() CVE-2022-0847: (unk) lib/iov_iter: initialize "flags" in new pipe_buffer - CVE-2022-0854: (unk) swiotlb: rework "fix info leak with DMA_FROM_DEVICE" CVE-2022-0995: (unk) watch_queue: Fix filter limit check CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling CVE-2022-1011: (unk) fuse: fix pipe buffer lifetime for direct_io @@ -192,12 +189,11 @@ CVE-2022-1055: (unk) net: sched: fix use-after-free in tc_new_tfilter() CVE-2022-1116: (unk) CVE-2022-1158: (unk) KVM: x86/mmu: do compare-and-exchange of gPTE via the user address - CVE-2022-1184: (unk) + CVE-2022-1184: (unk) ext4: verify dir block before splitting it CVE-2022-1195: (unk) hamradio: improve the incomplete fix to avoid NPD CVE-2022-1198: (unk) drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() CVE-2022-1199: (unk) ax25: Fix NULL pointer dereference in ax25_kill_by_device CVE-2022-1204: (unk) ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: (unk) ax25: Fix NULL pointer dereferences in ax25 timers CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector @@ -206,7 +202,7 @@ CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters CVE-2022-1516: (unk) net/x25: Fix null-ptr-deref caused by x25_disconnect CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) + CVE-2022-1652: (unk) floppy: use a statically allocated error counter CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c CVE-2022-1679: (unk) CVE-2022-1729: (unk) perf: Fix sys_perf_event_open() race against self @@ -215,19 +211,17 @@ CVE-2022-1836: (unk) floppy: disable FDRAWCMD by default CVE-2022-1852: (unk) KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse CVE-2022-1966: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-1972: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay CVE-2022-1974: (unk) nfc: replace improper check device_is_registered() in netlink related functions CVE-2022-1975: (unk) NFC: netlink: fix sleep in atomic bug when firmware download timeout - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking CVE-2022-1998: (unk) fanotify: Fix stale file descriptor in copy_event_to_user() CVE-2022-20008: (unk) mmc: block: fix read single on recovery logic CVE-2022-20132: (unk) HID: add hid_is_usb() function to make it simpler for USB detection CVE-2022-20154: (unk) sctp: use call_rcu to free endpoint CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-21499: (unk) lockdown: also lock down previous kgdb use + CVE-2022-2153: (unk) KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-22942: (unk) drm/vmwgfx: Fix stale file descriptors on failed usercopy CVE-2022-23036: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23037: (unk) xen/netfront: don't use gnttab_query_foreign_access() for mapped status @@ -251,17 +245,18 @@ CVE-2022-26966: (unk) sr9700: sanity check for packet length CVE-2022-27223: (unk) USB: gadget: validate endpoint index for xilinx udc CVE-2022-27666: (unk) esp: Fix possible buffer overflow in ESP transformation - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe CVE-2022-28356: (unk) llc: fix netdevice reference leaks in llc_ui_bind() CVE-2022-28388: (unk) can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path CVE-2022-28389: (unk) can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: (unk) can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race CVE-2022-28893: (unk) SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() CVE-2022-29156: (unk) RDMA/rtrs-clt: Fix possible double free in error case CVE-2022-29581: (unk) net/sched: cls_u32: fix netns refcount changes in u32_change() CVE-2022-29582: (unk) io_uring: fix race between timeout flush and removal - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb CVE-2022-30594: (unk) ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE + CVE-2022-32250: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 CVE-2022-32981: (unk) powerpc/32: Fix overread/overwrite of thread_struct via ptrace + CVE-2022-33981: (unk) floppy: disable FDRAWCMD by default + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/5.15/5.15_CVEs.txt b/data/5.15/5.15_CVEs.txt index 118f76f..0f8a3b8 100644 --- a/data/5.15/5.15_CVEs.txt +++ b/data/5.15/5.15_CVEs.txt
@@ -17,7 +17,6 @@ CVE-2018-12930: Fix unknown CVE-2018-12931: Fix unknown CVE-2018-17977: Fix unknown -CVE-2019-0146: Fix unknown CVE-2019-12456: Fix unknown CVE-2019-15239: Fix not seen in stream CVE-2019-15290: Fix unknown @@ -37,7 +36,6 @@ CVE-2020-26140: Fix unknown CVE-2020-26142: Fix unknown CVE-2020-26143: Fix unknown -CVE-2020-26555: Fix unknown CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26559: Fix unknown @@ -56,7 +54,7 @@ CVE-2021-28714: Fixed with 5.15.11 CVE-2021-28715: Fixed with 5.15.11 CVE-2021-33061: Fix not seen in stream -CVE-2021-33135: Fix unknown +CVE-2021-33135: Fixed with 5.15.29 CVE-2021-3542: Fix unknown CVE-2021-3640: Fixed with 5.15.3 CVE-2021-3714: Fix unknown @@ -98,7 +96,7 @@ CVE-2022-0001: Fixed with 5.15.28 CVE-2022-0002: Fixed with 5.15.28 CVE-2022-0168: Fixed with 5.15.33 -CVE-2022-0171: Fix unknown +CVE-2022-0171: Fix not seen in stream CVE-2022-0185: Fixed with 5.15.16 CVE-2022-0264: Fixed with 5.15.11 CVE-2022-0330: Fixed with 5.15.18 @@ -113,7 +111,6 @@ CVE-2022-0617: Fixed with 5.15.19 CVE-2022-0742: Fixed with 5.15.27 CVE-2022-0847: Fixed with 5.15.25 -CVE-2022-0854: Fixed with 5.15.29 CVE-2022-0995: Fixed with 5.15.29 CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fixed with 5.15.29 @@ -124,19 +121,18 @@ CVE-2022-1055: Fixed with 5.15.20 CVE-2022-1116: Fix unknown CVE-2022-1158: Fixed with 5.15.33 -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fixed with 5.15.46 CVE-2022-1195: Fixed with 5.15.12 CVE-2022-1198: Fixed with 5.15.33 CVE-2022-1199: Fixed with 5.15.29 CVE-2022-1204: Fixed with 5.15.35 -CVE-2022-1205: Fixed with 5.15.35 CVE-2022-1247: Fix unknown CVE-2022-1263: Fixed with 5.15.34 CVE-2022-1353: Fixed with 5.15.33 CVE-2022-1462: Fix unknown CVE-2022-1516: Fixed with 5.15.33 CVE-2022-1651: Fixed with 5.15.33 -CVE-2022-1652: Fix unknown +CVE-2022-1652: Fixed with 5.15.42 CVE-2022-1671: Fixed with 5.15.33 CVE-2022-1679: Fix unknown CVE-2022-1729: Fixed with 5.15.42 @@ -151,7 +147,6 @@ CVE-2022-1973: Fixed with 5.15.46 CVE-2022-1974: Fixed with 5.15.39 CVE-2022-1975: Fixed with 5.15.39 -CVE-2022-1976: Fix not seen in stream CVE-2022-1998: Fixed with 5.15.20 CVE-2022-20008: Fixed with 5.15.25 CVE-2022-20132: Fixed with 5.15.8 @@ -159,6 +154,7 @@ CVE-2022-20154: Fixed with 5.15.13 CVE-2022-2078: Fixed with 5.15.45 CVE-2022-21499: Fixed with 5.15.42 +CVE-2022-2153: Fixed with 5.15.33 CVE-2022-22942: Fixed with 5.15.18 CVE-2022-23036: Fixed with 5.15.28 CVE-2022-23037: Fixed with 5.15.28 @@ -187,12 +183,14 @@ CVE-2022-28388: Fixed with 5.15.33 CVE-2022-28389: Fixed with 5.15.33 CVE-2022-28390: Fixed with 5.15.33 -CVE-2022-28796: Fix not seen in stream CVE-2022-28893: Fixed with 5.15.41 CVE-2022-29156: Fixed with 5.15.26 CVE-2022-29581: Fixed with 5.15.36 CVE-2022-29582: Fixed with 5.15.34 -CVE-2022-29968: Fix not seen in stream CVE-2022-30594: Fixed with 5.15.33 +CVE-2022-32250: Fixed with 5.15.45 CVE-2022-32296: Fixed with 5.15.41 CVE-2022-32981: Fixed with 5.15.47 +CVE-2022-33981: Fixed with 5.15.37 +CVE-2022-34494: Fixed with 5.15.47 +CVE-2022-34495: Fixed with 5.15.47
diff --git a/data/5.15/5.15_security.txt b/data/5.15/5.15_security.txt index e51ad6b..e50d413 100644 --- a/data/5.15/5.15_security.txt +++ b/data/5.15/5.15_security.txt
@@ -120,7 +120,7 @@ CVE-2022-23960: f02cab2bed1a3493a230e54d83ff117bc59f480e ARM: report Spectre v2 status through sysfs CVEs fixed in 5.15.29: - CVE-2022-0854: 2c1f97af38be151527380796d31d3c9adb054bf9 swiotlb: rework "fix info leak with DMA_FROM_DEVICE" + CVE-2021-33135: ce91f0f023adfc239b44261f6dccb4a883d44d92 x86/sgx: Free backing memory after faulting the enclave page CVE-2022-0995: 1b09f28f70a5046acd64138075ae3f095238b045 watch_queue: Fix filter limit check CVE-2022-1011: ca62747b38f59d4e75967ebf63c992de8852ca1b fuse: fix pipe buffer lifetime for direct_io CVE-2022-1199: 46ad629e58ce3a88c924ff3c5a7e9129b0df5659 ax25: Fix NULL pointer dereference in ax25_kill_by_device @@ -141,6 +141,7 @@ CVE-2022-1516: 409570a619c1cda2e0fde6018a256b9e3d3ba0ee net/x25: Fix null-ptr-deref caused by x25_disconnect CVE-2022-1651: 1d5103d9bb7d42fc220afe9f01ec6b9fe0ea5773 virt: acrn: fix a memory leak in acrn_dev_ioctl() CVE-2022-1671: 432297011caf71dbc95c3365a65adf365e79aff3 rxrpc: fix some null-ptr-deref bugs in server_key.c + CVE-2022-2153: 0e5dbc0540baa89faf4c04ccc7e9c4fe6b1d7bf4 KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-28388: f2ce5238904f539648aaf56c5ee49e5eaf44d8fc can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path CVE-2022-28389: 37f07ad24866c6c1423b37b131c9a42414bcf8a1 can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: 459b19f42fd5e031e743dfa119f44aba0b62ff97 can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path @@ -152,7 +153,6 @@ CVEs fixed in 5.15.35: CVE-2022-1204: 452ae92b99062d2f6a34324eaf705a3b7eac9f8b ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: 43c107021d9160f6a1610bafba6dadc0323ae548 ax25: Fix NULL pointer dereferences in ax25 timers CVEs fixed in 5.15.36: CVE-2022-29581: ba9e9a794fd1689bf7e8a7452c55f3d3cbda7728 net/sched: cls_u32: fix netns refcount changes in u32_change() @@ -161,6 +161,7 @@ CVE-2022-0500: b453361384c2db1c703dacb806d5fd36aec4ceca bpf: Introduce MEM_RDONLY flag CVE-2022-1836: e52da8e4632f9c8fe78bf1c5881ce6871c7e08f3 floppy: disable FDRAWCMD by default CVE-2022-23222: 8d38cde47a7e17b646401fa92d916503caa5375e bpf: Replace PTR_TO_XXX_OR_NULL with PTR_TO_XXX | PTR_MAYBE_NULL + CVE-2022-33981: e52da8e4632f9c8fe78bf1c5881ce6871c7e08f3 floppy: disable FDRAWCMD by default CVEs fixed in 5.15.39: CVE-2022-1734: b8f2b836e7d0a553b886654e8b3925a85862d2eb nfc: nfcmrvl: main: reorder destructive operations in nfcmrvl_nci_unregister_dev to avoid bugs @@ -176,6 +177,7 @@ CVE-2022-32296: 952a238d779eea4ecb2f8deb5004c8f56be79bc9 tcp: increase source port perturb table to 2^16 CVEs fixed in 5.15.42: + CVE-2022-1652: fc2bee93e31bbba920e9eeba76af72264ced066f floppy: use a statically allocated error counter CVE-2022-1729: e085354dde254bc6c83ee604ea66c2b36f9f9067 perf: Fix sys_perf_event_open() race against self CVE-2022-21499: 69c5d307dce1560fafcb852f39d7a1bf5e266641 lockdown: also lock down previous kgdb use @@ -187,12 +189,16 @@ CVE-2022-1966: f692bcffd1f2ce5488d24fbcb8eab5f351abf79d netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-1972: 89ef50fe03a55feccf5681c237673a2f98161161 netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-2078: 89ef50fe03a55feccf5681c237673a2f98161161 netfilter: nf_tables: sanitize nft_set_desc_concat_parse() + CVE-2022-32250: f692bcffd1f2ce5488d24fbcb8eab5f351abf79d netfilter: nf_tables: disallow non-stateful expression in sets earlier CVEs fixed in 5.15.46: + CVE-2022-1184: ca17db384762be0ec38373a12460081d22a8b42d ext4: verify dir block before splitting it CVE-2022-1973: 61decb58486d7c0cbded25fe4d301ab4fa148cd8 fs/ntfs3: Fix invalid free in log_replay CVEs fixed in 5.15.47: CVE-2022-32981: 2a0165d278973e30f2282c15c52d91788749d2d4 powerpc/32: Fix overread/overwrite of thread_struct via ptrace + CVE-2022-34494: b94d40c792de7f0ceda6a2fd8a8dc0597eca6d22 rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: eaf37bb6b4f7c48a5adaf1be4879107daf4d6024 rpmsg: virtio: Fix possible double free in rpmsg_probe() Outstanding CVEs: CVE-2005-3660: (unk) @@ -214,7 +220,6 @@ CVE-2018-12930: (unk) CVE-2018-12931: (unk) CVE-2018-17977: (unk) - CVE-2019-0146: (unk) CVE-2019-12456: (unk) CVE-2019-15239: (unk) unknown CVE-2019-15290: (unk) @@ -234,7 +239,6 @@ CVE-2020-26140: (unk) CVE-2020-26142: (unk) CVE-2020-26143: (unk) - CVE-2020-26555: (unk) CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26559: (unk) @@ -245,7 +249,6 @@ CVE-2021-0695: (unk) CVE-2021-26934: (unk) CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality - CVE-2021-33135: (unk) CVE-2021-3542: (unk) CVE-2021-3714: (unk) CVE-2021-3847: (unk) @@ -256,19 +259,14 @@ CVE-2021-39802: (unk) CVE-2021-4095: (unk) KVM: x86: Fix wall clock writes in Xen shared_info not to mark page dirty CVE-2021-4204: (unk) bpf: Generalize check_ctx_reg for reuse with other types - CVE-2022-0171: (unk) + CVE-2022-0171: (unk) KVM: SEV: add cache flush to solve SEV cache incoherency issues CVE-2022-0400: (unk) CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling CVE-2022-1116: (unk) - CVE-2022-1184: (unk) CVE-2022-1247: (unk) CVE-2022-1462: (unk) - CVE-2022-1652: (unk) CVE-2022-1679: (unk) CVE-2022-1882: (unk) - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking CVE-2022-24122: (unk) ucount: Make get_ucount a safe get_user replacement CVE-2022-25265: (unk) CVE-2022-26878: (unk) - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb
diff --git a/data/5.16/5.16_CVEs.txt b/data/5.16/5.16_CVEs.txt index 77f9b23..c89546c 100644 --- a/data/5.16/5.16_CVEs.txt +++ b/data/5.16/5.16_CVEs.txt
@@ -17,7 +17,6 @@ CVE-2018-12930: Fix unknown CVE-2018-12931: Fix unknown CVE-2018-17977: Fix unknown -CVE-2019-0146: Fix unknown CVE-2019-12456: Fix unknown CVE-2019-15239: Fix not seen in stream CVE-2019-15290: Fix unknown @@ -37,7 +36,6 @@ CVE-2020-26140: Fix unknown CVE-2020-26142: Fix unknown CVE-2020-26143: Fix unknown -CVE-2020-26555: Fix unknown CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26559: Fix unknown @@ -49,7 +47,7 @@ CVE-2021-26401: Fixed with 5.16.14 CVE-2021-26934: Fix unknown CVE-2021-33061: Fix not seen in stream -CVE-2021-33135: Fix unknown +CVE-2021-33135: Fixed with 5.16.15 CVE-2021-3542: Fix unknown CVE-2021-3714: Fix unknown CVE-2021-3847: Fix unknown @@ -68,7 +66,7 @@ CVE-2022-0001: Fixed with 5.16.14 CVE-2022-0002: Fixed with 5.16.14 CVE-2022-0168: Fixed with 5.16.19 -CVE-2022-0171: Fix unknown +CVE-2022-0171: Fix not seen in stream CVE-2022-0185: Fixed with 5.16.2 CVE-2022-0330: Fixed with 5.16.4 CVE-2022-0382: Fixed with 5.16 @@ -83,7 +81,6 @@ CVE-2022-0617: Fixed with 5.16.5 CVE-2022-0742: Fixed with 5.16.13 CVE-2022-0847: Fixed with 5.16.11 -CVE-2022-0854: Fixed with 5.16.15 CVE-2022-0995: Fixed with 5.16.15 CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fixed with 5.16.15 @@ -94,18 +91,17 @@ CVE-2022-1055: Fixed with 5.16.6 CVE-2022-1116: Fix unknown CVE-2022-1158: Fixed with 5.16.19 -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fix not seen in stream CVE-2022-1198: Fixed with 5.16.15 CVE-2022-1199: Fixed with 5.16.15 CVE-2022-1204: Fix not seen in stream -CVE-2022-1205: Fix not seen in stream CVE-2022-1247: Fix unknown CVE-2022-1263: Fixed with 5.16.20 CVE-2022-1353: Fixed with 5.16.19 CVE-2022-1462: Fix unknown CVE-2022-1516: Fixed with 5.16.19 CVE-2022-1651: Fixed with 5.16.19 -CVE-2022-1652: Fix unknown +CVE-2022-1652: Fix not seen in stream CVE-2022-1671: Fixed with 5.16.19 CVE-2022-1679: Fix unknown CVE-2022-1729: Fix not seen in stream @@ -120,11 +116,11 @@ CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fix not seen in stream CVE-2022-1975: Fix not seen in stream -CVE-2022-1976: Fix not seen in stream CVE-2022-1998: Fixed with 5.16.6 CVE-2022-20008: Fixed with 5.16.11 CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fix not seen in stream +CVE-2022-2153: Fixed with 5.16.19 CVE-2022-22942: Fixed with 5.16.4 CVE-2022-23036: Fixed with 5.16.14 CVE-2022-23037: Fixed with 5.16.14 @@ -153,12 +149,15 @@ CVE-2022-28388: Fixed with 5.16.19 CVE-2022-28389: Fixed with 5.16.19 CVE-2022-28390: Fixed with 5.16.19 -CVE-2022-28796: Fix not seen in stream CVE-2022-28893: Fixed with 5.16.20 CVE-2022-29156: Fixed with 5.16.12 CVE-2022-29581: Fix not seen in stream CVE-2022-29582: Fixed with 5.16.20 CVE-2022-29968: Fix not seen in stream CVE-2022-30594: Fixed with 5.16.19 +CVE-2022-32250: Fix not seen in stream CVE-2022-32296: Fix not seen in stream CVE-2022-32981: Fix not seen in stream +CVE-2022-33981: Fix not seen in stream +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/5.16/5.16_security.txt b/data/5.16/5.16_security.txt index b3def32..e75c67d 100644 --- a/data/5.16/5.16_security.txt +++ b/data/5.16/5.16_security.txt
@@ -68,7 +68,7 @@ CVE-2022-23960: f5eb0f1dcde4b7c2b5ee920ae53bcecaaba03947 ARM: report Spectre v2 status through sysfs CVEs fixed in 5.16.15: - CVE-2022-0854: 62b27d925655999350d0ea775a025919fd88d27f swiotlb: rework "fix info leak with DMA_FROM_DEVICE" + CVE-2021-33135: 248c6347720200b9e5f79a4339ddbe4ef0074d36 x86/sgx: Free backing memory after faulting the enclave page CVE-2022-0995: b36588ebbcef74583824c08352e75838d6fb4ff2 watch_queue: Fix filter limit check CVE-2022-1011: 58a9bdff32fde29137731e574b17c42592875fd0 fuse: fix pipe buffer lifetime for direct_io CVE-2022-1198: 4356343fb70c899901bce33acedf4fede797d21f drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() @@ -89,6 +89,7 @@ CVE-2022-1516: 4a279d7ee1c65411b4055ecd428b8aa2b1711c1f net/x25: Fix null-ptr-deref caused by x25_disconnect CVE-2022-1651: ee827d86ee73583c0f0b65db877467d9b5551aa4 virt: acrn: fix a memory leak in acrn_dev_ioctl() CVE-2022-1671: c3c415ae0c82da1349d85b8c9b18e6480aa6a230 rxrpc: fix some null-ptr-deref bugs in server_key.c + CVE-2022-2153: 9e38128f8bd1d4f2244d8a393bc5dc204a99a541 KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-28388: 3e006cf0fb809815d56e59c9de4486fbe253ccdf can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path CVE-2022-28389: f913412848defa326a155c47d026267624472190 can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: 41f6be840f138c7d42312d7619a6b44c001d6b6e can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path @@ -119,7 +120,6 @@ CVE-2018-12930: (unk) CVE-2018-12931: (unk) CVE-2018-17977: (unk) - CVE-2019-0146: (unk) CVE-2019-12456: (unk) CVE-2019-15239: (unk) unknown CVE-2019-15290: (unk) @@ -139,7 +139,6 @@ CVE-2020-26140: (unk) CVE-2020-26142: (unk) CVE-2020-26143: (unk) - CVE-2020-26555: (unk) CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26559: (unk) @@ -150,7 +149,6 @@ CVE-2021-0695: (unk) CVE-2021-26934: (unk) CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality - CVE-2021-33135: (unk) CVE-2021-3542: (unk) CVE-2021-3714: (unk) CVE-2021-3847: (unk) @@ -161,17 +159,16 @@ CVE-2021-39802: (unk) CVE-2021-4095: (unk) KVM: x86: Fix wall clock writes in Xen shared_info not to mark page dirty CVE-2021-4204: (unk) bpf: Generalize check_ctx_reg for reuse with other types - CVE-2022-0171: (unk) + CVE-2022-0171: (unk) KVM: SEV: add cache flush to solve SEV cache incoherency issues CVE-2022-0400: (unk) CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling CVE-2022-1012: (unk) secure_seq: use the 64 bits of the siphash for port offset calculation CVE-2022-1116: (unk) - CVE-2022-1184: (unk) + CVE-2022-1184: (unk) ext4: verify dir block before splitting it CVE-2022-1204: (unk) ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: (unk) ax25: Fix NULL pointer dereferences in ax25 timers CVE-2022-1247: (unk) CVE-2022-1462: (unk) - CVE-2022-1652: (unk) + CVE-2022-1652: (unk) floppy: use a statically allocated error counter CVE-2022-1679: (unk) CVE-2022-1729: (unk) perf: Fix sys_perf_event_open() race against self CVE-2022-1734: (unk) nfc: nfcmrvl: main: reorder destructive operations in nfcmrvl_nci_unregister_dev to avoid bugs @@ -185,14 +182,16 @@ CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay CVE-2022-1974: (unk) nfc: replace improper check device_is_registered() in netlink related functions CVE-2022-1975: (unk) NFC: netlink: fix sleep in atomic bug when firmware download timeout - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-21499: (unk) lockdown: also lock down previous kgdb use CVE-2022-24122: (unk) ucount: Make get_ucount a safe get_user replacement CVE-2022-25265: (unk) CVE-2022-26878: (unk) - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race CVE-2022-29581: (unk) net/sched: cls_u32: fix netns refcount changes in u32_change() CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb + CVE-2022-32250: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 CVE-2022-32981: (unk) powerpc/32: Fix overread/overwrite of thread_struct via ptrace + CVE-2022-33981: (unk) floppy: disable FDRAWCMD by default + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/5.17/5.17_CVEs.txt b/data/5.17/5.17_CVEs.txt index 0d95560..1479c46 100644 --- a/data/5.17/5.17_CVEs.txt +++ b/data/5.17/5.17_CVEs.txt
@@ -17,7 +17,6 @@ CVE-2018-12930: Fix unknown CVE-2018-12931: Fix unknown CVE-2018-17977: Fix unknown -CVE-2019-0146: Fix unknown CVE-2019-12456: Fix unknown CVE-2019-15239: Fix not seen in stream CVE-2019-15290: Fix unknown @@ -37,7 +36,6 @@ CVE-2020-26140: Fix unknown CVE-2020-26142: Fix unknown CVE-2020-26143: Fix unknown -CVE-2020-26555: Fix unknown CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26559: Fix unknown @@ -48,7 +46,6 @@ CVE-2021-0695: Fix unknown CVE-2021-26934: Fix unknown CVE-2021-33061: Fix not seen in stream -CVE-2021-33135: Fix unknown CVE-2021-3542: Fix unknown CVE-2021-3714: Fix unknown CVE-2021-3847: Fix unknown @@ -58,7 +55,7 @@ CVE-2021-39801: Fix unknown CVE-2021-39802: Fix unknown CVE-2022-0168: Fixed with 5.17.2 -CVE-2022-0171: Fix unknown +CVE-2022-0171: Fix not seen in stream CVE-2022-0400: Fix unknown CVE-2022-1012: Fixed with 5.17.9 CVE-2022-1015: Fixed with 5.17.1 @@ -66,7 +63,7 @@ CVE-2022-1048: Fixed with 5.17.1 CVE-2022-1116: Fix unknown CVE-2022-1158: Fixed with 5.17.2 -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fixed with 5.17.14 CVE-2022-1204: Fixed with 5.17.2 CVE-2022-1205: Fixed with 5.17.2 CVE-2022-1247: Fix unknown @@ -75,7 +72,7 @@ CVE-2022-1462: Fix unknown CVE-2022-1516: Fixed with 5.17.2 CVE-2022-1651: Fixed with 5.17.2 -CVE-2022-1652: Fix unknown +CVE-2022-1652: Fixed with 5.17.10 CVE-2022-1671: Fixed with 5.17.2 CVE-2022-1679: Fix unknown CVE-2022-1729: Fixed with 5.17.10 @@ -90,9 +87,9 @@ CVE-2022-1973: Fixed with 5.17.14 CVE-2022-1974: Fixed with 5.17.7 CVE-2022-1975: Fixed with 5.17.7 -CVE-2022-1976: Fix not seen in stream CVE-2022-2078: Fixed with 5.17.13 CVE-2022-21499: Fixed with 5.17.10 +CVE-2022-2153: Fixed with 5.17.2 CVE-2022-25265: Fix unknown CVE-2022-26878: Fix unknown CVE-2022-28356: Fixed with 5.17.1 @@ -105,5 +102,9 @@ CVE-2022-29582: Fixed with 5.17.3 CVE-2022-29968: Fixed with 5.17.6 CVE-2022-30594: Fixed with 5.17.2 +CVE-2022-32250: Fixed with 5.17.13 CVE-2022-32296: Fixed with 5.17.9 CVE-2022-32981: Fixed with 5.17.15 +CVE-2022-33981: Fixed with 5.17.6 +CVE-2022-34494: Fixed with 5.17.15 +CVE-2022-34495: Fixed with 5.17.15
diff --git a/data/5.17/5.17_security.txt b/data/5.17/5.17_security.txt index f9b77c1..6236b36 100644 --- a/data/5.17/5.17_security.txt +++ b/data/5.17/5.17_security.txt
@@ -17,6 +17,7 @@ CVE-2022-1516: 671529db75e6be777bb1c76aa07c2bdd2992be6d net/x25: Fix null-ptr-deref caused by x25_disconnect CVE-2022-1651: f8e6e18d117e461110c849a11c6a396dcccdbd4e virt: acrn: fix a memory leak in acrn_dev_ioctl() CVE-2022-1671: 4e1f670e1b440dc783dbeb881d575bca31474f73 rxrpc: fix some null-ptr-deref bugs in server_key.c + CVE-2022-2153: 9fa2b94443ff41cdecdff6f4d4324d83af01089a KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-28388: 29d6c06168faa23ce23db3321981c8fde576c95c can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path CVE-2022-28389: 42a4b0dfd365c4f77f96fd1f73a64b47ae443a38 can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: 3f71f499395545119383f10760b8b19703d2a7dd can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path @@ -33,6 +34,7 @@ CVEs fixed in 5.17.6: CVE-2022-1836: d91ca05d52fabf68c0376bcfeed1a52be68a8e1b floppy: disable FDRAWCMD by default CVE-2022-29968: 77089e6ff273f43c42e99a690ae45ee39a6a62de io_uring: fix uninitialized field in rw io_kiocb + CVE-2022-33981: d91ca05d52fabf68c0376bcfeed1a52be68a8e1b floppy: disable FDRAWCMD by default CVEs fixed in 5.17.7: CVE-2022-1734: f4bfbac45121c8638db5eacb1ebbb61ee956c668 nfc: nfcmrvl: main: reorder destructive operations in nfcmrvl_nci_unregister_dev to avoid bugs @@ -47,6 +49,7 @@ CVE-2022-32296: e3ee7bb47d6509c3e8a3e96e5d8e3bf21549b6e8 tcp: increase source port perturb table to 2^16 CVEs fixed in 5.17.10: + CVE-2022-1652: 88887ced7803132ed357a42d050560a2fb5c7ce6 floppy: use a statically allocated error counter CVE-2022-1729: 22fb2974224c9836eeaf0d24fdd481fcdaa0aea8 perf: Fix sys_perf_event_open() race against self CVE-2022-21499: 281d356a035132f2603724ee0f04767d70e2e98e lockdown: also lock down previous kgdb use @@ -58,12 +61,16 @@ CVE-2022-1966: d8db0465bcc4d4b54ecfb67b820ed26eb1440da7 netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-1972: c88f3e3d243d701586239c5b69356ec2b1fd05f1 netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-2078: c88f3e3d243d701586239c5b69356ec2b1fd05f1 netfilter: nf_tables: sanitize nft_set_desc_concat_parse() + CVE-2022-32250: d8db0465bcc4d4b54ecfb67b820ed26eb1440da7 netfilter: nf_tables: disallow non-stateful expression in sets earlier CVEs fixed in 5.17.14: + CVE-2022-1184: 4b1cd51256e9267140153f04f4e62148adb2908c ext4: verify dir block before splitting it CVE-2022-1973: 2088cc00491e8d25a99d0f247df843e9c3df2040 fs/ntfs3: Fix invalid free in log_replay CVEs fixed in 5.17.15: CVE-2022-32981: 638556430658eca42501271edb38154264767ff5 powerpc/32: Fix overread/overwrite of thread_struct via ptrace + CVE-2022-34494: 900373f8f7ee128cbbd3968722182b8d26c1e54e rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: c49fb74e050d01ea09703b7c0d5fe8b9c3855b60 rpmsg: virtio: Fix possible double free in rpmsg_probe() Outstanding CVEs: CVE-2005-3660: (unk) @@ -85,7 +92,6 @@ CVE-2018-12930: (unk) CVE-2018-12931: (unk) CVE-2018-17977: (unk) - CVE-2019-0146: (unk) CVE-2019-12456: (unk) CVE-2019-15239: (unk) unknown CVE-2019-15290: (unk) @@ -105,7 +111,6 @@ CVE-2020-26140: (unk) CVE-2020-26142: (unk) CVE-2020-26143: (unk) - CVE-2020-26555: (unk) CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26559: (unk) @@ -116,7 +121,6 @@ CVE-2021-0695: (unk) CVE-2021-26934: (unk) CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality - CVE-2021-33135: (unk) CVE-2021-3542: (unk) CVE-2021-3714: (unk) CVE-2021-3847: (unk) @@ -125,15 +129,12 @@ CVE-2021-39800: (unk) CVE-2021-39801: (unk) CVE-2021-39802: (unk) - CVE-2022-0171: (unk) + CVE-2022-0171: (unk) KVM: SEV: add cache flush to solve SEV cache incoherency issues CVE-2022-0400: (unk) CVE-2022-1116: (unk) - CVE-2022-1184: (unk) CVE-2022-1247: (unk) CVE-2022-1462: (unk) - CVE-2022-1652: (unk) CVE-2022-1679: (unk) CVE-2022-1882: (unk) - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking CVE-2022-25265: (unk) CVE-2022-26878: (unk)
diff --git a/data/5.2/5.2_CVEs.txt b/data/5.2/5.2_CVEs.txt index 2bfb539..740b777 100644 --- a/data/5.2/5.2_CVEs.txt +++ b/data/5.2/5.2_CVEs.txt
@@ -18,7 +18,6 @@ CVE-2018-12930: Fix unknown CVE-2018-12931: Fix unknown CVE-2018-17977: Fix unknown -CVE-2019-0146: Fix unknown CVE-2019-0149: Fix not seen in stream CVE-2019-0154: Fix not seen in stream CVE-2019-0155: Fix not seen in stream @@ -295,7 +294,7 @@ CVE-2020-26145: Fix not seen in stream CVE-2020-26147: Fix not seen in stream CVE-2020-26541: Fix not seen in stream -CVE-2020-26555: Fix unknown +CVE-2020-26555: Fix not seen in stream CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26558: Fix not seen in stream @@ -358,7 +357,6 @@ CVE-2021-0512: Fix not seen in stream CVE-2021-0605: Fix not seen in stream CVE-2021-0695: Fix unknown -CVE-2021-0707: Fix not seen in stream CVE-2021-0920: Fix not seen in stream CVE-2021-0929: Fix not seen in stream CVE-2021-0937: Fix not seen in stream @@ -412,7 +410,6 @@ CVE-2021-33034: Fix not seen in stream CVE-2021-33061: Fix not seen in stream CVE-2021-33098: Fix not seen in stream -CVE-2021-33135: Fix unknown CVE-2021-3347: Fix not seen in stream CVE-2021-3348: Fix not seen in stream CVE-2021-33624: Fix not seen in stream @@ -483,7 +480,6 @@ CVE-2021-40490: Fix not seen in stream CVE-2021-4083: Fix not seen in stream CVE-2021-4135: Fix not seen in stream -CVE-2021-4148: Fix not seen in stream CVE-2021-4149: Fix not seen in stream CVE-2021-4150: Fix not seen in stream CVE-2021-4154: Fix not seen in stream @@ -512,7 +508,6 @@ CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream -CVE-2022-0171: Fix unknown CVE-2022-0185: Fix not seen in stream CVE-2022-0322: Fix not seen in stream CVE-2022-0330: Fix not seen in stream @@ -523,30 +518,22 @@ CVE-2022-0487: Fix not seen in stream CVE-2022-0492: Fix not seen in stream CVE-2022-0494: Fix not seen in stream -CVE-2022-0500: Fix not seen in stream CVE-2022-0617: Fix not seen in stream CVE-2022-0644: Fix not seen in stream -CVE-2022-0742: Fix not seen in stream CVE-2022-0812: Fix not seen in stream CVE-2022-0850: Fix not seen in stream -CVE-2022-0854: Fix not seen in stream -CVE-2022-0995: Fix not seen in stream -CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fix not seen in stream CVE-2022-1012: Fix not seen in stream -CVE-2022-1015: Fix not seen in stream CVE-2022-1016: Fix not seen in stream -CVE-2022-1043: Fix not seen in stream CVE-2022-1048: Fix not seen in stream CVE-2022-1055: Fix not seen in stream CVE-2022-1116: Fix unknown CVE-2022-1158: Fix not seen in stream -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fix not seen in stream CVE-2022-1195: Fix not seen in stream CVE-2022-1198: Fix not seen in stream CVE-2022-1199: Fix not seen in stream CVE-2022-1204: Fix not seen in stream -CVE-2022-1205: Fix not seen in stream CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream @@ -554,35 +541,25 @@ CVE-2022-1419: Fix not seen in stream CVE-2022-1462: Fix unknown CVE-2022-1508: Fix not seen in stream -CVE-2022-1516: Fix not seen in stream -CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown -CVE-2022-1671: Fix not seen in stream +CVE-2022-1652: Fix not seen in stream CVE-2022-1679: Fix unknown CVE-2022-1729: Fix not seen in stream CVE-2022-1734: Fix not seen in stream CVE-2022-1786: Fix not seen in stream CVE-2022-1789: Fix not seen in stream CVE-2022-1836: Fix not seen in stream -CVE-2022-1852: Fix not seen in stream CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fix not seen in stream -CVE-2022-1972: Fix not seen in stream -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fix not seen in stream CVE-2022-1975: Fix not seen in stream -CVE-2022-1976: Fix not seen in stream -CVE-2022-1998: Fix not seen in stream CVE-2022-20008: Fix not seen in stream CVE-2022-20132: Fix not seen in stream CVE-2022-20141: Fix not seen in stream CVE-2022-20148: Fix not seen in stream -CVE-2022-20153: Fix not seen in stream CVE-2022-20154: Fix not seen in stream CVE-2022-20166: Fix not seen in stream -CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fix not seen in stream +CVE-2022-2153: Fix not seen in stream CVE-2022-22942: Fix not seen in stream CVE-2022-23036: Fix not seen in stream CVE-2022-23037: Fix not seen in stream @@ -599,23 +576,20 @@ CVE-2022-25258: Fix not seen in stream CVE-2022-25265: Fix unknown CVE-2022-25375: Fix not seen in stream -CVE-2022-25636: Fix not seen in stream CVE-2022-26490: Fix not seen in stream -CVE-2022-26878: Fix unknown CVE-2022-26966: Fix not seen in stream CVE-2022-27223: Fix not seen in stream CVE-2022-27666: Fix not seen in stream -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fix not seen in stream CVE-2022-28388: Fix not seen in stream CVE-2022-28389: Fix not seen in stream CVE-2022-28390: Fix not seen in stream -CVE-2022-28796: Fix not seen in stream CVE-2022-28893: Fix not seen in stream -CVE-2022-29156: Fix not seen in stream CVE-2022-29581: Fix not seen in stream -CVE-2022-29582: Fix not seen in stream -CVE-2022-29968: Fix not seen in stream CVE-2022-30594: Fix not seen in stream +CVE-2022-32250: Fix not seen in stream CVE-2022-32296: Fix not seen in stream CVE-2022-32981: Fix not seen in stream +CVE-2022-33981: Fix not seen in stream +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/5.2/5.2_security.txt b/data/5.2/5.2_security.txt index ac6b948..72464cc 100644 --- a/data/5.2/5.2_security.txt +++ b/data/5.2/5.2_security.txt
@@ -108,7 +108,6 @@ CVE-2018-12930: (unk) CVE-2018-12931: (unk) CVE-2018-17977: (unk) - CVE-2019-0146: (unk) CVE-2019-0149: (unk) i40e: Add bounds check for ch[] array CVE-2019-0154: (unk) drm/i915: Lower RM timeout to avoid DSI hard hangs CVE-2019-0155: (unk) drm/i915: Rename gen7 cmdparser tables @@ -333,7 +332,7 @@ CVE-2020-26145: (unk) ath10k: drop fragments with multicast DA for PCIe CVE-2020-26147: (unk) mac80211: assure all fragments are encrypted CVE-2020-26541: (unk) certs: Add EFI_CERT_X509_GUID support for dbx entries - CVE-2020-26555: (unk) + CVE-2020-26555: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26558: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical @@ -396,7 +395,6 @@ CVE-2021-0512: (unk) HID: make arrays usage and value to be the same CVE-2021-0605: (unk) af_key: pfkey_dump needs parameter validation CVE-2021-0695: (unk) - CVE-2021-0707: (unk) dmabuf: fix use-after-free of dmabuf's file->f_inode CVE-2021-0920: (unk) af_unix: fix garbage collect vs MSG_PEEK CVE-2021-0929: (unk) staging/android/ion: delete dma_buf->kmap/unmap implemenation CVE-2021-0937: (unk) netfilter: x_tables: fix compat match/target pad out-of-bound write @@ -450,7 +448,6 @@ CVE-2021-33034: (unk) Bluetooth: verify AMP hci_chan before amp_destroy CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality CVE-2021-33098: (unk) ixgbe: fix large MTU request from VF - CVE-2021-33135: (unk) CVE-2021-3347: (unk) futex: Ensure the correct return value from futex_lock_pi() CVE-2021-3348: (unk) nbd: freeze the queue while we're adding connections CVE-2021-33624: (unk) bpf: Inherit expanded/patched seen count from old aux data @@ -521,7 +518,6 @@ CVE-2021-40490: (unk) ext4: fix race writing to an inline_data file while its xattrs are changing CVE-2021-4083: (unk) fget: check that the fd still exists after getting a ref to it CVE-2021-4135: (unk) netdevsim: Zero-initialize memory for new map's value in function nsim_bpf_map_alloc - CVE-2021-4148: (unk) mm: khugepaged: skip huge page collapse for special files CVE-2021-4149: (unk) btrfs: unlock newly allocated extent buffer after error CVE-2021-4150: (unk) block: fix incorrect references to disk objects CVE-2021-4154: (unk) cgroup: verify that source is a string @@ -550,7 +546,6 @@ CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() - CVE-2022-0171: (unk) CVE-2022-0185: (unk) vfs: fs_context: fix up param length parsing in legacy_parse_param CVE-2022-0322: (unk) sctp: account stream padding length for reconf chunk CVE-2022-0330: (unk) drm/i915: Flush TLBs before releasing backing store @@ -561,30 +556,22 @@ CVE-2022-0487: (unk) moxart: fix potential use-after-free on remove path CVE-2022-0492: (unk) cgroup-v1: Require capabilities to set release_agent CVE-2022-0494: (unk) block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern - CVE-2022-0500: (unk) bpf: Introduce MEM_RDONLY flag CVE-2022-0617: (unk) udf: Fix NULL ptr deref when converting from inline format CVE-2022-0644: (unk) vfs: check fd has read access in kernel_read_file_from_fd() - CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() CVE-2022-0812: (unk) xprtrdma: fix incorrect header size calculations CVE-2022-0850: (unk) ext4: fix kernel infoleak via ext4_extent_header - CVE-2022-0854: (unk) swiotlb: rework "fix info leak with DMA_FROM_DEVICE" - CVE-2022-0995: (unk) watch_queue: Fix filter limit check - CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling CVE-2022-1011: (unk) fuse: fix pipe buffer lifetime for direct_io CVE-2022-1012: (unk) secure_seq: use the 64 bits of the siphash for port offset calculation - CVE-2022-1015: (unk) netfilter: nf_tables: validate registers coming from userspace. CVE-2022-1016: (unk) netfilter: nf_tables: initialize registers in nft_do_chain() - CVE-2022-1043: (unk) io_uring: fix xa_alloc_cycle() error return value check CVE-2022-1048: (unk) ALSA: pcm: Fix races among concurrent hw_params and hw_free calls CVE-2022-1055: (unk) net: sched: fix use-after-free in tc_new_tfilter() CVE-2022-1116: (unk) CVE-2022-1158: (unk) KVM: x86/mmu: do compare-and-exchange of gPTE via the user address - CVE-2022-1184: (unk) + CVE-2022-1184: (unk) ext4: verify dir block before splitting it CVE-2022-1195: (unk) hamradio: improve the incomplete fix to avoid NPD CVE-2022-1198: (unk) drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() CVE-2022-1199: (unk) ax25: Fix NULL pointer dereference in ax25_kill_by_device CVE-2022-1204: (unk) ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: (unk) ax25: Fix NULL pointer dereferences in ax25 timers CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector @@ -592,35 +579,25 @@ CVE-2022-1419: (unk) drm/vgem: Close use-after-free race in vgem_gem_create CVE-2022-1462: (unk) CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters - CVE-2022-1516: (unk) net/x25: Fix null-ptr-deref caused by x25_disconnect - CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) - CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c + CVE-2022-1652: (unk) floppy: use a statically allocated error counter CVE-2022-1679: (unk) CVE-2022-1729: (unk) perf: Fix sys_perf_event_open() race against self CVE-2022-1734: (unk) nfc: nfcmrvl: main: reorder destructive operations in nfcmrvl_nci_unregister_dev to avoid bugs CVE-2022-1786: (unk) io_uring: remove io_identity CVE-2022-1789: (unk) KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID CVE-2022-1836: (unk) floppy: disable FDRAWCMD by default - CVE-2022-1852: (unk) KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse CVE-2022-1966: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier - CVE-2022-1972: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay CVE-2022-1974: (unk) nfc: replace improper check device_is_registered() in netlink related functions CVE-2022-1975: (unk) NFC: netlink: fix sleep in atomic bug when firmware download timeout - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking - CVE-2022-1998: (unk) fanotify: Fix stale file descriptor in copy_event_to_user() CVE-2022-20008: (unk) mmc: block: fix read single on recovery logic CVE-2022-20132: (unk) HID: add hid_is_usb() function to make it simpler for USB detection CVE-2022-20141: (unk) igmp: Add ip_mc_list lock in ip_check_mc_rcu CVE-2022-20148: (unk) f2fs: fix UAF in f2fs_available_free_memory - CVE-2022-20153: (unk) io_uring: return back safer resurrect CVE-2022-20154: (unk) sctp: use call_rcu to free endpoint CVE-2022-20166: (unk) drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions - CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-21499: (unk) lockdown: also lock down previous kgdb use + CVE-2022-2153: (unk) KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-22942: (unk) drm/vmwgfx: Fix stale file descriptors on failed usercopy CVE-2022-23036: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23037: (unk) xen/netfront: don't use gnttab_query_foreign_access() for mapped status @@ -637,23 +614,20 @@ CVE-2022-25258: (unk) USB: gadget: validate interface OS descriptor requests CVE-2022-25265: (unk) CVE-2022-25375: (unk) usb: gadget: rndis: check size of RNDIS_MSG_SET command - CVE-2022-25636: (unk) netfilter: nf_tables_offload: incorrect flow offload action array size CVE-2022-26490: (unk) nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION - CVE-2022-26878: (unk) CVE-2022-26966: (unk) sr9700: sanity check for packet length CVE-2022-27223: (unk) USB: gadget: validate endpoint index for xilinx udc CVE-2022-27666: (unk) esp: Fix possible buffer overflow in ESP transformation - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe CVE-2022-28356: (unk) llc: fix netdevice reference leaks in llc_ui_bind() CVE-2022-28388: (unk) can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path CVE-2022-28389: (unk) can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: (unk) can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race CVE-2022-28893: (unk) SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() - CVE-2022-29156: (unk) RDMA/rtrs-clt: Fix possible double free in error case CVE-2022-29581: (unk) net/sched: cls_u32: fix netns refcount changes in u32_change() - CVE-2022-29582: (unk) io_uring: fix race between timeout flush and removal - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb CVE-2022-30594: (unk) ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE + CVE-2022-32250: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 CVE-2022-32981: (unk) powerpc/32: Fix overread/overwrite of thread_struct via ptrace + CVE-2022-33981: (unk) floppy: disable FDRAWCMD by default + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/5.3/5.3_CVEs.txt b/data/5.3/5.3_CVEs.txt index ae2b47a..3b328ce 100644 --- a/data/5.3/5.3_CVEs.txt +++ b/data/5.3/5.3_CVEs.txt
@@ -18,7 +18,6 @@ CVE-2018-12930: Fix unknown CVE-2018-12931: Fix unknown CVE-2018-17977: Fix unknown -CVE-2019-0146: Fix unknown CVE-2019-0154: Fixed with 5.3.11 CVE-2019-0155: Fixed with 5.3.11 CVE-2019-10220: Fix not seen in stream @@ -265,7 +264,7 @@ CVE-2020-26145: Fix not seen in stream CVE-2020-26147: Fix not seen in stream CVE-2020-26541: Fix not seen in stream -CVE-2020-26555: Fix unknown +CVE-2020-26555: Fix not seen in stream CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26558: Fix not seen in stream @@ -328,7 +327,6 @@ CVE-2021-0512: Fix not seen in stream CVE-2021-0605: Fix not seen in stream CVE-2021-0695: Fix unknown -CVE-2021-0707: Fix not seen in stream CVE-2021-0920: Fix not seen in stream CVE-2021-0929: Fix not seen in stream CVE-2021-0937: Fix not seen in stream @@ -383,7 +381,6 @@ CVE-2021-33034: Fix not seen in stream CVE-2021-33061: Fix not seen in stream CVE-2021-33098: Fix not seen in stream -CVE-2021-33135: Fix unknown CVE-2021-3347: Fix not seen in stream CVE-2021-3348: Fix not seen in stream CVE-2021-33624: Fix not seen in stream @@ -455,7 +452,6 @@ CVE-2021-40490: Fix not seen in stream CVE-2021-4083: Fix not seen in stream CVE-2021-4135: Fix not seen in stream -CVE-2021-4148: Fix not seen in stream CVE-2021-4149: Fix not seen in stream CVE-2021-4150: Fix not seen in stream CVE-2021-4154: Fix not seen in stream @@ -484,7 +480,6 @@ CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream -CVE-2022-0171: Fix unknown CVE-2022-0185: Fix not seen in stream CVE-2022-0322: Fix not seen in stream CVE-2022-0330: Fix not seen in stream @@ -495,30 +490,22 @@ CVE-2022-0487: Fix not seen in stream CVE-2022-0492: Fix not seen in stream CVE-2022-0494: Fix not seen in stream -CVE-2022-0500: Fix not seen in stream CVE-2022-0617: Fix not seen in stream CVE-2022-0644: Fix not seen in stream -CVE-2022-0742: Fix not seen in stream CVE-2022-0812: Fix not seen in stream CVE-2022-0850: Fix not seen in stream -CVE-2022-0854: Fix not seen in stream -CVE-2022-0995: Fix not seen in stream -CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fix not seen in stream CVE-2022-1012: Fix not seen in stream -CVE-2022-1015: Fix not seen in stream CVE-2022-1016: Fix not seen in stream -CVE-2022-1043: Fix not seen in stream CVE-2022-1048: Fix not seen in stream CVE-2022-1055: Fix not seen in stream CVE-2022-1116: Fix unknown CVE-2022-1158: Fix not seen in stream -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fix not seen in stream CVE-2022-1195: Fix not seen in stream CVE-2022-1198: Fix not seen in stream CVE-2022-1199: Fix not seen in stream CVE-2022-1204: Fix not seen in stream -CVE-2022-1205: Fix not seen in stream CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream @@ -526,35 +513,25 @@ CVE-2022-1419: Fix not seen in stream CVE-2022-1462: Fix unknown CVE-2022-1508: Fix not seen in stream -CVE-2022-1516: Fix not seen in stream -CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown -CVE-2022-1671: Fix not seen in stream +CVE-2022-1652: Fix not seen in stream CVE-2022-1679: Fix unknown CVE-2022-1729: Fix not seen in stream CVE-2022-1734: Fix not seen in stream CVE-2022-1786: Fix not seen in stream CVE-2022-1789: Fix not seen in stream CVE-2022-1836: Fix not seen in stream -CVE-2022-1852: Fix not seen in stream CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fix not seen in stream -CVE-2022-1972: Fix not seen in stream -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fix not seen in stream CVE-2022-1975: Fix not seen in stream -CVE-2022-1976: Fix not seen in stream -CVE-2022-1998: Fix not seen in stream CVE-2022-20008: Fix not seen in stream CVE-2022-20132: Fix not seen in stream CVE-2022-20141: Fix not seen in stream CVE-2022-20148: Fix not seen in stream -CVE-2022-20153: Fix not seen in stream CVE-2022-20154: Fix not seen in stream CVE-2022-20166: Fix not seen in stream -CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fix not seen in stream +CVE-2022-2153: Fix not seen in stream CVE-2022-22942: Fix not seen in stream CVE-2022-23036: Fix not seen in stream CVE-2022-23037: Fix not seen in stream @@ -571,23 +548,20 @@ CVE-2022-25258: Fix not seen in stream CVE-2022-25265: Fix unknown CVE-2022-25375: Fix not seen in stream -CVE-2022-25636: Fix not seen in stream CVE-2022-26490: Fix not seen in stream -CVE-2022-26878: Fix unknown CVE-2022-26966: Fix not seen in stream CVE-2022-27223: Fix not seen in stream CVE-2022-27666: Fix not seen in stream -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fix not seen in stream CVE-2022-28388: Fix not seen in stream CVE-2022-28389: Fix not seen in stream CVE-2022-28390: Fix not seen in stream -CVE-2022-28796: Fix not seen in stream CVE-2022-28893: Fix not seen in stream -CVE-2022-29156: Fix not seen in stream CVE-2022-29581: Fix not seen in stream -CVE-2022-29582: Fix not seen in stream -CVE-2022-29968: Fix not seen in stream CVE-2022-30594: Fix not seen in stream +CVE-2022-32250: Fix not seen in stream CVE-2022-32296: Fix not seen in stream CVE-2022-32981: Fix not seen in stream +CVE-2022-33981: Fix not seen in stream +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/5.3/5.3_security.txt b/data/5.3/5.3_security.txt index 90ca035..ebe6086 100644 --- a/data/5.3/5.3_security.txt +++ b/data/5.3/5.3_security.txt
@@ -132,7 +132,6 @@ CVE-2018-12930: (unk) CVE-2018-12931: (unk) CVE-2018-17977: (unk) - CVE-2019-0146: (unk) CVE-2019-10220: (unk) Convert filldir[64]() from __put_user() to unsafe_put_user() CVE-2019-12456: (unk) CVE-2019-14615: (unk) drm/i915/gen9: Clear residual context state on context switch @@ -301,7 +300,7 @@ CVE-2020-26145: (unk) ath10k: drop fragments with multicast DA for PCIe CVE-2020-26147: (unk) mac80211: assure all fragments are encrypted CVE-2020-26541: (unk) certs: Add EFI_CERT_X509_GUID support for dbx entries - CVE-2020-26555: (unk) + CVE-2020-26555: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26558: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical @@ -364,7 +363,6 @@ CVE-2021-0512: (unk) HID: make arrays usage and value to be the same CVE-2021-0605: (unk) af_key: pfkey_dump needs parameter validation CVE-2021-0695: (unk) - CVE-2021-0707: (unk) dmabuf: fix use-after-free of dmabuf's file->f_inode CVE-2021-0920: (unk) af_unix: fix garbage collect vs MSG_PEEK CVE-2021-0929: (unk) staging/android/ion: delete dma_buf->kmap/unmap implemenation CVE-2021-0937: (unk) netfilter: x_tables: fix compat match/target pad out-of-bound write @@ -419,7 +417,6 @@ CVE-2021-33034: (unk) Bluetooth: verify AMP hci_chan before amp_destroy CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality CVE-2021-33098: (unk) ixgbe: fix large MTU request from VF - CVE-2021-33135: (unk) CVE-2021-3347: (unk) futex: Ensure the correct return value from futex_lock_pi() CVE-2021-3348: (unk) nbd: freeze the queue while we're adding connections CVE-2021-33624: (unk) bpf: Inherit expanded/patched seen count from old aux data @@ -491,7 +488,6 @@ CVE-2021-40490: (unk) ext4: fix race writing to an inline_data file while its xattrs are changing CVE-2021-4083: (unk) fget: check that the fd still exists after getting a ref to it CVE-2021-4135: (unk) netdevsim: Zero-initialize memory for new map's value in function nsim_bpf_map_alloc - CVE-2021-4148: (unk) mm: khugepaged: skip huge page collapse for special files CVE-2021-4149: (unk) btrfs: unlock newly allocated extent buffer after error CVE-2021-4150: (unk) block: fix incorrect references to disk objects CVE-2021-4154: (unk) cgroup: verify that source is a string @@ -520,7 +516,6 @@ CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() - CVE-2022-0171: (unk) CVE-2022-0185: (unk) vfs: fs_context: fix up param length parsing in legacy_parse_param CVE-2022-0322: (unk) sctp: account stream padding length for reconf chunk CVE-2022-0330: (unk) drm/i915: Flush TLBs before releasing backing store @@ -531,30 +526,22 @@ CVE-2022-0487: (unk) moxart: fix potential use-after-free on remove path CVE-2022-0492: (unk) cgroup-v1: Require capabilities to set release_agent CVE-2022-0494: (unk) block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern - CVE-2022-0500: (unk) bpf: Introduce MEM_RDONLY flag CVE-2022-0617: (unk) udf: Fix NULL ptr deref when converting from inline format CVE-2022-0644: (unk) vfs: check fd has read access in kernel_read_file_from_fd() - CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() CVE-2022-0812: (unk) xprtrdma: fix incorrect header size calculations CVE-2022-0850: (unk) ext4: fix kernel infoleak via ext4_extent_header - CVE-2022-0854: (unk) swiotlb: rework "fix info leak with DMA_FROM_DEVICE" - CVE-2022-0995: (unk) watch_queue: Fix filter limit check - CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling CVE-2022-1011: (unk) fuse: fix pipe buffer lifetime for direct_io CVE-2022-1012: (unk) secure_seq: use the 64 bits of the siphash for port offset calculation - CVE-2022-1015: (unk) netfilter: nf_tables: validate registers coming from userspace. CVE-2022-1016: (unk) netfilter: nf_tables: initialize registers in nft_do_chain() - CVE-2022-1043: (unk) io_uring: fix xa_alloc_cycle() error return value check CVE-2022-1048: (unk) ALSA: pcm: Fix races among concurrent hw_params and hw_free calls CVE-2022-1055: (unk) net: sched: fix use-after-free in tc_new_tfilter() CVE-2022-1116: (unk) CVE-2022-1158: (unk) KVM: x86/mmu: do compare-and-exchange of gPTE via the user address - CVE-2022-1184: (unk) + CVE-2022-1184: (unk) ext4: verify dir block before splitting it CVE-2022-1195: (unk) hamradio: improve the incomplete fix to avoid NPD CVE-2022-1198: (unk) drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() CVE-2022-1199: (unk) ax25: Fix NULL pointer dereference in ax25_kill_by_device CVE-2022-1204: (unk) ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: (unk) ax25: Fix NULL pointer dereferences in ax25 timers CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector @@ -562,35 +549,25 @@ CVE-2022-1419: (unk) drm/vgem: Close use-after-free race in vgem_gem_create CVE-2022-1462: (unk) CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters - CVE-2022-1516: (unk) net/x25: Fix null-ptr-deref caused by x25_disconnect - CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) - CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c + CVE-2022-1652: (unk) floppy: use a statically allocated error counter CVE-2022-1679: (unk) CVE-2022-1729: (unk) perf: Fix sys_perf_event_open() race against self CVE-2022-1734: (unk) nfc: nfcmrvl: main: reorder destructive operations in nfcmrvl_nci_unregister_dev to avoid bugs CVE-2022-1786: (unk) io_uring: remove io_identity CVE-2022-1789: (unk) KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID CVE-2022-1836: (unk) floppy: disable FDRAWCMD by default - CVE-2022-1852: (unk) KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse CVE-2022-1966: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier - CVE-2022-1972: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay CVE-2022-1974: (unk) nfc: replace improper check device_is_registered() in netlink related functions CVE-2022-1975: (unk) NFC: netlink: fix sleep in atomic bug when firmware download timeout - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking - CVE-2022-1998: (unk) fanotify: Fix stale file descriptor in copy_event_to_user() CVE-2022-20008: (unk) mmc: block: fix read single on recovery logic CVE-2022-20132: (unk) HID: add hid_is_usb() function to make it simpler for USB detection CVE-2022-20141: (unk) igmp: Add ip_mc_list lock in ip_check_mc_rcu CVE-2022-20148: (unk) f2fs: fix UAF in f2fs_available_free_memory - CVE-2022-20153: (unk) io_uring: return back safer resurrect CVE-2022-20154: (unk) sctp: use call_rcu to free endpoint CVE-2022-20166: (unk) drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions - CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-21499: (unk) lockdown: also lock down previous kgdb use + CVE-2022-2153: (unk) KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-22942: (unk) drm/vmwgfx: Fix stale file descriptors on failed usercopy CVE-2022-23036: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23037: (unk) xen/netfront: don't use gnttab_query_foreign_access() for mapped status @@ -607,23 +584,20 @@ CVE-2022-25258: (unk) USB: gadget: validate interface OS descriptor requests CVE-2022-25265: (unk) CVE-2022-25375: (unk) usb: gadget: rndis: check size of RNDIS_MSG_SET command - CVE-2022-25636: (unk) netfilter: nf_tables_offload: incorrect flow offload action array size CVE-2022-26490: (unk) nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION - CVE-2022-26878: (unk) CVE-2022-26966: (unk) sr9700: sanity check for packet length CVE-2022-27223: (unk) USB: gadget: validate endpoint index for xilinx udc CVE-2022-27666: (unk) esp: Fix possible buffer overflow in ESP transformation - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe CVE-2022-28356: (unk) llc: fix netdevice reference leaks in llc_ui_bind() CVE-2022-28388: (unk) can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path CVE-2022-28389: (unk) can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: (unk) can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race CVE-2022-28893: (unk) SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() - CVE-2022-29156: (unk) RDMA/rtrs-clt: Fix possible double free in error case CVE-2022-29581: (unk) net/sched: cls_u32: fix netns refcount changes in u32_change() - CVE-2022-29582: (unk) io_uring: fix race between timeout flush and removal - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb CVE-2022-30594: (unk) ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE + CVE-2022-32250: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 CVE-2022-32981: (unk) powerpc/32: Fix overread/overwrite of thread_struct via ptrace + CVE-2022-33981: (unk) floppy: disable FDRAWCMD by default + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/5.4/5.4_CVEs.txt b/data/5.4/5.4_CVEs.txt index f965778..005e046 100644 --- a/data/5.4/5.4_CVEs.txt +++ b/data/5.4/5.4_CVEs.txt
@@ -17,7 +17,6 @@ CVE-2018-12930: Fix unknown CVE-2018-12931: Fix unknown CVE-2018-17977: Fix unknown -CVE-2019-0146: Fix unknown CVE-2019-12456: Fix unknown CVE-2019-14615: Fixed with 5.4.12 CVE-2019-14895: Fixed with 5.4.12 @@ -190,7 +189,7 @@ CVE-2020-26145: Fixed with 5.4.124 CVE-2020-26147: Fixed with 5.4.124 CVE-2020-26541: Fixed with 5.4.129 -CVE-2020-26555: Fix unknown +CVE-2020-26555: Fixed with 5.4.122 CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26558: Fixed with 5.4.122 @@ -254,7 +253,6 @@ CVE-2021-0512: Fixed with 5.4.101 CVE-2021-0605: Fixed with 5.4.68 CVE-2021-0695: Fix unknown -CVE-2021-0707: Fixed with 5.4.89 CVE-2021-0920: Fixed with 5.4.137 CVE-2021-0929: Fix not seen in stream CVE-2021-0937: Fixed with 5.4.113 @@ -308,7 +306,6 @@ CVE-2021-33034: Fixed with 5.4.119 CVE-2021-33061: Fix not seen in stream CVE-2021-33098: Fixed with 5.4.124 -CVE-2021-33135: Fix unknown CVE-2021-3347: Fixed with 5.4.94 CVE-2021-3348: Fixed with 5.4.95 CVE-2021-33624: Fixed with 5.4.139 @@ -409,7 +406,6 @@ CVE-2022-0001: Fixed with 5.4.184 CVE-2022-0002: Fixed with 5.4.184 CVE-2022-0168: Fix not seen in stream -CVE-2022-0171: Fix unknown CVE-2022-0185: Fixed with 5.4.173 CVE-2022-0322: Fixed with 5.4.155 CVE-2022-0330: Fixed with 5.4.175 @@ -420,30 +416,22 @@ CVE-2022-0487: Fixed with 5.4.179 CVE-2022-0492: Fixed with 5.4.177 CVE-2022-0494: Fixed with 5.4.193 -CVE-2022-0500: Fix not seen in stream CVE-2022-0617: Fixed with 5.4.176 CVE-2022-0644: Fixed with 5.4.156 -CVE-2022-0742: Fix not seen in stream CVE-2022-0812: Fixed with 5.4.53 CVE-2022-0850: Fixed with 5.4.132 -CVE-2022-0854: Fixed with 5.4.196 -CVE-2022-0995: Fix not seen in stream -CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fixed with 5.4.185 CVE-2022-1012: Fixed with 5.4.197 -CVE-2022-1015: Fix not seen in stream CVE-2022-1016: Fixed with 5.4.188 -CVE-2022-1043: Fix not seen in stream CVE-2022-1048: Fixed with 5.4.193 CVE-2022-1055: Fixed with 5.4.177 CVE-2022-1116: Fix unknown CVE-2022-1158: Fixed with 5.4.189 -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fixed with 5.4.198 CVE-2022-1195: Fixed with 5.4.169 CVE-2022-1198: Fixed with 5.4.189 CVE-2022-1199: Fixed with 5.4.185 CVE-2022-1204: Fixed with 5.4.190 -CVE-2022-1205: Fixed with 5.4.190 CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream @@ -451,35 +439,25 @@ CVE-2022-1419: Fixed with 5.4.21 CVE-2022-1462: Fix unknown CVE-2022-1508: Fix not seen in stream -CVE-2022-1516: Fixed with 5.4.189 -CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown -CVE-2022-1671: Fix not seen in stream +CVE-2022-1652: Fixed with 5.4.196 CVE-2022-1679: Fix unknown CVE-2022-1729: Fixed with 5.4.196 CVE-2022-1734: Fixed with 5.4.193 CVE-2022-1786: Fix not seen in stream CVE-2022-1789: Fix not seen in stream CVE-2022-1836: Fixed with 5.4.192 -CVE-2022-1852: Fix not seen in stream CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fixed with 5.4.198 -CVE-2022-1972: Fix not seen in stream -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fixed with 5.4.193 CVE-2022-1975: Fixed with 5.4.193 -CVE-2022-1976: Fix not seen in stream -CVE-2022-1998: Fix not seen in stream CVE-2022-20008: Fixed with 5.4.181 CVE-2022-20132: Fixed with 5.4.165 CVE-2022-20141: Fixed with 5.4.145 CVE-2022-20148: Fix not seen in stream -CVE-2022-20153: Fix not seen in stream CVE-2022-20154: Fixed with 5.4.170 CVE-2022-20166: Fix not seen in stream -CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fixed with 5.4.197 +CVE-2022-2153: Fix not seen in stream CVE-2022-22942: Fixed with 5.4.175 CVE-2022-23036: Fixed with 5.4.184 CVE-2022-23037: Fixed with 5.4.184 @@ -498,21 +476,19 @@ CVE-2022-25375: Fixed with 5.4.180 CVE-2022-25636: Fixed with 5.4.182 CVE-2022-26490: Fixed with 5.4.188 -CVE-2022-26878: Fix unknown CVE-2022-26966: Fixed with 5.4.182 CVE-2022-27223: Fixed with 5.4.182 CVE-2022-27666: Fixed with 5.4.188 -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fixed with 5.4.188 CVE-2022-28388: Fixed with 5.4.191 CVE-2022-28389: Fixed with 5.4.189 CVE-2022-28390: Fixed with 5.4.189 -CVE-2022-28796: Fix not seen in stream CVE-2022-28893: Fixed with 5.4.196 -CVE-2022-29156: Fix not seen in stream CVE-2022-29581: Fixed with 5.4.191 -CVE-2022-29582: Fix not seen in stream -CVE-2022-29968: Fix not seen in stream CVE-2022-30594: Fixed with 5.4.189 -CVE-2022-32296: Fix not seen in stream +CVE-2022-32250: Fixed with 5.4.198 +CVE-2022-32296: Fixed with 5.4.201 CVE-2022-32981: Fixed with 5.4.198 +CVE-2022-33981: Fixed with 5.4.192 +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/5.4/5.4_security.txt b/data/5.4/5.4_security.txt index dd4ddf8..0397125 100644 --- a/data/5.4/5.4_security.txt +++ b/data/5.4/5.4_security.txt
@@ -324,7 +324,6 @@ CVEs fixed in 5.4.89: CVE-2020-28374: 485e21729b1e1235e6075318225c09e76b376e81 scsi: target: Fix XCOPY NAA identifier lookup - CVE-2021-0707: ef8133b1b47ed67873c291e9248fafd428d1767d dmabuf: fix use-after-free of dmabuf's file->f_inode CVE-2021-39648: bcffe2de9dde74174805d5f56a990353e33b8072 usb: gadget: configfs: Fix use-after-free issue with udc_name CVEs fixed in 5.4.92: @@ -421,6 +420,7 @@ CVE-2021-4157: 89862bd77e9cf511628eb7a97fe7f8d246192eec pNFS/flexfiles: fix incorrect size check in decode_nfs_fh() CVEs fixed in 5.4.122: + CVE-2020-26555: f97257cde764ad6979a7dbeb460b9fb69276342e Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26558: f97257cde764ad6979a7dbeb460b9fb69276342e Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2021-0129: f97257cde764ad6979a7dbeb460b9fb69276342e Bluetooth: SMP: Fail if remote and local public keys are identical @@ -645,14 +645,12 @@ CVE-2022-1158: 1553126eccf4fad17afaeaed08db9e5944aa2d55 KVM: x86/mmu: do compare-and-exchange of gPTE via the user address CVE-2022-1198: 28c8fd84bea13cbf238d7b19d392de2fcc31331c drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() CVE-2022-1353: ef388db2fe351230ff7194b37d507784bef659ec af_key: add __GFP_ZERO flag for compose_sadb_supported in function pfkey_register - CVE-2022-1516: 9acf05b4e7b55fdb712ef7b331dbce5bcd391d0f net/x25: Fix null-ptr-deref caused by x25_disconnect CVE-2022-28389: 2dfe9422d528630e2ce0d454147230cce113f814 can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: e27caad38b59b5b00b9c5228d04c13111229deec can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path CVE-2022-30594: 2458ecd21f29a3e5571d7d97764c043083deed5e ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE CVEs fixed in 5.4.190: CVE-2022-1204: 9e1e088a57c23251f1cfe9601bbd90ade2ea73b9 ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: 40cb8b3b19c087a4e20f6740701e53fefbe19a7b ax25: Fix NULL pointer dereferences in ax25 timers CVEs fixed in 5.4.191: CVE-2022-28388: 660784e7194ac2953aebe874c1f75f2441ba3d19 can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path @@ -660,6 +658,7 @@ CVEs fixed in 5.4.192: CVE-2022-1836: 7dea5913000c6a2974a00d9af8e7ffb54e47eac1 floppy: disable FDRAWCMD by default + CVE-2022-33981: 7dea5913000c6a2974a00d9af8e7ffb54e47eac1 floppy: disable FDRAWCMD by default CVEs fixed in 5.4.193: CVE-2022-0494: c7337efd1d11acb6f84c68ffee57d3f312e87b24 block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern @@ -669,7 +668,7 @@ CVE-2022-1975: 01d4363dd7176fd780066cd020f66c0f55c4b6f9 NFC: netlink: fix sleep in atomic bug when firmware download timeout CVEs fixed in 5.4.196: - CVE-2022-0854: b2f140a9f980806f572d672e1780acea66b9a25c swiotlb: rework "fix info leak with DMA_FROM_DEVICE" + CVE-2022-1652: 67e2b62461b5d02a1e63103e8a02c0bca75e26c7 floppy: use a statically allocated error counter CVE-2022-1729: dd0ea88b0a0f913f82500e988ef38158a9ad9885 perf: Fix sys_perf_event_open() race against self CVE-2022-28893: 2f8f6c393b11b5da059b1fc10a69fc2f2b6c446a SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() @@ -678,9 +677,14 @@ CVE-2022-21499: 8bb828229da903bb5710d21065e0a29f9afd30e0 lockdown: also lock down previous kgdb use CVEs fixed in 5.4.198: + CVE-2022-1184: 17034d45ec443fb0e3c0e7297f9cd10f70446064 ext4: verify dir block before splitting it CVE-2022-1966: f36736fbd48491a8d85cd22f4740d542c5a1546e netfilter: nf_tables: disallow non-stateful expression in sets earlier + CVE-2022-32250: f36736fbd48491a8d85cd22f4740d542c5a1546e netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-32981: 0c4bc0a2f8257f79a70fe02b9a698eb14695a64b powerpc/32: Fix overread/overwrite of thread_struct via ptrace +CVEs fixed in 5.4.201: + CVE-2022-32296: c26e1addf15763ae404f4bbf131719a724e768ab tcp: increase source port perturb table to 2^16 + Outstanding CVEs: CVE-2005-3660: (unk) CVE-2007-3719: (unk) @@ -701,7 +705,6 @@ CVE-2018-12930: (unk) CVE-2018-12931: (unk) CVE-2018-17977: (unk) - CVE-2019-0146: (unk) CVE-2019-12456: (unk) CVE-2019-15239: (unk) unknown CVE-2019-15290: (unk) @@ -727,7 +730,6 @@ CVE-2020-26140: (unk) CVE-2020-26142: (unk) CVE-2020-26143: (unk) - CVE-2020-26555: (unk) CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26559: (unk) @@ -750,7 +752,6 @@ CVE-2021-29155: (unk) bpf: Use correct permission flag for mixed signed bounds arithmetic CVE-2021-32078: (unk) ARM: footbridge: remove personal server platform CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality - CVE-2021-33135: (unk) CVE-2021-3542: (unk) CVE-2021-3669: (unk) ipc: replace costly bailout check in sysvipc_find_ipc() CVE-2021-3714: (unk) @@ -769,46 +770,23 @@ CVE-2021-4218: (unk) sysctl: pass kernel pointers to ->proc_handler CVE-2021-44879: (unk) f2fs: fix to do sanity check on inode type during garbage collection CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() - CVE-2022-0171: (unk) CVE-2022-0382: (unk) net ticp:fix a kernel-infoleak in __tipc_sendmsg() CVE-2022-0400: (unk) CVE-2022-0480: (unk) memcg: enable accounting for file lock caches - CVE-2022-0500: (unk) bpf: Introduce MEM_RDONLY flag - CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() - CVE-2022-0995: (unk) watch_queue: Fix filter limit check - CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling - CVE-2022-1015: (unk) netfilter: nf_tables: validate registers coming from userspace. - CVE-2022-1043: (unk) io_uring: fix xa_alloc_cycle() error return value check CVE-2022-1116: (unk) - CVE-2022-1184: (unk) CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector CVE-2022-1462: (unk) CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters - CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) - CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c CVE-2022-1679: (unk) CVE-2022-1786: (unk) io_uring: remove io_identity CVE-2022-1789: (unk) KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID - CVE-2022-1852: (unk) KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse - CVE-2022-1972: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking - CVE-2022-1998: (unk) fanotify: Fix stale file descriptor in copy_event_to_user() CVE-2022-20148: (unk) f2fs: fix UAF in f2fs_available_free_memory - CVE-2022-20153: (unk) io_uring: return back safer resurrect CVE-2022-20166: (unk) drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions - CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() + CVE-2022-2153: (unk) KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-23222: (unk) bpf: Replace PTR_TO_XXX_OR_NULL with PTR_TO_XXX | PTR_MAYBE_NULL CVE-2022-25265: (unk) - CVE-2022-26878: (unk) - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race - CVE-2022-29156: (unk) RDMA/rtrs-clt: Fix possible double free in error case - CVE-2022-29582: (unk) io_uring: fix race between timeout flush and removal - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb - CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/5.5/5.5_CVEs.txt b/data/5.5/5.5_CVEs.txt index df4e9e7..e91bb07 100644 --- a/data/5.5/5.5_CVEs.txt +++ b/data/5.5/5.5_CVEs.txt
@@ -17,7 +17,6 @@ CVE-2018-12930: Fix unknown CVE-2018-12931: Fix unknown CVE-2018-17977: Fix unknown -CVE-2019-0146: Fix unknown CVE-2019-12456: Fix unknown CVE-2019-14896: Fixed with 5.5 CVE-2019-14897: Fixed with 5.5 @@ -142,7 +141,7 @@ CVE-2020-26145: Fix not seen in stream CVE-2020-26147: Fix not seen in stream CVE-2020-26541: Fix not seen in stream -CVE-2020-26555: Fix unknown +CVE-2020-26555: Fix not seen in stream CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26558: Fix not seen in stream @@ -207,7 +206,6 @@ CVE-2021-0512: Fix not seen in stream CVE-2021-0605: Fix not seen in stream CVE-2021-0695: Fix unknown -CVE-2021-0707: Fix not seen in stream CVE-2021-0920: Fix not seen in stream CVE-2021-0929: Fix not seen in stream CVE-2021-0937: Fix not seen in stream @@ -265,7 +263,6 @@ CVE-2021-33034: Fix not seen in stream CVE-2021-33061: Fix not seen in stream CVE-2021-33098: Fix not seen in stream -CVE-2021-33135: Fix unknown CVE-2021-3347: Fix not seen in stream CVE-2021-3348: Fix not seen in stream CVE-2021-33624: Fix not seen in stream @@ -367,7 +364,6 @@ CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream -CVE-2022-0171: Fix unknown CVE-2022-0185: Fix not seen in stream CVE-2022-0322: Fix not seen in stream CVE-2022-0330: Fix not seen in stream @@ -378,30 +374,22 @@ CVE-2022-0487: Fix not seen in stream CVE-2022-0492: Fix not seen in stream CVE-2022-0494: Fix not seen in stream -CVE-2022-0500: Fix not seen in stream CVE-2022-0617: Fix not seen in stream CVE-2022-0644: Fix not seen in stream -CVE-2022-0742: Fix not seen in stream CVE-2022-0812: Fix not seen in stream CVE-2022-0850: Fix not seen in stream -CVE-2022-0854: Fix not seen in stream -CVE-2022-0995: Fix not seen in stream -CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fix not seen in stream CVE-2022-1012: Fix not seen in stream -CVE-2022-1015: Fix not seen in stream CVE-2022-1016: Fix not seen in stream -CVE-2022-1043: Fix not seen in stream CVE-2022-1048: Fix not seen in stream CVE-2022-1055: Fix not seen in stream CVE-2022-1116: Fix unknown CVE-2022-1158: Fix not seen in stream -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fix not seen in stream CVE-2022-1195: Fix not seen in stream CVE-2022-1198: Fix not seen in stream CVE-2022-1199: Fix not seen in stream CVE-2022-1204: Fix not seen in stream -CVE-2022-1205: Fix not seen in stream CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream @@ -409,35 +397,25 @@ CVE-2022-1419: Fixed with 5.5.5 CVE-2022-1462: Fix unknown CVE-2022-1508: Fix not seen in stream -CVE-2022-1516: Fix not seen in stream -CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown -CVE-2022-1671: Fix not seen in stream +CVE-2022-1652: Fix not seen in stream CVE-2022-1679: Fix unknown CVE-2022-1729: Fix not seen in stream CVE-2022-1734: Fix not seen in stream CVE-2022-1786: Fix not seen in stream CVE-2022-1789: Fix not seen in stream CVE-2022-1836: Fix not seen in stream -CVE-2022-1852: Fix not seen in stream CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fix not seen in stream -CVE-2022-1972: Fix not seen in stream -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fix not seen in stream CVE-2022-1975: Fix not seen in stream -CVE-2022-1976: Fix not seen in stream -CVE-2022-1998: Fix not seen in stream CVE-2022-20008: Fix not seen in stream CVE-2022-20132: Fix not seen in stream CVE-2022-20141: Fix not seen in stream CVE-2022-20148: Fix not seen in stream -CVE-2022-20153: Fix not seen in stream CVE-2022-20154: Fix not seen in stream CVE-2022-20166: Fix not seen in stream -CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fix not seen in stream +CVE-2022-2153: Fix not seen in stream CVE-2022-22942: Fix not seen in stream CVE-2022-23036: Fix not seen in stream CVE-2022-23037: Fix not seen in stream @@ -456,21 +434,20 @@ CVE-2022-25375: Fix not seen in stream CVE-2022-25636: Fix not seen in stream CVE-2022-26490: Fix not seen in stream -CVE-2022-26878: Fix unknown CVE-2022-26966: Fix not seen in stream CVE-2022-27223: Fix not seen in stream CVE-2022-27666: Fix not seen in stream -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fix not seen in stream CVE-2022-28388: Fix not seen in stream CVE-2022-28389: Fix not seen in stream CVE-2022-28390: Fix not seen in stream -CVE-2022-28796: Fix not seen in stream CVE-2022-28893: Fix not seen in stream -CVE-2022-29156: Fix not seen in stream CVE-2022-29581: Fix not seen in stream CVE-2022-29582: Fix not seen in stream -CVE-2022-29968: Fix not seen in stream CVE-2022-30594: Fix not seen in stream +CVE-2022-32250: Fix not seen in stream CVE-2022-32296: Fix not seen in stream CVE-2022-32981: Fix not seen in stream +CVE-2022-33981: Fix not seen in stream +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/5.5/5.5_security.txt b/data/5.5/5.5_security.txt index fef2063..92bf531 100644 --- a/data/5.5/5.5_security.txt +++ b/data/5.5/5.5_security.txt
@@ -88,7 +88,6 @@ CVE-2018-12930: (unk) CVE-2018-12931: (unk) CVE-2018-17977: (unk) - CVE-2019-0146: (unk) CVE-2019-12456: (unk) CVE-2019-15239: (unk) unknown CVE-2019-15290: (unk) @@ -188,7 +187,7 @@ CVE-2020-26145: (unk) ath10k: drop fragments with multicast DA for PCIe CVE-2020-26147: (unk) mac80211: assure all fragments are encrypted CVE-2020-26541: (unk) certs: Add EFI_CERT_X509_GUID support for dbx entries - CVE-2020-26555: (unk) + CVE-2020-26555: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26558: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical @@ -241,7 +240,6 @@ CVE-2021-0512: (unk) HID: make arrays usage and value to be the same CVE-2021-0605: (unk) af_key: pfkey_dump needs parameter validation CVE-2021-0695: (unk) - CVE-2021-0707: (unk) dmabuf: fix use-after-free of dmabuf's file->f_inode CVE-2021-0920: (unk) af_unix: fix garbage collect vs MSG_PEEK CVE-2021-0929: (unk) staging/android/ion: delete dma_buf->kmap/unmap implemenation CVE-2021-0937: (unk) netfilter: x_tables: fix compat match/target pad out-of-bound write @@ -299,7 +297,6 @@ CVE-2021-33034: (unk) Bluetooth: verify AMP hci_chan before amp_destroy CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality CVE-2021-33098: (unk) ixgbe: fix large MTU request from VF - CVE-2021-33135: (unk) CVE-2021-3347: (unk) futex: Ensure the correct return value from futex_lock_pi() CVE-2021-3348: (unk) nbd: freeze the queue while we're adding connections CVE-2021-33624: (unk) bpf: Inherit expanded/patched seen count from old aux data @@ -400,7 +397,6 @@ CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() - CVE-2022-0171: (unk) CVE-2022-0185: (unk) vfs: fs_context: fix up param length parsing in legacy_parse_param CVE-2022-0322: (unk) sctp: account stream padding length for reconf chunk CVE-2022-0330: (unk) drm/i915: Flush TLBs before releasing backing store @@ -411,65 +407,47 @@ CVE-2022-0487: (unk) moxart: fix potential use-after-free on remove path CVE-2022-0492: (unk) cgroup-v1: Require capabilities to set release_agent CVE-2022-0494: (unk) block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern - CVE-2022-0500: (unk) bpf: Introduce MEM_RDONLY flag CVE-2022-0617: (unk) udf: Fix NULL ptr deref when converting from inline format CVE-2022-0644: (unk) vfs: check fd has read access in kernel_read_file_from_fd() - CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() CVE-2022-0812: (unk) xprtrdma: fix incorrect header size calculations CVE-2022-0850: (unk) ext4: fix kernel infoleak via ext4_extent_header - CVE-2022-0854: (unk) swiotlb: rework "fix info leak with DMA_FROM_DEVICE" - CVE-2022-0995: (unk) watch_queue: Fix filter limit check - CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling CVE-2022-1011: (unk) fuse: fix pipe buffer lifetime for direct_io CVE-2022-1012: (unk) secure_seq: use the 64 bits of the siphash for port offset calculation - CVE-2022-1015: (unk) netfilter: nf_tables: validate registers coming from userspace. CVE-2022-1016: (unk) netfilter: nf_tables: initialize registers in nft_do_chain() - CVE-2022-1043: (unk) io_uring: fix xa_alloc_cycle() error return value check CVE-2022-1048: (unk) ALSA: pcm: Fix races among concurrent hw_params and hw_free calls CVE-2022-1055: (unk) net: sched: fix use-after-free in tc_new_tfilter() CVE-2022-1116: (unk) CVE-2022-1158: (unk) KVM: x86/mmu: do compare-and-exchange of gPTE via the user address - CVE-2022-1184: (unk) + CVE-2022-1184: (unk) ext4: verify dir block before splitting it CVE-2022-1195: (unk) hamradio: improve the incomplete fix to avoid NPD CVE-2022-1198: (unk) drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() CVE-2022-1199: (unk) ax25: Fix NULL pointer dereference in ax25_kill_by_device CVE-2022-1204: (unk) ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: (unk) ax25: Fix NULL pointer dereferences in ax25 timers CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector CVE-2022-1353: (unk) af_key: add __GFP_ZERO flag for compose_sadb_supported in function pfkey_register CVE-2022-1462: (unk) CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters - CVE-2022-1516: (unk) net/x25: Fix null-ptr-deref caused by x25_disconnect - CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) - CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c + CVE-2022-1652: (unk) floppy: use a statically allocated error counter CVE-2022-1679: (unk) CVE-2022-1729: (unk) perf: Fix sys_perf_event_open() race against self CVE-2022-1734: (unk) nfc: nfcmrvl: main: reorder destructive operations in nfcmrvl_nci_unregister_dev to avoid bugs CVE-2022-1786: (unk) io_uring: remove io_identity CVE-2022-1789: (unk) KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID CVE-2022-1836: (unk) floppy: disable FDRAWCMD by default - CVE-2022-1852: (unk) KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse CVE-2022-1966: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier - CVE-2022-1972: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay CVE-2022-1974: (unk) nfc: replace improper check device_is_registered() in netlink related functions CVE-2022-1975: (unk) NFC: netlink: fix sleep in atomic bug when firmware download timeout - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking - CVE-2022-1998: (unk) fanotify: Fix stale file descriptor in copy_event_to_user() CVE-2022-20008: (unk) mmc: block: fix read single on recovery logic CVE-2022-20132: (unk) HID: add hid_is_usb() function to make it simpler for USB detection CVE-2022-20141: (unk) igmp: Add ip_mc_list lock in ip_check_mc_rcu CVE-2022-20148: (unk) f2fs: fix UAF in f2fs_available_free_memory - CVE-2022-20153: (unk) io_uring: return back safer resurrect CVE-2022-20154: (unk) sctp: use call_rcu to free endpoint CVE-2022-20166: (unk) drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions - CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-21499: (unk) lockdown: also lock down previous kgdb use + CVE-2022-2153: (unk) KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-22942: (unk) drm/vmwgfx: Fix stale file descriptors on failed usercopy CVE-2022-23036: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23037: (unk) xen/netfront: don't use gnttab_query_foreign_access() for mapped status @@ -488,21 +466,20 @@ CVE-2022-25375: (unk) usb: gadget: rndis: check size of RNDIS_MSG_SET command CVE-2022-25636: (unk) netfilter: nf_tables_offload: incorrect flow offload action array size CVE-2022-26490: (unk) nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION - CVE-2022-26878: (unk) CVE-2022-26966: (unk) sr9700: sanity check for packet length CVE-2022-27223: (unk) USB: gadget: validate endpoint index for xilinx udc CVE-2022-27666: (unk) esp: Fix possible buffer overflow in ESP transformation - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe CVE-2022-28356: (unk) llc: fix netdevice reference leaks in llc_ui_bind() CVE-2022-28388: (unk) can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path CVE-2022-28389: (unk) can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: (unk) can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race CVE-2022-28893: (unk) SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() - CVE-2022-29156: (unk) RDMA/rtrs-clt: Fix possible double free in error case CVE-2022-29581: (unk) net/sched: cls_u32: fix netns refcount changes in u32_change() CVE-2022-29582: (unk) io_uring: fix race between timeout flush and removal - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb CVE-2022-30594: (unk) ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE + CVE-2022-32250: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 CVE-2022-32981: (unk) powerpc/32: Fix overread/overwrite of thread_struct via ptrace + CVE-2022-33981: (unk) floppy: disable FDRAWCMD by default + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/5.6/5.6_CVEs.txt b/data/5.6/5.6_CVEs.txt index baa814c..d770d60 100644 --- a/data/5.6/5.6_CVEs.txt +++ b/data/5.6/5.6_CVEs.txt
@@ -17,7 +17,6 @@ CVE-2018-12930: Fix unknown CVE-2018-12931: Fix unknown CVE-2018-17977: Fix unknown -CVE-2019-0146: Fix unknown CVE-2019-12456: Fix unknown CVE-2019-15239: Fix not seen in stream CVE-2019-15290: Fix unknown @@ -124,7 +123,7 @@ CVE-2020-26145: Fix not seen in stream CVE-2020-26147: Fix not seen in stream CVE-2020-26541: Fix not seen in stream -CVE-2020-26555: Fix unknown +CVE-2020-26555: Fix not seen in stream CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26558: Fix not seen in stream @@ -180,7 +179,6 @@ CVE-2021-0512: Fix not seen in stream CVE-2021-0605: Fix not seen in stream CVE-2021-0695: Fix unknown -CVE-2021-0707: Fix not seen in stream CVE-2021-0920: Fix not seen in stream CVE-2021-0937: Fix not seen in stream CVE-2021-0938: Fix not seen in stream @@ -238,7 +236,6 @@ CVE-2021-33034: Fix not seen in stream CVE-2021-33061: Fix not seen in stream CVE-2021-33098: Fix not seen in stream -CVE-2021-33135: Fix unknown CVE-2021-3347: Fix not seen in stream CVE-2021-3348: Fix not seen in stream CVE-2021-33624: Fix not seen in stream @@ -342,7 +339,6 @@ CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream -CVE-2022-0171: Fix unknown CVE-2022-0185: Fix not seen in stream CVE-2022-0322: Fix not seen in stream CVE-2022-0330: Fix not seen in stream @@ -353,65 +349,49 @@ CVE-2022-0487: Fix not seen in stream CVE-2022-0492: Fix not seen in stream CVE-2022-0494: Fix not seen in stream -CVE-2022-0500: Fix not seen in stream CVE-2022-0617: Fix not seen in stream CVE-2022-0644: Fix not seen in stream -CVE-2022-0742: Fix not seen in stream CVE-2022-0812: Fix not seen in stream CVE-2022-0850: Fix not seen in stream -CVE-2022-0854: Fix not seen in stream -CVE-2022-0995: Fix not seen in stream -CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fix not seen in stream CVE-2022-1012: Fix not seen in stream -CVE-2022-1015: Fix not seen in stream CVE-2022-1016: Fix not seen in stream -CVE-2022-1043: Fix not seen in stream CVE-2022-1048: Fix not seen in stream CVE-2022-1055: Fix not seen in stream CVE-2022-1116: Fix unknown CVE-2022-1158: Fix not seen in stream -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fix not seen in stream CVE-2022-1195: Fix not seen in stream CVE-2022-1198: Fix not seen in stream CVE-2022-1199: Fix not seen in stream CVE-2022-1204: Fix not seen in stream -CVE-2022-1205: Fix not seen in stream CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream CVE-2022-1353: Fix not seen in stream CVE-2022-1462: Fix unknown CVE-2022-1508: Fix not seen in stream -CVE-2022-1516: Fix not seen in stream -CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown -CVE-2022-1671: Fix not seen in stream +CVE-2022-1652: Fix not seen in stream CVE-2022-1679: Fix unknown CVE-2022-1729: Fix not seen in stream CVE-2022-1734: Fix not seen in stream CVE-2022-1786: Fix not seen in stream CVE-2022-1789: Fix not seen in stream CVE-2022-1836: Fix not seen in stream -CVE-2022-1852: Fix not seen in stream CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fix not seen in stream CVE-2022-1972: Fix not seen in stream -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fix not seen in stream CVE-2022-1975: Fix not seen in stream -CVE-2022-1976: Fix not seen in stream -CVE-2022-1998: Fix not seen in stream CVE-2022-20008: Fix not seen in stream CVE-2022-20132: Fix not seen in stream CVE-2022-20141: Fix not seen in stream CVE-2022-20148: Fix not seen in stream -CVE-2022-20153: Fix not seen in stream CVE-2022-20154: Fix not seen in stream CVE-2022-20166: Fix not seen in stream CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fix not seen in stream +CVE-2022-2153: Fix not seen in stream CVE-2022-22942: Fix not seen in stream CVE-2022-23036: Fix not seen in stream CVE-2022-23037: Fix not seen in stream @@ -430,21 +410,20 @@ CVE-2022-25375: Fix not seen in stream CVE-2022-25636: Fix not seen in stream CVE-2022-26490: Fix not seen in stream -CVE-2022-26878: Fix unknown CVE-2022-26966: Fix not seen in stream CVE-2022-27223: Fix not seen in stream CVE-2022-27666: Fix not seen in stream -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fix not seen in stream CVE-2022-28388: Fix not seen in stream CVE-2022-28389: Fix not seen in stream CVE-2022-28390: Fix not seen in stream -CVE-2022-28796: Fix not seen in stream CVE-2022-28893: Fix not seen in stream -CVE-2022-29156: Fix not seen in stream CVE-2022-29581: Fix not seen in stream CVE-2022-29582: Fix not seen in stream -CVE-2022-29968: Fix not seen in stream CVE-2022-30594: Fix not seen in stream +CVE-2022-32250: Fix not seen in stream CVE-2022-32296: Fix not seen in stream CVE-2022-32981: Fix not seen in stream +CVE-2022-33981: Fix not seen in stream +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/5.6/5.6_security.txt b/data/5.6/5.6_security.txt index 8df3e71..1111204 100644 --- a/data/5.6/5.6_security.txt +++ b/data/5.6/5.6_security.txt
@@ -82,7 +82,6 @@ CVE-2018-12930: (unk) CVE-2018-12931: (unk) CVE-2018-17977: (unk) - CVE-2019-0146: (unk) CVE-2019-12456: (unk) CVE-2019-15239: (unk) unknown CVE-2019-15290: (unk) @@ -163,7 +162,7 @@ CVE-2020-26145: (unk) ath10k: drop fragments with multicast DA for PCIe CVE-2020-26147: (unk) mac80211: assure all fragments are encrypted CVE-2020-26541: (unk) certs: Add EFI_CERT_X509_GUID support for dbx entries - CVE-2020-26555: (unk) + CVE-2020-26555: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26558: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical @@ -213,7 +212,6 @@ CVE-2021-0512: (unk) HID: make arrays usage and value to be the same CVE-2021-0605: (unk) af_key: pfkey_dump needs parameter validation CVE-2021-0695: (unk) - CVE-2021-0707: (unk) dmabuf: fix use-after-free of dmabuf's file->f_inode CVE-2021-0920: (unk) af_unix: fix garbage collect vs MSG_PEEK CVE-2021-0937: (unk) netfilter: x_tables: fix compat match/target pad out-of-bound write CVE-2021-0938: (unk) compiler.h: fix barrier_data() on clang @@ -271,7 +269,6 @@ CVE-2021-33034: (unk) Bluetooth: verify AMP hci_chan before amp_destroy CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality CVE-2021-33098: (unk) ixgbe: fix large MTU request from VF - CVE-2021-33135: (unk) CVE-2021-3347: (unk) futex: Ensure the correct return value from futex_lock_pi() CVE-2021-3348: (unk) nbd: freeze the queue while we're adding connections CVE-2021-33624: (unk) bpf: Inherit expanded/patched seen count from old aux data @@ -374,7 +371,6 @@ CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() - CVE-2022-0171: (unk) CVE-2022-0185: (unk) vfs: fs_context: fix up param length parsing in legacy_parse_param CVE-2022-0322: (unk) sctp: account stream padding length for reconf chunk CVE-2022-0330: (unk) drm/i915: Flush TLBs before releasing backing store @@ -385,65 +381,49 @@ CVE-2022-0487: (unk) moxart: fix potential use-after-free on remove path CVE-2022-0492: (unk) cgroup-v1: Require capabilities to set release_agent CVE-2022-0494: (unk) block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern - CVE-2022-0500: (unk) bpf: Introduce MEM_RDONLY flag CVE-2022-0617: (unk) udf: Fix NULL ptr deref when converting from inline format CVE-2022-0644: (unk) vfs: check fd has read access in kernel_read_file_from_fd() - CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() CVE-2022-0812: (unk) xprtrdma: fix incorrect header size calculations CVE-2022-0850: (unk) ext4: fix kernel infoleak via ext4_extent_header - CVE-2022-0854: (unk) swiotlb: rework "fix info leak with DMA_FROM_DEVICE" - CVE-2022-0995: (unk) watch_queue: Fix filter limit check - CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling CVE-2022-1011: (unk) fuse: fix pipe buffer lifetime for direct_io CVE-2022-1012: (unk) secure_seq: use the 64 bits of the siphash for port offset calculation - CVE-2022-1015: (unk) netfilter: nf_tables: validate registers coming from userspace. CVE-2022-1016: (unk) netfilter: nf_tables: initialize registers in nft_do_chain() - CVE-2022-1043: (unk) io_uring: fix xa_alloc_cycle() error return value check CVE-2022-1048: (unk) ALSA: pcm: Fix races among concurrent hw_params and hw_free calls CVE-2022-1055: (unk) net: sched: fix use-after-free in tc_new_tfilter() CVE-2022-1116: (unk) CVE-2022-1158: (unk) KVM: x86/mmu: do compare-and-exchange of gPTE via the user address - CVE-2022-1184: (unk) + CVE-2022-1184: (unk) ext4: verify dir block before splitting it CVE-2022-1195: (unk) hamradio: improve the incomplete fix to avoid NPD CVE-2022-1198: (unk) drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() CVE-2022-1199: (unk) ax25: Fix NULL pointer dereference in ax25_kill_by_device CVE-2022-1204: (unk) ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: (unk) ax25: Fix NULL pointer dereferences in ax25 timers CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector CVE-2022-1353: (unk) af_key: add __GFP_ZERO flag for compose_sadb_supported in function pfkey_register CVE-2022-1462: (unk) CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters - CVE-2022-1516: (unk) net/x25: Fix null-ptr-deref caused by x25_disconnect - CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) - CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c + CVE-2022-1652: (unk) floppy: use a statically allocated error counter CVE-2022-1679: (unk) CVE-2022-1729: (unk) perf: Fix sys_perf_event_open() race against self CVE-2022-1734: (unk) nfc: nfcmrvl: main: reorder destructive operations in nfcmrvl_nci_unregister_dev to avoid bugs CVE-2022-1786: (unk) io_uring: remove io_identity CVE-2022-1789: (unk) KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID CVE-2022-1836: (unk) floppy: disable FDRAWCMD by default - CVE-2022-1852: (unk) KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse CVE-2022-1966: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-1972: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay CVE-2022-1974: (unk) nfc: replace improper check device_is_registered() in netlink related functions CVE-2022-1975: (unk) NFC: netlink: fix sleep in atomic bug when firmware download timeout - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking - CVE-2022-1998: (unk) fanotify: Fix stale file descriptor in copy_event_to_user() CVE-2022-20008: (unk) mmc: block: fix read single on recovery logic CVE-2022-20132: (unk) HID: add hid_is_usb() function to make it simpler for USB detection CVE-2022-20141: (unk) igmp: Add ip_mc_list lock in ip_check_mc_rcu CVE-2022-20148: (unk) f2fs: fix UAF in f2fs_available_free_memory - CVE-2022-20153: (unk) io_uring: return back safer resurrect CVE-2022-20154: (unk) sctp: use call_rcu to free endpoint CVE-2022-20166: (unk) drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-21499: (unk) lockdown: also lock down previous kgdb use + CVE-2022-2153: (unk) KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-22942: (unk) drm/vmwgfx: Fix stale file descriptors on failed usercopy CVE-2022-23036: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23037: (unk) xen/netfront: don't use gnttab_query_foreign_access() for mapped status @@ -462,21 +442,20 @@ CVE-2022-25375: (unk) usb: gadget: rndis: check size of RNDIS_MSG_SET command CVE-2022-25636: (unk) netfilter: nf_tables_offload: incorrect flow offload action array size CVE-2022-26490: (unk) nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION - CVE-2022-26878: (unk) CVE-2022-26966: (unk) sr9700: sanity check for packet length CVE-2022-27223: (unk) USB: gadget: validate endpoint index for xilinx udc CVE-2022-27666: (unk) esp: Fix possible buffer overflow in ESP transformation - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe CVE-2022-28356: (unk) llc: fix netdevice reference leaks in llc_ui_bind() CVE-2022-28388: (unk) can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path CVE-2022-28389: (unk) can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: (unk) can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race CVE-2022-28893: (unk) SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() - CVE-2022-29156: (unk) RDMA/rtrs-clt: Fix possible double free in error case CVE-2022-29581: (unk) net/sched: cls_u32: fix netns refcount changes in u32_change() CVE-2022-29582: (unk) io_uring: fix race between timeout flush and removal - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb CVE-2022-30594: (unk) ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE + CVE-2022-32250: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 CVE-2022-32981: (unk) powerpc/32: Fix overread/overwrite of thread_struct via ptrace + CVE-2022-33981: (unk) floppy: disable FDRAWCMD by default + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/5.7/5.7_CVEs.txt b/data/5.7/5.7_CVEs.txt index 16f0642..7099769 100644 --- a/data/5.7/5.7_CVEs.txt +++ b/data/5.7/5.7_CVEs.txt
@@ -17,7 +17,6 @@ CVE-2018-12930: Fix unknown CVE-2018-12931: Fix unknown CVE-2018-17977: Fix unknown -CVE-2019-0146: Fix unknown CVE-2019-12456: Fix unknown CVE-2019-15239: Fix not seen in stream CVE-2019-15290: Fix unknown @@ -106,7 +105,7 @@ CVE-2020-26145: Fix not seen in stream CVE-2020-26147: Fix not seen in stream CVE-2020-26541: Fix not seen in stream -CVE-2020-26555: Fix unknown +CVE-2020-26555: Fix not seen in stream CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26558: Fix not seen in stream @@ -159,7 +158,6 @@ CVE-2021-0512: Fix not seen in stream CVE-2021-0605: Fix not seen in stream CVE-2021-0695: Fix unknown -CVE-2021-0707: Fix not seen in stream CVE-2021-0920: Fix not seen in stream CVE-2021-0937: Fix not seen in stream CVE-2021-0938: Fix not seen in stream @@ -220,7 +218,6 @@ CVE-2021-33034: Fix not seen in stream CVE-2021-33061: Fix not seen in stream CVE-2021-33098: Fix not seen in stream -CVE-2021-33135: Fix unknown CVE-2021-3347: Fix not seen in stream CVE-2021-3348: Fix not seen in stream CVE-2021-33624: Fix not seen in stream @@ -327,7 +324,6 @@ CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream -CVE-2022-0171: Fix unknown CVE-2022-0185: Fix not seen in stream CVE-2022-0322: Fix not seen in stream CVE-2022-0330: Fix not seen in stream @@ -338,31 +334,24 @@ CVE-2022-0487: Fix not seen in stream CVE-2022-0492: Fix not seen in stream CVE-2022-0494: Fix not seen in stream -CVE-2022-0500: Fix not seen in stream CVE-2022-0516: Fix not seen in stream CVE-2022-0617: Fix not seen in stream CVE-2022-0644: Fix not seen in stream -CVE-2022-0742: Fix not seen in stream CVE-2022-0812: Fixed with 5.7.10 CVE-2022-0850: Fix not seen in stream -CVE-2022-0854: Fix not seen in stream -CVE-2022-0995: Fix not seen in stream CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fix not seen in stream CVE-2022-1012: Fix not seen in stream -CVE-2022-1015: Fix not seen in stream CVE-2022-1016: Fix not seen in stream -CVE-2022-1043: Fix not seen in stream CVE-2022-1048: Fix not seen in stream CVE-2022-1055: Fix not seen in stream CVE-2022-1116: Fix unknown CVE-2022-1158: Fix not seen in stream -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fix not seen in stream CVE-2022-1195: Fix not seen in stream CVE-2022-1198: Fix not seen in stream CVE-2022-1199: Fix not seen in stream CVE-2022-1204: Fix not seen in stream -CVE-2022-1205: Fix not seen in stream CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream @@ -370,34 +359,27 @@ CVE-2022-1462: Fix unknown CVE-2022-1508: Fix not seen in stream CVE-2022-1516: Fix not seen in stream -CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown -CVE-2022-1671: Fix not seen in stream +CVE-2022-1652: Fix not seen in stream CVE-2022-1679: Fix unknown CVE-2022-1729: Fix not seen in stream CVE-2022-1734: Fix not seen in stream CVE-2022-1786: Fix not seen in stream CVE-2022-1789: Fix not seen in stream CVE-2022-1836: Fix not seen in stream -CVE-2022-1852: Fix not seen in stream CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fix not seen in stream CVE-2022-1972: Fix not seen in stream -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fix not seen in stream CVE-2022-1975: Fix not seen in stream -CVE-2022-1976: Fix not seen in stream -CVE-2022-1998: Fix not seen in stream CVE-2022-20008: Fix not seen in stream CVE-2022-20132: Fix not seen in stream CVE-2022-20141: Fix not seen in stream CVE-2022-20148: Fix not seen in stream -CVE-2022-20153: Fix not seen in stream CVE-2022-20154: Fix not seen in stream CVE-2022-20166: Fix not seen in stream CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fix not seen in stream +CVE-2022-2153: Fix not seen in stream CVE-2022-22942: Fix not seen in stream CVE-2022-23036: Fix not seen in stream CVE-2022-23037: Fix not seen in stream @@ -416,21 +398,20 @@ CVE-2022-25375: Fix not seen in stream CVE-2022-25636: Fix not seen in stream CVE-2022-26490: Fix not seen in stream -CVE-2022-26878: Fix unknown CVE-2022-26966: Fix not seen in stream CVE-2022-27223: Fix not seen in stream CVE-2022-27666: Fix not seen in stream -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fix not seen in stream CVE-2022-28388: Fix not seen in stream CVE-2022-28389: Fix not seen in stream CVE-2022-28390: Fix not seen in stream -CVE-2022-28796: Fix not seen in stream CVE-2022-28893: Fix not seen in stream -CVE-2022-29156: Fix not seen in stream CVE-2022-29581: Fix not seen in stream CVE-2022-29582: Fix not seen in stream -CVE-2022-29968: Fix not seen in stream CVE-2022-30594: Fix not seen in stream +CVE-2022-32250: Fix not seen in stream CVE-2022-32296: Fix not seen in stream CVE-2022-32981: Fix not seen in stream +CVE-2022-33981: Fix not seen in stream +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/5.7/5.7_security.txt b/data/5.7/5.7_security.txt index 8731141..bd2402c 100644 --- a/data/5.7/5.7_security.txt +++ b/data/5.7/5.7_security.txt
@@ -87,7 +87,6 @@ CVE-2018-12930: (unk) CVE-2018-12931: (unk) CVE-2018-17977: (unk) - CVE-2019-0146: (unk) CVE-2019-12456: (unk) CVE-2019-15239: (unk) unknown CVE-2019-15290: (unk) @@ -149,7 +148,7 @@ CVE-2020-26145: (unk) ath10k: drop fragments with multicast DA for PCIe CVE-2020-26147: (unk) mac80211: assure all fragments are encrypted CVE-2020-26541: (unk) certs: Add EFI_CERT_X509_GUID support for dbx entries - CVE-2020-26555: (unk) + CVE-2020-26555: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26558: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical @@ -195,7 +194,6 @@ CVE-2021-0512: (unk) HID: make arrays usage and value to be the same CVE-2021-0605: (unk) af_key: pfkey_dump needs parameter validation CVE-2021-0695: (unk) - CVE-2021-0707: (unk) dmabuf: fix use-after-free of dmabuf's file->f_inode CVE-2021-0920: (unk) af_unix: fix garbage collect vs MSG_PEEK CVE-2021-0937: (unk) netfilter: x_tables: fix compat match/target pad out-of-bound write CVE-2021-0938: (unk) compiler.h: fix barrier_data() on clang @@ -255,7 +253,6 @@ CVE-2021-33034: (unk) Bluetooth: verify AMP hci_chan before amp_destroy CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality CVE-2021-33098: (unk) ixgbe: fix large MTU request from VF - CVE-2021-33135: (unk) CVE-2021-3347: (unk) futex: Ensure the correct return value from futex_lock_pi() CVE-2021-3348: (unk) nbd: freeze the queue while we're adding connections CVE-2021-33624: (unk) bpf: Inherit expanded/patched seen count from old aux data @@ -362,7 +359,6 @@ CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() - CVE-2022-0171: (unk) CVE-2022-0185: (unk) vfs: fs_context: fix up param length parsing in legacy_parse_param CVE-2022-0322: (unk) sctp: account stream padding length for reconf chunk CVE-2022-0330: (unk) drm/i915: Flush TLBs before releasing backing store @@ -373,30 +369,23 @@ CVE-2022-0487: (unk) moxart: fix potential use-after-free on remove path CVE-2022-0492: (unk) cgroup-v1: Require capabilities to set release_agent CVE-2022-0494: (unk) block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern - CVE-2022-0500: (unk) bpf: Introduce MEM_RDONLY flag CVE-2022-0516: (unk) KVM: s390: Return error on SIDA memop on normal guest CVE-2022-0617: (unk) udf: Fix NULL ptr deref when converting from inline format CVE-2022-0644: (unk) vfs: check fd has read access in kernel_read_file_from_fd() - CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() CVE-2022-0850: (unk) ext4: fix kernel infoleak via ext4_extent_header - CVE-2022-0854: (unk) swiotlb: rework "fix info leak with DMA_FROM_DEVICE" - CVE-2022-0995: (unk) watch_queue: Fix filter limit check CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling CVE-2022-1011: (unk) fuse: fix pipe buffer lifetime for direct_io CVE-2022-1012: (unk) secure_seq: use the 64 bits of the siphash for port offset calculation - CVE-2022-1015: (unk) netfilter: nf_tables: validate registers coming from userspace. CVE-2022-1016: (unk) netfilter: nf_tables: initialize registers in nft_do_chain() - CVE-2022-1043: (unk) io_uring: fix xa_alloc_cycle() error return value check CVE-2022-1048: (unk) ALSA: pcm: Fix races among concurrent hw_params and hw_free calls CVE-2022-1055: (unk) net: sched: fix use-after-free in tc_new_tfilter() CVE-2022-1116: (unk) CVE-2022-1158: (unk) KVM: x86/mmu: do compare-and-exchange of gPTE via the user address - CVE-2022-1184: (unk) + CVE-2022-1184: (unk) ext4: verify dir block before splitting it CVE-2022-1195: (unk) hamradio: improve the incomplete fix to avoid NPD CVE-2022-1198: (unk) drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() CVE-2022-1199: (unk) ax25: Fix NULL pointer dereference in ax25_kill_by_device CVE-2022-1204: (unk) ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: (unk) ax25: Fix NULL pointer dereferences in ax25 timers CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector @@ -404,34 +393,27 @@ CVE-2022-1462: (unk) CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters CVE-2022-1516: (unk) net/x25: Fix null-ptr-deref caused by x25_disconnect - CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) - CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c + CVE-2022-1652: (unk) floppy: use a statically allocated error counter CVE-2022-1679: (unk) CVE-2022-1729: (unk) perf: Fix sys_perf_event_open() race against self CVE-2022-1734: (unk) nfc: nfcmrvl: main: reorder destructive operations in nfcmrvl_nci_unregister_dev to avoid bugs CVE-2022-1786: (unk) io_uring: remove io_identity CVE-2022-1789: (unk) KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID CVE-2022-1836: (unk) floppy: disable FDRAWCMD by default - CVE-2022-1852: (unk) KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse CVE-2022-1966: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-1972: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay CVE-2022-1974: (unk) nfc: replace improper check device_is_registered() in netlink related functions CVE-2022-1975: (unk) NFC: netlink: fix sleep in atomic bug when firmware download timeout - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking - CVE-2022-1998: (unk) fanotify: Fix stale file descriptor in copy_event_to_user() CVE-2022-20008: (unk) mmc: block: fix read single on recovery logic CVE-2022-20132: (unk) HID: add hid_is_usb() function to make it simpler for USB detection CVE-2022-20141: (unk) igmp: Add ip_mc_list lock in ip_check_mc_rcu CVE-2022-20148: (unk) f2fs: fix UAF in f2fs_available_free_memory - CVE-2022-20153: (unk) io_uring: return back safer resurrect CVE-2022-20154: (unk) sctp: use call_rcu to free endpoint CVE-2022-20166: (unk) drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-21499: (unk) lockdown: also lock down previous kgdb use + CVE-2022-2153: (unk) KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-22942: (unk) drm/vmwgfx: Fix stale file descriptors on failed usercopy CVE-2022-23036: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23037: (unk) xen/netfront: don't use gnttab_query_foreign_access() for mapped status @@ -450,21 +432,20 @@ CVE-2022-25375: (unk) usb: gadget: rndis: check size of RNDIS_MSG_SET command CVE-2022-25636: (unk) netfilter: nf_tables_offload: incorrect flow offload action array size CVE-2022-26490: (unk) nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION - CVE-2022-26878: (unk) CVE-2022-26966: (unk) sr9700: sanity check for packet length CVE-2022-27223: (unk) USB: gadget: validate endpoint index for xilinx udc CVE-2022-27666: (unk) esp: Fix possible buffer overflow in ESP transformation - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe CVE-2022-28356: (unk) llc: fix netdevice reference leaks in llc_ui_bind() CVE-2022-28388: (unk) can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path CVE-2022-28389: (unk) can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: (unk) can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race CVE-2022-28893: (unk) SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() - CVE-2022-29156: (unk) RDMA/rtrs-clt: Fix possible double free in error case CVE-2022-29581: (unk) net/sched: cls_u32: fix netns refcount changes in u32_change() CVE-2022-29582: (unk) io_uring: fix race between timeout flush and removal - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb CVE-2022-30594: (unk) ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE + CVE-2022-32250: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 CVE-2022-32981: (unk) powerpc/32: Fix overread/overwrite of thread_struct via ptrace + CVE-2022-33981: (unk) floppy: disable FDRAWCMD by default + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/5.8/5.8_CVEs.txt b/data/5.8/5.8_CVEs.txt index 4084a05..ae64902 100644 --- a/data/5.8/5.8_CVEs.txt +++ b/data/5.8/5.8_CVEs.txt
@@ -17,7 +17,6 @@ CVE-2018-12930: Fix unknown CVE-2018-12931: Fix unknown CVE-2018-17977: Fix unknown -CVE-2019-0146: Fix unknown CVE-2019-12456: Fix unknown CVE-2019-15239: Fix not seen in stream CVE-2019-15290: Fix unknown @@ -87,7 +86,7 @@ CVE-2020-26145: Fix not seen in stream CVE-2020-26147: Fix not seen in stream CVE-2020-26541: Fix not seen in stream -CVE-2020-26555: Fix unknown +CVE-2020-26555: Fix not seen in stream CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26558: Fix not seen in stream @@ -197,7 +196,6 @@ CVE-2021-33034: Fix not seen in stream CVE-2021-33061: Fix not seen in stream CVE-2021-33098: Fix not seen in stream -CVE-2021-33135: Fix unknown CVE-2021-3347: Fix not seen in stream CVE-2021-3348: Fix not seen in stream CVE-2021-33624: Fix not seen in stream @@ -306,7 +304,6 @@ CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream -CVE-2022-0171: Fix unknown CVE-2022-0185: Fix not seen in stream CVE-2022-0322: Fix not seen in stream CVE-2022-0330: Fix not seen in stream @@ -317,31 +314,25 @@ CVE-2022-0487: Fix not seen in stream CVE-2022-0492: Fix not seen in stream CVE-2022-0494: Fix not seen in stream -CVE-2022-0500: Fix not seen in stream CVE-2022-0516: Fix not seen in stream CVE-2022-0617: Fix not seen in stream CVE-2022-0644: Fix not seen in stream -CVE-2022-0742: Fix not seen in stream CVE-2022-0847: Fix not seen in stream CVE-2022-0850: Fix not seen in stream -CVE-2022-0854: Fix not seen in stream CVE-2022-0995: Fix not seen in stream CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fix not seen in stream CVE-2022-1012: Fix not seen in stream -CVE-2022-1015: Fix not seen in stream CVE-2022-1016: Fix not seen in stream -CVE-2022-1043: Fix not seen in stream CVE-2022-1048: Fix not seen in stream CVE-2022-1055: Fix not seen in stream CVE-2022-1116: Fix unknown CVE-2022-1158: Fix not seen in stream -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fix not seen in stream CVE-2022-1195: Fix not seen in stream CVE-2022-1198: Fix not seen in stream CVE-2022-1199: Fix not seen in stream CVE-2022-1204: Fix not seen in stream -CVE-2022-1205: Fix not seen in stream CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream @@ -349,34 +340,27 @@ CVE-2022-1462: Fix unknown CVE-2022-1508: Fix not seen in stream CVE-2022-1516: Fix not seen in stream -CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown -CVE-2022-1671: Fix not seen in stream +CVE-2022-1652: Fix not seen in stream CVE-2022-1679: Fix unknown CVE-2022-1729: Fix not seen in stream CVE-2022-1734: Fix not seen in stream CVE-2022-1786: Fix not seen in stream CVE-2022-1789: Fix not seen in stream CVE-2022-1836: Fix not seen in stream -CVE-2022-1852: Fix not seen in stream CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fix not seen in stream CVE-2022-1972: Fix not seen in stream -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fix not seen in stream CVE-2022-1975: Fix not seen in stream -CVE-2022-1976: Fix not seen in stream -CVE-2022-1998: Fix not seen in stream CVE-2022-20008: Fix not seen in stream CVE-2022-20132: Fix not seen in stream CVE-2022-20141: Fix not seen in stream CVE-2022-20148: Fix not seen in stream -CVE-2022-20153: Fix not seen in stream CVE-2022-20154: Fix not seen in stream CVE-2022-20166: Fix not seen in stream CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fix not seen in stream +CVE-2022-2153: Fix not seen in stream CVE-2022-22942: Fix not seen in stream CVE-2022-23036: Fix not seen in stream CVE-2022-23037: Fix not seen in stream @@ -395,21 +379,20 @@ CVE-2022-25375: Fix not seen in stream CVE-2022-25636: Fix not seen in stream CVE-2022-26490: Fix not seen in stream -CVE-2022-26878: Fix unknown CVE-2022-26966: Fix not seen in stream CVE-2022-27223: Fix not seen in stream CVE-2022-27666: Fix not seen in stream -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fix not seen in stream CVE-2022-28388: Fix not seen in stream CVE-2022-28389: Fix not seen in stream CVE-2022-28390: Fix not seen in stream -CVE-2022-28796: Fix not seen in stream CVE-2022-28893: Fix not seen in stream -CVE-2022-29156: Fix not seen in stream CVE-2022-29581: Fix not seen in stream CVE-2022-29582: Fix not seen in stream -CVE-2022-29968: Fix not seen in stream CVE-2022-30594: Fix not seen in stream +CVE-2022-32250: Fix not seen in stream CVE-2022-32296: Fix not seen in stream CVE-2022-32981: Fix not seen in stream +CVE-2022-33981: Fix not seen in stream +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/5.8/5.8_security.txt b/data/5.8/5.8_security.txt index 8c63d46..4228c55 100644 --- a/data/5.8/5.8_security.txt +++ b/data/5.8/5.8_security.txt
@@ -93,7 +93,6 @@ CVE-2018-12930: (unk) CVE-2018-12931: (unk) CVE-2018-17977: (unk) - CVE-2019-0146: (unk) CVE-2019-12456: (unk) CVE-2019-15239: (unk) unknown CVE-2019-15290: (unk) @@ -138,7 +137,7 @@ CVE-2020-26145: (unk) ath10k: drop fragments with multicast DA for PCIe CVE-2020-26147: (unk) mac80211: assure all fragments are encrypted CVE-2020-26541: (unk) certs: Add EFI_CERT_X509_GUID support for dbx entries - CVE-2020-26555: (unk) + CVE-2020-26555: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26558: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical @@ -233,7 +232,6 @@ CVE-2021-33034: (unk) Bluetooth: verify AMP hci_chan before amp_destroy CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality CVE-2021-33098: (unk) ixgbe: fix large MTU request from VF - CVE-2021-33135: (unk) CVE-2021-3347: (unk) futex: Ensure the correct return value from futex_lock_pi() CVE-2021-3348: (unk) nbd: freeze the queue while we're adding connections CVE-2021-33624: (unk) bpf: Inherit expanded/patched seen count from old aux data @@ -340,7 +338,6 @@ CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() - CVE-2022-0171: (unk) CVE-2022-0185: (unk) vfs: fs_context: fix up param length parsing in legacy_parse_param CVE-2022-0322: (unk) sctp: account stream padding length for reconf chunk CVE-2022-0330: (unk) drm/i915: Flush TLBs before releasing backing store @@ -351,31 +348,25 @@ CVE-2022-0487: (unk) moxart: fix potential use-after-free on remove path CVE-2022-0492: (unk) cgroup-v1: Require capabilities to set release_agent CVE-2022-0494: (unk) block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern - CVE-2022-0500: (unk) bpf: Introduce MEM_RDONLY flag CVE-2022-0516: (unk) KVM: s390: Return error on SIDA memop on normal guest CVE-2022-0617: (unk) udf: Fix NULL ptr deref when converting from inline format CVE-2022-0644: (unk) vfs: check fd has read access in kernel_read_file_from_fd() - CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() CVE-2022-0847: (unk) lib/iov_iter: initialize "flags" in new pipe_buffer CVE-2022-0850: (unk) ext4: fix kernel infoleak via ext4_extent_header - CVE-2022-0854: (unk) swiotlb: rework "fix info leak with DMA_FROM_DEVICE" CVE-2022-0995: (unk) watch_queue: Fix filter limit check CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling CVE-2022-1011: (unk) fuse: fix pipe buffer lifetime for direct_io CVE-2022-1012: (unk) secure_seq: use the 64 bits of the siphash for port offset calculation - CVE-2022-1015: (unk) netfilter: nf_tables: validate registers coming from userspace. CVE-2022-1016: (unk) netfilter: nf_tables: initialize registers in nft_do_chain() - CVE-2022-1043: (unk) io_uring: fix xa_alloc_cycle() error return value check CVE-2022-1048: (unk) ALSA: pcm: Fix races among concurrent hw_params and hw_free calls CVE-2022-1055: (unk) net: sched: fix use-after-free in tc_new_tfilter() CVE-2022-1116: (unk) CVE-2022-1158: (unk) KVM: x86/mmu: do compare-and-exchange of gPTE via the user address - CVE-2022-1184: (unk) + CVE-2022-1184: (unk) ext4: verify dir block before splitting it CVE-2022-1195: (unk) hamradio: improve the incomplete fix to avoid NPD CVE-2022-1198: (unk) drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() CVE-2022-1199: (unk) ax25: Fix NULL pointer dereference in ax25_kill_by_device CVE-2022-1204: (unk) ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: (unk) ax25: Fix NULL pointer dereferences in ax25 timers CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector @@ -383,34 +374,27 @@ CVE-2022-1462: (unk) CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters CVE-2022-1516: (unk) net/x25: Fix null-ptr-deref caused by x25_disconnect - CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) - CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c + CVE-2022-1652: (unk) floppy: use a statically allocated error counter CVE-2022-1679: (unk) CVE-2022-1729: (unk) perf: Fix sys_perf_event_open() race against self CVE-2022-1734: (unk) nfc: nfcmrvl: main: reorder destructive operations in nfcmrvl_nci_unregister_dev to avoid bugs CVE-2022-1786: (unk) io_uring: remove io_identity CVE-2022-1789: (unk) KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID CVE-2022-1836: (unk) floppy: disable FDRAWCMD by default - CVE-2022-1852: (unk) KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse CVE-2022-1966: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-1972: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay CVE-2022-1974: (unk) nfc: replace improper check device_is_registered() in netlink related functions CVE-2022-1975: (unk) NFC: netlink: fix sleep in atomic bug when firmware download timeout - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking - CVE-2022-1998: (unk) fanotify: Fix stale file descriptor in copy_event_to_user() CVE-2022-20008: (unk) mmc: block: fix read single on recovery logic CVE-2022-20132: (unk) HID: add hid_is_usb() function to make it simpler for USB detection CVE-2022-20141: (unk) igmp: Add ip_mc_list lock in ip_check_mc_rcu CVE-2022-20148: (unk) f2fs: fix UAF in f2fs_available_free_memory - CVE-2022-20153: (unk) io_uring: return back safer resurrect CVE-2022-20154: (unk) sctp: use call_rcu to free endpoint CVE-2022-20166: (unk) drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-21499: (unk) lockdown: also lock down previous kgdb use + CVE-2022-2153: (unk) KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-22942: (unk) drm/vmwgfx: Fix stale file descriptors on failed usercopy CVE-2022-23036: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23037: (unk) xen/netfront: don't use gnttab_query_foreign_access() for mapped status @@ -429,21 +413,20 @@ CVE-2022-25375: (unk) usb: gadget: rndis: check size of RNDIS_MSG_SET command CVE-2022-25636: (unk) netfilter: nf_tables_offload: incorrect flow offload action array size CVE-2022-26490: (unk) nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION - CVE-2022-26878: (unk) CVE-2022-26966: (unk) sr9700: sanity check for packet length CVE-2022-27223: (unk) USB: gadget: validate endpoint index for xilinx udc CVE-2022-27666: (unk) esp: Fix possible buffer overflow in ESP transformation - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe CVE-2022-28356: (unk) llc: fix netdevice reference leaks in llc_ui_bind() CVE-2022-28388: (unk) can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path CVE-2022-28389: (unk) can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: (unk) can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race CVE-2022-28893: (unk) SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() - CVE-2022-29156: (unk) RDMA/rtrs-clt: Fix possible double free in error case CVE-2022-29581: (unk) net/sched: cls_u32: fix netns refcount changes in u32_change() CVE-2022-29582: (unk) io_uring: fix race between timeout flush and removal - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb CVE-2022-30594: (unk) ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE + CVE-2022-32250: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 CVE-2022-32981: (unk) powerpc/32: Fix overread/overwrite of thread_struct via ptrace + CVE-2022-33981: (unk) floppy: disable FDRAWCMD by default + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/5.9/5.9_CVEs.txt b/data/5.9/5.9_CVEs.txt index 5a9d12c..8d64315 100644 --- a/data/5.9/5.9_CVEs.txt +++ b/data/5.9/5.9_CVEs.txt
@@ -17,7 +17,6 @@ CVE-2018-12930: Fix unknown CVE-2018-12931: Fix unknown CVE-2018-17977: Fix unknown -CVE-2019-0146: Fix unknown CVE-2019-12456: Fix unknown CVE-2019-15239: Fix not seen in stream CVE-2019-15290: Fix unknown @@ -67,7 +66,7 @@ CVE-2020-26145: Fix not seen in stream CVE-2020-26147: Fix not seen in stream CVE-2020-26541: Fix not seen in stream -CVE-2020-26555: Fix unknown +CVE-2020-26555: Fix not seen in stream CVE-2020-26556: Fix unknown CVE-2020-26557: Fix unknown CVE-2020-26558: Fix not seen in stream @@ -167,7 +166,6 @@ CVE-2021-33034: Fix not seen in stream CVE-2021-33061: Fix not seen in stream CVE-2021-33098: Fix not seen in stream -CVE-2021-33135: Fix unknown CVE-2021-3347: Fix not seen in stream CVE-2021-3348: Fix not seen in stream CVE-2021-33624: Fix not seen in stream @@ -276,7 +274,6 @@ CVE-2022-0001: Fix not seen in stream CVE-2022-0002: Fix not seen in stream CVE-2022-0168: Fix not seen in stream -CVE-2022-0171: Fix unknown CVE-2022-0185: Fix not seen in stream CVE-2022-0286: Fix not seen in stream CVE-2022-0322: Fix not seen in stream @@ -288,31 +285,25 @@ CVE-2022-0487: Fix not seen in stream CVE-2022-0492: Fix not seen in stream CVE-2022-0494: Fix not seen in stream -CVE-2022-0500: Fix not seen in stream CVE-2022-0516: Fix not seen in stream CVE-2022-0617: Fix not seen in stream CVE-2022-0644: Fix not seen in stream -CVE-2022-0742: Fix not seen in stream CVE-2022-0847: Fix not seen in stream CVE-2022-0850: Fix not seen in stream -CVE-2022-0854: Fix not seen in stream CVE-2022-0995: Fix not seen in stream CVE-2022-0998: Fix not seen in stream CVE-2022-1011: Fix not seen in stream CVE-2022-1012: Fix not seen in stream -CVE-2022-1015: Fix not seen in stream CVE-2022-1016: Fix not seen in stream -CVE-2022-1043: Fix not seen in stream CVE-2022-1048: Fix not seen in stream CVE-2022-1055: Fix not seen in stream CVE-2022-1116: Fix unknown CVE-2022-1158: Fix not seen in stream -CVE-2022-1184: Fix unknown +CVE-2022-1184: Fix not seen in stream CVE-2022-1195: Fix not seen in stream CVE-2022-1198: Fix not seen in stream CVE-2022-1199: Fix not seen in stream CVE-2022-1204: Fix not seen in stream -CVE-2022-1205: Fix not seen in stream CVE-2022-1247: Fix unknown CVE-2022-1263: Fix not seen in stream CVE-2022-1280: Fix not seen in stream @@ -320,34 +311,27 @@ CVE-2022-1462: Fix unknown CVE-2022-1508: Fix not seen in stream CVE-2022-1516: Fix not seen in stream -CVE-2022-1651: Fix not seen in stream -CVE-2022-1652: Fix unknown -CVE-2022-1671: Fix not seen in stream +CVE-2022-1652: Fix not seen in stream CVE-2022-1679: Fix unknown CVE-2022-1729: Fix not seen in stream CVE-2022-1734: Fix not seen in stream CVE-2022-1786: Fix not seen in stream CVE-2022-1789: Fix not seen in stream CVE-2022-1836: Fix not seen in stream -CVE-2022-1852: Fix not seen in stream CVE-2022-1882: Fix unknown -CVE-2022-1943: Fix not seen in stream CVE-2022-1966: Fix not seen in stream CVE-2022-1972: Fix not seen in stream -CVE-2022-1973: Fix not seen in stream CVE-2022-1974: Fix not seen in stream CVE-2022-1975: Fix not seen in stream -CVE-2022-1976: Fix not seen in stream -CVE-2022-1998: Fix not seen in stream CVE-2022-20008: Fix not seen in stream CVE-2022-20132: Fix not seen in stream CVE-2022-20141: Fix not seen in stream CVE-2022-20148: Fix not seen in stream -CVE-2022-20153: Fix not seen in stream CVE-2022-20154: Fix not seen in stream CVE-2022-20166: Fix not seen in stream CVE-2022-2078: Fix not seen in stream CVE-2022-21499: Fix not seen in stream +CVE-2022-2153: Fix not seen in stream CVE-2022-22942: Fix not seen in stream CVE-2022-23036: Fix not seen in stream CVE-2022-23037: Fix not seen in stream @@ -366,21 +350,20 @@ CVE-2022-25375: Fix not seen in stream CVE-2022-25636: Fix not seen in stream CVE-2022-26490: Fix not seen in stream -CVE-2022-26878: Fix unknown CVE-2022-26966: Fix not seen in stream CVE-2022-27223: Fix not seen in stream CVE-2022-27666: Fix not seen in stream -CVE-2022-27950: Fix not seen in stream CVE-2022-28356: Fix not seen in stream CVE-2022-28388: Fix not seen in stream CVE-2022-28389: Fix not seen in stream CVE-2022-28390: Fix not seen in stream -CVE-2022-28796: Fix not seen in stream CVE-2022-28893: Fix not seen in stream -CVE-2022-29156: Fix not seen in stream CVE-2022-29581: Fix not seen in stream CVE-2022-29582: Fix not seen in stream -CVE-2022-29968: Fix not seen in stream CVE-2022-30594: Fix not seen in stream +CVE-2022-32250: Fix not seen in stream CVE-2022-32296: Fix not seen in stream CVE-2022-32981: Fix not seen in stream +CVE-2022-33981: Fix not seen in stream +CVE-2022-34494: Fix not seen in stream +CVE-2022-34495: Fix not seen in stream
diff --git a/data/5.9/5.9_security.txt b/data/5.9/5.9_security.txt index 70c6589..e17900c 100644 --- a/data/5.9/5.9_security.txt +++ b/data/5.9/5.9_security.txt
@@ -80,7 +80,6 @@ CVE-2018-12930: (unk) CVE-2018-12931: (unk) CVE-2018-17977: (unk) - CVE-2019-0146: (unk) CVE-2019-12456: (unk) CVE-2019-15239: (unk) unknown CVE-2019-15290: (unk) @@ -120,7 +119,7 @@ CVE-2020-26145: (unk) ath10k: drop fragments with multicast DA for PCIe CVE-2020-26147: (unk) mac80211: assure all fragments are encrypted CVE-2020-26541: (unk) certs: Add EFI_CERT_X509_GUID support for dbx entries - CVE-2020-26555: (unk) + CVE-2020-26555: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical CVE-2020-26556: (unk) CVE-2020-26557: (unk) CVE-2020-26558: (unk) Bluetooth: SMP: Fail if remote and local public keys are identical @@ -198,7 +197,6 @@ CVE-2021-33034: (unk) Bluetooth: verify AMP hci_chan before amp_destroy CVE-2021-33061: (unk) ixgbe: add improvement for MDD response functionality CVE-2021-33098: (unk) ixgbe: fix large MTU request from VF - CVE-2021-33135: (unk) CVE-2021-3347: (unk) futex: Ensure the correct return value from futex_lock_pi() CVE-2021-3348: (unk) nbd: freeze the queue while we're adding connections CVE-2021-33624: (unk) bpf: Inherit expanded/patched seen count from old aux data @@ -306,7 +304,6 @@ CVE-2022-0001: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0002: (unk) x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE CVE-2022-0168: (unk) cifs: fix NULL ptr dereference in smb2_ioctl_query_info() - CVE-2022-0171: (unk) CVE-2022-0185: (unk) vfs: fs_context: fix up param length parsing in legacy_parse_param CVE-2022-0286: (unk) bonding: fix null dereference in bond_ipsec_add_sa() CVE-2022-0322: (unk) sctp: account stream padding length for reconf chunk @@ -318,31 +315,25 @@ CVE-2022-0487: (unk) moxart: fix potential use-after-free on remove path CVE-2022-0492: (unk) cgroup-v1: Require capabilities to set release_agent CVE-2022-0494: (unk) block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern - CVE-2022-0500: (unk) bpf: Introduce MEM_RDONLY flag CVE-2022-0516: (unk) KVM: s390: Return error on SIDA memop on normal guest CVE-2022-0617: (unk) udf: Fix NULL ptr deref when converting from inline format CVE-2022-0644: (unk) vfs: check fd has read access in kernel_read_file_from_fd() - CVE-2022-0742: (unk) ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report() CVE-2022-0847: (unk) lib/iov_iter: initialize "flags" in new pipe_buffer CVE-2022-0850: (unk) ext4: fix kernel infoleak via ext4_extent_header - CVE-2022-0854: (unk) swiotlb: rework "fix info leak with DMA_FROM_DEVICE" CVE-2022-0995: (unk) watch_queue: Fix filter limit check CVE-2022-0998: (unk) vdpa: clean up get_config_size ret value handling CVE-2022-1011: (unk) fuse: fix pipe buffer lifetime for direct_io CVE-2022-1012: (unk) secure_seq: use the 64 bits of the siphash for port offset calculation - CVE-2022-1015: (unk) netfilter: nf_tables: validate registers coming from userspace. CVE-2022-1016: (unk) netfilter: nf_tables: initialize registers in nft_do_chain() - CVE-2022-1043: (unk) io_uring: fix xa_alloc_cycle() error return value check CVE-2022-1048: (unk) ALSA: pcm: Fix races among concurrent hw_params and hw_free calls CVE-2022-1055: (unk) net: sched: fix use-after-free in tc_new_tfilter() CVE-2022-1116: (unk) CVE-2022-1158: (unk) KVM: x86/mmu: do compare-and-exchange of gPTE via the user address - CVE-2022-1184: (unk) + CVE-2022-1184: (unk) ext4: verify dir block before splitting it CVE-2022-1195: (unk) hamradio: improve the incomplete fix to avoid NPD CVE-2022-1198: (unk) drivers: hamradio: 6pack: fix UAF bug caused by mod_timer() CVE-2022-1199: (unk) ax25: Fix NULL pointer dereference in ax25_kill_by_device CVE-2022-1204: (unk) ax25: Fix refcount leaks caused by ax25_cb_del() - CVE-2022-1205: (unk) ax25: Fix NULL pointer dereferences in ax25 timers CVE-2022-1247: (unk) CVE-2022-1263: (unk) KVM: avoid NULL pointer dereference in kvm_dirty_ring_push CVE-2022-1280: (unk) drm: avoid circular locks in drm_mode_getconnector @@ -350,34 +341,27 @@ CVE-2022-1462: (unk) CVE-2022-1508: (unk) io_uring: reexpand under-reexpanded iters CVE-2022-1516: (unk) net/x25: Fix null-ptr-deref caused by x25_disconnect - CVE-2022-1651: (unk) virt: acrn: fix a memory leak in acrn_dev_ioctl() - CVE-2022-1652: (unk) - CVE-2022-1671: (unk) rxrpc: fix some null-ptr-deref bugs in server_key.c + CVE-2022-1652: (unk) floppy: use a statically allocated error counter CVE-2022-1679: (unk) CVE-2022-1729: (unk) perf: Fix sys_perf_event_open() race against self CVE-2022-1734: (unk) nfc: nfcmrvl: main: reorder destructive operations in nfcmrvl_nci_unregister_dev to avoid bugs CVE-2022-1786: (unk) io_uring: remove io_identity CVE-2022-1789: (unk) KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID CVE-2022-1836: (unk) floppy: disable FDRAWCMD by default - CVE-2022-1852: (unk) KVM: x86: avoid calling x86 emulator without a decoded instruction CVE-2022-1882: (unk) - CVE-2022-1943: (unk) udf: Avoid using stale lengthOfImpUse CVE-2022-1966: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-1972: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() - CVE-2022-1973: (unk) fs/ntfs3: Fix invalid free in log_replay CVE-2022-1974: (unk) nfc: replace improper check device_is_registered() in netlink related functions CVE-2022-1975: (unk) NFC: netlink: fix sleep in atomic bug when firmware download timeout - CVE-2022-1976: (unk) io_uring: reinstate the inflight tracking - CVE-2022-1998: (unk) fanotify: Fix stale file descriptor in copy_event_to_user() CVE-2022-20008: (unk) mmc: block: fix read single on recovery logic CVE-2022-20132: (unk) HID: add hid_is_usb() function to make it simpler for USB detection CVE-2022-20141: (unk) igmp: Add ip_mc_list lock in ip_check_mc_rcu CVE-2022-20148: (unk) f2fs: fix UAF in f2fs_available_free_memory - CVE-2022-20153: (unk) io_uring: return back safer resurrect CVE-2022-20154: (unk) sctp: use call_rcu to free endpoint CVE-2022-20166: (unk) drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions CVE-2022-2078: (unk) netfilter: nf_tables: sanitize nft_set_desc_concat_parse() CVE-2022-21499: (unk) lockdown: also lock down previous kgdb use + CVE-2022-2153: (unk) KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast() CVE-2022-22942: (unk) drm/vmwgfx: Fix stale file descriptors on failed usercopy CVE-2022-23036: (unk) xen/grant-table: add gnttab_try_end_foreign_access() CVE-2022-23037: (unk) xen/netfront: don't use gnttab_query_foreign_access() for mapped status @@ -396,21 +380,20 @@ CVE-2022-25375: (unk) usb: gadget: rndis: check size of RNDIS_MSG_SET command CVE-2022-25636: (unk) netfilter: nf_tables_offload: incorrect flow offload action array size CVE-2022-26490: (unk) nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION - CVE-2022-26878: (unk) CVE-2022-26966: (unk) sr9700: sanity check for packet length CVE-2022-27223: (unk) USB: gadget: validate endpoint index for xilinx udc CVE-2022-27666: (unk) esp: Fix possible buffer overflow in ESP transformation - CVE-2022-27950: (unk) HID: elo: fix memory leak in elo_probe CVE-2022-28356: (unk) llc: fix netdevice reference leaks in llc_ui_bind() CVE-2022-28388: (unk) can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path CVE-2022-28389: (unk) can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path CVE-2022-28390: (unk) can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path - CVE-2022-28796: (unk) jbd2: fix use-after-free of transaction_t race CVE-2022-28893: (unk) SUNRPC: Ensure we flush any closed sockets before xs_xprt_free() - CVE-2022-29156: (unk) RDMA/rtrs-clt: Fix possible double free in error case CVE-2022-29581: (unk) net/sched: cls_u32: fix netns refcount changes in u32_change() CVE-2022-29582: (unk) io_uring: fix race between timeout flush and removal - CVE-2022-29968: (unk) io_uring: fix uninitialized field in rw io_kiocb CVE-2022-30594: (unk) ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE + CVE-2022-32250: (unk) netfilter: nf_tables: disallow non-stateful expression in sets earlier CVE-2022-32296: (unk) tcp: increase source port perturb table to 2^16 CVE-2022-32981: (unk) powerpc/32: Fix overread/overwrite of thread_struct via ptrace + CVE-2022-33981: (unk) floppy: disable FDRAWCMD by default + CVE-2022-34494: (unk) rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev() + CVE-2022-34495: (unk) rpmsg: virtio: Fix possible double free in rpmsg_probe()
diff --git a/data/CVEs.txt b/data/CVEs.txt index 38169b4..2150ea9 100644 --- a/data/CVEs.txt +++ b/data/CVEs.txt
@@ -1220,7 +1220,7 @@ CVE-2018-9568: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 9d538fa60bad4f7b23193c89e843797a1cf71ef3 (v2.6.12-rc2 to v4.14-rc4) CVE-2019-0136: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 588f7d39b3592a36fb7702ae3b8bdd9be4621e2f (v2.6.12-rc2 to v5.2-rc6) CVE-2019-0145: e3219ce6a775468368fb270fae3eb82a6787b436 - 7015ca3df965378bcef072cca9cd63ed098665b5 (v4.6-rc1 to v5.2-rc1) -CVE-2019-0146: (n/a) - (n/a) (unk to unk) +CVE-2019-0146: e3219ce6a775468368fb270fae3eb82a6787b436 - 7015ca3df965378bcef072cca9cd63ed098665b5 (v4.6-rc1 to v5.2-rc1) CVE-2019-0147: e3219ce6a775468368fb270fae3eb82a6787b436 - 7015ca3df965378bcef072cca9cd63ed098665b5 (v4.6-rc1 to v5.2-rc1) CVE-2019-0148: 5c3c48ac6bf56367c4e89f6453cd2d61e50375bd - c004804dceee9ca384d97d9857ea2e2795c2651d (v3.12-rc1 to v5.2-rc1) CVE-2019-0149: c27eac48160de72dee33d42b5a33cc7b8a2eb1f5 - f5a2b3ffb7af4b6ae5b905850a1a6bad82b268b9 (v4.17-rc1 to v5.3-rc1) @@ -1319,7 +1319,7 @@ CVE-2019-15793: Vendor Specific CVE-2019-15794: 2f502839e85ab265f03f25f30d6463154aee5473 - 2896900e22f8212606a1837d89a6bbce314ceeda (v4.19-rc1 to v5.12) CVE-2019-15807: 2908d778ab3e244900c310974e1fc1c69066e450 - 3b0541791453fbe7f42867e310e0c9eb6295364d (v2.6.19-rc1 to v5.2-rc3) -CVE-2019-15902: (n/a) - (n/a) (unk to unk) +CVE-2019-15902: local - (n/a) (unk to unk) CVE-2019-15916: 1d24eb4815d1e0e8b451ecc546645f8ef1176d4f - 895a5e96dbd6386c8e78e5b78e067dcc67b7f0ab (v2.6.38-rc1 to v5.1-rc1) CVE-2019-15917: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 56897b217a1d0a91c9920cb418d6b3fe922f590a (v2.6.12-rc2 to v5.1-rc1) CVE-2019-15918: 9764c02fcbad40001fd3f63558d918e4d519bb75 - b57a55e2200ede754e4dc9cce4ba9402544b9365 (v4.14-rc2 to v5.1-rc6) @@ -1576,7 +1576,7 @@ CVE-2020-12114: 84d17192d2afd52aeba88c71ae4959a015f56a38 - 4edbe133f851c9e3a2f2a1db367e826b01e72594 (v3.10-rc1 to v5.3-rc1) CVE-2020-12351: dbb50887c8f619fc5c3489783ebc3122bc134a31 - f19425641cb2572a33cb074d5e30283720bd4d22 (v4.8-rc5 to v5.10-rc1) CVE-2020-12352: 47f2d97d38816aaca94c9b6961c6eff1cfcd0bd6 - eddb7732119d53400f48a02536a84c509692faa8 (v3.6-rc1 to v5.10-rc1) -CVE-2020-12362: (n/a) - c784e5249e773689e38d2bc1749f08b986621a26 (unk to v5.11-rc1) +CVE-2020-12362: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - c784e5249e773689e38d2bc1749f08b986621a26 (v2.6.12-rc2 to v5.11-rc1) CVE-2020-12363: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - c784e5249e773689e38d2bc1749f08b986621a26 (v2.6.12-rc2 to v5.11-rc1) CVE-2020-12364: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - c784e5249e773689e38d2bc1749f08b986621a26 (v2.6.12-rc2 to v5.11-rc1) CVE-2020-12464: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 056ad39ee9253873522f6469c3364964a322912b (v2.6.12-rc2 to v5.7-rc3) @@ -1657,7 +1657,7 @@ CVE-2020-26145: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 65c415a144ad8132b6a6d97d4a1919ffc728e2d1 (v2.6.12-rc2 to v5.13-rc4) CVE-2020-26147: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 965a7d72e798eb7af0aa67210e37cf7ecd1c9cad (v2.6.12-rc2 to v5.13-rc4) CVE-2020-26541: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 56c5812623f95313f6a46fbf0beee7fa17c68bbf (v2.6.12-rc2 to v5.13-rc1) -CVE-2020-26555: (n/a) - (n/a) (unk to unk) +CVE-2020-26555: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 6d19628f539fccf899298ff02ee4c73e4bf6df3f (v2.6.12-rc2 to v5.13-rc1) CVE-2020-26556: (n/a) - (n/a) (unk to unk) CVE-2020-26557: (n/a) - (n/a) (unk to unk) CVE-2020-26558: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 6d19628f539fccf899298ff02ee4c73e4bf6df3f (v2.6.12-rc2 to v5.13-rc1) @@ -1736,7 +1736,7 @@ CVE-2021-0605: d3623099d3509fa68fa28235366049dd3156c63a - 37bd22420f856fcd976989f1d4f1f7ad28e1fcac (v3.15-rc1 to v5.8) CVE-2021-0606: Vendor Specific CVE-2021-0695: (n/a) - (n/a) (unk to unk) -CVE-2021-0707: (n/a) - 05cd84691eafcd7959a1e120d5e72c0dd98c5d91 (unk to v5.11-rc3) +CVE-2021-0707: 4ab59c3c638c6c8952bf07739805d20eb6358a4d - 05cd84691eafcd7959a1e120d5e72c0dd98c5d91 (v5.8-rc4 to v5.11-rc3) CVE-2021-0920: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - cbcf01128d0a92e131bd09f1688fe032480b65ca (v2.6.12-rc2 to v5.14-rc4) CVE-2021-0924: Vendor Specific CVE-2021-0929: (n/a) - 3e9e0c5c764704218c0960ffdb139de075afaadf (unk to v5.6-rc1) @@ -1753,7 +1753,7 @@ CVE-2021-20226: fcb323cc53e29d9cc696d606bb42736b32dd9825 - 0f2122045b946241a9e549c2a76cea54fa58a7ff (v5.5-rc1 to v5.10-rc1) CVE-2021-20239: 0d01da6afc5402f60325c5da31b22f7d56689b49 - a7b75c5a8c41445f33efb663887ff5f5c3b4454b (v5.3-rc1 to v5.9-rc1) CVE-2021-20261: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - a0c80efe5956ccce9fe7ae5c78542578c07bc20a (v2.6.12-rc2 to v4.5-rc5) -CVE-2021-20265: (n/a) - fa0dc04df259ba2df3ce1920e9690c7842f8fa4b (unk to v4.5-rc3) +CVE-2021-20265: b3ca9b02b00704053a38bfe4c31dbbb9c13595d0 - fa0dc04df259ba2df3ce1920e9690c7842f8fa4b (v2.6.38 to v4.5-rc3) CVE-2021-20268: 3f50f132d8400e129fc9eb68b5020167ef80a244 - bc895e8b2a64e502fbba72748d59618272052a8b (v5.7-rc1 to v5.11-rc5) CVE-2021-20292: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 5de5b6ecf97a021f29403aa272cb4e03318ef586 (v2.6.12-rc2 to v5.9-rc1) CVE-2021-20317: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 511885d7061eda3eb1faf3f57dcc936ff75863f1 (v2.6.12-rc2 to v5.4-rc1) @@ -1766,11 +1766,11 @@ CVE-2021-22600: 61fad6816fc10fb8793a925d5c1256d1c3db0cd2 - ec6af094ea28f0f2dda1a6a33b14cd57e36a9755 (v5.6 to v5.16-rc6) CVE-2021-23133: 61023658760032e97869b07d54be9681d2529e77 - b166a20b07382b8bc1dcee2a448715c9c2c81b5b (v4.10-rc1 to v5.12-rc8) CVE-2021-23134: 8a4cd82d62b5ec7e5482333a72b58a4eea4979f0 - c61760e6940dd4039a7f5e84a6afc9cdbf4d82b6 (v5.12-rc7 to v5.13-rc1) -CVE-2021-26401: (n/a) - 244d00b5dd4755f8df892c86cab35fb2cfd4f14b (unk to v5.17-rc8) +CVE-2021-26401: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 244d00b5dd4755f8df892c86cab35fb2cfd4f14b (v2.6.12-rc2 to v5.17-rc8) CVE-2021-26708: c0cfa2d8a788fcf45df5bf4070ab2474c88d543a - c518adafa39f37858697ac9309c6cf1805581446 (v5.5-rc1 to v5.11-rc7) CVE-2021-26930: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 871997bc9e423f05c7da7c9178e62dde5df2a7f8 (v2.6.12-rc2 to v5.12-rc1) CVE-2021-26931: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 5a264285ed1cd32e26d9de4f3c8c6855e467fd63 (v2.6.12-rc2 to v5.12-rc1) -CVE-2021-26932: (n/a) - a35f2ef3b7376bfd0a57f7844bd7454389aae1fc (unk to v5.12-rc1) +CVE-2021-26932: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - a35f2ef3b7376bfd0a57f7844bd7454389aae1fc (v2.6.12-rc2 to v5.12-rc1) CVE-2021-26934: c575b7eeb89f94356997abd62d6d5a0590e259b7 - (n/a) (v4.18-rc1 to unk) CVE-2021-27363: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 688e8128b7a92df982709a4137ea4588d16f24aa (v2.6.12-rc2 to v5.12-rc2) CVE-2021-27364: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 688e8128b7a92df982709a4137ea4588d16f24aa (v2.6.12-rc2 to v5.12-rc2) @@ -1816,7 +1816,7 @@ CVE-2021-33034: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 5c4c8c9544099bb9043a10a5318130a943e32fc3 (v2.6.12-rc2 to v5.13-rc1) CVE-2021-33061: (n/a) - 008ca35f6e87be1d60b6af3d1ae247c6d5c2531d (unk to v5.18-rc1) CVE-2021-33098: 872844ddb9e44a49b759ae3e34250fefbab656f2 - 63e39d29b3da02e901349f6cd71159818a4737a6 (v3.8-rc1 to v5.13-rc4) -CVE-2021-33135: (n/a) - (n/a) (unk to unk) +CVE-2021-33135: 1728ab54b4be94aed89276eeb8e750a345659765 - 08999b2489b4c9b939d7483dbd03702ee4576d96 (v5.11-rc1 to v5.17-rc8) CVE-2021-33200: 7fedb63a8307dda0ec3b8969a3b233a1dd7ea8e0 - 3d0220f6861d713213b015b582e9f21e5b28d2e0 (v5.12-rc8 to v5.13-rc4) CVE-2021-3347: c1e2f0eaf015fb7076d51a339011f2383e6dd389 - 12bb3f7f1b03d5913b3f9d4236a488aa7774dfe9 (v4.15-rc9 to v5.11-rc6) CVE-2021-3348: 9561a7ade0c205bc2ee035a2ac880478dcc1a024 - b98e762e3d71e893b221f871825dc64694cfb258 (v4.10-rc1 to v5.11-rc6) @@ -1888,7 +1888,7 @@ CVE-2021-3847: (n/a) - (n/a) (unk to unk) CVE-2021-3864: (n/a) - (n/a) (unk to unk) CVE-2021-3892: (n/a) - (n/a) (unk to unk) -CVE-2021-3894: (n/a) - a2d859e3fc97e79d907761550dbc03ff1b36479c (unk to v5.15-rc6) +CVE-2021-3894: cc16f00f6529aa2378f2b949a6f68e9dc6dec363 - a2d859e3fc97e79d907761550dbc03ff1b36479c (v4.11-rc1 to v5.15-rc6) CVE-2021-3896: (n/a) - 1f3e2e97c003f80c4b087092b225c8787ff91e4d (unk to v5.15-rc6) CVE-2021-39633: c54419321455631079c7d6e60bc732dd0c5914c5 - 1d011c4803c72f3907eccfc1ec63caefb852fcbf (v3.10-rc1 to v5.14) CVE-2021-39634: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - f8d4f44df056c5b504b0d49683fb7279218fd207 (v2.6.12-rc2 to v5.9-rc8) @@ -1897,17 +1897,17 @@ CVE-2021-39656: b0841eefd9693827afb9888235e26ddd098f9cef - 14fbbc8297728e880070f7b077b3301a8c698ef9 (v5.3-rc8 to v5.12-rc3) CVE-2021-39657: 7a3e97b0dc4bbac2ba7803564ab0057722689921 - 35fc4cd34426c242ab015ef280853b7bff101f48 (v3.4-rc1 to v5.11-rc4) CVE-2021-39685: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 153a2d7e3350cc89d406ba2d35be8793a64c2038 (v2.6.12-rc2 to v5.16-rc5) -CVE-2021-39686: (n/a) - 29bc22ac5e5bc63275e850f0c8fc549e3d0e306b (unk to v5.16-rc1) -CVE-2021-39698: (n/a) - 42288cb44c4b5fff7653bc392b583a2b8bd6a8c0 (unk to v5.16-rc5) -CVE-2021-39711: (n/a) - 6e6fddc78323533be570873abb728b7e0ba7e024 (unk to v4.18-rc6) -CVE-2021-39713: (n/a) - e368fdb61d8e7c67ac70791b23345b26d7bbc661 (unk to v4.20-rc1) -CVE-2021-39714: (n/a) - e3b914bc7eb6bcecc5b597ee6e31fc40442c291f (unk to v4.12-rc1) -CVE-2021-39800: (n/a) - (n/a) (unk to unk) -CVE-2021-39801: (n/a) - (n/a) (unk to unk) +CVE-2021-39686: 457b9a6f09f011ebcb9b52cc203a6331a6fc2de7 - 29bc22ac5e5bc63275e850f0c8fc549e3d0e306b (v2.6.29-rc1 to v5.16-rc1) +CVE-2021-39698: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 42288cb44c4b5fff7653bc392b583a2b8bd6a8c0 (v2.6.12-rc2 to v5.16-rc5) +CVE-2021-39711: 1cf1cae963c2e6032aebe1637e995bc2f5d330f4 - 6e6fddc78323533be570873abb728b7e0ba7e024 (v4.12-rc1 to v4.18-rc6) +CVE-2021-39713: 32a4f5ecd7381f30ae3bb36dea77a150ba68af2e - e368fdb61d8e7c67ac70791b23345b26d7bbc661 (v4.19-rc1 to v4.20-rc1) +CVE-2021-39714: b892bf75b2034e0e4af23da9a276160b8ad26c15 - e3b914bc7eb6bcecc5b597ee6e31fc40442c291f (v3.14-rc1 to v4.12-rc1) +CVE-2021-39800: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - (n/a) (v2.6.12-rc2 to unk) +CVE-2021-39801: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - (n/a) (v2.6.12-rc2 to unk) CVE-2021-39802: (n/a) - (n/a) (unk to unk) CVE-2021-4001: a23740ec43ba022dbfd139d0fe3eff193216272b - 353050be4c19e102178ccc05988101887c25ae53 (v5.5-rc1 to v5.16-rc2) CVE-2021-4002: 24669e58477e2752c1fbca9c1c988e9dd0d79d15 - a4a118f2eead1d6c49e00765de89878288d4b890 (v3.6-rc1 to v5.16-rc3) -CVE-2021-4023: (n/a) - 713b9825a4c47897f66ad69409581e7734a8728e (unk to v5.15-rc1) +CVE-2021-4023: 3146cba99aa284b1d4a10fbd923df953f1d18035 - 713b9825a4c47897f66ad69409581e7734a8728e (CVE Caused by Backporting) CVE-2021-4028: 732d41c545bb359cbb8c94698bdc1f8bcf82279c - bc0bdc5afaa740d782fbf936aaeebd65e5c2921d (v5.10-rc1 to v5.15-rc4) CVE-2021-4032: 421221234ada41b4a9f0beeb08e30b07388bd4bd - f7d8a19f9a056a05c5c509fa65af472a322abfee (v5.15-rc1 to v5.15-rc7) CVE-2021-4037: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 01ea173e103edd5ec41acec65b9261b87e123fc2 (v2.6.12-rc2 to v5.12-rc1-dontuse) @@ -1918,7 +1918,7 @@ CVE-2021-4095: 629b5348841a10afce49fbe81619863fd839f217 - 55749769fe608fa3f4a075e42e89d237c8e37637 (v5.12-rc1-dontuse to v5.17-rc1) CVE-2021-41073: 4017eb91a9e79bbb5d14868c207436f4a6a0af50 - 16c8d2df7ec0eed31b7d3b61cb13206a7fb930cc (v5.10-rc1 to v5.15-rc2) CVE-2021-4135: 395cacb5f1a0a290f1ae9ca4692c400d2b57a705 - 481221775d53d6215a6e5e9ce1cce6d2b4ab9a46 (v4.16-rc1 to v5.16-rc6) -CVE-2021-4148: (n/a) - a4aeaa06d45e90f9b279f0b09de84bd00006e733 (unk to v5.15) +CVE-2021-4148: 99cb0dbd47a15d395bf3faa78dc122bc5efe3fc0 - a4aeaa06d45e90f9b279f0b09de84bd00006e733 (v5.4-rc1 to v5.15) CVE-2021-4149: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 19ea40dddf1833db868533958ca066f368862211 (v2.6.12-rc2 to v5.15-rc6) CVE-2021-4150: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 9fbfabfda25d8774c5a08634fdd2da000a924890 (v2.6.12-rc2 to v5.15-rc7) CVE-2021-4154: 8d2451f4994fa60a57617282bab91b98266a00b1 - 3b0462726e7ef281c35a7a4ae33e93ee2bc9975b (v5.1-rc1 to v5.14-rc2) @@ -1950,12 +1950,12 @@ CVE-2021-45480: aced3ce57cd37b5ca332bcacd370d01f5a8c5371 - 5f9562ebe710c307adc5f666bf1a2162ee7977c0 (v5.13-rc4 to v5.16-rc6) CVE-2021-45485: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 62f20e068ccc50d6ab66fdb72ba90da2b9418c99 (v2.6.12-rc2 to v5.14-rc1) CVE-2021-45486: 73f156a6e8c1074ac6327e0abd1169e95eb66463 - aa6dd211e4b1dde9d5dc25d699d35f789ae7eeba (v3.16-rc1 to v5.13-rc1) -CVE-2021-45868: (n/a) - 9bf3d20331295b1ecb81f4ed9ef358c51699a050 (unk to v5.16-rc1) +CVE-2021-45868: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 9bf3d20331295b1ecb81f4ed9ef358c51699a050 (v2.6.12-rc2 to v5.16-rc1) CVE-2021-46283: 65038428b2c6c5be79d3f78a6b79c0cdc3a58a41 - ad9f151e560b016b6ad3280b48e42fa11e1a5440 (v5.7-rc1 to v5.13-rc7) -CVE-2022-0001: (n/a) - d45476d9832409371537013ebdd8dc1a7781f97a (unk to v5.17-rc8) -CVE-2022-0002: (n/a) - d45476d9832409371537013ebdd8dc1a7781f97a (unk to v5.17-rc8) -CVE-2022-0168: (n/a) - d6f5e358452479fa8a773b5c6ccc9e4ec5a20880 (unk to v5.18-rc1) -CVE-2022-0171: (n/a) - (n/a) (unk to unk) +CVE-2022-0001: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - d45476d9832409371537013ebdd8dc1a7781f97a (v2.6.12-rc2 to v5.17-rc8) +CVE-2022-0002: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - d45476d9832409371537013ebdd8dc1a7781f97a (v2.6.12-rc2 to v5.17-rc8) +CVE-2022-0168: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - d6f5e358452479fa8a773b5c6ccc9e4ec5a20880 (v2.6.12-rc2 to v5.18-rc1) +CVE-2022-0171: f980f9c31a923e9040dee0bc679a5f5b09e61f40 - 683412ccf61294d727ead4a73d97397396e69a6b (v5.10-rc1 to v5.18-rc4) CVE-2022-0185: 3e1aeb00e6d132efc151dacc062b38269bc9eccc - 722d94847de29310e8aa03fcbdb41fc92c521756 (v5.1-rc1 to v5.17-rc1) CVE-2022-0264: 37086bfdc737ea6f66bf68dcf16757004d68e1e1 - 7d3baf0afa3aa9102d6a521a8e4c41888bb79882 (v5.12-rc1-dontuse to v5.16-rc6) CVE-2022-0286: 18cb261afd7bf50134e5ccacc5ec91ea16efadd4 - 105cd17a866017b45f3c45901b394c711c97bf40 (v5.9-rc1 to v5.14-rc2) @@ -1968,105 +1968,110 @@ CVE-2022-0480: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 0f12156dff2862ac54235fc72703f18770769042 (v2.6.12-rc2 to v5.15-rc1) CVE-2022-0487: 1b66e94e6b9995323190f31c51d8e1a6f516627e - bd2db32e7c3e35bd4d9b8bbff689434a50893546 (v3.16-rc1 to v5.17-rc4) CVE-2022-0492: 81a6a5cdd2c5cd70874b88afe524ab09e9e869af - 24f6008564183aa120d07c03d9289519c2fe02af (v2.6.24-rc1 to v5.17-rc3) -CVE-2022-0494: (n/a) - cc8f7fe1f5eab010191aa4570f27641876fa1267 (unk to v5.17-rc5) -CVE-2022-0500: (n/a) - 20b2aff4bc15bda809f994761d5719827d66c0b4 (unk to v5.17-rc1) +CVE-2022-0494: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - cc8f7fe1f5eab010191aa4570f27641876fa1267 (v2.6.12-rc2 to v5.17-rc5) +CVE-2022-0500: 63d9b80dcf2c67bc5ade61cbbaa09d7af21f43f1 - 20b2aff4bc15bda809f994761d5719827d66c0b4 (v5.10-rc1 to v5.17-rc1) CVE-2022-0516: 19e1227768863a1469797c13ef8fea1af7beac2c - 2c212e1baedcd782b2535a3f86bc491977677c0e (v5.7-rc1 to v5.17-rc4) -CVE-2022-0617: (n/a) - 7fc3b7c2981bbd1047916ade327beccb90994eee (unk to v5.17-rc2) -CVE-2022-0644: (n/a) - 032146cda85566abcd1c4884d9d23e4e30a07e9a (unk to v5.15-rc7) +CVE-2022-0617: 52ebea749aaed195245701a8f90a23d672c7a933 - 7fc3b7c2981bbd1047916ade327beccb90994eee (v4.2-rc1 to v5.17-rc2) +CVE-2022-0644: b844f0ecbc5626ec26cfc70cb144a4c9b85dc3f2 - 032146cda85566abcd1c4884d9d23e4e30a07e9a (v4.6-rc1 to v5.15-rc7) CVE-2022-0646: 7bd9890f3d74e96f0e1a898f68decfc711de3001 - 6c342ce2239c182c2428ce5a44cb32330434ae6e (v5.17-rc1 to v5.17-rc5) -CVE-2022-0742: (n/a) - 2d3916f3189172d5c69d33065c3c21119fe539fc (unk to v5.17-rc7) -CVE-2022-0812: (n/a) - 912288442cb2f431bf3c8cb097a5de83bc6dbac1 (unk to v5.8-rc6) +CVE-2022-0742: f185de28d9ae6c978135993769352e523ee8df06 - 2d3916f3189172d5c69d33065c3c21119fe539fc (v5.13-rc1 to v5.17-rc7) +CVE-2022-0812: 302d3deb20682a076e1ab551821cacfdc81c5e4f - 912288442cb2f431bf3c8cb097a5de83bc6dbac1 (v4.7-rc1 to v5.8-rc6) CVE-2022-0847: f6dd975583bd8ce088400648fd9819e4691c8958 - 9d2231c5d74e13b2a0546fee6737ee4446017903 (v5.8-rc1 to v5.17-rc6) -CVE-2022-0850: (n/a) - ce3aba43599f0b50adbebff133df8d08a3d5fffe (unk to v5.14-rc1) -CVE-2022-0854: (n/a) - aa6f8dcbab473f3a3c7454b74caa46d36cdc5d13 (unk to v5.17-rc8) -CVE-2022-0995: (n/a) - c993ee0f9f81caf5767a50d1faeba39a0dc82af2 (unk to v5.17-rc8) -CVE-2022-0998: (n/a) - 870aaff92e959e29d40f9cfdb5ed06ba2fc2dae0 (unk to v5.17-rc1) -CVE-2022-1011: (n/a) - 0c4bcfdecb1ac0967619ee7ff44871d93c08c909 (unk to v5.17-rc8) -CVE-2022-1012: (n/a) - b2d057560b8107c633b39aabe517ff9d93f285e3 (unk to v5.18-rc6) -CVE-2022-1015: (n/a) - 6e1acfa387b9ff82cfc7db8cc3b6959221a95851 (unk to v5.18-rc1) -CVE-2022-1016: (n/a) - 4c905f6740a365464e91467aa50916555b28213d (unk to v5.18-rc1) -CVE-2022-1043: (n/a) - a30f895ad3239f45012e860d4f94c1a388b36d14 (unk to v5.14-rc7) -CVE-2022-1048: (n/a) - 92ee3c60ec9fe64404dc035e7c41277d74aa26cb (unk to v5.18-rc1) -CVE-2022-1055: (n/a) - 04c2a47ffb13c29778e2a14e414ad4cb5a5db4b5 (unk to v5.17-rc3) +CVE-2022-0850: a86c61812637c7dd0c57e29880cffd477b62f2e7 - ce3aba43599f0b50adbebff133df8d08a3d5fffe (v2.6.19-rc2 to v5.14-rc1) +CVE-2022-0854: ddbd89deb7d32b1fbb879f48d68fda1a8ac58e8e - aa6f8dcbab473f3a3c7454b74caa46d36cdc5d13 (v5.17-rc6 to v5.17-rc8) +CVE-2022-0995: c73be61cede5882f9605a852414db559c0ebedfd - c993ee0f9f81caf5767a50d1faeba39a0dc82af2 (v5.8-rc1 to v5.17-rc8) +CVE-2022-0998: 4c8cf31885f69e86be0b5b9e6677a26797365e1d - 870aaff92e959e29d40f9cfdb5ed06ba2fc2dae0 (v5.7-rc1 to v5.17-rc1) +CVE-2022-1011: c3021629a0d820247ee12b6c5192a1d5380e21c6 - 0c4bcfdecb1ac0967619ee7ff44871d93c08c909 (v2.6.35-rc1 to v5.17-rc8) +CVE-2022-1012: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - b2d057560b8107c633b39aabe517ff9d93f285e3 (v2.6.12-rc2 to v5.18-rc6) +CVE-2022-1015: 345023b0db315648ccc3c1a36aee88304a8b4d91 - 6e1acfa387b9ff82cfc7db8cc3b6959221a95851 (v5.12-rc1-dontuse to v5.18-rc1) +CVE-2022-1016: 96518518cc417bb0a8c80b9fb736202e28acdf96 - 4c905f6740a365464e91467aa50916555b28213d (v3.13-rc1 to v5.18-rc1) +CVE-2022-1043: 61cf93700fe6359552848ed5e3becba6cd760efa - a30f895ad3239f45012e860d4f94c1a388b36d14 (v5.12-rc3 to v5.14-rc7) +CVE-2022-1048: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 92ee3c60ec9fe64404dc035e7c41277d74aa26cb (v2.6.12-rc2 to v5.18-rc1) +CVE-2022-1055: 470502de5bdb1ed0def643a4458593a40b8f6b66 - 04c2a47ffb13c29778e2a14e414ad4cb5a5db4b5 (v5.1-rc1 to v5.17-rc3) CVE-2022-1116: (n/a) - (n/a) (unk to unk) -CVE-2022-1158: (n/a) - 2a8859f373b0a86f0ece8ec8312607eacf12485d (unk to v5.18-rc1) -CVE-2022-1184: (n/a) - (n/a) (unk to unk) -CVE-2022-1195: (n/a) - b2f37aead1b82a770c48b5d583f35ec22aabb61e (unk to v5.16-rc7) -CVE-2022-1198: (n/a) - efe4186e6a1b54bf38b9e05450d43b0da1fd7739 (unk to v5.17-rc6) -CVE-2022-1199: (n/a) - 71171ac8eb34ce7fe6b3267dce27c313ab3cb3ac (unk to v5.17-rc8) -CVE-2022-1204: (n/a) - 9fd75b66b8f68498454d685dc4ba13192ae069b0 (unk to v5.18-rc1) -CVE-2022-1205: (n/a) - fc6d01ff9ef03b66d4a3a23b46fc3c3d8cf92009 (unk to v5.18-rc1) +CVE-2022-1158: bd53cb35a3e9adb73a834a36586e9ad80e877767 - 2a8859f373b0a86f0ece8ec8312607eacf12485d (v5.2-rc1 to v5.18-rc1) +CVE-2022-1184: (n/a) - 46c116b920ebec58031f0a78c5ea9599b0d2a371 (unk to v5.19-rc1) +CVE-2022-1195: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - b2f37aead1b82a770c48b5d583f35ec22aabb61e (v2.6.12-rc2 to v5.16-rc7) +CVE-2022-1198: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - efe4186e6a1b54bf38b9e05450d43b0da1fd7739 (v2.6.12-rc2 to v5.17-rc6) +CVE-2022-1199: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 71171ac8eb34ce7fe6b3267dce27c313ab3cb3ac (v2.6.12-rc2 to v5.17-rc8) +CVE-2022-1204: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 9fd75b66b8f68498454d685dc4ba13192ae069b0 (v2.6.12-rc2 to v5.18-rc1) +CVE-2022-1205: 7ec02f5ac8a5be5a3f20611731243dc5e1d9ba10 - fc6d01ff9ef03b66d4a3a23b46fc3c3d8cf92009 (v5.17-rc4 to v5.18-rc1) CVE-2022-1247: (n/a) - (n/a) (unk to unk) -CVE-2022-1263: (n/a) - 5593473a1e6c743764b08e3b6071cb43b5cfa6c4 (unk to v5.18-rc3) -CVE-2022-1280: (n/a) - 869e76f7a918f010bd4518d58886969b1f642a04 (unk to v5.15-rc1) -CVE-2022-1353: (n/a) - 9a564bccb78a76740ea9d75a259942df8143d02c (unk to v5.17) -CVE-2022-1419: (n/a) - 4b848f20eda5974020f043ca14bacf7a7e634fc8 (unk to v5.6-rc2) +CVE-2022-1263: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 5593473a1e6c743764b08e3b6071cb43b5cfa6c4 (v2.6.12-rc2 to v5.18-rc3) +CVE-2022-1280: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 869e76f7a918f010bd4518d58886969b1f642a04 (v2.6.12-rc2 to v5.15-rc1) +CVE-2022-1353: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 9a564bccb78a76740ea9d75a259942df8143d02c (v2.6.12-rc2 to v5.17) +CVE-2022-1419: 502e95c6678505474f1056480310cd9382bacbac - 4b848f20eda5974020f043ca14bacf7a7e634fc8 (v4.1-rc1 to v5.6-rc2) CVE-2022-1462: (n/a) - (n/a) (unk to unk) -CVE-2022-1508: (n/a) - 89c2b3b74918200e46699338d7bcc19b1ea12110 (unk to v5.15-rc1) -CVE-2022-1516: (n/a) - 7781607938c8371d4c2b243527430241c62e39c2 (unk to v5.18-rc1) -CVE-2022-1651: (n/a) - ecd1735f14d6ac868ae5d8b7a2bf193fa11f388b (unk to v5.18-rc1) -CVE-2022-1652: (n/a) - (n/a) (unk to unk) -CVE-2022-1671: (n/a) - ff8376ade4f668130385839cef586a0990f8ef87 (unk to v5.18-rc1) +CVE-2022-1508: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 89c2b3b74918200e46699338d7bcc19b1ea12110 (v2.6.12-rc2 to v5.15-rc1) +CVE-2022-1516: 4becb7ee5b3d2829ed7b9261a245a77d5b7de902 - 7781607938c8371d4c2b243527430241c62e39c2 (v5.7-rc5 to v5.18-rc1) +CVE-2022-1651: 9c5137aedd112f78a968bdd2325de2ea06df46c0 - ecd1735f14d6ac868ae5d8b7a2bf193fa11f388b (v5.12-rc1-dontuse to v5.18-rc1) +CVE-2022-1652: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - f71f01394f742fc4558b3f9f4c7ef4c4cf3b07c8 (v2.6.12-rc2 to v5.18-rc6) +CVE-2022-1671: 12da59fcab5a05d01773e7cb413b8b8f3bb4e334 - ff8376ade4f668130385839cef586a0990f8ef87 (v5.11-rc1 to v5.18-rc1) CVE-2022-1678: 73a6bab5aa2a83cb7df85805e08bc03b4065aea7 - 864e5c090749448e879e86bec06ee396aa2c19c5 (v4.18-rc1 to v4.20-rc1) -CVE-2022-1679: (n/a) - (n/a) (unk to unk) -CVE-2022-1729: (n/a) - 3ac6487e584a1eb54071dbe1212e05b884136704 (unk to v5.18) +CVE-2022-1679: fb9987d0f748c983bb795a86f47522313f701a08 - (n/a) (v2.6.35-rc1 to unk) +CVE-2022-1729: f63a8daa5812afef4f06c962351687e1ff9ccb2b - 3ac6487e584a1eb54071dbe1212e05b884136704 (v4.0-rc1 to v5.18) CVE-2022-1734: 3194c6870158e305dac2af52f83681e9cb67280f - d270453a0d9ec10bb8a802a142fb1b3601a83098 (v4.4-rc1 to v5.18-rc6) CVE-2022-1786: 500a373d731ac506612db12631ec21295c1ff360 - 4379bf8bd70b5de6bba7d53015b0c36c57a634ee (v5.10-rc1 to v5.12-rc1-dontuse) -CVE-2022-1789: (n/a) - 9f46c187e2e680ecd9de7983e4d081c3391acc76 (unk to v5.18) +CVE-2022-1789: eb4b248e152d3ecf189b9d32c04961360dbd938a - 9f46c187e2e680ecd9de7983e4d081c3391acc76 (v4.19-rc1 to v5.18) CVE-2022-1836: (n/a) - 233087ca063686964a53c829d547c7571e3f67bf (unk to v5.18-rc5) -CVE-2022-1852: (n/a) - fee060cd52d69c114b62d1a2948ea9648b5131f9 (unk to v5.19-rc1) +CVE-2022-1852: 4aa2691dcbd38ce1c461188799d863398dd2865d - fee060cd52d69c114b62d1a2948ea9648b5131f9 (v5.12-rc1-dontuse to v5.19-rc1) CVE-2022-1882: (n/a) - (n/a) (unk to unk) -CVE-2022-1943: (n/a) - c1ad35dd0548ce947d97aaf92f7f2f9a202951cf (unk to v5.18-rc7) +CVE-2022-1943: 979a6e28dd969a2222545001f79566b4bfaf06c0 - c1ad35dd0548ce947d97aaf92f7f2f9a202951cf (v5.15-rc1 to v5.18-rc7) CVE-2022-1966: (n/a) - 520778042ccca019f3ffa136dd0ca565c486cedd (unk to v5.19-rc1) -CVE-2022-1972: (n/a) - fecf31ee395b0295f2d7260aa29946b7605f7c85 (unk to v5.19-rc1) -CVE-2022-1973: (n/a) - f26967b9f7a830e228bb13fb41bd516ddd9d789d (unk to v5.19-rc1) -CVE-2022-1974: (n/a) - da5c0f119203ad9728920456a0f52a6d850c01cd (unk to v5.18-rc6) -CVE-2022-1975: (n/a) - 4071bf121d59944d5cd2238de0642f3d7995a997 (unk to v5.18-rc6) -CVE-2022-1976: (n/a) - 9cae36a094e7e9d6e5fe8b6dcd4642138b3eb0c7 (unk to v5.19-rc1) -CVE-2022-1998: (n/a) - ee12595147ac1fbfb5bcb23837e26dd58d94b15d (unk to v5.17-rc3) +CVE-2022-1972: f3a2181e16f1dcbf5446ed43f6b5d9f56c459f85 - fecf31ee395b0295f2d7260aa29946b7605f7c85 (v5.6-rc1 to v5.19-rc1) +CVE-2022-1973: b46acd6a6a627d876898e1c84d3f84902264b445 - f26967b9f7a830e228bb13fb41bd516ddd9d789d (v5.15-rc1 to v5.19-rc1) +CVE-2022-1974: 3e256b8f8dfa309a80b5dece388d85d9a9801a29 - da5c0f119203ad9728920456a0f52a6d850c01cd (v3.1-rc1 to v5.18-rc6) +CVE-2022-1975: 9674da8759df0d6c0d24e1ede6e2a1acdef91e3c - 4071bf121d59944d5cd2238de0642f3d7995a997 (v3.11-rc1 to v5.18-rc6) +CVE-2022-1976: d5361233e9ab920e135819f73dd8466355f1fddd - 9cae36a094e7e9d6e5fe8b6dcd4642138b3eb0c7 (v5.18-rc2 to v5.19-rc1) +CVE-2022-1998: f644bc449b37cc32d3ce7b36a88073873aa21bd5 - ee12595147ac1fbfb5bcb23837e26dd58d94b15d (v5.13-rc7 to v5.17-rc3) CVE-2022-20008: 81196976ed946cbf36bb41ddda402853c7df7cfa - 54309fde1a352ad2674ebba004a79f7d20b9f037 (v4.16-rc1 to v5.17-rc5) CVE-2022-20132: (n/a) - f83baa0cb6cfc92ebaf7f9d3a99d7e34f2e77a8a (unk to v5.16-rc5) -CVE-2022-20141: (n/a) - 23d2b94043ca8835bd1e67749020e839f396a1c2 (unk to v5.15-rc1) +CVE-2022-20141: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 23d2b94043ca8835bd1e67749020e839f396a1c2 (v2.6.12-rc2 to v5.15-rc1) CVE-2022-20148: (n/a) - 5429c9dbc9025f9a166f64e22e3a69c94fd5b29b (unk to v5.16-rc1) -CVE-2022-20153: (n/a) - f70865db5ff35f5ed0c7e9ef63e7cca3d4947f04 (unk to v5.13-rc1) -CVE-2022-20154: (n/a) - 5ec7d18d1813a5bead0b495045606c93873aecbb (unk to v5.16-rc8) -CVE-2022-20166: (n/a) - aa838896d87af561a33ecefea1caa4c15a68bc47 (unk to v5.10-rc1) -CVE-2022-2078: (n/a) - fecf31ee395b0295f2d7260aa29946b7605f7c85 (unk to v5.19-rc1) -CVE-2022-21499: (n/a) - eadb2f47a3ced5c64b23b90fd2a3463f63726066 (unk to v5.19-rc1) +CVE-2022-20153: cb5e1b81304e089ee3ca948db4d29f71902eb575 - f70865db5ff35f5ed0c7e9ef63e7cca3d4947f04 (v5.12-rc1-dontuse to v5.13-rc1) +CVE-2022-20154: d25adbeb0cdb860fb39e09cdd025e9cfc954c5ab - 5ec7d18d1813a5bead0b495045606c93873aecbb (v4.14-rc1 to v5.16-rc8) +CVE-2022-20166: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - aa838896d87af561a33ecefea1caa4c15a68bc47 (v2.6.12-rc2 to v5.10-rc1) +CVE-2022-2078: f3a2181e16f1dcbf5446ed43f6b5d9f56c459f85 - fecf31ee395b0295f2d7260aa29946b7605f7c85 (v5.6-rc1 to v5.19-rc1) +CVE-2022-21499: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - eadb2f47a3ced5c64b23b90fd2a3463f63726066 (v2.6.12-rc2 to v5.19-rc1) +CVE-2022-2153: 1e08ec4a130e2745d96df169e67c58df98a07311 - 00b5f37189d24ac3ed46cb7f11742094778c46ce (v3.7-rc1 to v5.18-rc1) CVE-2022-22942: c906965dee22d5e95d0651759ba107b420212a9f - a0f90c8815706981c483a652a6aefca51a5e191c (v4.14-rc1 to v5.17-rc2) -CVE-2022-23036: (n/a) - 6b1775f26a2da2b05a6dc8ec2b5d14e9a4701a1a (unk to v5.17-rc8) -CVE-2022-23037: (n/a) - 31185df7e2b1d2fa1de4900247a12d7b9c7087eb (unk to v5.17-rc8) -CVE-2022-23038: (n/a) - 6b1775f26a2da2b05a6dc8ec2b5d14e9a4701a1a (unk to v5.17-rc8) -CVE-2022-23039: (n/a) - d3b6372c5881cb54925212abb62c521df8ba4809 (unk to v5.17-rc8) -CVE-2022-23040: (n/a) - 3777ea7bac3113005b7180e6b9dadf16d19a5827 (unk to v5.17-rc8) -CVE-2022-23041: (n/a) - 5cadd4bb1d7fc9ab201ac14620d1a478357e4ebd (unk to v5.17-rc8) -CVE-2022-23042: (n/a) - 66e3531b33ee51dad17c463b4d9c9f52e341503d (unk to v5.17-rc8) +CVE-2022-23036: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 6b1775f26a2da2b05a6dc8ec2b5d14e9a4701a1a (v2.6.12-rc2 to v5.17-rc8) +CVE-2022-23037: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 31185df7e2b1d2fa1de4900247a12d7b9c7087eb (v2.6.12-rc2 to v5.17-rc8) +CVE-2022-23038: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 6b1775f26a2da2b05a6dc8ec2b5d14e9a4701a1a (v2.6.12-rc2 to v5.17-rc8) +CVE-2022-23039: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - d3b6372c5881cb54925212abb62c521df8ba4809 (v2.6.12-rc2 to v5.17-rc8) +CVE-2022-23040: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 3777ea7bac3113005b7180e6b9dadf16d19a5827 (v2.6.12-rc2 to v5.17-rc8) +CVE-2022-23041: 71ebd71921e451f0f942ddfe85d01e31ddc6eb88 - 5cadd4bb1d7fc9ab201ac14620d1a478357e4ebd (v4.12-rc1 to v5.17-rc8) +CVE-2022-23042: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 66e3531b33ee51dad17c463b4d9c9f52e341503d (v2.6.12-rc2 to v5.17-rc8) CVE-2022-23222: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - c25b2ae136039ffa820c26138ed4a5e5f3ab3841 (v2.6.12-rc2 to v5.17-rc1) -CVE-2022-23960: (n/a) - 9dd78194a3722fa6712192cdd4f7032d45112a9a (unk to v5.17-rc8) +CVE-2022-23960: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 9dd78194a3722fa6712192cdd4f7032d45112a9a (v2.6.12-rc2 to v5.17-rc8) CVE-2022-24122: d64696905554e919321e31afc210606653b8f6a4 - f9d87929d451d3e649699d0f1d74f71f77ad38f5 (v5.14-rc1 to v5.17-rc2) CVE-2022-24448: 0dd2b474d0b69d58859399b1df7fdc699ea005d4 - ac795161c93699d600db16c1a8cc23a65a1eceaf (v3.6-rc1 to v5.17-rc2) CVE-2022-24958: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 89f3594d0de58e8a57d92d497dea9fee3d4b9cda (v2.6.12-rc2 to v5.17-rc1) CVE-2022-24959: 0781168e23a2fc8dceb989f11fc5b39b3ccacc35 - 29eb31542787e1019208a2e1047bb7c76c069536 (v4.19-rc7 to v5.17-rc2) CVE-2022-25258: (n/a) - 75e5b4849b81e19e9efe1654b30d7f3151c33c2c (unk to v5.17-rc4) CVE-2022-25265: (n/a) - (n/a) (unk to unk) -CVE-2022-25375: (n/a) - 38ea1eac7d88072bbffb630e2b3db83ca649b826 (unk to v5.17-rc4) -CVE-2022-25636: (n/a) - b1a5983f56e371046dcf164f90bfaf704d2b89f6 (unk to v5.17-rc6) +CVE-2022-25375: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 38ea1eac7d88072bbffb630e2b3db83ca649b826 (v2.6.12-rc2 to v5.17-rc4) +CVE-2022-25636: be2861dc36d77ff3778979b9c3c79ada4affa131 - b1a5983f56e371046dcf164f90bfaf704d2b89f6 (v5.4-rc1 to v5.17-rc6) CVE-2022-26490: 26fc6c7f02cb26c39c4733de3dbc3c0646fc1074 - 4fbcc1a4cb20fe26ad0225679c536c80f1648221 (v4.0-rc1 to v5.17-rc1) -CVE-2022-26878: (n/a) - (n/a) (unk to unk) -CVE-2022-26966: (n/a) - e9da0b56fe27206b49f39805f7dcda8a89379062 (unk to v5.17-rc6) -CVE-2022-27223: (n/a) - 7f14c7227f342d9932f9b918893c8814f86d2a0d (unk to v5.17-rc6) +CVE-2022-26878: afd2daa26c7abd734d78bd274fc6c59a15e61063 - (n/a) (v5.13-rc1 to unk) +CVE-2022-26966: c9b37458e95629b1d1171457afdcc1bf1eb7881d - e9da0b56fe27206b49f39805f7dcda8a89379062 (v3.12-rc1 to v5.17-rc6) +CVE-2022-27223: 1f7c51660034091dc134fcc534b7f1fa86a6e823 - 7f14c7227f342d9932f9b918893c8814f86d2a0d (v3.18-rc1 to v5.17-rc6) CVE-2022-27666: cac2661c53f35cbe651bef9b07026a5a05ab8ce0 - ebe48d368e97d007bfeb76fcb065d6cfc4c96645 (v4.11-rc1 to v5.17-rc8) -CVE-2022-27950: (n/a) - 817b8b9c5396d2b2d92311b46719aad5d3339dbe (unk to v5.17-rc5) -CVE-2022-28356: (n/a) - 764f4eb6846f5475f1244767d24d25dd86528a4a (unk to v5.18-rc1) -CVE-2022-28388: (n/a) - 3d3925ff6433f98992685a9679613a2cc97f3ce2 (unk to v5.18-rc1) -CVE-2022-28389: (n/a) - 04c9b00ba83594a29813d6b1fb8fdc93a3915174 (unk to v5.18-rc1) -CVE-2022-28390: (n/a) - c70222752228a62135cee3409dccefd494a24646 (unk to v5.18-rc1) -CVE-2022-28796: (n/a) - cc16eecae687912238ee6efbff71ad31e2bc414e (unk to v5.18-rc1) -CVE-2022-28893: (n/a) - f00432063db1a0db484e85193eccc6845435b80e (unk to v5.18-rc2) -CVE-2022-29156: (n/a) - 8700af2cc18c919b2a83e74e0479038fd113c15d (unk to v5.17-rc6) +CVE-2022-27950: fbf42729d0e91332e8ce75a1ecce08b8a2dab9c1 - 817b8b9c5396d2b2d92311b46719aad5d3339dbe (v5.15-rc1 to v5.17-rc5) +CVE-2022-28356: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 764f4eb6846f5475f1244767d24d25dd86528a4a (v2.6.12-rc2 to v5.18-rc1) +CVE-2022-28388: 0024d8ad1639e32d717445c69ca813fd19c2a91c - 3d3925ff6433f98992685a9679613a2cc97f3ce2 (v3.9-rc1 to v5.18-rc1) +CVE-2022-28389: 51f3baad7de943780ce0c17bd7975df567dd6e14 - 04c9b00ba83594a29813d6b1fb8fdc93a3915174 (v4.12-rc1 to v5.18-rc1) +CVE-2022-28390: 702171adeed3607ee9603ec30ce081411e36ae42 - c70222752228a62135cee3409dccefd494a24646 (v2.6.32-rc1 to v5.18-rc1) +CVE-2022-28796: 4f98186848707f530669238d90e0562d92a78aab - cc16eecae687912238ee6efbff71ad31e2bc414e (v5.17-rc3 to v5.18-rc1) +CVE-2022-28893: a73881c96d73ee72b7dbbd38a6eeef66182a8ef7 - f00432063db1a0db484e85193eccc6845435b80e (v5.1-rc1 to v5.18-rc2) +CVE-2022-29156: eab098246625e91c1cbd6e8f75b09e4c9c28a9fc - 8700af2cc18c919b2a83e74e0479038fd113c15d (v5.12-rc1-dontuse to v5.17-rc6) CVE-2022-29581: 35c55fc156d85a396a975fc17636f560fc02fd65 - 3db09e762dc79584a69c10d74a6b98f89a9979f8 (v4.14 to v5.18-rc4) -CVE-2022-29582: (n/a) - e677edbcabee849bfdd43f1602bccbecf736a646 (unk to v5.18-rc2) -CVE-2022-29968: (n/a) - 32452a3eb8b64e01e2be717f518c0be046975b9d (unk to v5.18-rc5) -CVE-2022-30594: (n/a) - ee1fee900537b5d9560e9f937402de5ddc8412f3 (unk to v5.18-rc1) +CVE-2022-29582: 2665abfd757fb35a241c6f0b1ebf620e3ffb36fb - e677edbcabee849bfdd43f1602bccbecf736a646 (v5.5-rc1 to v5.18-rc2) +CVE-2022-29968: 3e08773c3841e9db7a520908cc2b136a77d275ff - 32452a3eb8b64e01e2be717f518c0be046975b9d (v5.16-rc1 to v5.18-rc5) +CVE-2022-30594: 13c4a90119d28cfcb6b5bdd820c233b86c2b0237 - ee1fee900537b5d9560e9f937402de5ddc8412f3 (v4.3-rc1 to v5.18-rc1) +CVE-2022-32250: 0b2d8a7b638b5034d2d68f6add8af94daaa1d4cd - 520778042ccca019f3ffa136dd0ca565c486cedd (v4.1-rc1 to v5.19-rc1) CVE-2022-32296: (n/a) - 4c2c8f03a5ab7cb04ec64724d7d176d00bcc91e5 (unk to v5.18-rc6) -CVE-2022-32981: (n/a) - 8e1278444446fc97778a5e5c99bca1ce0bbc5ec9 (unk to v5.19-rc2) +CVE-2022-32981: 87fec0514f613f8ac43c01b0bc0bc7072c5d10ae - 8e1278444446fc97778a5e5c99bca1ce0bbc5ec9 (v3.13-rc1 to v5.19-rc2) +CVE-2022-33981: 1da177e4c3f41524e886b7f1b8a0c1fc7321cac2 - 233087ca063686964a53c829d547c7571e3f67bf (v2.6.12-rc2 to v5.18-rc5) +CVE-2022-34494: (n/a) - 1680939e9ecf7764fba8689cfb3429c2fe2bb23c (unk to v5.19-rc1) +CVE-2022-34495: (n/a) - c2eecefec5df1306eafce28ccdf1ca159a552ecc (unk to v5.19-rc1)
diff --git a/data/cmts.json b/data/cmts.json index e77f4e4..82ef21e 100644 --- a/data/cmts.json +++ b/data/cmts.json
@@ -1,4 +1,5 @@ { + "0024d8ad1639e32d717445c69ca813fd19c2a91c": "v3.9-rc1", "0031c41be5c529f8329e327b63cde92ba1284842": "v2.6.34-rc7", "003a3e1d60b0bb5cfb4feffb05a2083db2346364": "v4.2-rc1", "003b686ace820ce2d635a83f10f2d7f9c147dabc": "v5.2-rc1", @@ -6,6 +7,7 @@ "004a403c2e954734090a69aedc7f4f822bdcc142": "v2.6.27-rc1", "005145378c9ad7575a01b6ce1ba118fb427f583a": "v4.11-rc1", "008ca35f6e87be1d60b6af3d1ae247c6d5c2531d": "v5.18-rc1", + "00b5f37189d24ac3ed46cb7f11742094778c46ce": "v5.18-rc1", "01310bb7c9c98752cc763b36532fab028e0f8f81": "v4.20-rc3", "01330d7288e0050c5aaabc558059ff91589e67cd": "v4.5-rc1", "0143fc5e9f6f5aad4764801015bc8d4b4a278200": "v3.6-rc1", @@ -87,6 +89,7 @@ "086ba77a6db00ed858ff07451bedee197df868c9": "v3.18-rc3", "088aaf17aa79300cab14dbee2569c58cfafd7d6e": "v5.1-rc6", "0896b752302662909b52895bd7f601136001069d": "v2.6.15-rc1", + "08999b2489b4c9b939d7483dbd03702ee4576d96": "v5.17-rc8", "089bc0143f489bd3a4578bdff5f4ca68fb26f341": "v4.12-rc7", "08dff7b7d629807dbb1f398c68dd9cd58dd657a1": "v3.6-rc1", "091c12e1f50cce93b1af90e56cad88787ec86dfb": "v5.3-rc1", @@ -116,6 +119,7 @@ "0b0509508beff65c1d50541861bc0d4973487dc5": "v5.2-rc1", "0b074ab7fc0d575247b9cc9f93bb7e007ca38840": "v5.2-rc3", "0b29669c065f60501e7289e1950fa2a618962358": "v2.6.24-rc6", + "0b2d8a7b638b5034d2d68f6add8af94daaa1d4cd": "v4.1-rc1", "0b4419162aa6c4204843f3a13b48d9ab821d3167": "v2.6.27-rc1", "0b79459b482e85cb7426aa7da683a9f2c97aeae1": "v3.9-rc4", "0b99d58902dd82fa51216eb8e0d6ddd8c43e90e4": "v3.12-rc1", @@ -203,6 +207,7 @@ "12bb3f7f1b03d5913b3f9d4236a488aa7774dfe9": "v5.11-rc6", "12ca6ad2e3a896256f086497a7c7406a547ee373": "v4.4", "12d6e7538e2d418c08f082b1b44ffa5fb7270ed8": "v3.7-rc1", + "12da59fcab5a05d01773e7cb413b8b8f3bb4e334": "v5.11-rc1", "12f09ccb4612734a53e47ed5302e0479c10a50f8": "v3.1-rc1", "12f7a505331e6b2754684b509f2ac8f0011ce644": "v3.6-rc1", "130056275ade730e7a79c110212c8815202773ee": "v4.5-rc6", @@ -213,6 +218,7 @@ "1399c59fa92984836db90538cf92397fe7caaa57": "v5.4-rc4", "13ac695e7ea16cb27b804fadf2ff569dbcab6af1": "v4.5-rc1", "13bf9fbff0e5e099e2b6f003a0ab8ae145436309": "v4.11", + "13c4a90119d28cfcb6b5bdd820c233b86c2b0237": "v4.3-rc1", "13d2b4d11d69a92574a55bfd985cfb0ca77aebdc": "v3.8", "13d518074a952d33d47c428419693f63389547e9": "v3.4-rc5", "13ec7f10b87f5fc04c4ccbd491c94c7980236a74": "v5.2-rc6", @@ -237,6 +243,7 @@ "16306a61d3b7c433c7a127ec6224867b88ece687": "v5.0-rc1", "163ae1c6ad6299b19e22b4a35d5ab24a89791a98": "v4.8-rc6", "1651333b09743887bc2dd3d158a11853a2be3fe7": "v2.6.39-rc1", + "1680939e9ecf7764fba8689cfb3429c2fe2bb23c": "v5.19-rc1", "16981742717b04644a41052570fb502682a315d2": "v5.5-rc2", "16ae16c6e5616c084168740990fc508bda6655d4": "v4.9-rc7", "16b304f3404f8e0243d5ee2b70b68767b7b59b2b": "v3.12-rc1", @@ -244,6 +251,7 @@ "16d51a590a8ce3befb1308e0e7ab77f3b661af33": "v5.3-rc2", "16e5726269611b71c930054ffe9b858c1cea88eb": "v3.2-rc1", "17266ee939849cb095ed7dd9edbec4162172226b": "v4.19-rc1", + "1728ab54b4be94aed89276eeb8e750a345659765": "v5.11-rc1", "174ab544e3bc0b0c944b8e642618203dd0c2ecdf": "v5.0-rc1", "1756d7994ad85c2479af6ae5a9750b92324685af": "v5.16", "175e476b8cdf2a4de7432583b49c871345e4f8a1": "v5.12-rc5", @@ -323,6 +331,7 @@ "1c9e8def43a3452e7af658b340f5f4f4ecde5c38": "v4.11-rc1", "1cb3db1cf383a3c7dbda1aa0ce748b0958759947": "v5.14-rc2", "1cc5ef91d2ff94d2bf2de3b3585423e8a1051cb6": "v5.9-rc7", + "1cf1cae963c2e6032aebe1637e995bc2f5d330f4": "v4.12-rc1", "1d011c4803c72f3907eccfc1ec63caefb852fcbf": "v5.14", "1d147bfa64293b2723c4fec50922168658e613ba": "v3.14-rc6", "1d24eb4815d1e0e8b451ecc546645f8ef1176d4f": "v2.6.38-rc1", @@ -351,6 +360,7 @@ "1f3e2e97c003f80c4b087092b225c8787ff91e4d": "v5.15-rc6", "1f461dcdd296eecedaffffc6bae2bfa90bd7eb89": "v4.6-rc1", "1f522509c77a5dea8dc384b735314f03908a6415": "v2.6.35-rc1", + "1f7c51660034091dc134fcc534b7f1fa86a6e823": "v3.18-rc1", "1f86840f897717f86d523a13e99a447e6a5d2fa5": "v3.6-rc7", "1fa2337a315a2448c5434f41e00d56b01a22283c": "v4.2-rc1", "1fb254aa983bf190cfd685d40c64a480a9bafaee": "v5.3-rc6", @@ -423,6 +433,7 @@ "263b4509ec4d47e0da3e753f85a39ea12d1eff24": "v3.14-rc1", "265e60a170d0a0ecfc2d20490134ed2c48dd45ab": "v4.14-rc5", "26634c4b1868323f49f8cd24c3493b57819867fd": "v3.10-rc1", + "2665abfd757fb35a241c6f0b1ebf620e3ffb36fb": "v5.5-rc1", "2671fa4dc0109d3fb581bc3078fdf17b5d9080f6": "v5.13-rc1", "2677d20677314101293e6da0094ede7b5526d2b1": "v4.17-rc7", "26896f01467a28651f7a536143fe5ac8449d4041": "v5.9-rc1", @@ -530,6 +541,7 @@ "2febc839133280d5a5e8e1179c94ea674489dae2": "v3.18-rc2", "3010a0663fd949d122eca0561b06b0a9453f7866": "v4.16-rc4", "3021ad9a4f009265e6063e617fb91306980af16c": "v4.5-rc1", + "302d3deb20682a076e1ab551821cacfdc81c5e4f": "v4.7-rc1", "303911cfc5b95d33687d9046133ff184cf5043ff": "v5.3-rc5", "30572418b445d85fcfe6c8fe84c947d2606767d8": "v4.11-rc2", "307f2fb95e9b96b3577916e73d92e104f8f26494": "v3.11-rc1", @@ -543,6 +555,7 @@ "30f7ea1c2b5f5fb7462c5ae44fe2e40cb2d6a474": "v4.4-rc1", "31185df7e2b1d2fa1de4900247a12d7b9c7087eb": "v5.17-rc8", "3118a4f652c7b12c752f3222af0447008f9b2368": "v3.9-rc4", + "3146cba99aa284b1d4a10fbd923df953f1d18035": "v5.15-rc1", "3148bf041d169a083aa31bd69bedd5bfb7ffe215": "v3.2-rc1", "3151527ee007b73a0ebd296010f1c0454a919c7d": "v3.9-rc5", "315409b0098fb2651d86553f0436b70502b29bb2": "v4.19-rc1", @@ -558,6 +571,7 @@ "327455817a92522e669d2d11367e42af5956a8ed": "v3.18-rc1", "3289025aedc018f8fd9d0e37fb9efa0c6d531ffa": "v4.11-rc1", "32927393dc1ccd60fb2bdc05b9e8e88753761469": "v5.8-rc1", + "32a4f5ecd7381f30ae3bb36dea77a150ba68af2e": "v4.19-rc1", "32c231164b762dddefa13af5a0101032c70b50ef": "v4.9-rc7", "32d43cd391bacb5f0814c2624399a5dad3501d09": "v4.16-rc7", "32ecc75ded72e0425713a7ffe2050fef6e54e564": "v4.12-rc1", @@ -572,6 +586,7 @@ "3444d7da1839b851eefedd372978d8a982316c36": "v2.6.36-rc1", "3446c13b268af86391d06611327006b059b8bab1": "v4.5", "3450121997ce872eb7f1248417225827ea249710": "v5.2", + "345023b0db315648ccc3c1a36aee88304a8b4d91": "v5.12-rc1-dontuse", "345c0dbf3a30872d9b204db96b5857cd00808cae": "v5.2-rc1", "34b2cef20f19c87999fff3da4071e66937db9644": "v4.10-rc8", "34b3be18a04ecdc610aae4c48e5d1b799d8689f6": "v5.4-rc3", @@ -687,6 +702,7 @@ "3db09e762dc79584a69c10d74a6b98f89a9979f8": "v5.18-rc4", "3de81b758853f0b29c61e246679d20b513c4cfec": "v4.9-rc8", "3e0097499839e0fe3af380410eababe5a47c4cf9": "v4.14-rc2", + "3e08773c3841e9db7a520908cc2b136a77d275ff": "v5.16-rc1", "3e10986d1d698140747fcfc2761ec9cb64c1d582": "v3.6", "3e1aeb00e6d132efc151dacc062b38269bc9eccc": "v5.1-rc1", "3e21f4af170bebf47c187c1ff8bf155583c9f3b1": "v4.12-rc2", @@ -778,7 +794,9 @@ "467fa15356acfb7b2efa38839c3e76caa4e6e0ea": "v4.3-rc1", "4683f42fde3977bdb4e8a09622788cc8b5313778": "v3.9-rc7", "468f6eafa6c44cb2c5d8aad35e12f06c240a812a": "v4.15-rc5", + "46c116b920ebec58031f0a78c5ea9599b0d2a371": "v5.19-rc1", "46e624b95c36d729bdf24010fff11d16f6fe94fa": "v2.6.33-rc1", + "470502de5bdb1ed0def643a4458593a40b8f6b66": "v5.1-rc1", "47057abde515155a4fee53038e7772d6b387e0aa": "v4.10-rc1", "4738c1db1593687713869fa69e733eebc7b0d6d8": "v2.6.26-rc1", "47bb117911b051bbc90764a8bff96543cbd2005f": "v5.1-rc1", @@ -809,8 +827,10 @@ "4a491b1ab11ca0556d2fda1ff1301e862a2d44c4": "v4.16-rc1", "4a90f09b20f4622dcbff1f0e1e6bae1704f8ad8c": "v2.6.28-rc1", "4a9d46a9fe14401f21df69cea97c62396d5fb053": "v5.4-rc1", + "4aa2691dcbd38ce1c461188799d863398dd2865d": "v5.12-rc1-dontuse", "4aa7afb0ee20a97fbf0c5bab3df028d5fb85fdab": "v5.5-rc1", "4ab25786c87eb20857bbb715c3ae34ec8fd6a214": "v3.17-rc2", + "4ab59c3c638c6c8952bf07739805d20eb6358a4d": "v5.8-rc4", "4ac06a1e013cf5fdd963317ffd3b968560f33bba": "v5.13-rc5", "4ac2813cc867ae563a1ba5a9414bfb554e5796fa": "v5.4-rc4", "4ac7249ea5a0ceef9f8269f63f33cc873c3fac61": "v3.14-rc1", @@ -826,6 +846,7 @@ "4b855078601fc422dbac3059f2215e776f49780f": "v3.16-rc1", "4b8feff251da3d7058b5779e21b33a85c686b974": "v3.17-rc1", "4bdab43323b459900578b200a4b8cf9713ac8fab": "v2.6.36-rc5", + "4becb7ee5b3d2829ed7b9261a245a77d5b7de902": "v5.7-rc5", "4c03b862b12f980456f9de92db6d508a4999b788": "v4.10", "4c185ce06dca14f5cea192f5a2c981ef50663f2b": "v4.1-rc1", "4c27fe4c4c84f3afd504ecff2420cc1ad420d38e": "v4.11-rc1", @@ -834,6 +855,7 @@ "4c48abe91be03d191d0c20cc755877da2cb35622": "v4.13-rc1", "4c59406ed00379c8663f8663d82b2537467ce9d7": "v5.6", "4c87308bdea31a7b4828a51f6156e6f721a1fcc9": "v3.6-rc7", + "4c8cf31885f69e86be0b5b9e6677a26797365e1d": "v5.7-rc1", "4c905f6740a365464e91467aa50916555b28213d": "v5.18-rc1", "4cdf507d54525842dfd9f6313fdafba039084046": "v3.18-rc1", "4ce001abafafe77e5dd943d1480fc9f87894e96f": "v2.6.32-rc1", @@ -873,12 +895,14 @@ "4f16f7ff3bc02f6e1845677235fea157bdc0e59c": "v4.16-rc1", "4f3882177240a1f55e45a3d241d3121341bead78": "v5.5-rc6", "4f7019c7eb33967eb87766e0e4602b5576873680": "v5.15", + "4f98186848707f530669238d90e0562d92a78aab": "v5.17-rc3", "4f996e234dad488e5d9ba0858bc1bae12eff82c3": "v4.7-rc4", "4fbcc1a4cb20fe26ad0225679c536c80f1648221": "v5.17-rc1", "4fd6931ebe24640bec72b91ba612325843a5e3cc": "v2.6.25-rc1", "500a373d731ac506612db12631ec21295c1ff360": "v5.10-rc1", "50145474f6ef4a9c19205b173da6264a644c7489": "v5.9-rc6", "50220dead1650609206efe91f0cc116132d59b3f": "v4.6-rc1", + "502e95c6678505474f1056480310cd9382bacbac": "v4.1-rc1", "50535249f624d0072cd885bcdce4e4b6fb770160": "v5.12-rc5", "505d9dcb0f7ddf9d075e729523a33d38642ae680": "v5.15-rc4", "50d88758a3f9787cbdbdbc030560b815721eab4b": "v2.6.30-rc1", @@ -906,6 +930,7 @@ "52400ba946759af28442dee6265c5c0180ac7122": "v2.6.31-rc1", "52c479697c9b73f628140dcdfcd39ea302d05482": "v5.9-rc2", "52e8c38001d8ef0ca07ef428e480cd4a35e46abf": "v4.18-rc1", + "52ebea749aaed195245701a8f90a23d672c7a933": "v4.2-rc1", "5320918b9a87865223fd6b228e530bf30bc64d9d": "v3.4-rc1", "5329722057d41aebc31e391907a501feaa42f7d9": "v5.11-rc1", "532c34b5fbf1687df63b3fcd5b2846312ac943c6": "v4.6-rc6", @@ -1054,6 +1079,7 @@ "6160968cee8b90a5dd95318d716e31d7775c4ef3": "v3.11-rc5", "61a96113de51e1f8f43ac98cbeadb54e60045905": "v3.6-rc1", "61c9fed41638249f8b6ca5345064eb1beb50179f": "v2.6.17-rc5", + "61cf93700fe6359552848ed5e3becba6cd760efa": "v5.12-rc3", "61ea0c0ba904a55f55317d850c1072ff7835ac92": "v3.13-rc1", "61f5d698cc97600e813ca5cf8e449b1ea1c11492": "v4.5-rc1", "61fad6816fc10fb8793a925d5c1256d1c3db0cd2": "v5.6", @@ -1079,6 +1105,7 @@ "6397fac4915ab3002dc15aae751455da1a852f25": "v4.15-rc1", "6399f1fae4ec29fab5ec76070435555e256ca3a6": "v4.13-rc2", "639b321b4d8f4e412bfbb2a4a19bfebc1e68ace4": "v2.6.30-rc1", + "63d9b80dcf2c67bc5ade61cbbaa09d7af21f43f1": "v5.10-rc1", "63ddf68de52efaac40a9287e44266ac30e71dd36": "v3.18-rc1", "63e39d29b3da02e901349f6cd71159818a4737a6": "v5.13-rc4", "6402939ec86eaf226c8b8ae00ed983936b164908": "v5.4-rc2", @@ -1121,6 +1148,7 @@ "681c1615f8914451cfd432ad30e2f307b6490542": "v5.14-rc1", "681fef8380eb818c0b845fca5d2ab1dcbab114ee": "v4.7-rc1", "6829e274a623187c24f7cfc0e3d35f25d087fcc5": "v4.1-rc2", + "683412ccf61294d727ead4a73d97397396e69a6b": "v5.18-rc4", "68501df92d116b760777a2cfda314789f926476f": "v5.4-rc2", "6859d49475d4f32abe640372117e4b687906e6b6": "v2.6.25-rc1", "687cb0884a714ff484d038e9190edc874edcf146": "v4.15-rc2", @@ -1213,6 +1241,7 @@ "6ff38bd40230af35e446239396e5fc8ebd6a5248": "v4.20-rc5", "6ff7b060535e87c2ae14dd8548512abfdda528fb": "v5.0-rc8", "7015ca3df965378bcef072cca9cd63ed098665b5": "v5.2-rc1", + "702171adeed3607ee9603ec30ce081411e36ae42": "v2.6.32-rc1", "70303420b5721c38998cf987e6b7d30cc62d4ff1": "v4.18-rc2", "704620afc70cf47abb9d6a1a57f3825d2bca49cf": "v4.20-rc6", "7053aee26a3548ebaba046ae2e52396ccf56ac6c": "v3.14-rc1", @@ -1231,6 +1260,7 @@ "717adfdaf14704fd3ec7fa2c04520c0723247eac": "v4.18-rc5", "71b3c126e61177eb693423f2e18a1914205b165e": "v4.5-rc1", "71bb99a02b32b4cc4265118e85f6035ca72923f0": "v3.19-rc3", + "71ebd71921e451f0f942ddfe85d01e31ddc6eb88": "v4.12-rc1", "720db068634c91553a8e1d9a0fcd8c7050e06d2b": "v5.1-rc1", "72196393a5e3d28c21679e3b745c06dd4a5b24c9": "v4.14-rc1", "722d94847de29310e8aa03fcbdb41fc92c521756": "v5.17-rc1", @@ -1364,6 +1394,7 @@ "7e24969022cbd61ddc586f14824fc205661bb124": "v5.9-rc4", "7e62a699aafbd97928f19a8356d719b71b0e151c": "v4.10-rc1", "7e70cb4978507cf31d76b90e4cfb4c28cad87f0c": "v2.6.38-rc1", + "7ec02f5ac8a5be5a3f20611731243dc5e1d9ba10": "v5.17-rc4", "7ed9abfe8e9f62384f9b11c9fca19e551dbec5bd": "v5.11-rc1", "7f14c7227f342d9932f9b918893c8814f86d2a0d": "v5.17-rc6", "7f3dc0088b98533f17128058fac73cd8b2752ef1": "v4.15-rc6", @@ -1463,6 +1494,7 @@ "872844ddb9e44a49b759ae3e34250fefbab656f2": "v3.8-rc1", "875b4e3763dbc941f15143dd1a18d10bb0be303b": "v3.12-rc1", "87c8331fcf72e501c3a3c0cdc5c9391ec72f7cf2": "v3.4-rc1", + "87fec0514f613f8ac43c01b0bc0bc7072c5d10ae": "v3.13-rc1", "880a3a5325489a143269a8e172e7563ebf9897bc": "v4.17-rc1", "8821f5dc187bdf16cfb32ef5aa8c3035273fa79a": "v3.12-rc2", "882213990d32fd224340a4533f6318dd152be4b2": "v5.12-rc2", @@ -1606,8 +1638,10 @@ "96051572c819194c37a8367624b285be10297eca": "v3.6-rc1", "963030817060e4f109be1993b9ae8f81dbf5e11a": "v2.6.31-rc5", "96442e42429e5f268ab97a3586c7694a3acc55a7": "v3.8-rc1", + "96518518cc417bb0a8c80b9fb736202e28acdf96": "v3.13-rc1", "965a7d72e798eb7af0aa67210e37cf7ecd1c9cad": "v5.13-rc4", "966031f340185eddd05affcf72b740549f056348": "v4.15-rc6", + "9674da8759df0d6c0d24e1ede6e2a1acdef91e3c": "v3.11-rc1", "967c9cca2cc50569efc65945325c173cecba83bd": "v4.12-rc1", "969d1b180d987c2be02de890d0fff0f66a0e80de": "v4.14-rc1", "96aa1b22bd6bb9fccf62f6261f390ed6f3e7967f": "v5.8-rc1", @@ -1620,6 +1654,7 @@ "9720b4bc76a83807c68e00c62bfba575251bb73e": "v2.6.39-rc1", "973c096f6a85e5b5f2a295126ba6928d9a6afd45": "v5.9-rc6", "9764c02fcbad40001fd3f63558d918e4d519bb75": "v4.14-rc2", + "979a6e28dd969a2222545001f79566b4bfaf06c0": "v5.15-rc1", "979d63d50c0c0f7bc537bf821e056cc9fe5abd38": "v5.0-rc1", "979e0d74651ba5aa533277f2a6423d0f982fb6f6": "v3.14-rc6", "97bc3633bec7ed0fdfbda6b9cf86c51e4f58f8e2": "v3.1-rc1", @@ -1641,6 +1676,7 @@ "999b874f4aa39b7abf45662ff0900f943ddb2d02": "v2.6.32-rc1", "99c23da0eed4fd20cae8243f2b51e10e66aa0951": "v5.16-rc1", "99c6fa2511d8a683e61468be91b83f85452115fa": "v4.15-rc8", + "99cb0dbd47a15d395bf3faa78dc122bc5efe3fc0": "v5.4-rc1", "99d825822eade8d827a1817357cbf3f889a552d6": "v4.6", "99e3a236dd43d06c65af0a2ef9cb44306aef6e02": "v5.7-rc2", "9a47e9cff994f37f7f0dbd9ae23740d0f64f9fe6": "v4.7-rc1", @@ -1671,6 +1707,7 @@ "9bf3d20331295b1ecb81f4ed9ef358c51699a050": "v5.16-rc1", "9bfe5ded054b8e28a94c78580f233d6879a00146": "v4.19-rc1", "9c0530e898f384c5d279bfcebd8bb17af1105873": "v5.4-rc3", + "9c5137aedd112f78a968bdd2325de2ea06df46c0": "v5.12-rc1-dontuse", "9c52057c698fb96f8f07e7a4bcf4801a092bda89": "v3.8-rc1", "9c55e01c0cc835818475a6ce8c4d684df9949ac8": "v2.6.25-rc1", "9c698bff66ab4914bb3d71da7dc6112519bde23e": "v5.11-rc7", @@ -1793,6 +1830,7 @@ "a6e544b0a88b53114bfa5a57e21b7be7a8dfc9d0": "v4.3-rc1", "a6ecfb39ba9d7316057cea823b196b734f6b18ca": "v5.14-rc3", "a70b52ec1aaeaf60f4739edb1b422827cb6f3893": "v3.5-rc1", + "a73881c96d73ee72b7dbbd38a6eeef66182a8ef7": "v5.1-rc1", "a73e99cb67e7438e5ab0c524ae63a8a27616c839": "v4.3-rc1", "a7771176b4392fbc3a17399c51a8c11f2f681afe": "v4.15-rc1", "a783a09ee76d6259296dc6aeea2b6884fa526980": "v5.3-rc1", @@ -1867,6 +1905,7 @@ "af6fc858a35b90e89ea7a7ee58e66628c55c776b": "v4.0-rc4", "af81858172cc0f3da81946aab919c26e4b364efc": "v2.6.33-rc1", "afca6c5b2595fc44383919fba740c194b0b76aff": "v4.18-rc1", + "afd2daa26c7abd734d78bd274fc6c59a15e61063": "v5.13-rc1", "aff063e266cbf4754021d8e5d16ee418560906fd": "v3.8-rc1", "aff2299e0d81b26304ccc6a1ec0170e437f38efc": "v5.16-rc1", "b005255e12a311d2c87ea70a7c7b192b2187c22c": "v3.14-rc1", @@ -1922,6 +1961,7 @@ "b4487b93545214a9db8cbf32e86411677b0cca21": "v5.9-rc1", "b463a6f744a263fccd7da14db1afdc880371a280": "v2.6.37-rc1", "b46a0bf78ad7b150ef5910da83859f7f5a514ffd": "v5.0-rc5", + "b46acd6a6a627d876898e1c84d3f84902264b445": "v5.15-rc1", "b4789b8e6be3151a955ade74872822f30e8cd914": "v3.13-rc1", "b49a0e69a7b1a68c8d3f64097d06dabb770fec96": "v5.15-rc1", "b4a1b4f5047e4f54e194681125c74c0aa64d637d": "v4.4-rc8", @@ -1950,12 +1990,14 @@ "b7a584598aea7ca73140cb87b40319944dd3393f": "v4.6-rc1", "b7cc176c9eb3aa6989ac099efd8bdd6d0eaa784a": "v2.6.24-rc1", "b805d78d300bcf2c83d6df7da0c818b0fee41427": "v5.1", + "b844f0ecbc5626ec26cfc70cb144a4c9b85dc3f2": "v4.6-rc1", "b858c331cdf402853be2c48c8f4f77173ef04da8": "v3.9-rc1", "b860d3cc62877fad02863e2a08efff69a19382d2": "v3.9-rc7", "b862676e371715456c9dade7990c8004996d0d9e": "v5.13-rc1", "b8670c09f37bdf2847cc44f36511a53afc6161fd": "v4.6", "b86dab054059b970111b5516ae548efaae5b3aae": "v5.8-rc1", "b86e33075ed1909d8002745b56ecf73b833db143": "v4.11-rc1", + "b892bf75b2034e0e4af23da9a276160b8ad26c15": "v3.14-rc1", "b8a8684502a0fc852afa0056c6bb2a9273f6fcc0": "v3.15-rc1", "b8d17e7d93d2beb89e4f34c59996376b8b544792": "v5.5-rc1", "b8e51a6a9db94bc1fb18ae831b3dab106b5a4b5f": "v5.4-rc6", @@ -2015,6 +2057,7 @@ "bd239704295c66196e6b77c5717ec4aec076ddd5": "v4.15-rc1", "bd23a7269834dc7c1f93e83535d16ebc44b75eba": "v4.18-rc1", "bd2db32e7c3e35bd4d9b8bbff689434a50893546": "v5.17-rc4", + "bd53cb35a3e9adb73a834a36586e9ad80e877767": "v5.2-rc1", "bd59380c5ba4147dcbaad3e582b55ccfd120b764": "v5.10-rc1", "bd7a3fe770ebd8391d1c7d072ff88e9e76d063eb": "v4.14-rc4", "bd97120fc3d1a11f3124c7c9ba1d91f51829eb85": "v3.7-rc8", @@ -2027,6 +2070,7 @@ "be10eb7589337e5defbe214dae038a53dd21add8": "v2.6.31-rc1", "be23e837333a914df3f24bf0b32e87b0331ab8d1": "v5.8-rc2", "be27425dcc516fd08245b047ea57f83b8f6f0903": "v3.1-rc4", + "be2861dc36d77ff3778979b9c3c79ada4affa131": "v5.4-rc1", "be4c60b563edee3712d392aaeb0943a768df7023": "v5.5-rc1", "be6123df1ea8f01ee2f896a16c2b7be3e4557a5a": "v4.15-rc4", "be80a1d3f9dbe5aee79a325964f7037fe2d92f30": "v5.17-rc1", @@ -2096,7 +2140,9 @@ "c2c65cd2e14ada6de44cb527e7f1990bede24e15": "v3.12", "c2c737a0461e61a34676bd0bd1bc1a70a1b4e396": "v3.12-rc1", "c2dd5146e9fe1f22c77c1b011adf84eea0245806": "v4.20", + "c2eecefec5df1306eafce28ccdf1ca159a552ecc": "v5.19-rc1", "c300aa64ddf57d9c5d9c898a64b36877345dd4a9": "v3.9-rc4", + "c3021629a0d820247ee12b6c5192a1d5380e21c6": "v2.6.35-rc1", "c30707be128e952ca2ba77417cb5509e254a4aac": "v3.14-rc1", "c319b4d76b9e583a5d88d6bf190e079c4e43213d": "v3.0-rc1", "c33b1cc62ac05c1dbb1cdafe2eb66da01c76ca8d": "v5.12-rc7", @@ -2137,6 +2183,7 @@ "c68cfb718c8f97b7f7a50ed66be5feb42d0c8988": "v5.1-rc1", "c70222752228a62135cee3409dccefd494a24646": "v5.18-rc1", "c7084edc3f6d67750f50d4183134c4fb5712a5c8": "v5.1-rc4", + "c73be61cede5882f9605a852414db559c0ebedfd": "v5.8-rc1", "c7559663e42f4294ffe31fe159da6b6a66b35d61": "v3.11-rc1", "c7630a4b932af254d61947a3a7e3831de92c7fb5": "v2.6.22-rc1", "c771d683a62e5d36bc46036f5c07f4f5bb7dda61": "v3.18-rc2", @@ -2169,6 +2216,7 @@ "c947459979c6c9c8aff9c9b5027b31dbf8055106": "v4.8-rc1", "c993ee0f9f81caf5767a50d1faeba39a0dc82af2": "v5.17-rc8", "c995efd5a740d9cbafbf58bde4973e8b50b4d761": "v4.15-rc9", + "c9b37458e95629b1d1171457afdcc1bf1eb7881d": "v3.12-rc1", "c9b92530a723ac5ef8e352885a1862b18f31b2f5": "v3.7-rc1", "c9f838d104fed6f2f61d68164712e3204bf5271b": "v4.11-rc8", "c9fbd7bbc23dbdd73364be4d045e5d3612cf6e82": "v4.18-rc1", @@ -2188,6 +2236,7 @@ "cb2595c1393b4a5211534e6f0a0fbad369e21ad8": "v4.18-rc1", "cb3232138e37129e88240a98a1d2aba2187ff57c": "v4.5-rc2", "cb59e840838193957a84ad22f7e1465a06a7c10c": "v2.6.12-rc3", + "cb5e1b81304e089ee3ca948db4d29f71902eb575": "v5.12-rc1-dontuse", "cb66ddd156203daefb8d71158036b27b0e2caf63": "v5.1-rc4", "cbb4be652d374f64661137756b8f357a1827d6a4": "v4.3-rc3", "cbbaa2727aa3ae9e0a844803da7cef7fd3b94f2b": "v5.5-rc1", @@ -2268,6 +2317,7 @@ "d203b0fd863a2261e5d00b97f3d060c4c2a6db71": "v5.13-rc7", "d214c7537bbf2f247991fb65b3420b0b3d712c67": "v2.6.29-rc1", "d21b0be246bf3bbf569e6e239f56abb529c7154e": "v4.19-rc1", + "d25adbeb0cdb860fb39e09cdd025e9cfc954c5ab": "v4.14-rc1", "d26a9559403c7c3ec3b430f5825bc22c3d40abdb": "v4.14-rc1", "d26c25a9d19b5976b319af528886f89cf455692d": "v4.19-rc7", "d26d6504f23e803824e8ebd14e52d4fc0a0b09cb": "v3.9-rc7", @@ -2292,6 +2342,7 @@ "d4fdf8ba0e5808ba9ad6b44337783bd9935e0982": "v4.13-rc1", "d50dde5a10f305253cbc3855307f608f8a3c5f73": "v3.14-rc1", "d52c9750f150111dc7f73e4036f6948b20c9f8c3": "v4.10-rc1", + "d5361233e9ab920e135819f73dd8466355f1fddd": "v5.18-rc2", "d5468d7afaa9c9e961e150f0455a14a9f4872a98": "v4.6-rc6", "d558023207e008a4476a3b7bb8706b2a2bf5d84f": "v3.13-rc1", "d563131ef23cbc756026f839a82598c8445bc45f": "v5.5-rc1", @@ -2362,6 +2413,7 @@ "dd83c161fbcc5d8be637ab159c0de015cbff5ba4": "v4.13-rc1", "dd99e9f98fbf423ff6d365b37a98e8879170f17c": "v5.14-rc1", "dd9cfe236f95bbda9ceb5a4ca419b9fb574c95f9": "v3.12-rc1", + "ddbd89deb7d32b1fbb879f48d68fda1a8ac58e8e": "v5.17-rc6", "ddf0322db79c5984dc1a1db890f946dd19b7d6d9": "v5.7-rc1", "de1e0c40aceb9d5bff09c3a3b97b2f1b178af53f": "v3.11-rc1", "de53fd7aedb100f03e5d2231cfce0e4993282425": "v5.4-rc1", @@ -2471,6 +2523,7 @@ "ea9a4a8b0e5a34eca6613e39d21be879d92ecff5": "v2.6.23-rc1", "ea9b9907b82a09bd1a708004454f7065de77c5b0": "v2.6.26-rc1", "eab09532d40090698b05a07c1c87f39fdbc5fab5": "v4.13-rc1", + "eab098246625e91c1cbd6e8f75b09e4c9c28a9fc": "v5.12-rc1-dontuse", "eaba3b28401f50e22d64351caa8afe8d29509f27": "v5.12-rc1", "eac616557050737a8d6ef6fe0322d0980ff0ffde": "v5.1-rc1", "ead16e53c2f0ed946d82d4037c630e2f60f4ab69": "v5.3-rc4", @@ -2479,6 +2532,7 @@ "eb0c19942288569e0ae492476534d5a485fb8ab4": "v4.15-rc1", "eb1231f73c4d7dc26db55e08c070e6526eaf7ee5": "v5.13-rc1", "eb178619f930fa2ba2348de332a1ff1c66a31424": "v3.8-rc6", + "eb4b248e152d3ecf189b9d32c04961360dbd938a": "v4.19-rc1", "eb66ae030829605d61fbef1909ce310e29f78821": "v4.19", "eb6f13eb9f812f5812ed5d14f241309da369dee6": "v2.6.25-rc1", "eb70e5ab8f95a81283623c03d2c99dfc59fcb319": "v3.5-rc1", @@ -2564,6 +2618,7 @@ "f15133df088ecadd141ea1907f2c96df67c729f0": "v4.1-rc3", "f15f05b0a5de667c821a9727c33bce9d1d9b26dd": "v4.11-rc1", "f16d80b75a096c52354c6e0a574993f3b0dfbdfe": "v5.3-rc2", + "f185de28d9ae6c978135993769352e523ee8df06": "v5.13-rc1", "f1923820c447e986a9da0fc6bf60c1dccdf0408e": "v3.9-rc8", "f19425641cb2572a33cb074d5e30283720bd4d22": "v5.10-rc1", "f19b00da8ed37db4e3891fe534fcf3a605a0e562": "v3.10-rc1", @@ -2588,6 +2643,7 @@ "f3747379accba8e95d70cec0eae0582c8c182050": "v3.19-rc6", "f384796c40dc55b3dba25e0ee9c1afd98c6d24d1": "v4.17-rc1", "f3951a3709ff50990bf3e188c27d346792103432": "v4.4-rc1", + "f3a2181e16f1dcbf5446ed43f6b5d9f56c459f85": "v5.6-rc1", "f3b59291a69d0b734be1fc8be489fef2dd846d3d": "v3.8-rc1", "f3d3342602f8bcbf37d7c46641cb9bca7618eb1c": "v3.13-rc1", "f3e775962ccbc62bd93f2200b82db88af05d0137": "v3.17-rc1", @@ -2620,6 +2676,7 @@ "f612acfae86af7ecad754ae6a46019be9da05b8e": "v5.1-rc1", "f62f3c20647ebd5fb6ecb8f0b477b9281c44c10a": "v5.14-rc3", "f63a8daa5812afef4f06c962351687e1ff9ccb2b": "v4.0-rc1", + "f644bc449b37cc32d3ce7b36a88073873aa21bd5": "v5.13-rc7", "f647d7c155f069c1a068030255c300663516420e": "v3.19-rc1", "f65886606c2d3b562716de030706dfe1bea4ed5e": "v5.9-rc5", "f67b15037a7a50c57f72e69a6d59941ad90a0f0f": "v4.16", @@ -2635,6 +2692,7 @@ "f7068114d45ec55996b9040e98111afa56e010fe": "v4.17-rc7", "f70865db5ff35f5ed0c7e9ef63e7cca3d4947f04": "v5.13-rc1", "f70e2e06196ad4c1c762037da2f75354f6c16b81": "v2.6.35-rc1", + "f71f01394f742fc4558b3f9f4c7ef4c4cf3b07c8": "v5.18-rc6", "f78146b0f9230765c6315b2e14f56112513389ad": "v3.5-rc1", "f79643787e0a0762d2409b7b8334e83f22d85695": "v5.10-rc5", "f7a1337f0d29b98733c8824e165fca3371d7d4fd": "v5.4-rc7", @@ -2652,6 +2710,7 @@ "f8d4f44df056c5b504b0d49683fb7279218fd207": "v5.9-rc8", "f91072ed1b7283b13ca57fcfbece5a3b92726143": "v5.10-rc1", "f92363d12359498f9a9960511de1a550f0ec41c2": "v3.8-rc1", + "f980f9c31a923e9040dee0bc679a5f5b09e61f40": "v5.10-rc1", "f991af3daabaecff34684fd51fac80319d1baad1": "v4.13-rc1", "f9d87929d451d3e649699d0f1d74f71f77ad38f5": "v5.17-rc2", "fa00c437eef8dc2e7b25f8cd868cfa405fcc2bb3": "v4.8-rc3", @@ -2671,6 +2730,7 @@ "fb9987d0f748c983bb795a86f47522313f701a08": "v2.6.35-rc1", "fbd40ea0180a2d328c5adc61414dc8bab9335ce2": "v4.6-rc1", "fbe0e839d1e22d88810f3ee3e2f1479be4c0aa4a": "v4.15-rc9", + "fbf42729d0e91332e8ce75a1ecce08b8a2dab9c1": "v5.15-rc1", "fc05481b2fcabaaeccf63e32ac1baab54e5b6963": "v5.3-rc4", "fc0561cefc04e7803c0f6501ca4f310a502f65b8": "v4.4-rc1", "fc0a80798576f80ca10b3f6c9c7097f12fd1d64e": "v2.6.39-rc1",
diff --git a/data/kernel_cves.json b/data/kernel_cves.json index 3c3ae75..08e4954 100644 --- a/data/kernel_cves.json +++ b/data/kernel_cves.json
@@ -40488,8 +40488,9 @@ } }, "CVE-2019-0146": { - "affected_versions": "unk to unk", - "breaks": "", + "affected_versions": "v4.6-rc1 to v5.2-rc1", + "breaks": "e3219ce6a775468368fb270fae3eb82a6787b436", + "cmt_msg": "i40e: add num_vectors checker in iwarp handler", "cvss2": { "Access Complexity": "Low", "Access Vector": "Local Access", @@ -40513,8 +40514,9 @@ "score": 5.5 }, "cwe": "Missing Release of Resource after Effective Lifetime", - "fixes": "", - "last_modified": "2020-09-09", + "fixes": "7015ca3df965378bcef072cca9cd63ed098665b5", + "last_affected_version": "4.19.138", + "last_modified": "2022-06-27", "nvd_text": "Resource leak in i40e driver for Intel(R) Ethernet 700 Series Controllers versions before 2.8.43 may allow an authenticated user to potentially enable a denial of service via local access.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2019-0146", @@ -54268,8 +54270,8 @@ } }, "CVE-2020-12362": { - "affected_versions": "unk to v5.11-rc1", - "breaks": "", + "affected_versions": "v2.6.12-rc2 to v5.11-rc1", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", "cmt_msg": "drm/i915/guc: Update to use firmware v49.0.1", "cvss2": { "Access Complexity": "Low", @@ -54295,7 +54297,7 @@ }, "cwe": "Integer Overflow or Wraparound", "fixes": "c784e5249e773689e38d2bc1749f08b986621a26", - "last_modified": "2022-03-07", + "last_modified": "2022-06-27", "nvd_text": "Integer overflow in the firmware for some Intel(R) Graphics Drivers for Windows * before version 26.20.100.7212 and before Linux kernel version 5.5 may allow a privileged user to potentially enable an escalation of privilege via local access.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2020-12362", @@ -57463,8 +57465,9 @@ } }, "CVE-2020-26555": { - "affected_versions": "unk to unk", - "breaks": "", + "affected_versions": "v2.6.12-rc2 to v5.13-rc1", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical", "cvss2": { "Access Complexity": "Low", "Access Vector": "Adjacent Network", @@ -57488,8 +57491,9 @@ "score": 5.4 }, "cwe": "Incorrect Authorization", - "fixes": "", - "last_modified": "2021-06-04", + "fixes": "6d19628f539fccf899298ff02ee4c73e4bf6df3f", + "last_affected_version": "5.12.6", + "last_modified": "2022-06-27", "nvd_text": "Bluetooth legacy BR/EDR PIN code pairing in Bluetooth Core Specification 1.0B through 5.2 may permit an unauthenticated nearby device to spoof the BD_ADDR of the peer device to complete pairing without knowledge of the PIN.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2020-26555", @@ -60551,8 +60555,8 @@ } }, "CVE-2021-0707": { - "affected_versions": "unk to v5.11-rc3", - "breaks": "", + "affected_versions": "v5.8-rc4 to v5.11-rc3", + "breaks": "4ab59c3c638c6c8952bf07739805d20eb6358a4d", "cmt_msg": "dmabuf: fix use-after-free of dmabuf's file->f_inode", "cvss2": { "Access Complexity": "Low", @@ -60579,7 +60583,7 @@ "cwe": "Use After Free", "fixes": "05cd84691eafcd7959a1e120d5e72c0dd98c5d91", "last_affected_version": "5.10.6", - "last_modified": "2022-04-22", + "last_modified": "2022-06-27", "nvd_text": "In dma_buf_release of dma-buf.c, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-155756045References: Upstream kernel", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-0707", @@ -61202,8 +61206,8 @@ } }, "CVE-2021-20265": { - "affected_versions": "unk to v4.5-rc3", - "breaks": "", + "affected_versions": "v2.6.38 to v4.5-rc3", + "breaks": "b3ca9b02b00704053a38bfe4c31dbbb9c13595d0", "cmt_msg": "af_unix: fix struct pid memory leak", "cvss2": { "Access Complexity": "Low", @@ -61230,7 +61234,7 @@ "cwe": "Uncontrolled Resource Consumption", "fixes": "fa0dc04df259ba2df3ce1920e9690c7842f8fa4b", "last_affected_version": "4.4.3", - "last_modified": "2022-04-04", + "last_modified": "2022-06-27", "nvd_text": "A flaw was found in the way memory resources were freed in the unix_stream_recvmsg function in the Linux kernel when a signal was pending. This flaw allows an unprivileged local user to crash the system by exhausting available memory. The highest threat from this vulnerability is to system availability.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-20265", @@ -61722,8 +61726,8 @@ } }, "CVE-2021-26401": { - "affected_versions": "unk to v5.17-rc8", - "breaks": "", + "affected_versions": "v2.6.12-rc2 to v5.17-rc8", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", "cmt_msg": "x86/speculation: Use generic retpoline by default on AMD", "cvss2": { "Access Complexity": "Medium", @@ -61750,7 +61754,7 @@ "cwe": "Unspecified", "fixes": "244d00b5dd4755f8df892c86cab35fb2cfd4f14b", "last_affected_version": "5.16.13", - "last_modified": "2022-05-12", + "last_modified": "2022-06-27", "nvd_text": "LFENCE/JMP (mitigation V2-2) may not sufficiently mitigate CVE-2017-5715 on some AMD CPUs.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-26401", @@ -61882,8 +61886,8 @@ } }, "CVE-2021-26932": { - "affected_versions": "unk to v5.12-rc1", - "breaks": "", + "affected_versions": "v2.6.12-rc2 to v5.12-rc1", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", "cmt_msg": "Xen/x86: don't bail early from clear_foreign_p2m_mapping()", "cvss2": { "Access Complexity": "Medium", @@ -61910,7 +61914,7 @@ "cwe": "Unspecified", "fixes": "a35f2ef3b7376bfd0a57f7844bd7454389aae1fc", "last_affected_version": "5.11.0", - "last_modified": "2021-05-06", + "last_modified": "2022-06-27", "nvd_text": "An issue was discovered in the Linux kernel 3.2 through 5.10.16, as used by Xen. Grant mapping operations often occur in batch hypercalls, where a number of operations are done in a single hypercall, the success or failure of each one is reported to the backend driver, and the backend driver then loops over the results, performing follow-up actions based on the success or failure of each operation. Unfortunately, when running in PV mode, the Linux backend drivers mishandle this: Some errors are ignored, effectively implying their success from the success of related batch elements. In other cases, errors resulting from one batch element lead to further batch elements not being inspected, and hence successful ones to not be possible to properly unmap upon error recovery. Only systems with Linux backends running in PV mode are vulnerable. Linux backends run in HVM / PVH modes are not vulnerable. This affects arch/*/xen/p2m.c and drivers/xen/gntdev.c.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-26932", @@ -63717,8 +63721,9 @@ } }, "CVE-2021-33135": { - "affected_versions": "unk to unk", - "breaks": "", + "affected_versions": "v5.11-rc1 to v5.17-rc8", + "breaks": "1728ab54b4be94aed89276eeb8e750a345659765", + "cmt_msg": "x86/sgx: Free backing memory after faulting the enclave page", "cvss2": { "Access Complexity": "Low", "Access Vector": "Local Access", @@ -63742,8 +63747,9 @@ "score": 5.5 }, "cwe": "Uncontrolled Resource Consumption", - "fixes": "", - "last_modified": "2022-05-25", + "fixes": "08999b2489b4c9b939d7483dbd03702ee4576d96", + "last_affected_version": "5.16.14", + "last_modified": "2022-06-27", "nvd_text": "Uncontrolled resource consumption in the Linux kernel drivers for Intel(R) SGX may allow an authenticated user to potentially enable denial of service via local access.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-33135", @@ -66300,12 +66306,12 @@ "rejected": true }, "CVE-2021-3894": { - "affected_versions": "unk to v5.15-rc6", - "breaks": "", + "affected_versions": "v4.11-rc1 to v5.15-rc6", + "breaks": "cc16f00f6529aa2378f2b949a6f68e9dc6dec363", "cmt_msg": "sctp: account stream padding length for reconf chunk", "fixes": "a2d859e3fc97e79d907761550dbc03ff1b36479c", "last_affected_version": "5.14.13", - "last_modified": "2022-02-15", + "last_modified": "2022-06-27", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-3894", "ExploitDB": "https://www.exploit-db.com/search?cve=2021-3894", @@ -66614,8 +66620,8 @@ } }, "CVE-2021-39686": { - "affected_versions": "unk to v5.16-rc1", - "breaks": "", + "affected_versions": "v2.6.29-rc1 to v5.16-rc1", + "breaks": "457b9a6f09f011ebcb9b52cc203a6331a6fc2de7", "cmt_msg": "binder: use euid from cred instead of using task", "cvss2": { "Access Complexity": "Medium", @@ -66642,7 +66648,7 @@ "cwe": "Improper Privilege Management", "fixes": "29bc22ac5e5bc63275e850f0c8fc549e3d0e306b", "last_affected_version": "5.15.1", - "last_modified": "2022-04-07", + "last_modified": "2022-06-27", "nvd_text": "In several functions of binder.c, there is a possible way to represent the wrong domain to SELinux due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-200688826References: Upstream kernel", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-39686", @@ -66654,8 +66660,8 @@ } }, "CVE-2021-39698": { - "affected_versions": "unk to v5.16-rc5", - "breaks": "", + "affected_versions": "v2.6.12-rc2 to v5.16-rc5", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", "cmt_msg": "wait: add wake_up_pollfree()", "cvss2": { "Access Complexity": "Low", @@ -66682,7 +66688,7 @@ "cwe": "Use After Free", "fixes": "42288cb44c4b5fff7653bc392b583a2b8bd6a8c0", "last_affected_version": "5.15.7", - "last_modified": "2022-04-07", + "last_modified": "2022-06-27", "nvd_text": "In aio_poll_complete_work of aio.c, there is a possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-185125206References: Upstream kernel", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-39698", @@ -66694,8 +66700,8 @@ } }, "CVE-2021-39711": { - "affected_versions": "unk to v4.18-rc6", - "breaks": "", + "affected_versions": "v4.12-rc1 to v4.18-rc6", + "breaks": "1cf1cae963c2e6032aebe1637e995bc2f5d330f4", "cmt_msg": "bpf: fix panic due to oob in bpf_prog_test_run_skb", "cvss2": { "Access Complexity": "Low", @@ -66722,7 +66728,7 @@ "cwe": "Out-of-bounds Read", "fixes": "6e6fddc78323533be570873abb728b7e0ba7e024", "last_affected_version": "4.14.258", - "last_modified": "2022-04-07", + "last_modified": "2022-06-27", "nvd_text": "In bpf_prog_test_run_skb of test_run.c, there is a possible out of bounds read due to Incorrect Size Value. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-154175781References: Upstream kernel", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-39711", @@ -66734,8 +66740,8 @@ } }, "CVE-2021-39713": { - "affected_versions": "unk to v4.20-rc1", - "breaks": "", + "affected_versions": "v4.19-rc1 to v4.20-rc1", + "breaks": "32a4f5ecd7381f30ae3bb36dea77a150ba68af2e", "cmt_msg": "net: sched: use Qdisc rcu API instead of relying on rtnl lock", "cvss2": { "Access Complexity": "Low", @@ -66762,7 +66768,7 @@ "cwe": "Unspecified", "fixes": "e368fdb61d8e7c67ac70791b23345b26d7bbc661", "last_affected_version": "4.19.220", - "last_modified": "2022-04-07", + "last_modified": "2022-06-27", "nvd_text": "Product: AndroidVersions: Android kernelAndroid ID: A-173788806References: Upstream kernel", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-39713", @@ -66774,8 +66780,8 @@ } }, "CVE-2021-39714": { - "affected_versions": "unk to v4.12-rc1", - "breaks": "", + "affected_versions": "v3.14-rc1 to v4.12-rc1", + "breaks": "b892bf75b2034e0e4af23da9a276160b8ad26c15", "cmt_msg": "staging: android: ion: Drop ion_map_kernel interface", "cvss2": { "Access Complexity": "Low", @@ -66801,7 +66807,7 @@ }, "cwe": "Integer Overflow or Wraparound", "fixes": "e3b914bc7eb6bcecc5b597ee6e31fc40442c291f", - "last_modified": "2022-04-07", + "last_modified": "2022-06-27", "nvd_text": "In ion_buffer_kmap_get of ion.c, there is a possible use-after-free due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-205573273References: Upstream kernel", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-39714", @@ -66813,8 +66819,8 @@ } }, "CVE-2021-39800": { - "affected_versions": "unk to unk", - "breaks": "", + "affected_versions": "v2.6.12-rc2 to unk", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", "cvss2": { "Access Complexity": "Low", "Access Vector": "Local Access", @@ -66838,8 +66844,8 @@ "score": 5.5 }, "cwe": "Use After Free", - "fixes": "", - "last_modified": "2022-04-22", + "fixes": "504e1d6ee65d5b5a053253ae62f46035d774353c", + "last_modified": "2022-06-27", "nvd_text": "In ion_ioctl of ion-ioctl.c, there is a possible way to leak kernel head data due to a use after free. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-208277166References: Upstream kernel", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-39800", @@ -66851,8 +66857,8 @@ } }, "CVE-2021-39801": { - "affected_versions": "unk to unk", - "breaks": "", + "affected_versions": "v2.6.12-rc2 to unk", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", "cvss2": { "Access Complexity": "Low", "Access Vector": "Local Access", @@ -66876,8 +66882,8 @@ "score": 7.8 }, "cwe": "Use After Free", - "fixes": "", - "last_modified": "2022-04-22", + "fixes": "504e1d6ee65d5b5a053253ae62f46035d774353c", + "last_modified": "2022-06-27", "nvd_text": "In ion_ioctl of ion-ioctl.c, there is a possible use after free due to improper locking. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-209791720References: Upstream kernel", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-39801", @@ -66890,7 +66896,7 @@ }, "CVE-2021-39802": { "affected_versions": "unk to unk", - "breaks": "", + "breaks": "b44e46bb047d136bc8977497b6fc2a9f08740321", "cvss2": { "Access Complexity": "Low", "Access Vector": "Local Access", @@ -66914,8 +66920,8 @@ "score": 7.8 }, "cwe": "Improper Privilege Management", - "fixes": "", - "last_modified": "2022-04-22", + "fixes": "ac4488815518c236e60c0048833c51a76404b1b6", + "last_modified": "2022-06-27", "nvd_text": "In change_pte_range of mprotect.c , there is a possible way to make a shared mmap writable due to a permissions bypass. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-213339151References: Upstream kernel", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-39802", @@ -67008,7 +67014,8 @@ }, "CVE-2021-4023": { "affected_versions": "unk to v5.15-rc1", - "breaks": "", + "backport": true, + "breaks": "3146cba99aa284b1d4a10fbd923df953f1d18035", "cmt_msg": "io-wq: fix cancellation on create-worker failure", "cvss2": { "Access Complexity": "Low", @@ -67034,7 +67041,7 @@ }, "cwe": "Unspecified", "fixes": "713b9825a4c47897f66ad69409581e7734a8728e", - "last_modified": "2022-03-18", + "last_modified": "2022-06-27", "nvd_text": "A flaw was found in the io-workqueue implementation in the Linux kernel versions prior to 5.15-rc1. The kernel can panic when an improper cancellation operation triggers the submission of new io-uring operations during a shortage of free space. This flaw allows a local user with permissions to execute io-uring requests to possibly crash the system.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-4023", @@ -67371,8 +67378,8 @@ } }, "CVE-2021-4148": { - "affected_versions": "unk to v5.15", - "breaks": "", + "affected_versions": "v5.4-rc1 to v5.15", + "breaks": "99cb0dbd47a15d395bf3faa78dc122bc5efe3fc0", "cmt_msg": "mm: khugepaged: skip huge page collapse for special files", "cvss2": { "Access Complexity": "Low", @@ -67399,7 +67406,7 @@ "cwe": "Improper Validation of Integrity Check Value", "fixes": "a4aeaa06d45e90f9b279f0b09de84bd00006e733", "last_affected_version": "5.14", - "last_modified": "2022-04-07", + "last_modified": "2022-06-27", "nvd_text": "A vulnerability was found in the Linux kernel's block_invalidatepage in fs/buffer.c in the filesystem. A missing sanity check may allow a local attacker with user privilege to cause a denial of service (DOS) problem.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-4148", @@ -68551,8 +68558,8 @@ } }, "CVE-2021-45868": { - "affected_versions": "unk to v5.16-rc1", - "breaks": "", + "affected_versions": "v2.6.12-rc2 to v5.16-rc1", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", "cmt_msg": "quota: check block number when reading the block in quota file", "cvss2": { "Access Complexity": "Medium", @@ -68579,7 +68586,7 @@ "cwe": "Use After Free", "fixes": "9bf3d20331295b1ecb81f4ed9ef358c51699a050", "last_affected_version": "5.15.2", - "last_modified": "2022-04-07", + "last_modified": "2022-06-27", "nvd_text": "In the Linux kernel before 5.15.3, fs/quota/quota_tree.c does not validate the block number in the quota tree (on disk). This can, for example, lead to a kernel/locking/rwsem.c use-after-free if there is a corrupted quota file.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2021-45868", @@ -68631,8 +68638,8 @@ } }, "CVE-2022-0001": { - "affected_versions": "unk to v5.17-rc8", - "breaks": "", + "affected_versions": "v2.6.12-rc2 to v5.17-rc8", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", "cmt_msg": "x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE", "cvss2": { "Access Complexity": "Low", @@ -68659,7 +68666,7 @@ "cwe": "Unspecified", "fixes": "d45476d9832409371537013ebdd8dc1a7781f97a", "last_affected_version": "5.16.13", - "last_modified": "2022-04-07", + "last_modified": "2022-06-27", "nvd_text": "Non-transparent sharing of branch predictor selectors between contexts in some Intel(R) Processors may allow an authorized user to potentially enable information disclosure via local access.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-0001", @@ -68671,8 +68678,8 @@ } }, "CVE-2022-0002": { - "affected_versions": "unk to v5.17-rc8", - "breaks": "", + "affected_versions": "v2.6.12-rc2 to v5.17-rc8", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", "cmt_msg": "x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE", "cvss2": { "Access Complexity": "Low", @@ -68699,7 +68706,7 @@ "cwe": "Unspecified", "fixes": "d45476d9832409371537013ebdd8dc1a7781f97a", "last_affected_version": "5.16.13", - "last_modified": "2022-04-07", + "last_modified": "2022-06-27", "nvd_text": "Non-transparent sharing of branch predictor within a context in some Intel(R) Processors may allow an authorized user to potentially enable information disclosure via local access.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-0002", @@ -68711,12 +68718,12 @@ } }, "CVE-2022-0168": { - "affected_versions": "unk to v5.18-rc1", - "breaks": "", + "affected_versions": "v2.6.12-rc2 to v5.18-rc1", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", "cmt_msg": "cifs: fix NULL ptr dereference in smb2_ioctl_query_info()", "fixes": "d6f5e358452479fa8a773b5c6ccc9e4ec5a20880", "last_affected_version": "5.17.1", - "last_modified": "2022-04-15", + "last_modified": "2022-06-27", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-0168", "ExploitDB": "https://www.exploit-db.com/search?cve=2022-0168", @@ -68727,10 +68734,11 @@ } }, "CVE-2022-0171": { - "affected_versions": "unk to unk", - "breaks": "", - "fixes": "", - "last_modified": "2022-05-18", + "affected_versions": "v5.10-rc1 to v5.18-rc4", + "breaks": "f980f9c31a923e9040dee0bc679a5f5b09e61f40", + "cmt_msg": "KVM: SEV: add cache flush to solve SEV cache incoherency issues", + "fixes": "683412ccf61294d727ead4a73d97397396e69a6b", + "last_modified": "2022-06-27", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-0171", "ExploitDB": "https://www.exploit-db.com/search?cve=2022-0171", @@ -69170,8 +69178,8 @@ } }, "CVE-2022-0494": { - "affected_versions": "unk to v5.17-rc5", - "breaks": "", + "affected_versions": "v2.6.12-rc2 to v5.17-rc5", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", "cmt_msg": "block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern", "cvss2": { "Access Complexity": "Low", @@ -69198,7 +69206,7 @@ "cwe": "Exposure of Sensitive Information to an Unauthorized Actor", "fixes": "cc8f7fe1f5eab010191aa4570f27641876fa1267", "last_affected_version": "5.16.12", - "last_modified": "2022-06-09", + "last_modified": "2022-06-27", "nvd_text": "A kernel information leak flaw was identified in the scsi_ioctl function in drivers/scsi/scsi_ioctl.c in the Linux kernel. This flaw allows a local attacker with a special user privilege (CAP_SYS_ADMIN or CAP_SYS_RAWIO) to create issues with confidentiality.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-0494", @@ -69210,8 +69218,8 @@ } }, "CVE-2022-0500": { - "affected_versions": "unk to v5.17-rc1", - "breaks": "", + "affected_versions": "v5.10-rc1 to v5.17-rc1", + "breaks": "63d9b80dcf2c67bc5ade61cbbaa09d7af21f43f1", "cmt_msg": "bpf: Introduce MEM_RDONLY flag", "cvss2": { "Access Complexity": "Low", @@ -69238,7 +69246,7 @@ "cwe": "Improper Restriction of Operations within the Bounds of a Memory Buffer", "fixes": "20b2aff4bc15bda809f994761d5719827d66c0b4", "last_affected_version": "5.16.10", - "last_modified": "2022-05-03", + "last_modified": "2022-06-27", "nvd_text": "A flaw was found in unrestricted eBPF usage by the BPF_BTF_LOAD, leading to a possible out-of-bounds memory write in the Linux kernel\u2019s BPF subsystem due to the way a user loads BTF. This flaw allows a local user to crash or escalate their privileges on the system.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-0500", @@ -69290,8 +69298,8 @@ } }, "CVE-2022-0617": { - "affected_versions": "unk to v5.17-rc2", - "breaks": "", + "affected_versions": "v4.2-rc1 to v5.17-rc2", + "breaks": "52ebea749aaed195245701a8f90a23d672c7a933", "cmt_msg": "udf: Fix NULL ptr deref when converting from inline format", "cvss2": { "Access Complexity": "Low", @@ -69318,7 +69326,7 @@ "cwe": "NULL Pointer Dereference", "fixes": "7fc3b7c2981bbd1047916ade327beccb90994eee", "last_affected_version": "5.16.4", - "last_modified": "2022-03-07", + "last_modified": "2022-06-27", "nvd_text": "A flaw null pointer dereference in the Linux kernel UDF file system functionality was found in the way user triggers udf_file_write_iter function for the malicious UDF image. A local user could use this flaw to crash the system. Actual from Linux kernel 4.2-rc1 till 5.17-rc2.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-0617", @@ -69330,12 +69338,12 @@ } }, "CVE-2022-0644": { - "affected_versions": "unk to v5.15-rc7", - "breaks": "", + "affected_versions": "v4.6-rc1 to v5.15-rc7", + "breaks": "b844f0ecbc5626ec26cfc70cb144a4c9b85dc3f2", "cmt_msg": "vfs: check fd has read access in kernel_read_file_from_fd()", "fixes": "032146cda85566abcd1c4884d9d23e4e30a07e9a", "last_affected_version": "5.14.14", - "last_modified": "2022-02-22", + "last_modified": "2022-06-27", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-0644", "ExploitDB": "https://www.exploit-db.com/search?cve=2022-0644", @@ -69384,8 +69392,8 @@ } }, "CVE-2022-0742": { - "affected_versions": "unk to v5.17-rc7", - "breaks": "", + "affected_versions": "v5.13-rc1 to v5.17-rc7", + "breaks": "f185de28d9ae6c978135993769352e523ee8df06", "cmt_msg": "ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()", "cvss2": { "Access Complexity": "Low", @@ -69412,7 +69420,7 @@ "cwe": "Missing Release of Memory after Effective Lifetime", "fixes": "2d3916f3189172d5c69d33065c3c21119fe539fc", "last_affected_version": "5.16.12", - "last_modified": "2022-04-07", + "last_modified": "2022-06-27", "nvd_text": "Memory leak in icmp6 implementation in Linux Kernel 5.13+ allows a remote attacker to DoS a host by making it go out-of-memory via icmp6 packets of type 130 or 131. We recommend upgrading past commit 2d3916f3189172d5c69d33065c3c21119fe539fc.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-0742", @@ -69424,12 +69432,12 @@ } }, "CVE-2022-0812": { - "affected_versions": "unk to v5.8-rc6", - "breaks": "", + "affected_versions": "v4.7-rc1 to v5.8-rc6", + "breaks": "302d3deb20682a076e1ab551821cacfdc81c5e4f", "cmt_msg": "xprtrdma: fix incorrect header size calculations", "fixes": "912288442cb2f431bf3c8cb097a5de83bc6dbac1", "last_affected_version": "5.7.9", - "last_modified": "2022-05-30", + "last_modified": "2022-06-27", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-0812", "ExploitDB": "https://www.exploit-db.com/search?cve=2022-0812", @@ -69481,12 +69489,12 @@ } }, "CVE-2022-0850": { - "affected_versions": "unk to v5.14-rc1", - "breaks": "", + "affected_versions": "v2.6.19-rc2 to v5.14-rc1", + "breaks": "a86c61812637c7dd0c57e29880cffd477b62f2e7", "cmt_msg": "ext4: fix kernel infoleak via ext4_extent_header", "fixes": "ce3aba43599f0b50adbebff133df8d08a3d5fffe", "last_affected_version": "5.13.1", - "last_modified": "2022-03-07", + "last_modified": "2022-06-27", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-0850", "ExploitDB": "https://www.exploit-db.com/search?cve=2022-0850", @@ -69497,8 +69505,8 @@ } }, "CVE-2022-0854": { - "affected_versions": "unk to v5.17-rc8", - "breaks": "", + "affected_versions": "v5.17-rc6 to v5.17-rc8", + "breaks": "ddbd89deb7d32b1fbb879f48d68fda1a8ac58e8e", "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"", "cvss2": { "Access Complexity": "Low", @@ -69525,7 +69533,7 @@ "cwe": "Missing Release of Memory after Effective Lifetime", "fixes": "aa6f8dcbab473f3a3c7454b74caa46d36cdc5d13", "last_affected_version": "5.16.14", - "last_modified": "2022-05-25", + "last_modified": "2022-06-27", "nvd_text": "A memory leak flaw was found in the Linux kernel\u2019s DMA subsystem, in the way a user calls DMA_FROM_DEVICE. This flaw allows a local user to read random memory from the kernel space.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-0854", @@ -69537,8 +69545,8 @@ } }, "CVE-2022-0995": { - "affected_versions": "unk to v5.17-rc8", - "breaks": "", + "affected_versions": "v5.8-rc1 to v5.17-rc8", + "breaks": "c73be61cede5882f9605a852414db559c0ebedfd", "cmt_msg": "watch_queue: Fix filter limit check", "cvss2": { "Access Complexity": "Low", @@ -69565,7 +69573,7 @@ "cwe": "Out-of-bounds Write", "fixes": "c993ee0f9f81caf5767a50d1faeba39a0dc82af2", "last_affected_version": "5.16.14", - "last_modified": "2022-04-07", + "last_modified": "2022-06-27", "nvd_text": "An out-of-bounds (OOB) memory write flaw was found in the Linux kernel\u2019s watch_queue event notification subsystem. This flaw can overwrite parts of the kernel state, potentially allowing a local user to gain privileged access or cause a denial of service on the system.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-0995", @@ -69577,8 +69585,8 @@ } }, "CVE-2022-0998": { - "affected_versions": "unk to v5.17-rc1", - "breaks": "", + "affected_versions": "v5.7-rc1 to v5.17-rc1", + "breaks": "4c8cf31885f69e86be0b5b9e6677a26797365e1d", "cmt_msg": "vdpa: clean up get_config_size ret value handling", "cvss2": { "Access Complexity": "Low", @@ -69604,7 +69612,7 @@ }, "cwe": "Integer Overflow or Wraparound", "fixes": "870aaff92e959e29d40f9cfdb5ed06ba2fc2dae0", - "last_modified": "2022-04-15", + "last_modified": "2022-06-27", "nvd_text": "An integer overflow flaw was found in the Linux kernel\u2019s virtio device driver code in the way a user triggers the vhost_vdpa_config_validate function. This flaw allows a local user to crash or potentially escalate their privileges on the system.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-0998", @@ -69616,8 +69624,8 @@ } }, "CVE-2022-1011": { - "affected_versions": "unk to v5.17-rc8", - "breaks": "", + "affected_versions": "v2.6.35-rc1 to v5.17-rc8", + "breaks": "c3021629a0d820247ee12b6c5192a1d5380e21c6", "cmt_msg": "fuse: fix pipe buffer lifetime for direct_io", "cvss2": { "Access Complexity": "Low", @@ -69644,7 +69652,7 @@ "cwe": "Use After Free", "fixes": "0c4bcfdecb1ac0967619ee7ff44871d93c08c909", "last_affected_version": "5.16.14", - "last_modified": "2022-05-03", + "last_modified": "2022-06-27", "nvd_text": "A use-after-free flaw was found in the Linux kernel\u2019s FUSE filesystem in the way a user triggers write(). This flaw allows a local user to gain unauthorized access to data from the FUSE filesystem, resulting in privilege escalation.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-1011", @@ -69656,12 +69664,12 @@ } }, "CVE-2022-1012": { - "affected_versions": "unk to v5.18-rc6", - "breaks": "", + "affected_versions": "v2.6.12-rc2 to v5.18-rc6", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", "cmt_msg": "secure_seq: use the 64 bits of the siphash for port offset calculation", "fixes": "b2d057560b8107c633b39aabe517ff9d93f285e3", "last_affected_version": "5.17.8", - "last_modified": "2022-06-09", + "last_modified": "2022-06-27", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-1012", "ExploitDB": "https://www.exploit-db.com/search?cve=2022-1012", @@ -69672,8 +69680,8 @@ } }, "CVE-2022-1015": { - "affected_versions": "unk to v5.18-rc1", - "breaks": "", + "affected_versions": "v5.12-rc1-dontuse to v5.18-rc1", + "breaks": "345023b0db315648ccc3c1a36aee88304a8b4d91", "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace.", "cvss2": { "Access Complexity": "Low", @@ -69700,7 +69708,7 @@ "cwe": "Out-of-bounds Write", "fixes": "6e1acfa387b9ff82cfc7db8cc3b6959221a95851", "last_affected_version": "5.17.0", - "last_modified": "2022-05-12", + "last_modified": "2022-06-27", "nvd_text": "A flaw was found in the Linux kernel in linux/net/netfilter/nf_tables_api.c of the netfilter subsystem. This flaw allows a local user to cause an out-of-bounds write issue.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-1015", @@ -69712,12 +69720,12 @@ } }, "CVE-2022-1016": { - "affected_versions": "unk to v5.18-rc1", - "breaks": "", + "affected_versions": "v3.13-rc1 to v5.18-rc1", + "breaks": "96518518cc417bb0a8c80b9fb736202e28acdf96", "cmt_msg": "netfilter: nf_tables: initialize registers in nft_do_chain()", "fixes": "4c905f6740a365464e91467aa50916555b28213d", "last_affected_version": "5.17.0", - "last_modified": "2022-04-15", + "last_modified": "2022-06-27", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-1016", "ExploitDB": "https://www.exploit-db.com/search?cve=2022-1016", @@ -69728,12 +69736,12 @@ } }, "CVE-2022-1043": { - "affected_versions": "unk to v5.14-rc7", - "breaks": "", + "affected_versions": "v5.12-rc3 to v5.14-rc7", + "breaks": "61cf93700fe6359552848ed5e3becba6cd760efa", "cmt_msg": "io_uring: fix xa_alloc_cycle() error return value check", "fixes": "a30f895ad3239f45012e860d4f94c1a388b36d14", "last_affected_version": "5.13.12", - "last_modified": "2022-03-31", + "last_modified": "2022-06-27", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-1043", "ExploitDB": "https://www.exploit-db.com/search?cve=2022-1043", @@ -69744,8 +69752,8 @@ } }, "CVE-2022-1048": { - "affected_versions": "unk to v5.18-rc1", - "breaks": "", + "affected_versions": "v2.6.12-rc2 to v5.18-rc1", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", "cmt_msg": "ALSA: pcm: Fix races among concurrent hw_params and hw_free calls", "cvss2": { "Access Complexity": "Medium", @@ -69772,7 +69780,7 @@ "cwe": "Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')", "fixes": "92ee3c60ec9fe64404dc035e7c41277d74aa26cb", "last_affected_version": "5.17.0", - "last_modified": "2022-05-18", + "last_modified": "2022-06-27", "nvd_text": "A use-after-free flaw was found in the Linux kernel\u2019s sound subsystem in the way a user triggers concurrent calls of PCM hw_params. The hw_free ioctls or similar race condition happens inside ALSA PCM for other ioctls. This flaw allows a local user to crash or potentially escalate their privileges on the system.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-1048", @@ -69784,8 +69792,8 @@ } }, "CVE-2022-1055": { - "affected_versions": "unk to v5.17-rc3", - "breaks": "", + "affected_versions": "v5.1-rc1 to v5.17-rc3", + "breaks": "470502de5bdb1ed0def643a4458593a40b8f6b66", "cmt_msg": "net: sched: fix use-after-free in tc_new_tfilter()", "cvss2": { "Access Complexity": "Low", @@ -69812,7 +69820,7 @@ "cwe": "Use After Free", "fixes": "04c2a47ffb13c29778e2a14e414ad4cb5a5db4b5", "last_affected_version": "5.16.5", - "last_modified": "2022-04-07", + "last_modified": "2022-06-27", "nvd_text": "A use-after-free exists in the Linux Kernel in tc_new_tfilter that could allow a local attacker to gain privilege escalation. The exploit requires unprivileged user namespaces. We recommend upgrading past commit 04c2a47ffb13c29778e2a14e414ad4cb5a5db4b5", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-1055", @@ -69825,7 +69833,7 @@ }, "CVE-2022-1116": { "affected_versions": "unk to unk", - "breaks": "", + "breaks": "cac68d12c531aa3010509a5a55a5dfd18dedaa80", "cvss2": { "Access Complexity": "Low", "Access Vector": "Local Access", @@ -69849,8 +69857,8 @@ "score": 7.8 }, "cwe": "Integer Overflow or Wraparound", - "fixes": "", - "last_modified": "2022-05-26", + "fixes": "1a623d361ffe5cecd4244a02f449528416360038", + "last_modified": "2022-06-27", "nvd_text": "Integer Overflow or Wraparound vulnerability in io_uring of Linux Kernel allows local attacker to cause memory corruption and escalate privileges to root. This issue affects: Linux Kernel versions prior to 5.4.189; version 5.4.24 and later versions.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-1116", @@ -69862,12 +69870,12 @@ } }, "CVE-2022-1158": { - "affected_versions": "unk to v5.18-rc1", - "breaks": "", + "affected_versions": "v5.2-rc1 to v5.18-rc1", + "breaks": "bd53cb35a3e9adb73a834a36586e9ad80e877767", "cmt_msg": "KVM: x86/mmu: do compare-and-exchange of gPTE via the user address", "fixes": "2a8859f373b0a86f0ece8ec8312607eacf12485d", "last_affected_version": "5.17.1", - "last_modified": "2022-04-18", + "last_modified": "2022-06-27", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-1158", "ExploitDB": "https://www.exploit-db.com/search?cve=2022-1158", @@ -69878,10 +69886,12 @@ } }, "CVE-2022-1184": { - "affected_versions": "unk to unk", + "affected_versions": "unk to v5.19-rc1", "breaks": "", - "fixes": "", - "last_modified": "2022-04-22", + "cmt_msg": "ext4: verify dir block before splitting it", + "fixes": "46c116b920ebec58031f0a78c5ea9599b0d2a371", + "last_affected_version": "5.18.2", + "last_modified": "2022-06-27", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-1184", "ExploitDB": "https://www.exploit-db.com/search?cve=2022-1184", @@ -69892,8 +69902,8 @@ } }, "CVE-2022-1195": { - "affected_versions": "unk to v5.16-rc7", - "breaks": "", + "affected_versions": "v2.6.12-rc2 to v5.16-rc7", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", "cmt_msg": "hamradio: improve the incomplete fix to avoid NPD", "cvss2": { "Access Complexity": "Low", @@ -69920,7 +69930,7 @@ "cwe": "Use After Free", "fixes": "b2f37aead1b82a770c48b5d583f35ec22aabb61e", "last_affected_version": "5.15.11", - "last_modified": "2022-05-12", + "last_modified": "2022-06-27", "nvd_text": "A use-after-free vulnerability was found in the Linux kernel in drivers/net/hamradio. This flaw allows a local attacker with a user privilege to cause a denial of service (DOS) when the mkiss or sixpack device is detached and reclaim resources early.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-1195", @@ -69932,12 +69942,12 @@ } }, "CVE-2022-1198": { - "affected_versions": "unk to v5.17-rc6", - "breaks": "", + "affected_versions": "v2.6.12-rc2 to v5.17-rc6", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", "cmt_msg": "drivers: hamradio: 6pack: fix UAF bug caused by mod_timer()", "fixes": "efe4186e6a1b54bf38b9e05450d43b0da1fd7739", "last_affected_version": "5.16.14", - "last_modified": "2022-04-22", + "last_modified": "2022-06-27", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-1198", "ExploitDB": "https://www.exploit-db.com/search?cve=2022-1198", @@ -69948,12 +69958,12 @@ } }, "CVE-2022-1199": { - "affected_versions": "unk to v5.17-rc8", - "breaks": "", + "affected_versions": "v2.6.12-rc2 to v5.17-rc8", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", "cmt_msg": "ax25: Fix NULL pointer dereference in ax25_kill_by_device", "fixes": "71171ac8eb34ce7fe6b3267dce27c313ab3cb3ac", "last_affected_version": "5.16.14", - "last_modified": "2022-04-04", + "last_modified": "2022-06-27", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-1199", "ExploitDB": "https://www.exploit-db.com/search?cve=2022-1199", @@ -69964,12 +69974,12 @@ } }, "CVE-2022-1204": { - "affected_versions": "unk to v5.18-rc1", - "breaks": "", + "affected_versions": "v2.6.12-rc2 to v5.18-rc1", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", "cmt_msg": "ax25: Fix refcount leaks caused by ax25_cb_del()", "fixes": "9fd75b66b8f68498454d685dc4ba13192ae069b0", "last_affected_version": "5.17.1", - "last_modified": "2022-04-28", + "last_modified": "2022-06-27", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-1204", "ExploitDB": "https://www.exploit-db.com/search?cve=2022-1204", @@ -69980,12 +69990,12 @@ } }, "CVE-2022-1205": { - "affected_versions": "unk to v5.18-rc1", - "breaks": "", + "affected_versions": "v5.17-rc4 to v5.18-rc1", + "breaks": "7ec02f5ac8a5be5a3f20611731243dc5e1d9ba10", "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers", "fixes": "fc6d01ff9ef03b66d4a3a23b46fc3c3d8cf92009", "last_affected_version": "5.17.1", - "last_modified": "2022-04-28", + "last_modified": "2022-06-27", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-1205", "ExploitDB": "https://www.exploit-db.com/search?cve=2022-1205", @@ -70010,12 +70020,12 @@ } }, "CVE-2022-1263": { - "affected_versions": "unk to v5.18-rc3", - "breaks": "", + "affected_versions": "v2.6.12-rc2 to v5.18-rc3", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", "cmt_msg": "KVM: avoid NULL pointer dereference in kvm_dirty_ring_push", "fixes": "5593473a1e6c743764b08e3b6071cb43b5cfa6c4", "last_affected_version": "5.17.2", - "last_modified": "2022-04-28", + "last_modified": "2022-06-27", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-1263", "ExploitDB": "https://www.exploit-db.com/search?cve=2022-1263", @@ -70026,8 +70036,8 @@ } }, "CVE-2022-1280": { - "affected_versions": "unk to v5.15-rc1", - "breaks": "", + "affected_versions": "v2.6.12-rc2 to v5.15-rc1", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", "cmt_msg": "drm: avoid circular locks in drm_mode_getconnector", "cvss2": { "Access Complexity": "Medium", @@ -70053,7 +70063,7 @@ }, "cwe": "Use After Free", "fixes": "869e76f7a918f010bd4518d58886969b1f642a04", - "last_modified": "2022-04-28", + "last_modified": "2022-06-27", "nvd_text": "A use-after-free vulnerability was found in drm_lease_held in drivers/gpu/drm/drm_lease.c in the Linux kernel due to a race problem. This flaw allows a local user privilege attacker to cause a denial of service (DoS) or a kernel information leak.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-1280", @@ -70065,8 +70075,8 @@ } }, "CVE-2022-1353": { - "affected_versions": "unk to v5.17", - "breaks": "", + "affected_versions": "v2.6.12-rc2 to v5.17", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", "cmt_msg": "af_key: add __GFP_ZERO flag for compose_sadb_supported in function pfkey_register", "cvss2": { "Access Complexity": "Low", @@ -70093,7 +70103,7 @@ "cwe": "Unspecified", "fixes": "9a564bccb78a76740ea9d75a259942df8143d02c", "last_affected_version": "5.16", - "last_modified": "2022-05-12", + "last_modified": "2022-06-27", "nvd_text": "A vulnerability was found in the pfkey_register function in net/key/af_key.c in the Linux kernel. This flaw allows a local, unprivileged user to gain access to kernel memory, leading to a system crash or a leak of internal kernel information.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-1353", @@ -70105,8 +70115,8 @@ } }, "CVE-2022-1419": { - "affected_versions": "unk to v5.6-rc2", - "breaks": "", + "affected_versions": "v4.1-rc1 to v5.6-rc2", + "breaks": "502e95c6678505474f1056480310cd9382bacbac", "cmt_msg": "drm/vgem: Close use-after-free race in vgem_gem_create", "cvss2": { "Access Complexity": "Low", @@ -70133,7 +70143,7 @@ "cwe": "Use After Free", "fixes": "4b848f20eda5974020f043ca14bacf7a7e634fc8", "last_affected_version": "5.5.4", - "last_modified": "2022-06-10", + "last_modified": "2022-06-27", "nvd_text": "The root cause of this vulnerability is that the ioctl$DRM_IOCTL_MODE_DESTROY_DUMB can decrease refcount of *drm_vgem_gem_object *(created in *vgem_gem_dumb_create*) concurrently, and *vgem_gem_dumb_create *will access the freed drm_vgem_gem_object.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-1419", @@ -70183,11 +70193,11 @@ } }, "CVE-2022-1508": { - "affected_versions": "unk to v5.15-rc1", - "breaks": "", + "affected_versions": "v2.6.12-rc2 to v5.15-rc1", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", "cmt_msg": "io_uring: reexpand under-reexpanded iters", "fixes": "89c2b3b74918200e46699338d7bcc19b1ea12110", - "last_modified": "2022-04-28", + "last_modified": "2022-06-27", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-1508", "ExploitDB": "https://www.exploit-db.com/search?cve=2022-1508", @@ -70198,8 +70208,8 @@ } }, "CVE-2022-1516": { - "affected_versions": "unk to v5.18-rc1", - "breaks": "", + "affected_versions": "v5.7-rc5 to v5.18-rc1", + "breaks": "4becb7ee5b3d2829ed7b9261a245a77d5b7de902", "cmt_msg": "net/x25: Fix null-ptr-deref caused by x25_disconnect", "cvss2": { "Access Complexity": "Low", @@ -70226,7 +70236,7 @@ "cwe": "Use After Free", "fixes": "7781607938c8371d4c2b243527430241c62e39c2", "last_affected_version": "5.17.1", - "last_modified": "2022-05-18", + "last_modified": "2022-06-27", "nvd_text": "A NULL pointer dereference flaw was found in the Linux kernel\u2019s X.25 set of standardized network protocols functionality in the way a user terminates their session using a simulated Ethernet card and continued usage of this connection. This flaw allows a local user to crash the system.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-1516", @@ -70238,12 +70248,12 @@ } }, "CVE-2022-1651": { - "affected_versions": "unk to v5.18-rc1", - "breaks": "", + "affected_versions": "v5.12-rc1-dontuse to v5.18-rc1", + "breaks": "9c5137aedd112f78a968bdd2325de2ea06df46c0", "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()", "fixes": "ecd1735f14d6ac868ae5d8b7a2bf193fa11f388b", "last_affected_version": "5.17.1", - "last_modified": "2022-05-12", + "last_modified": "2022-06-27", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-1651", "ExploitDB": "https://www.exploit-db.com/search?cve=2022-1651", @@ -70254,8 +70264,9 @@ } }, "CVE-2022-1652": { - "affected_versions": "unk to unk", - "breaks": "", + "affected_versions": "v2.6.12-rc2 to v5.18-rc6", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", + "cmt_msg": "floppy: use a statically allocated error counter", "cvss2": { "Access Complexity": "Low", "Access Vector": "Local Access", @@ -70279,8 +70290,9 @@ "score": 7.8 }, "cwe": "Use After Free", - "fixes": "", - "last_modified": "2022-06-12", + "fixes": "f71f01394f742fc4558b3f9f4c7ef4c4cf3b07c8", + "last_affected_version": "5.17.9", + "last_modified": "2022-06-27", "nvd_text": "Linux Kernel could allow a local attacker to execute arbitrary code on the system, caused by a concurrency use-after-free flaw in the bad_flp_intr function. By executing a specially-crafted program, an attacker could exploit this vulnerability to execute arbitrary code or cause a denial of service condition on the system.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-1652", @@ -70292,12 +70304,12 @@ } }, "CVE-2022-1671": { - "affected_versions": "unk to v5.18-rc1", - "breaks": "", + "affected_versions": "v5.11-rc1 to v5.18-rc1", + "breaks": "12da59fcab5a05d01773e7cb413b8b8f3bb4e334", "cmt_msg": "rxrpc: fix some null-ptr-deref bugs in server_key.c", "fixes": "ff8376ade4f668130385839cef586a0990f8ef87", "last_affected_version": "5.17.1", - "last_modified": "2022-05-18", + "last_modified": "2022-06-27", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-1671", "ExploitDB": "https://www.exploit-db.com/search?cve=2022-1671", @@ -70349,8 +70361,8 @@ } }, "CVE-2022-1679": { - "affected_versions": "unk to unk", - "breaks": "", + "affected_versions": "v2.6.35-rc1 to unk", + "breaks": "fb9987d0f748c983bb795a86f47522313f701a08", "cvss2": { "Access Complexity": "Low", "Access Vector": "Local Access", @@ -70375,7 +70387,7 @@ }, "cwe": "Use After Free", "fixes": "", - "last_modified": "2022-05-25", + "last_modified": "2022-06-27", "nvd_text": "A use-after-free flaw was found in the Linux kernel\u2019s Atheros wireless adapter driver in the way a user forces the ath9k_htc_wait_for_target function to fail with some input messages. This flaw allows a local user to crash or potentially escalate their privileges on the system.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-1679", @@ -70387,12 +70399,12 @@ } }, "CVE-2022-1729": { - "affected_versions": "unk to v5.18", - "breaks": "", + "affected_versions": "v4.0-rc1 to v5.18", + "breaks": "f63a8daa5812afef4f06c962351687e1ff9ccb2b", "cmt_msg": "perf: Fix sys_perf_event_open() race against self", "fixes": "3ac6487e584a1eb54071dbe1212e05b884136704", "last_affected_version": "5.17", - "last_modified": "2022-06-10", + "last_modified": "2022-06-27", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-1729", "ExploitDB": "https://www.exploit-db.com/search?cve=2022-1729", @@ -70485,8 +70497,8 @@ } }, "CVE-2022-1789": { - "affected_versions": "unk to v5.18", - "breaks": "", + "affected_versions": "v4.19-rc1 to v5.18", + "breaks": "eb4b248e152d3ecf189b9d32c04961360dbd938a", "cmt_msg": "KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID", "cvss2": { "Access Complexity": "Medium", @@ -70513,7 +70525,7 @@ "cwe": "NULL Pointer Dereference", "fixes": "9f46c187e2e680ecd9de7983e4d081c3391acc76", "last_affected_version": "5.17", - "last_modified": "2022-06-12", + "last_modified": "2022-06-27", "nvd_text": "With shadow paging enabled, the INVPCID instruction results in a call to kvm_mmu_invpcid_gva. If INVPCID is executed with CR0.PG=0, the invlpg callback is not set and the result is a NULL pointer dereference.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-1789", @@ -70530,7 +70542,8 @@ "cmt_msg": "floppy: disable FDRAWCMD by default", "fixes": "233087ca063686964a53c829d547c7571e3f67bf", "last_affected_version": "5.17.5", - "last_modified": "2022-05-25", + "last_modified": "2022-06-27", + "nvd_text": "** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2022-33981. Reason: This candidate is a reservation duplicate of CVE-2022-33981. Notes: All CVE users should reference CVE-2022-33981 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-1836", "ExploitDB": "https://www.exploit-db.com/search?cve=2022-1836", @@ -70538,15 +70551,16 @@ "Red Hat": "https://access.redhat.com/security/cve/CVE-2022-1836", "SUSE": "https://www.suse.com/security/cve/CVE-2022-1836", "Ubuntu": "https://ubuntu.com/security/CVE-2022-1836" - } + }, + "rejected": true }, "CVE-2022-1852": { - "affected_versions": "unk to v5.19-rc1", - "breaks": "", + "affected_versions": "v5.12-rc1-dontuse to v5.19-rc1", + "breaks": "4aa2691dcbd38ce1c461188799d863398dd2865d", "cmt_msg": "KVM: x86: avoid calling x86 emulator without a decoded instruction", "fixes": "fee060cd52d69c114b62d1a2948ea9648b5131f9", "last_affected_version": "5.18.1", - "last_modified": "2022-06-10", + "last_modified": "2022-06-27", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-1852", "ExploitDB": "https://www.exploit-db.com/search?cve=2022-1852", @@ -70595,8 +70609,8 @@ } }, "CVE-2022-1943": { - "affected_versions": "unk to v5.18-rc7", - "breaks": "", + "affected_versions": "v5.15-rc1 to v5.18-rc7", + "breaks": "979a6e28dd969a2222545001f79566b4bfaf06c0", "cmt_msg": "udf: Avoid using stale lengthOfImpUse", "cvss2": { "Access Complexity": "Low", @@ -70623,7 +70637,7 @@ "cwe": "Out-of-bounds Write", "fixes": "c1ad35dd0548ce947d97aaf92f7f2f9a202951cf", "last_affected_version": "5.17.7", - "last_modified": "2022-06-12", + "last_modified": "2022-06-27", "nvd_text": "A flaw out of bounds memory write in the Linux kernel UDF file system functionality was found in the way user triggers some file operation which triggers udf_write_fi(). A local user could use this flaw to crash the system or potentially", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-1943", @@ -70663,8 +70677,8 @@ "cwe": "Use After Free", "fixes": "520778042ccca019f3ffa136dd0ca565c486cedd", "last_affected_version": "5.18.1", - "last_modified": "2022-06-19", - "nvd_text": "A use-after-free vulnerability was found in the Linux kernel's Netfilter subsystem in net/netfilter/nf_tables_api.c. This flaw allows a local attacker with user access to cause a privilege escalation issue.", + "last_modified": "2022-06-27", + "nvd_text": "** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2022-32250. Reason: This candidate is a duplicate of CVE-2022-32250. Notes: All CVE users should reference CVE-2022-32250 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-1966", "ExploitDB": "https://www.exploit-db.com/search?cve=2022-1966", @@ -70672,15 +70686,16 @@ "Red Hat": "https://access.redhat.com/security/cve/CVE-2022-1966", "SUSE": "https://www.suse.com/security/cve/CVE-2022-1966", "Ubuntu": "https://ubuntu.com/security/CVE-2022-1966" - } + }, + "rejected": true }, "CVE-2022-1972": { - "affected_versions": "unk to v5.19-rc1", - "breaks": "", + "affected_versions": "v5.6-rc1 to v5.19-rc1", + "breaks": "f3a2181e16f1dcbf5446ed43f6b5d9f56c459f85", "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()", "fixes": "fecf31ee395b0295f2d7260aa29946b7605f7c85", "last_affected_version": "5.18.1", - "last_modified": "2022-06-10", + "last_modified": "2022-06-27", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-1972", "ExploitDB": "https://www.exploit-db.com/search?cve=2022-1972", @@ -70691,12 +70706,12 @@ } }, "CVE-2022-1973": { - "affected_versions": "unk to v5.19-rc1", - "breaks": "", + "affected_versions": "v5.15-rc1 to v5.19-rc1", + "breaks": "b46acd6a6a627d876898e1c84d3f84902264b445", "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay", "fixes": "f26967b9f7a830e228bb13fb41bd516ddd9d789d", "last_affected_version": "5.18.2", - "last_modified": "2022-06-10", + "last_modified": "2022-06-27", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-1973", "ExploitDB": "https://www.exploit-db.com/search?cve=2022-1973", @@ -70707,12 +70722,12 @@ } }, "CVE-2022-1974": { - "affected_versions": "unk to v5.18-rc6", - "breaks": "", + "affected_versions": "v3.1-rc1 to v5.18-rc6", + "breaks": "3e256b8f8dfa309a80b5dece388d85d9a9801a29", "cmt_msg": "nfc: replace improper check device_is_registered() in netlink related functions", "fixes": "da5c0f119203ad9728920456a0f52a6d850c01cd", "last_affected_version": "5.17.6", - "last_modified": "2022-06-09", + "last_modified": "2022-06-27", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-1974", "ExploitDB": "https://www.exploit-db.com/search?cve=2022-1974", @@ -70723,12 +70738,12 @@ } }, "CVE-2022-1975": { - "affected_versions": "unk to v5.18-rc6", - "breaks": "", + "affected_versions": "v3.11-rc1 to v5.18-rc6", + "breaks": "9674da8759df0d6c0d24e1ede6e2a1acdef91e3c", "cmt_msg": "NFC: netlink: fix sleep in atomic bug when firmware download timeout", "fixes": "4071bf121d59944d5cd2238de0642f3d7995a997", "last_affected_version": "5.17.6", - "last_modified": "2022-06-09", + "last_modified": "2022-06-27", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-1975", "ExploitDB": "https://www.exploit-db.com/search?cve=2022-1975", @@ -70739,11 +70754,12 @@ } }, "CVE-2022-1976": { - "affected_versions": "unk to v5.19-rc1", - "breaks": "", + "affected_versions": "v5.18-rc2 to v5.19-rc1", + "breaks": "d5361233e9ab920e135819f73dd8466355f1fddd", "cmt_msg": "io_uring: reinstate the inflight tracking", "fixes": "9cae36a094e7e9d6e5fe8b6dcd4642138b3eb0c7", - "last_modified": "2022-06-19", + "last_affected_version": "5.18.5", + "last_modified": "2022-06-27", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-1976", "ExploitDB": "https://www.exploit-db.com/search?cve=2022-1976", @@ -70754,8 +70770,8 @@ } }, "CVE-2022-1998": { - "affected_versions": "unk to v5.17-rc3", - "breaks": "", + "affected_versions": "v5.13-rc7 to v5.17-rc3", + "breaks": "f644bc449b37cc32d3ce7b36a88073873aa21bd5", "cmt_msg": "fanotify: Fix stale file descriptor in copy_event_to_user()", "cvss2": { "Access Complexity": "Low", @@ -70782,7 +70798,7 @@ "cwe": "Use After Free", "fixes": "ee12595147ac1fbfb5bcb23837e26dd58d94b15d", "last_affected_version": "5.16.5", - "last_modified": "2022-06-19", + "last_modified": "2022-06-27", "nvd_text": "A use after free in the Linux kernel File System notify functionality was found in the way user triggers copy_info_records_to_user() call to fail in copy_event_to_user(). A local user could use this flaw to crash the system or potentially escalate their privileges on the system.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-1998", @@ -70837,9 +70853,32 @@ "affected_versions": "unk to v5.16-rc5", "breaks": "", "cmt_msg": "HID: add hid_is_usb() function to make it simpler for USB detection", + "cvss2": { + "Access Complexity": "Low", + "Access Vector": "Local Access", + "Authentication": "None", + "Availability Impact": "None", + "Confidentiality Impact": "Complete", + "Integrity Impact": "None", + "raw": "AV:L/AC:L/Au:N/C:C/I:N/A:N", + "score": 4.9 + }, + "cvss3": { + "Attack Complexity": "Low", + "Attack Vector": "Physical", + "Availability": "None", + "Confidentiality": "High", + "Integrity": "None", + "Privileges Required": "None", + "Scope": "Unchanged", + "User Interaction": "None", + "raw": "CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N", + "score": 4.6 + }, + "cwe": "Out-of-bounds Read", "fixes": "f83baa0cb6cfc92ebaf7f9d3a99d7e34f2e77a8a", "last_affected_version": "5.15.7", - "last_modified": "2022-06-19", + "last_modified": "2022-06-27", "nvd_text": "In lg_probe and related functions of hid-lg.c and other USB HID files, there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure if a malicious USB HID device were plugged in, with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-188677105References: Upstream kernel", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-20132", @@ -70851,12 +70890,35 @@ } }, "CVE-2022-20141": { - "affected_versions": "unk to v5.15-rc1", - "breaks": "", + "affected_versions": "v2.6.12-rc2 to v5.15-rc1", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", "cmt_msg": "igmp: Add ip_mc_list lock in ip_check_mc_rcu", + "cvss2": { + "Access Complexity": "Low", + "Access Vector": "Local Access", + "Authentication": "None", + "Availability Impact": "Complete", + "Confidentiality Impact": "Complete", + "Integrity Impact": "Complete", + "raw": "AV:L/AC:L/Au:N/C:C/I:C/A:C", + "score": 7.2 + }, + "cvss3": { + "Attack Complexity": "Low", + "Attack Vector": "Local", + "Availability": "High", + "Confidentiality": "High", + "Integrity": "High", + "Privileges Required": "Low", + "Scope": "Unchanged", + "User Interaction": "None", + "raw": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H", + "score": 7.8 + }, + "cwe": "Improper Locking", "fixes": "23d2b94043ca8835bd1e67749020e839f396a1c2", "last_affected_version": "5.14.2", - "last_modified": "2022-06-19", + "last_modified": "2022-06-27", "nvd_text": "In ip_check_mc_rcu of igmp.c, there is a possible use after free due to improper locking. This could lead to local escalation of privilege when opening and closing inet sockets with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-112551163References: Upstream kernel", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-20141", @@ -70871,9 +70933,32 @@ "affected_versions": "unk to v5.16-rc1", "breaks": "", "cmt_msg": "f2fs: fix UAF in f2fs_available_free_memory", + "cvss2": { + "Access Complexity": "Medium", + "Access Vector": "Local Access", + "Authentication": "None", + "Availability Impact": "Complete", + "Confidentiality Impact": "Complete", + "Integrity Impact": "Complete", + "raw": "AV:L/AC:M/Au:N/C:C/I:C/A:C", + "score": 6.9 + }, + "cvss3": { + "Attack Complexity": "High", + "Attack Vector": "Local", + "Availability": "High", + "Confidentiality": "High", + "Integrity": "High", + "Privileges Required": "High", + "Scope": "Unchanged", + "User Interaction": "None", + "raw": "CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H", + "score": 6.4 + }, + "cwe": "Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')", "fixes": "5429c9dbc9025f9a166f64e22e3a69c94fd5b29b", "last_affected_version": "5.15.2", - "last_modified": "2022-06-19", + "last_modified": "2022-06-27", "nvd_text": "In TBD of TBD, there is a possible use-after-free due to a race condition. This could lead to local escalation of privilege in the kernel with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-219513976References: Upstream kernel", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-20148", @@ -70885,12 +70970,35 @@ } }, "CVE-2022-20153": { - "affected_versions": "unk to v5.13-rc1", - "breaks": "", + "affected_versions": "v5.12-rc1-dontuse to v5.13-rc1", + "breaks": "cb5e1b81304e089ee3ca948db4d29f71902eb575", "cmt_msg": "io_uring: return back safer resurrect", + "cvss2": { + "Access Complexity": "Low", + "Access Vector": "Local Access", + "Authentication": "None", + "Availability Impact": "Complete", + "Confidentiality Impact": "Complete", + "Integrity Impact": "Complete", + "raw": "AV:L/AC:L/Au:N/C:C/I:C/A:C", + "score": 7.2 + }, + "cvss3": { + "Attack Complexity": "Low", + "Attack Vector": "Local", + "Availability": "High", + "Confidentiality": "High", + "Integrity": "High", + "Privileges Required": "High", + "Scope": "Unchanged", + "User Interaction": "None", + "raw": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H", + "score": 6.7 + }, + "cwe": "Use After Free", "fixes": "f70865db5ff35f5ed0c7e9ef63e7cca3d4947f04", "last_affected_version": "5.10.106", - "last_modified": "2022-06-19", + "last_modified": "2022-06-27", "nvd_text": "In rcu_cblist_dequeue of rcu_segcblist.c, there is a possible use-after-free due to improper locking. This could lead to local escalation of privilege in the kernel with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-222091980References: Upstream kernel", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-20153", @@ -70902,12 +71010,35 @@ } }, "CVE-2022-20154": { - "affected_versions": "unk to v5.16-rc8", - "breaks": "", + "affected_versions": "v4.14-rc1 to v5.16-rc8", + "breaks": "d25adbeb0cdb860fb39e09cdd025e9cfc954c5ab", "cmt_msg": "sctp: use call_rcu to free endpoint", + "cvss2": { + "Access Complexity": "Medium", + "Access Vector": "Local Access", + "Authentication": "None", + "Availability Impact": "Partial", + "Confidentiality Impact": "Partial", + "Integrity Impact": "Partial", + "raw": "AV:L/AC:M/Au:N/C:P/I:P/A:P", + "score": 4.4 + }, + "cvss3": { + "Attack Complexity": "High", + "Attack Vector": "Local", + "Availability": "High", + "Confidentiality": "High", + "Integrity": "High", + "Privileges Required": "High", + "Scope": "Unchanged", + "User Interaction": "None", + "raw": "CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H", + "score": 6.4 + }, + "cwe": "Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')", "fixes": "5ec7d18d1813a5bead0b495045606c93873aecbb", "last_affected_version": "5.15.12", - "last_modified": "2022-06-19", + "last_modified": "2022-06-27", "nvd_text": "In lock_sock_nested of sock.c, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-174846563References: Upstream kernel", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-20154", @@ -70919,11 +71050,34 @@ } }, "CVE-2022-20166": { - "affected_versions": "unk to v5.10-rc1", - "breaks": "", + "affected_versions": "v2.6.12-rc2 to v5.10-rc1", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", "cmt_msg": "drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions", + "cvss2": { + "Access Complexity": "Low", + "Access Vector": "Local Access", + "Authentication": "None", + "Availability Impact": "Partial", + "Confidentiality Impact": "Partial", + "Integrity Impact": "Partial", + "raw": "AV:L/AC:L/Au:N/C:P/I:P/A:P", + "score": 4.6 + }, + "cvss3": { + "Attack Complexity": "Low", + "Attack Vector": "Local", + "Availability": "High", + "Confidentiality": "High", + "Integrity": "High", + "Privileges Required": "High", + "Scope": "Unchanged", + "User Interaction": "None", + "raw": "CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H", + "score": 6.7 + }, + "cwe": "Out-of-bounds Write", "fixes": "aa838896d87af561a33ecefea1caa4c15a68bc47", - "last_modified": "2022-06-19", + "last_modified": "2022-06-27", "nvd_text": "In various methods of kernel base drivers, there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-182388481References: Upstream kernel", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-20166", @@ -70935,12 +71089,12 @@ } }, "CVE-2022-2078": { - "affected_versions": "unk to v5.19-rc1", - "breaks": "", + "affected_versions": "v5.6-rc1 to v5.19-rc1", + "breaks": "f3a2181e16f1dcbf5446ed43f6b5d9f56c459f85", "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()", "fixes": "fecf31ee395b0295f2d7260aa29946b7605f7c85", "last_affected_version": "5.18.1", - "last_modified": "2022-06-19", + "last_modified": "2022-06-27", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-2078", "ExploitDB": "https://www.exploit-db.com/search?cve=2022-2078", @@ -70951,8 +71105,8 @@ } }, "CVE-2022-21499": { - "affected_versions": "unk to v5.19-rc1", - "breaks": "", + "affected_versions": "v2.6.12-rc2 to v5.19-rc1", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", "cmt_msg": "lockdown: also lock down previous kgdb use", "cvss2": { "Access Complexity": "Low", @@ -70979,7 +71133,7 @@ "cwe": "Out-of-bounds Write", "fixes": "eadb2f47a3ced5c64b23b90fd2a3463f63726066", "last_affected_version": "5.18.0", - "last_modified": "2022-06-19", + "last_modified": "2022-06-27", "nvd_text": "KGDB and KDB allow read and write access to kernel memory, and thus should be restricted during lockdown. An attacker with access to a serial port could trigger the debugger so it is important that the debugger respect the lockdown mode when/if it is triggered. CVSS 3.1 Base Score 6.5 (Confidentiality, Integrity and Availability impacts). CVSS Vector: (CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:H).", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-21499", @@ -70990,6 +71144,22 @@ "Ubuntu": "https://ubuntu.com/security/CVE-2022-21499" } }, + "CVE-2022-2153": { + "affected_versions": "v3.7-rc1 to v5.18-rc1", + "breaks": "1e08ec4a130e2745d96df169e67c58df98a07311", + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()", + "fixes": "00b5f37189d24ac3ed46cb7f11742094778c46ce", + "last_affected_version": "5.17.1", + "last_modified": "2022-06-27", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-2153", + "ExploitDB": "https://www.exploit-db.com/search?cve=2022-2153", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2022-2153", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2022-2153", + "SUSE": "https://www.suse.com/security/cve/CVE-2022-2153", + "Ubuntu": "https://ubuntu.com/security/CVE-2022-2153" + } + }, "CVE-2022-22942": { "affected_versions": "v4.14-rc1 to v5.17-rc2", "breaks": "c906965dee22d5e95d0651759ba107b420212a9f", @@ -71007,8 +71177,8 @@ } }, "CVE-2022-23036": { - "affected_versions": "unk to v5.17-rc8", - "breaks": "", + "affected_versions": "v2.6.12-rc2 to v5.17-rc8", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", "cmt_msg": "xen/grant-table: add gnttab_try_end_foreign_access()", "cvss2": { "Access Complexity": "Medium", @@ -71035,7 +71205,7 @@ "cwe": "Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')", "fixes": "6b1775f26a2da2b05a6dc8ec2b5d14e9a4701a1a", "last_affected_version": "5.16.13", - "last_modified": "2022-03-18", + "last_modified": "2022-06-27", "nvd_text": "Linux PV device frontends vulnerable to attacks by backends T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Several Linux PV device frontends are using the grant table interfaces for removing access rights of the backends in ways being subject to race conditions, resulting in potential data leaks, data corruption by malicious backends, and denial of service triggered by malicious backends: blkfront, netfront, scsifront and the gntalloc driver are testing whether a grant reference is still in use. If this is not the case, they assume that a following removal of the granted access will always succeed, which is not true in case the backend has mapped the granted page between those two operations. As a result the backend can keep access to the memory page of the guest no matter how the page will be used after the frontend I/O has finished. The xenbus driver has a similar problem, as it doesn't check the success of removing the granted access of a shared ring buffer. blkfront: CVE-2022-23036 netfront: CVE-2022-23037 scsifront: CVE-2022-23038 gntalloc: CVE-2022-23039 xenbus: CVE-2022-23040 blkfront, netfront, scsifront, usbfront, dmabuf, xenbus, 9p, kbdfront, and pvcalls are using a functionality to delay freeing a grant reference until it is no longer in use, but the freeing of the related data page is not synchronized with dropping the granted access. As a result the backend can keep access to the memory page even after it has been freed and then re-used for a different purpose. CVE-2022-23041 netfront will fail a BUG_ON() assertion if it fails to revoke access in the rx path. This will result in a Denial of Service (DoS) situation of the guest which can be triggered by the backend. CVE-2022-23042", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-23036", @@ -71047,8 +71217,8 @@ } }, "CVE-2022-23037": { - "affected_versions": "unk to v5.17-rc8", - "breaks": "", + "affected_versions": "v2.6.12-rc2 to v5.17-rc8", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", "cmt_msg": "xen/netfront: don't use gnttab_query_foreign_access() for mapped status", "cvss2": { "Access Complexity": "Medium", @@ -71075,7 +71245,7 @@ "cwe": "Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')", "fixes": "31185df7e2b1d2fa1de4900247a12d7b9c7087eb", "last_affected_version": "5.16.13", - "last_modified": "2022-03-18", + "last_modified": "2022-06-27", "nvd_text": "Linux PV device frontends vulnerable to attacks by backends T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Several Linux PV device frontends are using the grant table interfaces for removing access rights of the backends in ways being subject to race conditions, resulting in potential data leaks, data corruption by malicious backends, and denial of service triggered by malicious backends: blkfront, netfront, scsifront and the gntalloc driver are testing whether a grant reference is still in use. If this is not the case, they assume that a following removal of the granted access will always succeed, which is not true in case the backend has mapped the granted page between those two operations. As a result the backend can keep access to the memory page of the guest no matter how the page will be used after the frontend I/O has finished. The xenbus driver has a similar problem, as it doesn't check the success of removing the granted access of a shared ring buffer. blkfront: CVE-2022-23036 netfront: CVE-2022-23037 scsifront: CVE-2022-23038 gntalloc: CVE-2022-23039 xenbus: CVE-2022-23040 blkfront, netfront, scsifront, usbfront, dmabuf, xenbus, 9p, kbdfront, and pvcalls are using a functionality to delay freeing a grant reference until it is no longer in use, but the freeing of the related data page is not synchronized with dropping the granted access. As a result the backend can keep access to the memory page even after it has been freed and then re-used for a different purpose. CVE-2022-23041 netfront will fail a BUG_ON() assertion if it fails to revoke access in the rx path. This will result in a Denial of Service (DoS) situation of the guest which can be triggered by the backend. CVE-2022-23042", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-23037", @@ -71087,8 +71257,8 @@ } }, "CVE-2022-23038": { - "affected_versions": "unk to v5.17-rc8", - "breaks": "", + "affected_versions": "v2.6.12-rc2 to v5.17-rc8", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", "cmt_msg": "xen/grant-table: add gnttab_try_end_foreign_access()", "cvss2": { "Access Complexity": "Medium", @@ -71115,7 +71285,7 @@ "cwe": "Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')", "fixes": "6b1775f26a2da2b05a6dc8ec2b5d14e9a4701a1a", "last_affected_version": "5.16.13", - "last_modified": "2022-03-18", + "last_modified": "2022-06-27", "nvd_text": "Linux PV device frontends vulnerable to attacks by backends T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Several Linux PV device frontends are using the grant table interfaces for removing access rights of the backends in ways being subject to race conditions, resulting in potential data leaks, data corruption by malicious backends, and denial of service triggered by malicious backends: blkfront, netfront, scsifront and the gntalloc driver are testing whether a grant reference is still in use. If this is not the case, they assume that a following removal of the granted access will always succeed, which is not true in case the backend has mapped the granted page between those two operations. As a result the backend can keep access to the memory page of the guest no matter how the page will be used after the frontend I/O has finished. The xenbus driver has a similar problem, as it doesn't check the success of removing the granted access of a shared ring buffer. blkfront: CVE-2022-23036 netfront: CVE-2022-23037 scsifront: CVE-2022-23038 gntalloc: CVE-2022-23039 xenbus: CVE-2022-23040 blkfront, netfront, scsifront, usbfront, dmabuf, xenbus, 9p, kbdfront, and pvcalls are using a functionality to delay freeing a grant reference until it is no longer in use, but the freeing of the related data page is not synchronized with dropping the granted access. As a result the backend can keep access to the memory page even after it has been freed and then re-used for a different purpose. CVE-2022-23041 netfront will fail a BUG_ON() assertion if it fails to revoke access in the rx path. This will result in a Denial of Service (DoS) situation of the guest which can be triggered by the backend. CVE-2022-23042", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-23038", @@ -71127,8 +71297,8 @@ } }, "CVE-2022-23039": { - "affected_versions": "unk to v5.17-rc8", - "breaks": "", + "affected_versions": "v2.6.12-rc2 to v5.17-rc8", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", "cmt_msg": "xen/gntalloc: don't use gnttab_query_foreign_access()", "cvss2": { "Access Complexity": "Medium", @@ -71155,7 +71325,7 @@ "cwe": "Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')", "fixes": "d3b6372c5881cb54925212abb62c521df8ba4809", "last_affected_version": "5.16.13", - "last_modified": "2022-03-18", + "last_modified": "2022-06-27", "nvd_text": "Linux PV device frontends vulnerable to attacks by backends T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Several Linux PV device frontends are using the grant table interfaces for removing access rights of the backends in ways being subject to race conditions, resulting in potential data leaks, data corruption by malicious backends, and denial of service triggered by malicious backends: blkfront, netfront, scsifront and the gntalloc driver are testing whether a grant reference is still in use. If this is not the case, they assume that a following removal of the granted access will always succeed, which is not true in case the backend has mapped the granted page between those two operations. As a result the backend can keep access to the memory page of the guest no matter how the page will be used after the frontend I/O has finished. The xenbus driver has a similar problem, as it doesn't check the success of removing the granted access of a shared ring buffer. blkfront: CVE-2022-23036 netfront: CVE-2022-23037 scsifront: CVE-2022-23038 gntalloc: CVE-2022-23039 xenbus: CVE-2022-23040 blkfront, netfront, scsifront, usbfront, dmabuf, xenbus, 9p, kbdfront, and pvcalls are using a functionality to delay freeing a grant reference until it is no longer in use, but the freeing of the related data page is not synchronized with dropping the granted access. As a result the backend can keep access to the memory page even after it has been freed and then re-used for a different purpose. CVE-2022-23041 netfront will fail a BUG_ON() assertion if it fails to revoke access in the rx path. This will result in a Denial of Service (DoS) situation of the guest which can be triggered by the backend. CVE-2022-23042", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-23039", @@ -71167,8 +71337,8 @@ } }, "CVE-2022-23040": { - "affected_versions": "unk to v5.17-rc8", - "breaks": "", + "affected_versions": "v2.6.12-rc2 to v5.17-rc8", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", "cmt_msg": "xen/xenbus: don't let xenbus_grant_ring() remove grants in error case", "cvss2": { "Access Complexity": "Medium", @@ -71195,7 +71365,7 @@ "cwe": "Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')", "fixes": "3777ea7bac3113005b7180e6b9dadf16d19a5827", "last_affected_version": "5.16.13", - "last_modified": "2022-03-18", + "last_modified": "2022-06-27", "nvd_text": "Linux PV device frontends vulnerable to attacks by backends T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Several Linux PV device frontends are using the grant table interfaces for removing access rights of the backends in ways being subject to race conditions, resulting in potential data leaks, data corruption by malicious backends, and denial of service triggered by malicious backends: blkfront, netfront, scsifront and the gntalloc driver are testing whether a grant reference is still in use. If this is not the case, they assume that a following removal of the granted access will always succeed, which is not true in case the backend has mapped the granted page between those two operations. As a result the backend can keep access to the memory page of the guest no matter how the page will be used after the frontend I/O has finished. The xenbus driver has a similar problem, as it doesn't check the success of removing the granted access of a shared ring buffer. blkfront: CVE-2022-23036 netfront: CVE-2022-23037 scsifront: CVE-2022-23038 gntalloc: CVE-2022-23039 xenbus: CVE-2022-23040 blkfront, netfront, scsifront, usbfront, dmabuf, xenbus, 9p, kbdfront, and pvcalls are using a functionality to delay freeing a grant reference until it is no longer in use, but the freeing of the related data page is not synchronized with dropping the granted access. As a result the backend can keep access to the memory page even after it has been freed and then re-used for a different purpose. CVE-2022-23041 netfront will fail a BUG_ON() assertion if it fails to revoke access in the rx path. This will result in a Denial of Service (DoS) situation of the guest which can be triggered by the backend. CVE-2022-23042", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-23040", @@ -71207,8 +71377,8 @@ } }, "CVE-2022-23041": { - "affected_versions": "unk to v5.17-rc8", - "breaks": "", + "affected_versions": "v4.12-rc1 to v5.17-rc8", + "breaks": "71ebd71921e451f0f942ddfe85d01e31ddc6eb88", "cmt_msg": "xen/9p: use alloc/free_pages_exact()", "cvss2": { "Access Complexity": "Medium", @@ -71235,7 +71405,7 @@ "cwe": "Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')", "fixes": "5cadd4bb1d7fc9ab201ac14620d1a478357e4ebd", "last_affected_version": "5.16.13", - "last_modified": "2022-03-18", + "last_modified": "2022-06-27", "nvd_text": "Linux PV device frontends vulnerable to attacks by backends T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Several Linux PV device frontends are using the grant table interfaces for removing access rights of the backends in ways being subject to race conditions, resulting in potential data leaks, data corruption by malicious backends, and denial of service triggered by malicious backends: blkfront, netfront, scsifront and the gntalloc driver are testing whether a grant reference is still in use. If this is not the case, they assume that a following removal of the granted access will always succeed, which is not true in case the backend has mapped the granted page between those two operations. As a result the backend can keep access to the memory page of the guest no matter how the page will be used after the frontend I/O has finished. The xenbus driver has a similar problem, as it doesn't check the success of removing the granted access of a shared ring buffer. blkfront: CVE-2022-23036 netfront: CVE-2022-23037 scsifront: CVE-2022-23038 gntalloc: CVE-2022-23039 xenbus: CVE-2022-23040 blkfront, netfront, scsifront, usbfront, dmabuf, xenbus, 9p, kbdfront, and pvcalls are using a functionality to delay freeing a grant reference until it is no longer in use, but the freeing of the related data page is not synchronized with dropping the granted access. As a result the backend can keep access to the memory page even after it has been freed and then re-used for a different purpose. CVE-2022-23041 netfront will fail a BUG_ON() assertion if it fails to revoke access in the rx path. This will result in a Denial of Service (DoS) situation of the guest which can be triggered by the backend. CVE-2022-23042", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-23041", @@ -71247,8 +71417,8 @@ } }, "CVE-2022-23042": { - "affected_versions": "unk to v5.17-rc8", - "breaks": "", + "affected_versions": "v2.6.12-rc2 to v5.17-rc8", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", "cmt_msg": "xen/netfront: react properly to failing gnttab_end_foreign_access_ref()", "cvss2": { "Access Complexity": "Medium", @@ -71275,7 +71445,7 @@ "cwe": "Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')", "fixes": "66e3531b33ee51dad17c463b4d9c9f52e341503d", "last_affected_version": "5.16.13", - "last_modified": "2022-03-18", + "last_modified": "2022-06-27", "nvd_text": "Linux PV device frontends vulnerable to attacks by backends T[his CNA information record relates to multiple CVEs; the text explains which aspects/vulnerabilities correspond to which CVE.] Several Linux PV device frontends are using the grant table interfaces for removing access rights of the backends in ways being subject to race conditions, resulting in potential data leaks, data corruption by malicious backends, and denial of service triggered by malicious backends: blkfront, netfront, scsifront and the gntalloc driver are testing whether a grant reference is still in use. If this is not the case, they assume that a following removal of the granted access will always succeed, which is not true in case the backend has mapped the granted page between those two operations. As a result the backend can keep access to the memory page of the guest no matter how the page will be used after the frontend I/O has finished. The xenbus driver has a similar problem, as it doesn't check the success of removing the granted access of a shared ring buffer. blkfront: CVE-2022-23036 netfront: CVE-2022-23037 scsifront: CVE-2022-23038 gntalloc: CVE-2022-23039 xenbus: CVE-2022-23040 blkfront, netfront, scsifront, usbfront, dmabuf, xenbus, 9p, kbdfront, and pvcalls are using a functionality to delay freeing a grant reference until it is no longer in use, but the freeing of the related data page is not synchronized with dropping the granted access. As a result the backend can keep access to the memory page even after it has been freed and then re-used for a different purpose. CVE-2022-23041 netfront will fail a BUG_ON() assertion if it fails to revoke access in the rx path. This will result in a Denial of Service (DoS) situation of the guest which can be triggered by the backend. CVE-2022-23042", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-23042", @@ -71327,8 +71497,8 @@ } }, "CVE-2022-23960": { - "affected_versions": "unk to v5.17-rc8", - "breaks": "", + "affected_versions": "v2.6.12-rc2 to v5.17-rc8", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", "cmt_msg": "ARM: report Spectre v2 status through sysfs", "cvss2": { "Access Complexity": "Medium", @@ -71355,7 +71525,7 @@ "cwe": "Unspecified", "fixes": "9dd78194a3722fa6712192cdd4f7032d45112a9a", "last_affected_version": "5.16.13", - "last_modified": "2022-04-07", + "last_modified": "2022-06-27", "nvd_text": "Certain Arm Cortex and Neoverse processors through 2022-03-08 do not properly restrict cache speculation, aka Spectre-BHB. An attacker can leverage the shared branch history in the Branch History Buffer (BHB) to influence mispredicted branches. Then, cache allocation can allow the attacker to obtain sensitive information.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-23960", @@ -71604,8 +71774,8 @@ } }, "CVE-2022-25375": { - "affected_versions": "unk to v5.17-rc4", - "breaks": "", + "affected_versions": "v2.6.12-rc2 to v5.17-rc4", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", "cmt_msg": "usb: gadget: rndis: check size of RNDIS_MSG_SET command", "cvss2": { "Access Complexity": "Low", @@ -71632,7 +71802,7 @@ "cwe": "Exposure of Resource to Wrong Sphere", "fixes": "38ea1eac7d88072bbffb630e2b3db83ca649b826", "last_affected_version": "5.16.9", - "last_modified": "2022-03-07", + "last_modified": "2022-06-27", "nvd_text": "An issue was discovered in drivers/usb/gadget/function/rndis.c in the Linux kernel before 5.16.10. The RNDIS USB gadget lacks validation of the size of the RNDIS_MSG_SET command. Attackers can obtain sensitive information from kernel memory.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-25375", @@ -71644,8 +71814,8 @@ } }, "CVE-2022-25636": { - "affected_versions": "unk to v5.17-rc6", - "breaks": "", + "affected_versions": "v5.4-rc1 to v5.17-rc6", + "breaks": "be2861dc36d77ff3778979b9c3c79ada4affa131", "cmt_msg": "netfilter: nf_tables_offload: incorrect flow offload action array size", "cvss2": { "Access Complexity": "Medium", @@ -71672,7 +71842,7 @@ "cwe": "Improper Privilege Management", "fixes": "b1a5983f56e371046dcf164f90bfaf704d2b89f6", "last_affected_version": "5.16.11", - "last_modified": "2022-03-07", + "last_modified": "2022-06-27", "nvd_text": "net/netfilter/nf_dup_netdev.c in the Linux kernel 5.4 through 5.6.10 allows local users to gain privileges because of a heap out-of-bounds write. This is related to nf_tables_offload.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-25636", @@ -71724,8 +71894,8 @@ } }, "CVE-2022-26878": { - "affected_versions": "unk to unk", - "breaks": "", + "affected_versions": "v5.13-rc1 to unk", + "breaks": "afd2daa26c7abd734d78bd274fc6c59a15e61063", "cvss2": { "Access Complexity": "Low", "Access Vector": "Local Access", @@ -71750,7 +71920,7 @@ }, "cwe": "Missing Release of Resource after Effective Lifetime", "fixes": "ad7cb5f6fa5f7ea37208c98a9457dd98025a89ca", - "last_modified": "2022-04-07", + "last_modified": "2022-06-27", "nvd_text": "drivers/bluetooth/virtio_bt.c in the Linux kernel before 5.16.3 has a memory leak (socket buffers have memory allocated but not freed).", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-26878", @@ -71762,8 +71932,8 @@ } }, "CVE-2022-26966": { - "affected_versions": "unk to v5.17-rc6", - "breaks": "", + "affected_versions": "v3.12-rc1 to v5.17-rc6", + "breaks": "c9b37458e95629b1d1171457afdcc1bf1eb7881d", "cmt_msg": "sr9700: sanity check for packet length", "cvss2": { "Access Complexity": "Low", @@ -71790,7 +71960,7 @@ "cwe": "Unspecified", "fixes": "e9da0b56fe27206b49f39805f7dcda8a89379062", "last_affected_version": "5.16.11", - "last_modified": "2022-04-07", + "last_modified": "2022-06-27", "nvd_text": "An issue was discovered in the Linux kernel before 5.16.12. drivers/net/usb/sr9700.c allows attackers to obtain sensitive information from heap memory via crafted frame lengths from a device.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-26966", @@ -71802,8 +71972,8 @@ } }, "CVE-2022-27223": { - "affected_versions": "unk to v5.17-rc6", - "breaks": "", + "affected_versions": "v3.18-rc1 to v5.17-rc6", + "breaks": "1f7c51660034091dc134fcc534b7f1fa86a6e823", "cmt_msg": "USB: gadget: validate endpoint index for xilinx udc", "cvss2": { "Access Complexity": "Low", @@ -71830,7 +72000,7 @@ "cwe": "Improper Validation of Array Index", "fixes": "7f14c7227f342d9932f9b918893c8814f86d2a0d", "last_affected_version": "5.16.11", - "last_modified": "2022-04-07", + "last_modified": "2022-06-27", "nvd_text": "In drivers/usb/gadget/udc/udc-xilinx.c in the Linux kernel before 5.16.12, the endpoint index is not validated and might be manipulated by the host for out-of-array access.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-27223", @@ -71882,8 +72052,8 @@ } }, "CVE-2022-27950": { - "affected_versions": "unk to v5.17-rc5", - "breaks": "", + "affected_versions": "v5.15-rc1 to v5.17-rc5", + "breaks": "fbf42729d0e91332e8ce75a1ecce08b8a2dab9c1", "cmt_msg": "HID: elo: fix memory leak in elo_probe", "cvss2": { "Access Complexity": "Low", @@ -71910,7 +72080,7 @@ "cwe": "Missing Release of Memory after Effective Lifetime", "fixes": "817b8b9c5396d2b2d92311b46719aad5d3339dbe", "last_affected_version": "5.16.10", - "last_modified": "2022-04-07", + "last_modified": "2022-06-27", "nvd_text": "In drivers/hid/hid-elo.c in the Linux kernel before 5.16.11, a memory leak exists for a certain hid_parse error condition.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-27950", @@ -71922,8 +72092,8 @@ } }, "CVE-2022-28356": { - "affected_versions": "unk to v5.18-rc1", - "breaks": "", + "affected_versions": "v2.6.12-rc2 to v5.18-rc1", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", "cmt_msg": "llc: fix netdevice reference leaks in llc_ui_bind()", "cvss2": { "Access Complexity": "Low", @@ -71950,7 +72120,7 @@ "cwe": "Unspecified", "fixes": "764f4eb6846f5475f1244767d24d25dd86528a4a", "last_affected_version": "5.17.0", - "last_modified": "2022-04-15", + "last_modified": "2022-06-27", "nvd_text": "In the Linux kernel before 5.17.1, a refcount leak bug was found in net/llc/af_llc.c.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-28356", @@ -71962,8 +72132,8 @@ } }, "CVE-2022-28388": { - "affected_versions": "unk to v5.18-rc1", - "breaks": "", + "affected_versions": "v3.9-rc1 to v5.18-rc1", + "breaks": "0024d8ad1639e32d717445c69ca813fd19c2a91c", "cmt_msg": "can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path", "cvss2": { "Access Complexity": "Low", @@ -71990,7 +72160,7 @@ "cwe": "Double Free", "fixes": "3d3925ff6433f98992685a9679613a2cc97f3ce2", "last_affected_version": "5.17.1", - "last_modified": "2022-04-28", + "last_modified": "2022-06-27", "nvd_text": "usb_8dev_start_xmit in drivers/net/can/usb/usb_8dev.c in the Linux kernel through 5.17.1 has a double free.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-28388", @@ -72002,8 +72172,8 @@ } }, "CVE-2022-28389": { - "affected_versions": "unk to v5.18-rc1", - "breaks": "", + "affected_versions": "v4.12-rc1 to v5.18-rc1", + "breaks": "51f3baad7de943780ce0c17bd7975df567dd6e14", "cmt_msg": "can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path", "cvss2": { "Access Complexity": "Low", @@ -72030,7 +72200,7 @@ "cwe": "Double Free", "fixes": "04c9b00ba83594a29813d6b1fb8fdc93a3915174", "last_affected_version": "5.17.1", - "last_modified": "2022-04-22", + "last_modified": "2022-06-27", "nvd_text": "mcba_usb_start_xmit in drivers/net/can/usb/mcba_usb.c in the Linux kernel through 5.17.1 has a double free.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-28389", @@ -72042,8 +72212,8 @@ } }, "CVE-2022-28390": { - "affected_versions": "unk to v5.18-rc1", - "breaks": "", + "affected_versions": "v2.6.32-rc1 to v5.18-rc1", + "breaks": "702171adeed3607ee9603ec30ce081411e36ae42", "cmt_msg": "can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path", "cvss2": { "Access Complexity": "Low", @@ -72070,7 +72240,7 @@ "cwe": "Double Free", "fixes": "c70222752228a62135cee3409dccefd494a24646", "last_affected_version": "5.17.1", - "last_modified": "2022-04-22", + "last_modified": "2022-06-27", "nvd_text": "ems_usb_start_xmit in drivers/net/can/usb/ems_usb.c in the Linux kernel through 5.17.1 has a double free.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-28390", @@ -72082,8 +72252,8 @@ } }, "CVE-2022-28796": { - "affected_versions": "unk to v5.18-rc1", - "breaks": "", + "affected_versions": "v5.17-rc3 to v5.18-rc1", + "breaks": "4f98186848707f530669238d90e0562d92a78aab", "cmt_msg": "jbd2: fix use-after-free of transaction_t race", "cvss2": { "Access Complexity": "Medium", @@ -72110,7 +72280,7 @@ "cwe": "Use After Free", "fixes": "cc16eecae687912238ee6efbff71ad31e2bc414e", "last_affected_version": "5.17.0", - "last_modified": "2022-04-15", + "last_modified": "2022-06-27", "nvd_text": "jbd2_journal_wait_updates in fs/jbd2/transaction.c in the Linux kernel before 5.17.1 has a use-after-free caused by a transaction_t race condition.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-28796", @@ -72122,8 +72292,8 @@ } }, "CVE-2022-28893": { - "affected_versions": "unk to v5.18-rc2", - "breaks": "", + "affected_versions": "v5.1-rc1 to v5.18-rc2", + "breaks": "a73881c96d73ee72b7dbbd38a6eeef66182a8ef7", "cmt_msg": "SUNRPC: Ensure we flush any closed sockets before xs_xprt_free()", "cvss2": { "Access Complexity": "Low", @@ -72150,7 +72320,7 @@ "cwe": "Use After Free", "fixes": "f00432063db1a0db484e85193eccc6845435b80e", "last_affected_version": "5.17.2", - "last_modified": "2022-05-25", + "last_modified": "2022-06-27", "nvd_text": "The SUNRPC subsystem in the Linux kernel through 5.17.2 can call xs_xprt_free before ensuring that sockets are in the intended state.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-28893", @@ -72162,8 +72332,8 @@ } }, "CVE-2022-29156": { - "affected_versions": "unk to v5.17-rc6", - "breaks": "", + "affected_versions": "v5.12-rc1-dontuse to v5.17-rc6", + "breaks": "eab098246625e91c1cbd6e8f75b09e4c9c28a9fc", "cmt_msg": "RDMA/rtrs-clt: Fix possible double free in error case", "cvss2": { "Access Complexity": "Low", @@ -72190,7 +72360,7 @@ "cwe": "Double Free", "fixes": "8700af2cc18c919b2a83e74e0479038fd113c15d", "last_affected_version": "5.16.11", - "last_modified": "2022-04-22", + "last_modified": "2022-06-27", "nvd_text": "drivers/infiniband/ulp/rtrs/rtrs-clt.c in the Linux kernel before 5.16.12 has a double free related to rtrs_clt_dev_release.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-29156", @@ -72242,8 +72412,8 @@ } }, "CVE-2022-29582": { - "affected_versions": "unk to v5.18-rc2", - "breaks": "", + "affected_versions": "v5.5-rc1 to v5.18-rc2", + "breaks": "2665abfd757fb35a241c6f0b1ebf620e3ffb36fb", "cmt_msg": "io_uring: fix race between timeout flush and removal", "cvss2": { "Access Complexity": "Medium", @@ -72270,7 +72440,7 @@ "cwe": "Use After Free", "fixes": "e677edbcabee849bfdd43f1602bccbecf736a646", "last_affected_version": "5.17.2", - "last_modified": "2022-05-06", + "last_modified": "2022-06-27", "nvd_text": "In the Linux kernel before 5.17.3, fs/io_uring.c has a use-after-free due to a race condition in io_uring timeouts. This can be triggered by a local user who has no access to any user namespace; however, the race condition perhaps can only be exploited infrequently.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-29582", @@ -72282,8 +72452,8 @@ } }, "CVE-2022-29968": { - "affected_versions": "unk to v5.18-rc5", - "breaks": "", + "affected_versions": "v5.16-rc1 to v5.18-rc5", + "breaks": "3e08773c3841e9db7a520908cc2b136a77d275ff", "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb", "cvss2": { "Access Complexity": "Low", @@ -72310,7 +72480,7 @@ "cwe": "Missing Initialization of Resource", "fixes": "32452a3eb8b64e01e2be717f518c0be046975b9d", "last_affected_version": "5.17.5", - "last_modified": "2022-05-12", + "last_modified": "2022-06-27", "nvd_text": "An issue was discovered in the Linux kernel through 5.17.5. io_rw_init_file in fs/io_uring.c lacks initialization of kiocb->private.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-29968", @@ -72322,8 +72492,8 @@ } }, "CVE-2022-30594": { - "affected_versions": "unk to v5.18-rc1", - "breaks": "", + "affected_versions": "v4.3-rc1 to v5.18-rc1", + "breaks": "13c4a90119d28cfcb6b5bdd820c233b86c2b0237", "cmt_msg": "ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE", "cvss2": { "Access Complexity": "Low", @@ -72350,7 +72520,7 @@ "cwe": "Incorrect Default Permissions", "fixes": "ee1fee900537b5d9560e9f937402de5ddc8412f3", "last_affected_version": "5.17.1", - "last_modified": "2022-05-23", + "last_modified": "2022-06-27", "nvd_text": "The Linux kernel before 5.17.2 mishandles seccomp permissions. The PTRACE_SEIZE code path allows attackers to bypass intended restrictions on setting the PT_SUSPEND_SECCOMP flag.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-30594", @@ -72361,6 +72531,46 @@ "Ubuntu": "https://ubuntu.com/security/CVE-2022-30594" } }, + "CVE-2022-32250": { + "affected_versions": "v4.1-rc1 to v5.19-rc1", + "breaks": "0b2d8a7b638b5034d2d68f6add8af94daaa1d4cd", + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier", + "cvss2": { + "Access Complexity": "Low", + "Access Vector": "Local Access", + "Authentication": "None", + "Availability Impact": "Complete", + "Confidentiality Impact": "Complete", + "Integrity Impact": "Complete", + "raw": "AV:L/AC:L/Au:N/C:C/I:C/A:C", + "score": 7.2 + }, + "cvss3": { + "Attack Complexity": "Low", + "Attack Vector": "Local", + "Availability": "High", + "Confidentiality": "High", + "Integrity": "High", + "Privileges Required": "Low", + "Scope": "Unchanged", + "User Interaction": "None", + "raw": "CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H", + "score": 7.8 + }, + "cwe": "Use After Free", + "fixes": "520778042ccca019f3ffa136dd0ca565c486cedd", + "last_affected_version": "5.18.1", + "last_modified": "2022-06-27", + "nvd_text": "net/netfilter/nf_tables_api.c in the Linux kernel through 5.18.1 allows a local user (able to create user/net namespaces) to escalate privileges to root because an incorrect NFT_STATEFUL_EXPR check leads to a use-after-free.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-32250", + "ExploitDB": "https://www.exploit-db.com/search?cve=2022-32250", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2022-32250", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2022-32250", + "SUSE": "https://www.suse.com/security/cve/CVE-2022-32250", + "Ubuntu": "https://ubuntu.com/security/CVE-2022-32250" + } + }, "CVE-2022-32296": { "affected_versions": "unk to v5.18-rc6", "breaks": "", @@ -72390,7 +72600,7 @@ "cwe": "Observable Discrepancy", "fixes": "4c2c8f03a5ab7cb04ec64724d7d176d00bcc91e5", "last_affected_version": "5.17.8", - "last_modified": "2022-06-19", + "last_modified": "2022-06-27", "nvd_text": "The Linux kernel before 5.17.9 allows TCP servers to identify clients by observing what source ports are used.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-32296", @@ -72402,12 +72612,12 @@ } }, "CVE-2022-32981": { - "affected_versions": "unk to v5.19-rc2", - "breaks": "", + "affected_versions": "v3.13-rc1 to v5.19-rc2", + "breaks": "87fec0514f613f8ac43c01b0bc0bc7072c5d10ae", "cmt_msg": "powerpc/32: Fix overread/overwrite of thread_struct via ptrace", "fixes": "8e1278444446fc97778a5e5c99bca1ce0bbc5ec9", "last_affected_version": "5.18.3", - "last_modified": "2022-06-19", + "last_modified": "2022-06-27", "nvd_text": "An issue was discovered in the Linux kernel through 5.18.3 on powerpc 32-bit platforms. There is a buffer overflow in ptrace PEEKUSER and POKEUSER (aka PEEKUSR and POKEUSR) when accessing floating point registers.", "ref_urls": { "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-32981", @@ -72417,5 +72627,56 @@ "SUSE": "https://www.suse.com/security/cve/CVE-2022-32981", "Ubuntu": "https://ubuntu.com/security/CVE-2022-32981" } + }, + "CVE-2022-33981": { + "affected_versions": "v2.6.12-rc2 to v5.18-rc5", + "breaks": "1da177e4c3f41524e886b7f1b8a0c1fc7321cac2", + "cmt_msg": "floppy: disable FDRAWCMD by default", + "fixes": "233087ca063686964a53c829d547c7571e3f67bf", + "last_affected_version": "5.17.5", + "last_modified": "2022-06-27", + "nvd_text": "drivers/block/floppy.c in the Linux kernel before 5.17.6 is vulnerable to a denial of service, because of a concurrency use-after-free flaw after deallocating raw_cmd in the raw_cmd_ioctl function.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-33981", + "ExploitDB": "https://www.exploit-db.com/search?cve=2022-33981", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2022-33981", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2022-33981", + "SUSE": "https://www.suse.com/security/cve/CVE-2022-33981", + "Ubuntu": "https://ubuntu.com/security/CVE-2022-33981" + } + }, + "CVE-2022-34494": { + "affected_versions": "unk to v5.19-rc1", + "breaks": "", + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()", + "fixes": "1680939e9ecf7764fba8689cfb3429c2fe2bb23c", + "last_affected_version": "5.18.3", + "last_modified": "2022-06-27", + "nvd_text": "rpmsg_virtio_add_ctrl_dev in drivers/rpmsg/virtio_rpmsg_bus.c in the Linux kernel before 5.18.4 has a double free.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-34494", + "ExploitDB": "https://www.exploit-db.com/search?cve=2022-34494", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2022-34494", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2022-34494", + "SUSE": "https://www.suse.com/security/cve/CVE-2022-34494", + "Ubuntu": "https://ubuntu.com/security/CVE-2022-34494" + } + }, + "CVE-2022-34495": { + "affected_versions": "unk to v5.19-rc1", + "breaks": "", + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()", + "fixes": "c2eecefec5df1306eafce28ccdf1ca159a552ecc", + "last_affected_version": "5.18.3", + "last_modified": "2022-06-27", + "nvd_text": "rpmsg_probe in drivers/rpmsg/virtio_rpmsg_bus.c in the Linux kernel before 5.18.4 has a double free.", + "ref_urls": { + "Debian": "https://security-tracker.debian.org/tracker/CVE-2022-34495", + "ExploitDB": "https://www.exploit-db.com/search?cve=2022-34495", + "NVD": "https://nvd.nist.gov/vuln/detail/CVE-2022-34495", + "Red Hat": "https://access.redhat.com/security/cve/CVE-2022-34495", + "SUSE": "https://www.suse.com/security/cve/CVE-2022-34495", + "Ubuntu": "https://ubuntu.com/security/CVE-2022-34495" + } } } \ No newline at end of file
diff --git a/data/stream_data.json b/data/stream_data.json index e344cc6..5a91a82 100644 --- a/data/stream_data.json +++ b/data/stream_data.json
@@ -1934,18 +1934,12 @@ "CVE-2017-15102": { "cmt_msg": "usb: misc: legousbtower: Fix NULL pointer deference" }, - "CVE-2021-3894": { - "cmt_msg": "sctp: account stream padding length for reconf chunk" - }, "CVE-2020-24587": { "cmt_msg": "mac80211: prevent mixed key and fragment cache attacks" }, "CVE-2020-24586": { "cmt_msg": "mac80211: prevent mixed key and fragment cache attacks" }, - "CVE-2022-0995": { - "cmt_msg": "watch_queue: Fix filter limit check" - }, "CVE-2021-0129": { "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, @@ -2015,9 +2009,6 @@ "CVE-2020-12114": { "cmt_msg": "make struct mountpoint bear the dentry reference to mountpoint, not struct mount" }, - "CVE-2022-2078": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, "CVE-2019-12379": { "cmt_msg": "consolemap: Fix a memory leaking bug in drivers/tty/vt/consolemap.c" }, @@ -2180,18 +2171,12 @@ "CVE-2015-8952": { "cmt_msg": "ext2: convert to mbcache2" }, - "CVE-2022-20153": { - "cmt_msg": "io_uring: return back safer resurrect" - }, "CVE-2022-23038": { "cmt_msg": "xen/grant-table: add gnttab_try_end_foreign_access()" }, "CVE-2022-23039": { "cmt_msg": "xen/gntalloc: don't use gnttab_query_foreign_access()" }, - "CVE-2022-20154": { - "cmt_msg": "sctp: use call_rcu to free endpoint" - }, "CVE-2016-8645": { "cmt_msg": "tcp: take care of truncations done by sk_filter()" }, @@ -2285,6 +2270,9 @@ "CVE-2020-15393": { "cmt_msg": "usb: usbtest: fix missing kfree(dev->buf) in usbtest_disconnect" }, + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default" + }, "CVE-2021-3564": { "cmt_msg": "Bluetooth: fix the erroneous flush_work() order" }, @@ -2333,9 +2321,6 @@ "CVE-2021-4002": { "cmt_msg": "hugetlbfs: flush TLBs correctly after huge_pmd_unshare" }, - "CVE-2022-0998": { - "cmt_msg": "vdpa: clean up get_config_size ret value handling" - }, "CVE-2018-9465": { "cmt_msg": "binder: fix proc->files use-after-free" }, @@ -2378,6 +2363,12 @@ "CVE-2022-1048": { "cmt_msg": "ALSA: pcm: Fix races among concurrent hw_params and hw_free calls" }, + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" + }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, "CVE-2020-0009": { "cmt_msg": "staging: android: ashmem: Disallow ashmem memory from being remapped" }, @@ -2405,9 +2396,6 @@ "CVE-2022-1204": { "cmt_msg": "ax25: Fix refcount leaks caused by ax25_cb_del()" }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers" - }, "CVE-2019-17666": { "cmt_msg": "rtlwifi: Fix potential overflow on P2P code" }, @@ -2447,9 +2435,6 @@ "CVE-2021-32078": { "cmt_msg": "ARM: footbridge: remove personal server platform" }, - "CVE-2022-30594": { - "cmt_msg": "ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE" - }, "CVE-2017-16528": { "cmt_msg": "ALSA: seq: Cancel pending autoload work at unbinding device" }, @@ -2493,7 +2478,7 @@ "cmt_msg": "" }, "CVE-2020-26555": { - "cmt_msg": "" + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, "CVE-2018-9517": { "cmt_msg": "l2tp: pass tunnel pointer to ->session_create()" @@ -2531,9 +2516,6 @@ "CVE-2019-19049": { "cmt_msg": "of: unittest: fix memory leak in unittest_data_add" }, - "CVE-2022-0644": { - "cmt_msg": "vfs: check fd has read access in kernel_read_file_from_fd()" - }, "CVE-2020-29568": { "cmt_msg": "xen/xenbus: Allow watches discard events before queueing" }, @@ -2588,9 +2570,6 @@ "CVE-2019-19816": { "cmt_msg": "btrfs: inode: Verify inode mode to avoid NULL pointer dereference" }, - "CVE-2022-1015": { - "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." - }, "CVE-2019-9453": { "cmt_msg": "f2fs: fix to avoid accessing xattr across the boundary" }, @@ -2651,9 +2630,6 @@ "CVE-2021-3178": { "cmt_msg": "nfsd4: readdirplus shouldn't return parent of export" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, "CVE-2018-7754": { "cmt_msg": "printk: hash addresses printed with %p" }, @@ -2669,9 +2645,6 @@ "CVE-2019-19319": { "cmt_msg": "ext4: protect journal inode's blocks using block_validity" }, - "CVE-2022-28893": { - "cmt_msg": "SUNRPC: Ensure we flush any closed sockets before xs_xprt_free()" - }, "CVE-2021-3772": { "cmt_msg": "sctp: use init_tag from inithdr for ABORT chunk" }, @@ -2681,9 +2654,6 @@ "CVE-2021-37159": { "cmt_msg": "usb: hso: fix error handling code of hso_create_net_device" }, - "CVE-2021-39711": { - "cmt_msg": "bpf: fix panic due to oob in bpf_prog_test_run_skb" - }, "CVE-2021-28715": { "cmt_msg": "xen/netback: don't queue unlimited number of packages" }, @@ -2723,9 +2693,6 @@ "CVE-2019-11091": { "cmt_msg": "s390/speculation: Support 'mitigations=' cmdline option" }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, "CVE-2019-18282": { "cmt_msg": "net/flow_dissector: switch to siphash" }, @@ -2750,9 +2717,6 @@ "CVE-2020-14381": { "cmt_msg": "futex: Fix inode life-time issue" }, - "CVE-2022-1158": { - "cmt_msg": "KVM: x86/mmu: do compare-and-exchange of gPTE via the user address" - }, "CVE-2019-19768": { "cmt_msg": "blktrace: Protect q->blk_trace with RCU" }, @@ -2780,9 +2744,6 @@ "CVE-2021-29155": { "cmt_msg": "bpf: Use correct permission flag for mixed signed bounds arithmetic" }, - "CVE-2022-28389": { - "cmt_msg": "can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path" - }, "CVE-2019-15917": { "cmt_msg": "Bluetooth: hci_ldisc: Postpone HCI_UART_PROTO_READY bit set in hci_uart_set_proto()" }, @@ -2798,9 +2759,6 @@ "CVE-2020-12364": { "cmt_msg": "drm/i915/guc: Update to use firmware v49.0.1" }, - "CVE-2022-0500": { - "cmt_msg": "bpf: Introduce MEM_RDONLY flag" - }, "CVE-2018-18690": { "cmt_msg": "xfs: don't fail when converting shortform attr to long form during ATTR_REPLACE" }, @@ -2816,9 +2774,6 @@ "CVE-2016-7917": { "cmt_msg": "netfilter: nfnetlink: correctly validate length of batch messages" }, - "CVE-2022-1055": { - "cmt_msg": "net: sched: fix use-after-free in tc_new_tfilter()" - }, "CVE-2016-7912": { "cmt_msg": "usb: gadget: f_fs: Fix use-after-free" }, @@ -2858,15 +2813,12 @@ "CVE-2018-7273": { "cmt_msg": "printk: hash addresses printed with %p" }, - "CVE-2022-0617": { - "cmt_msg": "udf: Fix NULL ptr deref when converting from inline format" - }, - "CVE-2022-26878": { - "cmt_msg": "" - }, "CVE-2022-23036": { "cmt_msg": "xen/grant-table: add gnttab_try_end_foreign_access()" }, + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()" + }, "CVE-2018-12930": { "cmt_msg": "" }, @@ -2930,9 +2882,6 @@ "CVE-2019-19447": { "cmt_msg": "ext4: work around deleting a file with i_nlink == 0 safely" }, - "CVE-2019-0146": { - "cmt_msg": "" - }, "CVE-2020-10942": { "cmt_msg": "vhost: Check docket sk_family instead of call getname" }, @@ -3014,9 +2963,6 @@ "CVE-2022-0168": { "cmt_msg": "cifs: fix NULL ptr dereference in smb2_ioctl_query_info()" }, - "CVE-2021-39713": { - "cmt_msg": "net: sched: use Qdisc rcu API instead of relying on rtnl lock" - }, "CVE-2020-28374": { "cmt_msg": "scsi: target: Fix XCOPY NAA identifier lookup" }, @@ -3066,10 +3012,7 @@ "cmt_msg": "ext4: fix races between page faults and hole punching" }, "CVE-2022-1652": { - "cmt_msg": "" - }, - "CVE-2022-1651": { - "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" + "cmt_msg": "floppy: use a statically allocated error counter" }, "CVE-2015-8830": { "cmt_msg": "aio: lift iov_iter_init() into aio_setup_..._rw()" @@ -3098,12 +3041,6 @@ "CVE-2020-0427": { "cmt_msg": "pinctrl: devicetree: Avoid taking direct reference to device name string" }, - "CVE-2022-1789": { - "cmt_msg": "KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID" - }, - "CVE-2022-1419": { - "cmt_msg": "drm/vgem: Close use-after-free race in vgem_gem_create" - }, "CVE-2019-13272": { "cmt_msg": "ptrace: Fix ->ptracer_cred handling for PTRACE_TRACEME" }, @@ -3200,15 +3137,9 @@ "CVE-2021-4149": { "cmt_msg": "btrfs: unlock newly allocated extent buffer after error" }, - "CVE-2021-4148": { - "cmt_msg": "mm: khugepaged: skip huge page collapse for special files" - }, "CVE-2021-3640": { "cmt_msg": "Bluetooth: sco: Fix lock_sock() blockage by memcpy_from_msg()" }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, "CVE-2020-1749": { "cmt_msg": "net: ipv6_stub: use ip6_dst_lookup_flow instead of ip6_dst_lookup" }, @@ -3275,21 +3206,12 @@ "CVE-2016-9756": { "cmt_msg": "KVM: x86: drop error recovery in em_jmp_far and em_ret_far" }, - "CVE-2022-0812": { - "cmt_msg": "xprtrdma: fix incorrect header size calculations" - }, "CVE-2022-28356": { "cmt_msg": "llc: fix netdevice reference leaks in llc_ui_bind()" }, "CVE-2019-17133": { "cmt_msg": "cfg80211: wext: avoid copying malformed SSIDs" }, - "CVE-2022-0742": { - "cmt_msg": "ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()" - }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"" - }, "CVE-2020-14390": { "cmt_msg": "fbcon: remove soft scrollback code" }, @@ -3300,7 +3222,7 @@ "cmt_msg": "f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr()" }, "CVE-2022-1184": { - "cmt_msg": "" + "cmt_msg": "ext4: verify dir block before splitting it" }, "CVE-2016-2549": { "cmt_msg": "ALSA: hrtimer: Fix stall by hrtimer_cancel()" @@ -3347,9 +3269,6 @@ "CVE-2021-20321": { "cmt_msg": "ovl: fix missing negative dentry check in ovl_rename()" }, - "CVE-2022-1043": { - "cmt_msg": "io_uring: fix xa_alloc_cycle() error return value check" - }, "CVE-2017-5967": { "cmt_msg": "time: Remove CONFIG_TIMER_STATS" }, @@ -3362,9 +3281,6 @@ "CVE-2018-20976": { "cmt_msg": "xfs: clear sb->s_fs_info on mount failure" }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, "CVE-2016-10147": { "cmt_msg": "crypto: mcryptd - Check mcryptd algorithm compatibility" }, @@ -3422,9 +3338,6 @@ "CVE-2022-0400": { "cmt_msg": "" }, - "CVE-2021-0707": { - "cmt_msg": "dmabuf: fix use-after-free of dmabuf's file->f_inode" - }, "CVE-2022-26966": { "cmt_msg": "sr9700: sanity check for packet length" }, @@ -3458,9 +3371,6 @@ "CVE-2020-25284": { "cmt_msg": "rbd: require global CAP_SYS_ADMIN for mapping and unmapping" }, - "CVE-2022-25636": { - "cmt_msg": "netfilter: nf_tables_offload: incorrect flow offload action array size" - }, "CVE-2015-3332": { "cmt_msg": "tcp: Fix crash in TCP Fast Open" }, @@ -3515,9 +3425,6 @@ "CVE-2019-19449": { "cmt_msg": "f2fs: fix to do sanity check on segment/section count" }, - "CVE-2021-33135": { - "cmt_msg": "" - }, "CVE-2019-19523": { "cmt_msg": "USB: adutux: fix use-after-free on disconnect" }, @@ -3542,12 +3449,6 @@ "CVE-2019-16746": { "cmt_msg": "nl80211: validate beacon head" }, - "CVE-2022-1998": { - "cmt_msg": "fanotify: Fix stale file descriptor in copy_event_to_user()" - }, - "CVE-2022-1852": { - "cmt_msg": "KVM: x86: avoid calling x86 emulator without a decoded instruction" - }, "CVE-2021-37576": { "cmt_msg": "KVM: PPC: Book3S: Fix H_RTAS rets buffer overflow" }, @@ -3557,9 +3458,6 @@ "CVE-2020-27815": { "cmt_msg": "jfs: Fix array index bounds check in dbAdjTree" }, - "CVE-2022-23041": { - "cmt_msg": "xen/9p: use alloc/free_pages_exact()" - }, "CVE-2022-1462": { "cmt_msg": "" }, @@ -3632,9 +3530,6 @@ "CVE-2019-3874": { "cmt_msg": "sctp: implement memory accounting on tx path" }, - "CVE-2022-0171": { - "cmt_msg": "" - }, "CVE-2010-4563": { "cmt_msg": "" }, @@ -3650,9 +3545,6 @@ "CVE-2021-3483": { "cmt_msg": "firewire: nosy: Fix a use-after-free bug in nosy_ioctl()" }, - "CVE-2022-29156": { - "cmt_msg": "RDMA/rtrs-clt: Fix possible double free in error case" - }, "CVE-2021-38300": { "cmt_msg": "bpf, mips: Validate conditional branch offsets" }, @@ -3677,18 +3569,12 @@ "CVE-2012-4542": { "cmt_msg": "" }, - "CVE-2022-1729": { - "cmt_msg": "perf: Fix sys_perf_event_open() race against self" - }, "CVE-2018-1000028": { "cmt_msg": "nfsd: auth: Fix gid sorting when rootsquash enabled" }, "CVE-2021-3573": { "cmt_msg": "Bluetooth: use correct lock to prevent UAF of hdev object" }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, "CVE-2022-1679": { "cmt_msg": "" }, @@ -3698,12 +3584,6 @@ "CVE-2022-1975": { "cmt_msg": "NFC: netlink: fix sleep in atomic bug when firmware download timeout" }, - "CVE-2022-1972": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" - }, "CVE-2017-0786": { "cmt_msg": "brcmfmac: add length check in brcmf_cfg80211_escan_handler()" }, @@ -3767,9 +3647,6 @@ "CVE-2021-28951": { "cmt_msg": "io_uring: ensure that SQPOLL thread is started for exit" }, - "CVE-2022-1671": { - "cmt_msg": "rxrpc: fix some null-ptr-deref bugs in server_key.c" - }, "CVE-2021-3653": { "cmt_msg": "KVM: nSVM: avoid picking up unsupported bits from L2 in int_ctl (CVE-2021-3653)" }, @@ -3914,9 +3791,6 @@ "CVE-2019-15505": { "cmt_msg": "media: technisat-usb2: break out of loop at end of buffer" }, - "CVE-2022-1516": { - "cmt_msg": "net/x25: Fix null-ptr-deref caused by x25_disconnect" - }, "CVE-2020-0429": { "cmt_msg": "l2tp: fix race between l2tp_session_delete() and l2tp_tunnel_closeall()" }, @@ -3935,9 +3809,6 @@ "CVE-2020-9383": { "cmt_msg": "floppy: check FDC index for errors before assigning it" }, - "CVE-2022-29582": { - "cmt_msg": "io_uring: fix race between timeout flush and removal" - }, "CVE-2021-38198": { "cmt_msg": "KVM: X86: MMU: Use the correct inherited permissions to get shadow page" }, @@ -4232,8 +4103,8 @@ "CVE-2020-35508": { "cmt_msg": "fork: fix copy_process(CLONE_PARENT) race with the exiting ->real_parent" }, - "CVE-2021-3894": { - "cmt_msg": "sctp: account stream padding length for reconf chunk" + "CVE-2022-1184": { + "cmt_msg": "ext4: verify dir block before splitting it" }, "CVE-2020-24587": { "cmt_msg": "mac80211: prevent mixed key and fragment cache attacks" @@ -4253,6 +4124,9 @@ "CVE-2018-10940": { "cmt_msg": "cdrom: information leak in cdrom_ioctl_media_changed()" }, + "CVE-2022-32250": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier" + }, "CVE-2018-10087": { "cmt_msg": "kernel/exit.c: avoid undefined behaviour when calling wait4()" }, @@ -4319,9 +4193,6 @@ "CVE-2019-14835": { "cmt_msg": "vhost: make sure log_num < in_num" }, - "CVE-2022-2078": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, "CVE-2018-1000204": { "cmt_msg": "scsi: sg: allocate with __GFP_ZERO in sg_build_indirect()" }, @@ -4355,9 +4226,6 @@ "CVE-2020-0543": { "cmt_msg": "x86/cpu: Add 'table' argument to cpu_matches()" }, - "CVE-2022-29156": { - "cmt_msg": "RDMA/rtrs-clt: Fix possible double free in error case" - }, "CVE-2018-3646": { "cmt_msg": "x86/microcode: Allow late microcode loading with SMT disabled" }, @@ -4493,17 +4361,11 @@ "CVE-2019-18680": { "cmt_msg": "" }, - "CVE-2022-20153": { - "cmt_msg": "io_uring: return back safer resurrect" - }, "CVE-2022-23038": { "cmt_msg": "xen/grant-table: add gnttab_try_end_foreign_access()" }, - "CVE-2022-0995": { - "cmt_msg": "watch_queue: Fix filter limit check" - }, - "CVE-2022-20154": { - "cmt_msg": "sctp: use call_rcu to free endpoint" + "CVE-2022-23039": { + "cmt_msg": "xen/gntalloc: don't use gnttab_query_foreign_access()" }, "CVE-2017-14991": { "cmt_msg": "scsi: sg: fixup infoleak when using SG_GET_REQUEST_TABLE" @@ -4529,9 +4391,6 @@ "CVE-2019-15921": { "cmt_msg": "genetlink: Fix a memory leak on error path" }, - "CVE-2022-0998": { - "cmt_msg": "vdpa: clean up get_config_size ret value handling" - }, "CVE-2019-14821": { "cmt_msg": "KVM: coalesced_mmio: add bounds checking" }, @@ -4628,6 +4487,9 @@ "CVE-2020-15393": { "cmt_msg": "usb: usbtest: fix missing kfree(dev->buf) in usbtest_disconnect" }, + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default" + }, "CVE-2021-3564": { "cmt_msg": "Bluetooth: fix the erroneous flush_work() order" }, @@ -4646,9 +4508,6 @@ "CVE-2020-26560": { "cmt_msg": "" }, - "CVE-2022-1516": { - "cmt_msg": "net/x25: Fix null-ptr-deref caused by x25_disconnect" - }, "CVE-2017-13080": { "cmt_msg": "mac80211: accept key reinstall without changing anything" }, @@ -4772,6 +4631,9 @@ "CVE-2020-36385": { "cmt_msg": "RDMA/ucma: Rework ucma_migrate_id() to avoid races with destroy" }, + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" + }, "CVE-2019-14897": { "cmt_msg": "libertas: Fix two buffer overflows at parsing bss descriptor" }, @@ -4838,6 +4700,9 @@ "CVE-2020-25212": { "cmt_msg": "nfs: Fix getxattr kernel panic and memory overflow" }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, "CVE-2019-19036": { "cmt_msg": "btrfs: Detect unbalanced tree with empty leaf before crashing btree operations" }, @@ -4926,7 +4791,7 @@ "cmt_msg": "NFC: llcp: Limit size of SDP URI" }, "CVE-2020-26555": { - "cmt_msg": "" + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, "CVE-2018-9517": { "cmt_msg": "l2tp: pass tunnel pointer to ->session_create()" @@ -4944,7 +4809,7 @@ "cmt_msg": "kvm/x86: fix icebp instruction handling" }, "CVE-2022-1652": { - "cmt_msg": "" + "cmt_msg": "floppy: use a statically allocated error counter" }, "CVE-2018-1120": { "cmt_msg": "proc: do not access cmdline nor environ from file-backed areas" @@ -5111,9 +4976,6 @@ "CVE-2021-3178": { "cmt_msg": "nfsd4: readdirplus shouldn't return parent of export" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, "CVE-2018-7755": { "cmt_msg": "floppy: Do not copy a kernel pointer to user memory in FDGETPRM ioctl" }, @@ -5144,12 +5006,6 @@ "CVE-2022-24958": { "cmt_msg": "usb: gadget: don't release an existing dev->buf" }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers" - }, - "CVE-2022-28893": { - "cmt_msg": "SUNRPC: Ensure we flush any closed sockets before xs_xprt_free()" - }, "CVE-2021-3772": { "cmt_msg": "sctp: use init_tag from inithdr for ABORT chunk" }, @@ -5159,9 +5015,6 @@ "CVE-2021-37159": { "cmt_msg": "usb: hso: fix error handling code of hso_create_net_device" }, - "CVE-2021-39711": { - "cmt_msg": "bpf: fix panic due to oob in bpf_prog_test_run_skb" - }, "CVE-2021-28715": { "cmt_msg": "xen/netback: don't queue unlimited number of packages" }, @@ -5261,9 +5114,6 @@ "CVE-2020-14381": { "cmt_msg": "futex: Fix inode life-time issue" }, - "CVE-2022-1158": { - "cmt_msg": "KVM: x86/mmu: do compare-and-exchange of gPTE via the user address" - }, "CVE-2019-19768": { "cmt_msg": "blktrace: Protect q->blk_trace with RCU" }, @@ -5327,18 +5177,12 @@ "CVE-2019-12881": { "cmt_msg": "drm/i915/userptr: reject zero user_size" }, - "CVE-2022-28389": { - "cmt_msg": "can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path" - }, "CVE-2018-1000004": { "cmt_msg": "ALSA: seq: Make ioctls race-free" }, "CVE-2019-19530": { "cmt_msg": "usb: cdc-acm: make sure a refcount is taken early enough" }, - "CVE-2022-0500": { - "cmt_msg": "bpf: Introduce MEM_RDONLY flag" - }, "CVE-2018-18690": { "cmt_msg": "xfs: don't fail when converting shortform attr to long form during ATTR_REPLACE" }, @@ -5357,9 +5201,6 @@ "CVE-2021-4002": { "cmt_msg": "hugetlbfs: flush TLBs correctly after huge_pmd_unshare" }, - "CVE-2022-1055": { - "cmt_msg": "net: sched: fix use-after-free in tc_new_tfilter()" - }, "CVE-2021-38204": { "cmt_msg": "usb: max-3421: Prevent corruption of freed memory" }, @@ -5405,8 +5246,8 @@ "CVE-2019-3016": { "cmt_msg": "x86/kvm: Be careful not to clear KVM_VCPU_FLUSH_TLB bit" }, - "CVE-2022-26878": { - "cmt_msg": "" + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()" }, "CVE-2019-19531": { "cmt_msg": "usb: yurex: Fix use-after-free in yurex_delete" @@ -5493,7 +5334,7 @@ "cmt_msg": "ARM: report Spectre v2 status through sysfs" }, "CVE-2019-0146": { - "cmt_msg": "" + "cmt_msg": "i40e: add num_vectors checker in iwarp handler" }, "CVE-2019-0147": { "cmt_msg": "i40e: add num_vectors checker in iwarp handler" @@ -5582,9 +5423,6 @@ "CVE-2018-5953": { "cmt_msg": "printk: hash addresses printed with %p" }, - "CVE-2021-39713": { - "cmt_msg": "net: sched: use Qdisc rcu API instead of relying on rtnl lock" - }, "CVE-2020-28374": { "cmt_msg": "scsi: target: Fix XCOPY NAA identifier lookup" }, @@ -5678,15 +5516,9 @@ "CVE-2021-26931": { "cmt_msg": "xen-blkback: don't \"handle\" error by BUG()" }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, "CVE-2021-4203": { "cmt_msg": "af_unix: fix races in sk_peer_pid and sk_peer_cred accesses" }, - "CVE-2022-1651": { - "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" - }, "CVE-2020-29568": { "cmt_msg": "xen/xenbus: Allow watches discard events before queueing" }, @@ -5726,9 +5558,6 @@ "CVE-2019-9458": { "cmt_msg": "media: v4l: event: Prevent freeing event subscriptions while accessed" }, - "CVE-2022-1789": { - "cmt_msg": "KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID" - }, "CVE-2021-39714": { "cmt_msg": "staging: android: ion: Drop ion_map_kernel interface" }, @@ -5876,18 +5705,12 @@ "CVE-2021-4149": { "cmt_msg": "btrfs: unlock newly allocated extent buffer after error" }, - "CVE-2021-4148": { - "cmt_msg": "mm: khugepaged: skip huge page collapse for special files" - }, "CVE-2021-3864": { "cmt_msg": "" }, "CVE-2021-3640": { "cmt_msg": "Bluetooth: sco: Fix lock_sock() blockage by memcpy_from_msg()" }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, "CVE-2020-1749": { "cmt_msg": "net: ipv6_stub: use ip6_dst_lookup_flow instead of ip6_dst_lookup" }, @@ -6002,9 +5825,6 @@ "CVE-2017-18595": { "cmt_msg": "tracing: Fix possible double free on failure of allocating trace buffer" }, - "CVE-2022-0742": { - "cmt_msg": "ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()" - }, "CVE-2021-3612": { "cmt_msg": "Input: joydev - prevent potential read overflow in ioctl" }, @@ -6107,9 +5927,6 @@ "CVE-2022-26490": { "cmt_msg": "nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION" }, - "CVE-2022-1043": { - "cmt_msg": "io_uring: fix xa_alloc_cycle() error return value check" - }, "CVE-2017-5967": { "cmt_msg": "time: Remove CONFIG_TIMER_STATS" }, @@ -6122,9 +5939,6 @@ "CVE-2018-20976": { "cmt_msg": "xfs: clear sb->s_fs_info on mount failure" }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, "CVE-2018-1108": { "cmt_msg": "random: fix crng_ready() test" }, @@ -6188,9 +6002,6 @@ "CVE-2022-0400": { "cmt_msg": "" }, - "CVE-2021-0707": { - "cmt_msg": "dmabuf: fix use-after-free of dmabuf's file->f_inode" - }, "CVE-2021-38160": { "cmt_msg": "virtio_console: Assure used length from device is limited" }, @@ -6230,9 +6041,6 @@ "CVE-2020-25284": { "cmt_msg": "rbd: require global CAP_SYS_ADMIN for mapping and unmapping" }, - "CVE-2022-25636": { - "cmt_msg": "netfilter: nf_tables_offload: incorrect flow offload action array size" - }, "CVE-2017-1000379": { "cmt_msg": "mm: larger stack guard gap, between vmas" }, @@ -6254,9 +6062,6 @@ "CVE-2019-15219": { "cmt_msg": "USB: sisusbvga: fix oops in error path of sisusb_probe" }, - "CVE-2022-1015": { - "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." - }, "CVE-2022-0850": { "cmt_msg": "ext4: fix kernel infoleak via ext4_extent_header" }, @@ -6269,15 +6074,9 @@ "CVE-2019-19378": { "cmt_msg": "" }, - "CVE-2022-1852": { - "cmt_msg": "KVM: x86: avoid calling x86 emulator without a decoded instruction" - }, "CVE-2020-4788": { "cmt_msg": "powerpc/64s: flush L1D on kernel entry" }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"" - }, "CVE-2017-8831": { "cmt_msg": "[media] saa7164: fix double fetch PCIe access condition" }, @@ -6320,9 +6119,6 @@ "CVE-2019-19449": { "cmt_msg": "f2fs: fix to do sanity check on segment/section count" }, - "CVE-2021-33135": { - "cmt_msg": "" - }, "CVE-2019-19523": { "cmt_msg": "USB: adutux: fix use-after-free on disconnect" }, @@ -6362,9 +6158,6 @@ "CVE-2019-15215": { "cmt_msg": "media: cpia2_usb: first wake up, then free in disconnect" }, - "CVE-2022-1998": { - "cmt_msg": "fanotify: Fix stale file descriptor in copy_event_to_user()" - }, "CVE-2018-18021": { "cmt_msg": "arm64: KVM: Tighten guest core register access from userspace" }, @@ -6392,9 +6185,6 @@ "CVE-2020-27815": { "cmt_msg": "jfs: Fix array index bounds check in dbAdjTree" }, - "CVE-2022-23041": { - "cmt_msg": "xen/9p: use alloc/free_pages_exact()" - }, "CVE-2022-1462": { "cmt_msg": "" }, @@ -6476,9 +6266,6 @@ "CVE-2019-3874": { "cmt_msg": "sctp: implement memory accounting on tx path" }, - "CVE-2022-0171": { - "cmt_msg": "" - }, "CVE-2018-10877": { "cmt_msg": "ext4: verify the depth of extent tree in ext4_find_extent()" }, @@ -6575,21 +6362,12 @@ "CVE-2018-7191": { "cmt_msg": "tun: call dev_get_valid_name() before register_netdevice()" }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, "CVE-2018-1000026": { "cmt_msg": "bnx2x: disable GSO where gso_size is too big for hardware" }, "CVE-2022-1975": { "cmt_msg": "NFC: netlink: fix sleep in atomic bug when firmware download timeout" }, - "CVE-2022-1972": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" - }, "CVE-2017-0786": { "cmt_msg": "brcmfmac: add length check in brcmf_cfg80211_escan_handler()" }, @@ -6674,9 +6452,6 @@ "CVE-2021-28951": { "cmt_msg": "io_uring: ensure that SQPOLL thread is started for exit" }, - "CVE-2022-1671": { - "cmt_msg": "rxrpc: fix some null-ptr-deref bugs in server_key.c" - }, "CVE-2020-16166": { "cmt_msg": "random32: update the net random state on interrupt and activity" }, @@ -6773,9 +6548,6 @@ "CVE-2022-1247": { "cmt_msg": "" }, - "CVE-2022-1184": { - "cmt_msg": "" - }, "CVE-2022-23222": { "cmt_msg": "bpf: Replace PTR_TO_XXX_OR_NULL with PTR_TO_XXX | PTR_MAYBE_NULL" }, @@ -6848,9 +6620,6 @@ "CVE-2017-16647": { "cmt_msg": "net: usb: asix: fill null-ptr-deref in asix_suspend" }, - "CVE-2022-23039": { - "cmt_msg": "xen/gntalloc: don't use gnttab_query_foreign_access()" - }, "CVE-2019-10220": { "cmt_msg": "Convert filldir[64]() from __put_user() to unsafe_put_user()" }, @@ -6884,9 +6653,6 @@ "CVE-2020-9383": { "cmt_msg": "floppy: check FDC index for errors before assigning it" }, - "CVE-2022-29582": { - "cmt_msg": "io_uring: fix race between timeout flush and removal" - }, "CVE-2021-38198": { "cmt_msg": "KVM: X86: MMU: Use the correct inherited permissions to get shadow page" }, @@ -7296,6 +7062,9 @@ "CVE-2018-10940": { "cmt_msg": "cdrom: information leak in cdrom_ioctl_media_changed()" }, + "CVE-2022-32250": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier" + }, "CVE-2019-9506": { "cmt_msg": "Bluetooth: Fix faulty expression for minimum encryption key size check" }, @@ -7536,17 +7305,11 @@ "CVE-2019-18680": { "cmt_msg": "" }, - "CVE-2022-20153": { - "cmt_msg": "io_uring: return back safer resurrect" - }, "CVE-2022-23038": { "cmt_msg": "xen/grant-table: add gnttab_try_end_foreign_access()" }, - "CVE-2022-0995": { - "cmt_msg": "watch_queue: Fix filter limit check" - }, - "CVE-2022-20154": { - "cmt_msg": "sctp: use call_rcu to free endpoint" + "CVE-2022-23039": { + "cmt_msg": "xen/gntalloc: don't use gnttab_query_foreign_access()" }, "CVE-2021-27363": { "cmt_msg": "scsi: iscsi: Restrict sessions and handles to admin capabilities" @@ -7575,9 +7338,6 @@ "CVE-2019-15921": { "cmt_msg": "genetlink: Fix a memory leak on error path" }, - "CVE-2022-0998": { - "cmt_msg": "vdpa: clean up get_config_size ret value handling" - }, "CVE-2019-14821": { "cmt_msg": "KVM: coalesced_mmio: add bounds checking" }, @@ -7671,6 +7431,9 @@ "CVE-2020-15393": { "cmt_msg": "usb: usbtest: fix missing kfree(dev->buf) in usbtest_disconnect" }, + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default" + }, "CVE-2021-3564": { "cmt_msg": "Bluetooth: fix the erroneous flush_work() order" }, @@ -7782,6 +7545,12 @@ "CVE-2020-36385": { "cmt_msg": "RDMA/ucma: Rework ucma_migrate_id() to avoid races with destroy" }, + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" + }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, "CVE-2018-9385": { "cmt_msg": "ARM: amba: Don't read past the end of sysfs \"driver_override\" buffer" }, @@ -7918,7 +7687,7 @@ "cmt_msg": "NFC: llcp: Limit size of SDP URI" }, "CVE-2020-26555": { - "cmt_msg": "" + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, "CVE-2018-9517": { "cmt_msg": "l2tp: pass tunnel pointer to ->session_create()" @@ -8028,9 +7797,6 @@ "CVE-2019-19816": { "cmt_msg": "btrfs: inode: Verify inode mode to avoid NULL pointer dereference" }, - "CVE-2022-1015": { - "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." - }, "CVE-2020-0429": { "cmt_msg": "l2tp: fix race between l2tp_session_delete() and l2tp_tunnel_closeall()" }, @@ -8100,9 +7866,6 @@ "CVE-2021-3178": { "cmt_msg": "nfsd4: readdirplus shouldn't return parent of export" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, "CVE-2019-9445": { "cmt_msg": "f2fs: check if file namelen exceeds max value" }, @@ -8127,21 +7890,12 @@ "CVE-2019-19319": { "cmt_msg": "ext4: protect journal inode's blocks using block_validity" }, - "CVE-2022-2078": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, "CVE-2019-19462": { "cmt_msg": "kernel/relay.c: handle alloc_percpu returning NULL in relay_open" }, "CVE-2022-24958": { "cmt_msg": "usb: gadget: don't release an existing dev->buf" }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers" - }, - "CVE-2022-28893": { - "cmt_msg": "SUNRPC: Ensure we flush any closed sockets before xs_xprt_free()" - }, "CVE-2021-3772": { "cmt_msg": "sctp: use init_tag from inithdr for ABORT chunk" }, @@ -8229,9 +7983,6 @@ "CVE-2020-14381": { "cmt_msg": "futex: Fix inode life-time issue" }, - "CVE-2022-1158": { - "cmt_msg": "KVM: x86/mmu: do compare-and-exchange of gPTE via the user address" - }, "CVE-2019-19768": { "cmt_msg": "blktrace: Protect q->blk_trace with RCU" }, @@ -8292,9 +8043,6 @@ "CVE-2018-1000004": { "cmt_msg": "ALSA: seq: Make ioctls race-free" }, - "CVE-2022-0500": { - "cmt_msg": "bpf: Introduce MEM_RDONLY flag" - }, "CVE-2018-18690": { "cmt_msg": "xfs: don't fail when converting shortform attr to long form during ATTR_REPLACE" }, @@ -8310,9 +8058,6 @@ "CVE-2021-4002": { "cmt_msg": "hugetlbfs: flush TLBs correctly after huge_pmd_unshare" }, - "CVE-2022-1055": { - "cmt_msg": "net: sched: fix use-after-free in tc_new_tfilter()" - }, "CVE-2021-38204": { "cmt_msg": "usb: max-3421: Prevent corruption of freed memory" }, @@ -8352,8 +8097,8 @@ "CVE-2019-3016": { "cmt_msg": "x86/kvm: Be careful not to clear KVM_VCPU_FLUSH_TLB bit" }, - "CVE-2022-26878": { - "cmt_msg": "" + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()" }, "CVE-2019-19531": { "cmt_msg": "usb: yurex: Fix use-after-free in yurex_delete" @@ -8422,7 +8167,7 @@ "cmt_msg": "RDMA/cxgb4: Do not dma memory off of the stack" }, "CVE-2019-0146": { - "cmt_msg": "" + "cmt_msg": "i40e: add num_vectors checker in iwarp handler" }, "CVE-2019-0147": { "cmt_msg": "i40e: add num_vectors checker in iwarp handler" @@ -8508,9 +8253,6 @@ "CVE-2020-25212": { "cmt_msg": "nfs: Fix getxattr kernel panic and memory overflow" }, - "CVE-2021-39713": { - "cmt_msg": "net: sched: use Qdisc rcu API instead of relying on rtnl lock" - }, "CVE-2020-28374": { "cmt_msg": "scsi: target: Fix XCOPY NAA identifier lookup" }, @@ -8592,14 +8334,8 @@ "CVE-2021-26931": { "cmt_msg": "xen-blkback: don't \"handle\" error by BUG()" }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, "CVE-2022-1652": { - "cmt_msg": "" - }, - "CVE-2022-1651": { - "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" + "cmt_msg": "floppy: use a statically allocated error counter" }, "CVE-2020-29568": { "cmt_msg": "xen/xenbus: Allow watches discard events before queueing" @@ -8640,9 +8376,6 @@ "CVE-2019-9458": { "cmt_msg": "media: v4l: event: Prevent freeing event subscriptions while accessed" }, - "CVE-2022-1789": { - "cmt_msg": "KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID" - }, "CVE-2016-8660": { "cmt_msg": "" }, @@ -8778,9 +8511,6 @@ "CVE-2021-4149": { "cmt_msg": "btrfs: unlock newly allocated extent buffer after error" }, - "CVE-2021-4148": { - "cmt_msg": "mm: khugepaged: skip huge page collapse for special files" - }, "CVE-2021-3640": { "cmt_msg": "Bluetooth: sco: Fix lock_sock() blockage by memcpy_from_msg()" }, @@ -8886,9 +8616,6 @@ "CVE-2017-18595": { "cmt_msg": "tracing: Fix possible double free on failure of allocating trace buffer" }, - "CVE-2022-0742": { - "cmt_msg": "ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()" - }, "CVE-2021-3612": { "cmt_msg": "Input: joydev - prevent potential read overflow in ioctl" }, @@ -8919,9 +8646,6 @@ "CVE-2019-19527": { "cmt_msg": "HID: hiddev: do cleanup in failure of opening a device" }, - "CVE-2022-23039": { - "cmt_msg": "xen/gntalloc: don't use gnttab_query_foreign_access()" - }, "CVE-2019-19526": { "cmt_msg": "NFC: pn533: fix use-after-free and memleaks" }, @@ -8979,9 +8703,6 @@ "CVE-2022-26490": { "cmt_msg": "nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION" }, - "CVE-2022-1043": { - "cmt_msg": "io_uring: fix xa_alloc_cycle() error return value check" - }, "CVE-2021-0937": { "cmt_msg": "netfilter: x_tables: fix compat match/target pad out-of-bound write" }, @@ -8991,9 +8712,6 @@ "CVE-2018-20976": { "cmt_msg": "xfs: clear sb->s_fs_info on mount failure" }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, "CVE-2018-7995": { "cmt_msg": "x86/MCE: Serialize sysfs changes" }, @@ -9060,9 +8778,6 @@ "CVE-2022-0400": { "cmt_msg": "" }, - "CVE-2021-0707": { - "cmt_msg": "dmabuf: fix use-after-free of dmabuf's file->f_inode" - }, "CVE-2021-38160": { "cmt_msg": "virtio_console: Assure used length from device is limited" }, @@ -9099,15 +8814,9 @@ "CVE-2020-25284": { "cmt_msg": "rbd: require global CAP_SYS_ADMIN for mapping and unmapping" }, - "CVE-2022-25636": { - "cmt_msg": "netfilter: nf_tables_offload: incorrect flow offload action array size" - }, "CVE-2018-18281": { "cmt_msg": "mremap: properly flush TLB before releasing the page" }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"" - }, "CVE-2019-8912": { "cmt_msg": "net: crypto set sk to NULL when af_alg_release." }, @@ -9126,9 +8835,6 @@ "CVE-2019-19378": { "cmt_msg": "" }, - "CVE-2022-1852": { - "cmt_msg": "KVM: x86: avoid calling x86 emulator without a decoded instruction" - }, "CVE-2020-4788": { "cmt_msg": "powerpc/64s: flush L1D on kernel entry" }, @@ -9174,9 +8880,6 @@ "CVE-2019-19449": { "cmt_msg": "f2fs: fix to do sanity check on segment/section count" }, - "CVE-2021-33135": { - "cmt_msg": "" - }, "CVE-2019-19523": { "cmt_msg": "USB: adutux: fix use-after-free on disconnect" }, @@ -9207,9 +8910,6 @@ "CVE-2021-41864": { "cmt_msg": "bpf: Fix integer overflow in prealloc_elems_and_freelist()" }, - "CVE-2022-1998": { - "cmt_msg": "fanotify: Fix stale file descriptor in copy_event_to_user()" - }, "CVE-2018-18021": { "cmt_msg": "arm64: KVM: Tighten guest core register access from userspace" }, @@ -9318,9 +9018,6 @@ "CVE-2019-3874": { "cmt_msg": "sctp: implement memory accounting on tx path" }, - "CVE-2022-0171": { - "cmt_msg": "" - }, "CVE-2018-10877": { "cmt_msg": "ext4: verify the depth of extent tree in ext4_find_extent()" }, @@ -9342,9 +9039,6 @@ "CVE-2021-3483": { "cmt_msg": "firewire: nosy: Fix a use-after-free bug in nosy_ioctl()" }, - "CVE-2022-29156": { - "cmt_msg": "RDMA/rtrs-clt: Fix possible double free in error case" - }, "CVE-2017-16913": { "cmt_msg": "usbip: fix stub_rx: harden CMD_SUBMIT path to handle malicious input" }, @@ -9399,21 +9093,12 @@ "CVE-2021-3573": { "cmt_msg": "Bluetooth: use correct lock to prevent UAF of hdev object" }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, "CVE-2018-1000026": { "cmt_msg": "bnx2x: disable GSO where gso_size is too big for hardware" }, "CVE-2022-1975": { "cmt_msg": "NFC: netlink: fix sleep in atomic bug when firmware download timeout" }, - "CVE-2022-1972": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" - }, "CVE-2021-28972": { "cmt_msg": "PCI: rpadlpar: Fix potential drc_name corruption in store functions" }, @@ -9495,9 +9180,6 @@ "CVE-2021-28951": { "cmt_msg": "io_uring: ensure that SQPOLL thread is started for exit" }, - "CVE-2022-1671": { - "cmt_msg": "rxrpc: fix some null-ptr-deref bugs in server_key.c" - }, "CVE-2021-3653": { "cmt_msg": "KVM: nSVM: avoid picking up unsupported bits from L2 in int_ctl (CVE-2021-3653)" }, @@ -9570,9 +9252,6 @@ "CVE-2018-20509": { "cmt_msg": "binder: refactor binder ref inc/dec for thread safety" }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, "CVE-2019-9454": { "cmt_msg": "i2c: core-smbus: prevent stack corruption on read I2C_BLOCK_DATA" }, @@ -9589,7 +9268,7 @@ "cmt_msg": "" }, "CVE-2022-1184": { - "cmt_msg": "" + "cmt_msg": "ext4: verify dir block before splitting it" }, "CVE-2022-23222": { "cmt_msg": "bpf: Replace PTR_TO_XXX_OR_NULL with PTR_TO_XXX | PTR_MAYBE_NULL" @@ -9663,9 +9342,6 @@ "CVE-2019-15505": { "cmt_msg": "media: technisat-usb2: break out of loop at end of buffer" }, - "CVE-2022-1516": { - "cmt_msg": "net/x25: Fix null-ptr-deref caused by x25_disconnect" - }, "CVE-2021-1048": { "cmt_msg": "fix regression in \"epoll: Keep a reference on files added to the check list\"" }, @@ -9675,9 +9351,6 @@ "CVE-2020-9383": { "cmt_msg": "floppy: check FDC index for errors before assigning it" }, - "CVE-2022-29582": { - "cmt_msg": "io_uring: fix race between timeout flush and removal" - }, "CVE-2019-16089": { "cmt_msg": "" }, @@ -9970,6 +9643,9 @@ "CVE-2018-10940": { "cmt_msg": "cdrom: information leak in cdrom_ioctl_media_changed()" }, + "CVE-2022-32250": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier" + }, "CVE-2018-10087": { "cmt_msg": "kernel/exit.c: avoid undefined behaviour when calling wait4()" }, @@ -10207,17 +9883,11 @@ "CVE-2019-18680": { "cmt_msg": "" }, - "CVE-2022-20153": { - "cmt_msg": "io_uring: return back safer resurrect" - }, "CVE-2022-23038": { "cmt_msg": "xen/grant-table: add gnttab_try_end_foreign_access()" }, - "CVE-2022-0995": { - "cmt_msg": "watch_queue: Fix filter limit check" - }, - "CVE-2022-20154": { - "cmt_msg": "sctp: use call_rcu to free endpoint" + "CVE-2022-23039": { + "cmt_msg": "xen/gntalloc: don't use gnttab_query_foreign_access()" }, "CVE-2017-14991": { "cmt_msg": "scsi: sg: fixup infoleak when using SG_GET_REQUEST_TABLE" @@ -10243,9 +9913,6 @@ "CVE-2019-15921": { "cmt_msg": "genetlink: Fix a memory leak on error path" }, - "CVE-2022-0998": { - "cmt_msg": "vdpa: clean up get_config_size ret value handling" - }, "CVE-2019-14821": { "cmt_msg": "KVM: coalesced_mmio: add bounds checking" }, @@ -10339,6 +10006,9 @@ "CVE-2020-15393": { "cmt_msg": "usb: usbtest: fix missing kfree(dev->buf) in usbtest_disconnect" }, + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default" + }, "CVE-2021-3564": { "cmt_msg": "Bluetooth: fix the erroneous flush_work() order" }, @@ -10465,6 +10135,12 @@ "CVE-2020-36385": { "cmt_msg": "RDMA/ucma: Rework ucma_migrate_id() to avoid races with destroy" }, + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" + }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, "CVE-2018-9385": { "cmt_msg": "ARM: amba: Don't read past the end of sysfs \"driver_override\" buffer" }, @@ -10613,7 +10289,7 @@ "cmt_msg": "NFC: llcp: Limit size of SDP URI" }, "CVE-2020-26555": { - "cmt_msg": "" + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, "CVE-2018-9517": { "cmt_msg": "l2tp: pass tunnel pointer to ->session_create()" @@ -10631,7 +10307,7 @@ "cmt_msg": "kvm/x86: fix icebp instruction handling" }, "CVE-2022-1652": { - "cmt_msg": "" + "cmt_msg": "floppy: use a statically allocated error counter" }, "CVE-2018-1120": { "cmt_msg": "proc: do not access cmdline nor environ from file-backed areas" @@ -10801,9 +10477,6 @@ "CVE-2021-3178": { "cmt_msg": "nfsd4: readdirplus shouldn't return parent of export" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, "CVE-2019-9445": { "cmt_msg": "f2fs: check if file namelen exceeds max value" }, @@ -10828,9 +10501,6 @@ "CVE-2019-19319": { "cmt_msg": "ext4: protect journal inode's blocks using block_validity" }, - "CVE-2022-2078": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, "CVE-2019-19462": { "cmt_msg": "kernel/relay.c: handle alloc_percpu returning NULL in relay_open" }, @@ -10840,12 +10510,6 @@ "CVE-2022-24958": { "cmt_msg": "usb: gadget: don't release an existing dev->buf" }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers" - }, - "CVE-2022-28893": { - "cmt_msg": "SUNRPC: Ensure we flush any closed sockets before xs_xprt_free()" - }, "CVE-2021-3772": { "cmt_msg": "sctp: use init_tag from inithdr for ABORT chunk" }, @@ -10939,9 +10603,6 @@ "CVE-2020-14381": { "cmt_msg": "futex: Fix inode life-time issue" }, - "CVE-2022-1158": { - "cmt_msg": "KVM: x86/mmu: do compare-and-exchange of gPTE via the user address" - }, "CVE-2019-19768": { "cmt_msg": "blktrace: Protect q->blk_trace with RCU" }, @@ -11011,9 +10672,6 @@ "CVE-2018-1000004": { "cmt_msg": "ALSA: seq: Make ioctls race-free" }, - "CVE-2022-0500": { - "cmt_msg": "bpf: Introduce MEM_RDONLY flag" - }, "CVE-2018-18690": { "cmt_msg": "xfs: don't fail when converting shortform attr to long form during ATTR_REPLACE" }, @@ -11032,9 +10690,6 @@ "CVE-2021-4002": { "cmt_msg": "hugetlbfs: flush TLBs correctly after huge_pmd_unshare" }, - "CVE-2022-1055": { - "cmt_msg": "net: sched: fix use-after-free in tc_new_tfilter()" - }, "CVE-2021-38204": { "cmt_msg": "usb: max-3421: Prevent corruption of freed memory" }, @@ -11074,8 +10729,8 @@ "CVE-2019-3016": { "cmt_msg": "x86/kvm: Be careful not to clear KVM_VCPU_FLUSH_TLB bit" }, - "CVE-2022-26878": { - "cmt_msg": "" + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()" }, "CVE-2019-19531": { "cmt_msg": "usb: yurex: Fix use-after-free in yurex_delete" @@ -11141,7 +10796,7 @@ "cmt_msg": "RDMA/cxgb4: Do not dma memory off of the stack" }, "CVE-2019-0146": { - "cmt_msg": "" + "cmt_msg": "i40e: add num_vectors checker in iwarp handler" }, "CVE-2019-0147": { "cmt_msg": "i40e: add num_vectors checker in iwarp handler" @@ -11227,9 +10882,6 @@ "CVE-2020-25212": { "cmt_msg": "nfs: Fix getxattr kernel panic and memory overflow" }, - "CVE-2021-39713": { - "cmt_msg": "net: sched: use Qdisc rcu API instead of relying on rtnl lock" - }, "CVE-2020-28374": { "cmt_msg": "scsi: target: Fix XCOPY NAA identifier lookup" }, @@ -11326,15 +10978,9 @@ "CVE-2021-26931": { "cmt_msg": "xen-blkback: don't \"handle\" error by BUG()" }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, "CVE-2021-4203": { "cmt_msg": "af_unix: fix races in sk_peer_pid and sk_peer_cred accesses" }, - "CVE-2022-1651": { - "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" - }, "CVE-2020-29568": { "cmt_msg": "xen/xenbus: Allow watches discard events before queueing" }, @@ -11374,9 +11020,6 @@ "CVE-2019-9458": { "cmt_msg": "media: v4l: event: Prevent freeing event subscriptions while accessed" }, - "CVE-2022-1789": { - "cmt_msg": "KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID" - }, "CVE-2016-8660": { "cmt_msg": "" }, @@ -11521,9 +11164,6 @@ "CVE-2021-4149": { "cmt_msg": "btrfs: unlock newly allocated extent buffer after error" }, - "CVE-2021-4148": { - "cmt_msg": "mm: khugepaged: skip huge page collapse for special files" - }, "CVE-2021-3640": { "cmt_msg": "Bluetooth: sco: Fix lock_sock() blockage by memcpy_from_msg()" }, @@ -11638,9 +11278,6 @@ "CVE-2017-18595": { "cmt_msg": "tracing: Fix possible double free on failure of allocating trace buffer" }, - "CVE-2022-0742": { - "cmt_msg": "ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()" - }, "CVE-2021-3612": { "cmt_msg": "Input: joydev - prevent potential read overflow in ioctl" }, @@ -11671,9 +11308,6 @@ "CVE-2019-19527": { "cmt_msg": "HID: hiddev: do cleanup in failure of opening a device" }, - "CVE-2022-23039": { - "cmt_msg": "xen/gntalloc: don't use gnttab_query_foreign_access()" - }, "CVE-2019-19526": { "cmt_msg": "NFC: pn533: fix use-after-free and memleaks" }, @@ -11734,9 +11368,6 @@ "CVE-2022-26490": { "cmt_msg": "nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION" }, - "CVE-2022-1043": { - "cmt_msg": "io_uring: fix xa_alloc_cycle() error return value check" - }, "CVE-2021-0937": { "cmt_msg": "netfilter: x_tables: fix compat match/target pad out-of-bound write" }, @@ -11746,9 +11377,6 @@ "CVE-2018-20976": { "cmt_msg": "xfs: clear sb->s_fs_info on mount failure" }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, "CVE-2018-7995": { "cmt_msg": "x86/MCE: Serialize sysfs changes" }, @@ -11815,9 +11443,6 @@ "CVE-2022-0400": { "cmt_msg": "" }, - "CVE-2021-0707": { - "cmt_msg": "dmabuf: fix use-after-free of dmabuf's file->f_inode" - }, "CVE-2021-38160": { "cmt_msg": "virtio_console: Assure used length from device is limited" }, @@ -11857,9 +11482,6 @@ "CVE-2020-25284": { "cmt_msg": "rbd: require global CAP_SYS_ADMIN for mapping and unmapping" }, - "CVE-2022-25636": { - "cmt_msg": "netfilter: nf_tables_offload: incorrect flow offload action array size" - }, "CVE-2018-18281": { "cmt_msg": "mremap: properly flush TLB before releasing the page" }, @@ -11875,9 +11497,6 @@ "CVE-2019-15219": { "cmt_msg": "USB: sisusbvga: fix oops in error path of sisusb_probe" }, - "CVE-2022-1015": { - "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." - }, "CVE-2020-25643": { "cmt_msg": "hdlc_ppp: add range checks in ppp_cp_parse_cr()" }, @@ -11887,15 +11506,9 @@ "CVE-2019-19378": { "cmt_msg": "" }, - "CVE-2022-1852": { - "cmt_msg": "KVM: x86: avoid calling x86 emulator without a decoded instruction" - }, "CVE-2020-4788": { "cmt_msg": "powerpc/64s: flush L1D on kernel entry" }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"" - }, "CVE-2022-1011": { "cmt_msg": "fuse: fix pipe buffer lifetime for direct_io" }, @@ -11938,9 +11551,6 @@ "CVE-2019-19449": { "cmt_msg": "f2fs: fix to do sanity check on segment/section count" }, - "CVE-2021-33135": { - "cmt_msg": "" - }, "CVE-2019-19523": { "cmt_msg": "USB: adutux: fix use-after-free on disconnect" }, @@ -11974,9 +11584,6 @@ "CVE-2021-41864": { "cmt_msg": "bpf: Fix integer overflow in prealloc_elems_and_freelist()" }, - "CVE-2022-1998": { - "cmt_msg": "fanotify: Fix stale file descriptor in copy_event_to_user()" - }, "CVE-2018-18021": { "cmt_msg": "arm64: KVM: Tighten guest core register access from userspace" }, @@ -12088,9 +11695,6 @@ "CVE-2019-3874": { "cmt_msg": "sctp: implement memory accounting on tx path" }, - "CVE-2022-0171": { - "cmt_msg": "" - }, "CVE-2018-10877": { "cmt_msg": "ext4: verify the depth of extent tree in ext4_find_extent()" }, @@ -12112,9 +11716,6 @@ "CVE-2021-3483": { "cmt_msg": "firewire: nosy: Fix a use-after-free bug in nosy_ioctl()" }, - "CVE-2022-29156": { - "cmt_msg": "RDMA/rtrs-clt: Fix possible double free in error case" - }, "CVE-2017-16913": { "cmt_msg": "usbip: fix stub_rx: harden CMD_SUBMIT path to handle malicious input" }, @@ -12178,21 +11779,12 @@ "CVE-2018-7191": { "cmt_msg": "tun: call dev_get_valid_name() before register_netdevice()" }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, "CVE-2018-1000026": { "cmt_msg": "bnx2x: disable GSO where gso_size is too big for hardware" }, "CVE-2022-1975": { "cmt_msg": "NFC: netlink: fix sleep in atomic bug when firmware download timeout" }, - "CVE-2022-1972": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" - }, "CVE-2017-0786": { "cmt_msg": "brcmfmac: add length check in brcmf_cfg80211_escan_handler()" }, @@ -12274,9 +11866,6 @@ "CVE-2021-28951": { "cmt_msg": "io_uring: ensure that SQPOLL thread is started for exit" }, - "CVE-2022-1671": { - "cmt_msg": "rxrpc: fix some null-ptr-deref bugs in server_key.c" - }, "CVE-2020-16166": { "cmt_msg": "random32: update the net random state on interrupt and activity" }, @@ -12352,9 +11941,6 @@ "CVE-2018-20509": { "cmt_msg": "binder: refactor binder ref inc/dec for thread safety" }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, "CVE-2017-18193": { "cmt_msg": "f2fs: fix a bug caused by NULL extent tree" }, @@ -12374,7 +11960,7 @@ "cmt_msg": "" }, "CVE-2022-1184": { - "cmt_msg": "" + "cmt_msg": "ext4: verify dir block before splitting it" }, "CVE-2022-23222": { "cmt_msg": "bpf: Replace PTR_TO_XXX_OR_NULL with PTR_TO_XXX | PTR_MAYBE_NULL" @@ -12457,9 +12043,6 @@ "CVE-2019-15505": { "cmt_msg": "media: technisat-usb2: break out of loop at end of buffer" }, - "CVE-2022-1516": { - "cmt_msg": "net/x25: Fix null-ptr-deref caused by x25_disconnect" - }, "CVE-2020-11609": { "cmt_msg": "media: stv06xx: add missing descriptor sanity checks" }, @@ -12472,9 +12055,6 @@ "CVE-2020-9383": { "cmt_msg": "floppy: check FDC index for errors before assigning it" }, - "CVE-2022-29582": { - "cmt_msg": "io_uring: fix race between timeout flush and removal" - }, "CVE-2019-16089": { "cmt_msg": "" }, @@ -12756,9 +12336,6 @@ "CVE-2020-24586": { "cmt_msg": "mac80211: prevent mixed key and fragment cache attacks" }, - "CVE-2022-0995": { - "cmt_msg": "watch_queue: Fix filter limit check" - }, "CVE-2021-0129": { "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, @@ -12768,6 +12345,9 @@ "CVE-2018-10940": { "cmt_msg": "cdrom: information leak in cdrom_ioctl_media_changed()" }, + "CVE-2022-32250": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier" + }, "CVE-2019-9506": { "cmt_msg": "Bluetooth: Fix faulty expression for minimum encryption key size check" }, @@ -12996,9 +12576,6 @@ "CVE-2019-18680": { "cmt_msg": "" }, - "CVE-2022-20153": { - "cmt_msg": "io_uring: return back safer resurrect" - }, "CVE-2022-23038": { "cmt_msg": "xen/grant-table: add gnttab_try_end_foreign_access()" }, @@ -13137,9 +12714,6 @@ "CVE-2019-18675": { "cmt_msg": "mmap: introduce sane default mmap limits" }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, "CVE-2020-26560": { "cmt_msg": "" }, @@ -13227,6 +12801,12 @@ "CVE-2020-36385": { "cmt_msg": "RDMA/ucma: Rework ucma_migrate_id() to avoid races with destroy" }, + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" + }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, "CVE-2018-9385": { "cmt_msg": "ARM: amba: Don't read past the end of sysfs \"driver_override\" buffer" }, @@ -13366,7 +12946,7 @@ "cmt_msg": "NFC: llcp: Limit size of SDP URI" }, "CVE-2020-26555": { - "cmt_msg": "" + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, "CVE-2019-20794": { "cmt_msg": "" @@ -13395,9 +12975,6 @@ "CVE-2019-19045": { "cmt_msg": "net/mlx5: prevent memory leak in mlx5_fpga_conn_create_cq" }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, "CVE-2019-9466": { "cmt_msg": "brcmfmac: add subtype check for event handling in data path" }, @@ -13470,9 +13047,6 @@ "CVE-2019-19816": { "cmt_msg": "btrfs: inode: Verify inode mode to avoid NULL pointer dereference" }, - "CVE-2022-1015": { - "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." - }, "CVE-2018-11412": { "cmt_msg": "ext4: do not allow external inodes for inline data" }, @@ -13539,9 +13113,6 @@ "CVE-2021-3178": { "cmt_msg": "nfsd4: readdirplus shouldn't return parent of export" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, "CVE-2020-10690": { "cmt_msg": "ptp: fix the race between the release of ptp_clock and cdev" }, @@ -13563,21 +13134,12 @@ "CVE-2019-19319": { "cmt_msg": "ext4: protect journal inode's blocks using block_validity" }, - "CVE-2022-2078": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, "CVE-2019-19462": { "cmt_msg": "kernel/relay.c: handle alloc_percpu returning NULL in relay_open" }, "CVE-2022-24958": { "cmt_msg": "usb: gadget: don't release an existing dev->buf" }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers" - }, - "CVE-2022-28893": { - "cmt_msg": "SUNRPC: Ensure we flush any closed sockets before xs_xprt_free()" - }, "CVE-2021-3772": { "cmt_msg": "sctp: use init_tag from inithdr for ABORT chunk" }, @@ -13647,9 +13209,6 @@ "CVE-2013-7445": { "cmt_msg": "" }, - "CVE-2022-0998": { - "cmt_msg": "vdpa: clean up get_config_size ret value handling" - }, "CVE-2018-18445": { "cmt_msg": "bpf: 32-bit RSH verification must truncate input before the ALU op" }, @@ -13674,9 +13233,6 @@ "CVE-2020-14381": { "cmt_msg": "futex: Fix inode life-time issue" }, - "CVE-2022-1158": { - "cmt_msg": "KVM: x86/mmu: do compare-and-exchange of gPTE via the user address" - }, "CVE-2019-19768": { "cmt_msg": "blktrace: Protect q->blk_trace with RCU" }, @@ -13728,9 +13284,6 @@ "CVE-2020-12364": { "cmt_msg": "drm/i915/guc: Update to use firmware v49.0.1" }, - "CVE-2022-0500": { - "cmt_msg": "bpf: Introduce MEM_RDONLY flag" - }, "CVE-2018-18690": { "cmt_msg": "xfs: don't fail when converting shortform attr to long form during ATTR_REPLACE" }, @@ -13746,9 +13299,6 @@ "CVE-2021-4002": { "cmt_msg": "hugetlbfs: flush TLBs correctly after huge_pmd_unshare" }, - "CVE-2022-1055": { - "cmt_msg": "net: sched: fix use-after-free in tc_new_tfilter()" - }, "CVE-2021-38204": { "cmt_msg": "usb: max-3421: Prevent corruption of freed memory" }, @@ -13788,8 +13338,8 @@ "CVE-2019-3016": { "cmt_msg": "x86/kvm: Be careful not to clear KVM_VCPU_FLUSH_TLB bit" }, - "CVE-2022-26878": { - "cmt_msg": "" + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()" }, "CVE-2018-12930": { "cmt_msg": "" @@ -13855,7 +13405,7 @@ "cmt_msg": "ext4: work around deleting a file with i_nlink == 0 safely" }, "CVE-2019-0146": { - "cmt_msg": "" + "cmt_msg": "i40e: add num_vectors checker in iwarp handler" }, "CVE-2019-0147": { "cmt_msg": "i40e: add num_vectors checker in iwarp handler" @@ -13908,6 +13458,9 @@ "CVE-2019-10639": { "cmt_msg": "netns: provide pure entropy for net_hash_mix()" }, + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default" + }, "CVE-2021-0929": { "cmt_msg": "staging/android/ion: delete dma_buf->kmap/unmap implemenation" }, @@ -13932,9 +13485,6 @@ "CVE-2022-0168": { "cmt_msg": "cifs: fix NULL ptr dereference in smb2_ioctl_query_info()" }, - "CVE-2021-39713": { - "cmt_msg": "net: sched: use Qdisc rcu API instead of relying on rtnl lock" - }, "CVE-2020-28374": { "cmt_msg": "scsi: target: Fix XCOPY NAA identifier lookup" }, @@ -14004,14 +13554,8 @@ "CVE-2021-3864": { "cmt_msg": "" }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, "CVE-2022-1652": { - "cmt_msg": "" - }, - "CVE-2022-1651": { - "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" + "cmt_msg": "floppy: use a statically allocated error counter" }, "CVE-2020-29568": { "cmt_msg": "xen/xenbus: Allow watches discard events before queueing" @@ -14052,9 +13596,6 @@ "CVE-2019-9458": { "cmt_msg": "media: v4l: event: Prevent freeing event subscriptions while accessed" }, - "CVE-2022-1789": { - "cmt_msg": "KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID" - }, "CVE-2016-8660": { "cmt_msg": "" }, @@ -14175,9 +13716,6 @@ "CVE-2021-4149": { "cmt_msg": "btrfs: unlock newly allocated extent buffer after error" }, - "CVE-2021-4148": { - "cmt_msg": "mm: khugepaged: skip huge page collapse for special files" - }, "CVE-2021-3640": { "cmt_msg": "Bluetooth: sco: Fix lock_sock() blockage by memcpy_from_msg()" }, @@ -14271,12 +13809,6 @@ "CVE-2019-18806": { "cmt_msg": "net: qlogic: Fix memory leak in ql_alloc_large_buffers" }, - "CVE-2022-0742": { - "cmt_msg": "ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()" - }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"" - }, "CVE-2019-6974": { "cmt_msg": "kvm: fix kvm_ioctl_create_device() reference counting (CVE-2019-6974)" }, @@ -14293,7 +13825,7 @@ "cmt_msg": "f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr()" }, "CVE-2022-1184": { - "cmt_msg": "" + "cmt_msg": "ext4: verify dir block before splitting it" }, "CVE-2019-19448": { "cmt_msg": "btrfs: only search for left_info if there is no right_info in try_merge_free_space" @@ -14355,9 +13887,6 @@ "CVE-2022-26490": { "cmt_msg": "nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION" }, - "CVE-2022-1043": { - "cmt_msg": "io_uring: fix xa_alloc_cycle() error return value check" - }, "CVE-2021-0937": { "cmt_msg": "netfilter: x_tables: fix compat match/target pad out-of-bound write" }, @@ -14433,9 +13962,6 @@ "CVE-2022-0400": { "cmt_msg": "" }, - "CVE-2021-0707": { - "cmt_msg": "dmabuf: fix use-after-free of dmabuf's file->f_inode" - }, "CVE-2021-38160": { "cmt_msg": "virtio_console: Assure used length from device is limited" }, @@ -14472,9 +13998,6 @@ "CVE-2020-25284": { "cmt_msg": "rbd: require global CAP_SYS_ADMIN for mapping and unmapping" }, - "CVE-2022-25636": { - "cmt_msg": "netfilter: nf_tables_offload: incorrect flow offload action array size" - }, "CVE-2018-18281": { "cmt_msg": "mremap: properly flush TLB before releasing the page" }, @@ -14493,9 +14016,6 @@ "CVE-2019-19378": { "cmt_msg": "" }, - "CVE-2022-1852": { - "cmt_msg": "KVM: x86: avoid calling x86 emulator without a decoded instruction" - }, "CVE-2020-4788": { "cmt_msg": "powerpc/64s: flush L1D on kernel entry" }, @@ -14535,9 +14055,6 @@ "CVE-2019-19526": { "cmt_msg": "NFC: pn533: fix use-after-free and memleaks" }, - "CVE-2021-33135": { - "cmt_msg": "" - }, "CVE-2019-19523": { "cmt_msg": "USB: adutux: fix use-after-free on disconnect" }, @@ -14562,9 +14079,6 @@ "CVE-2021-41864": { "cmt_msg": "bpf: Fix integer overflow in prealloc_elems_and_freelist()" }, - "CVE-2022-1998": { - "cmt_msg": "fanotify: Fix stale file descriptor in copy_event_to_user()" - }, "CVE-2018-18021": { "cmt_msg": "arm64: KVM: Tighten guest core register access from userspace" }, @@ -14673,9 +14187,6 @@ "CVE-2019-3874": { "cmt_msg": "sctp: implement memory accounting on tx path" }, - "CVE-2022-0171": { - "cmt_msg": "" - }, "CVE-2018-10877": { "cmt_msg": "ext4: verify the depth of extent tree in ext4_find_extent()" }, @@ -14697,9 +14208,6 @@ "CVE-2021-3483": { "cmt_msg": "firewire: nosy: Fix a use-after-free bug in nosy_ioctl()" }, - "CVE-2022-29156": { - "cmt_msg": "RDMA/rtrs-clt: Fix possible double free in error case" - }, "CVE-2021-38300": { "cmt_msg": "bpf, mips: Validate conditional branch offsets" }, @@ -14742,21 +14250,12 @@ "CVE-2021-3573": { "cmt_msg": "Bluetooth: use correct lock to prevent UAF of hdev object" }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, "CVE-2018-1000026": { "cmt_msg": "bnx2x: disable GSO where gso_size is too big for hardware" }, "CVE-2022-1975": { "cmt_msg": "NFC: netlink: fix sleep in atomic bug when firmware download timeout" }, - "CVE-2022-1972": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" - }, "CVE-2021-28972": { "cmt_msg": "PCI: rpadlpar: Fix potential drc_name corruption in store functions" }, @@ -14835,9 +14334,6 @@ "CVE-2021-28951": { "cmt_msg": "io_uring: ensure that SQPOLL thread is started for exit" }, - "CVE-2022-1671": { - "cmt_msg": "rxrpc: fix some null-ptr-deref bugs in server_key.c" - }, "CVE-2021-3653": { "cmt_msg": "KVM: nSVM: avoid picking up unsupported bits from L2 in int_ctl (CVE-2021-3653)" }, @@ -14985,9 +14481,6 @@ "CVE-2019-15505": { "cmt_msg": "media: technisat-usb2: break out of loop at end of buffer" }, - "CVE-2022-1516": { - "cmt_msg": "net/x25: Fix null-ptr-deref caused by x25_disconnect" - }, "CVE-2020-11609": { "cmt_msg": "media: stv06xx: add missing descriptor sanity checks" }, @@ -15000,9 +14493,6 @@ "CVE-2020-9383": { "cmt_msg": "floppy: check FDC index for errors before assigning it" }, - "CVE-2022-29582": { - "cmt_msg": "io_uring: fix race between timeout flush and removal" - }, "CVE-2019-16089": { "cmt_msg": "" }, @@ -17343,6 +16833,10 @@ "cmt_msg": "fork: fix copy_process(CLONE_PARENT) race with the exiting ->real_parent", "cmt_id": "ee55b8c6bf4d59c7b82079b8a7d67597bb3a5539" }, + "CVE-2019-0146": { + "cmt_msg": "i40e: add num_vectors checker in iwarp handler", + "cmt_id": "978c31f09d59cdd52cadc462f12862376e72f618" + }, "CVE-2020-28974": { "cmt_msg": "vt: Disable KD_FONT_OP_COPY", "cmt_id": "9421bad22e9fb7f513d81ef8fec513c8a4850c0d" @@ -17656,6 +17150,10 @@ "CVE-2021-0129": { "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical", "cmt_id": "4555cee33f7d75c1ee69902c872c9d1e9568ebd5" + }, + "CVE-2020-26555": { + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical", + "cmt_id": "4555cee33f7d75c1ee69902c872c9d1e9568ebd5" } }, "4.14.235": { @@ -18199,10 +17697,6 @@ "cmt_msg": "can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path", "cmt_id": "cdced1015a63a7f100b5867ebb9a40271f891411" }, - "CVE-2022-1516": { - "cmt_msg": "net/x25: Fix null-ptr-deref caused by x25_disconnect", - "cmt_id": "858642789ada1b48630f322e59416ca9fca3e6b7" - }, "CVE-2022-1011": { "cmt_msg": "fuse: fix pipe buffer lifetime for direct_io", "cmt_id": "0ab55e14cf5fd40c39109969c8b04a25870f5d1e" @@ -18213,16 +17707,16 @@ "cmt_msg": "ax25: Fix refcount leaks caused by ax25_cb_del()", "cmt_id": "c44a453ffe16eb08acdc6129ac4fa0192dbc0456" }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers", - "cmt_id": "331210983ba5ce82bf63b827bca0e1c833f293db" - }, "CVE-2022-28388": { "cmt_msg": "can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path", "cmt_id": "a5e2259173eb52a728bbf32e02aa9a388451e614" } }, "4.14.278": { + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default", + "cmt_id": "b7fa84ae1171a3c5ea5d710899080a6e63cfe084" + }, "CVE-2022-1836": { "cmt_msg": "floppy: disable FDRAWCMD by default", "cmt_id": "b7fa84ae1171a3c5ea5d710899080a6e63cfe084" @@ -18255,13 +17749,13 @@ } }, "4.14.281": { + "CVE-2022-1652": { + "cmt_msg": "floppy: use a statically allocated error counter", + "cmt_id": "dc650d53bad770f169e498f1231671c51b0b321d" + }, "CVE-2022-1729": { "cmt_msg": "perf: Fix sys_perf_event_open() race against self", "cmt_id": "dee63319e2d1abd5d37a89de046ccf32ca8a8451" - }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"", - "cmt_id": "aaf166f37eb6bb55d81c3e40a2a460c8875c8813" } }, "4.14.282": { @@ -18275,6 +17769,14 @@ } }, "4.14.283": { + "CVE-2022-32250": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier", + "cmt_id": "5b732a9e8e22395d911b3e6c343cbed0e1cec275" + }, + "CVE-2022-1184": { + "cmt_msg": "ext4: verify dir block before splitting it", + "cmt_id": "d27d3caddbeff10871982d5e25e6557be0fdc29a" + }, "CVE-2022-1966": { "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier", "cmt_id": "5b732a9e8e22395d911b3e6c343cbed0e1cec275" @@ -18284,6 +17786,16 @@ "cmt_id": "d13c94c4b6f816e79b8e4df193db1bdcc7253610" } }, + "4.14.285": { + "CVE-2022-32296": { + "cmt_msg": "tcp: increase source port perturb table to 2^16", + "cmt_id": "9044e70fadec49482c3cb3c2f49e81825796ea6d" + }, + "CVE-2022-0812": { + "cmt_msg": "xprtrdma: fix incorrect header size calculations", + "cmt_id": "4779af1ec4a6c88a7005c8aabe69f409cf926d58" + } + }, "outstanding": { "CVE-2021-0929": { "cmt_msg": "staging/android/ion: delete dma_buf->kmap/unmap implemenation" @@ -18294,9 +17806,6 @@ "CVE-2020-26557": { "cmt_msg": "" }, - "CVE-2020-26555": { - "cmt_msg": "" - }, "CVE-2019-20794": { "cmt_msg": "" }, @@ -18309,9 +17818,6 @@ "CVE-2022-0168": { "cmt_msg": "cifs: fix NULL ptr dereference in smb2_ioctl_query_info()" }, - "CVE-2022-1998": { - "cmt_msg": "fanotify: Fix stale file descriptor in copy_event_to_user()" - }, "CVE-2018-20854": { "cmt_msg": "phy: ocelot-serdes: fix out-of-bounds read" }, @@ -18327,12 +17833,6 @@ "CVE-2017-5753": { "cmt_msg": "x86/cpufeatures: Add X86_BUG_SPECTRE_V[12]" }, - "CVE-2022-0995": { - "cmt_msg": "watch_queue: Fix filter limit check" - }, - "CVE-2022-0998": { - "cmt_msg": "vdpa: clean up get_config_size ret value handling" - }, "CVE-2019-19377": { "cmt_msg": "btrfs: Don't submit any btree write bio if the fs has errors" }, @@ -18369,9 +17869,6 @@ "CVE-2022-1263": { "cmt_msg": "KVM: avoid NULL pointer dereference in kvm_dirty_ring_push" }, - "CVE-2022-1158": { - "cmt_msg": "KVM: x86/mmu: do compare-and-exchange of gPTE via the user address" - }, "CVE-2021-35477": { "cmt_msg": "bpf: Introduce BPF nospec instruction for mitigating Spectre v4" }, @@ -18390,39 +17887,15 @@ "CVE-2019-19814": { "cmt_msg": "" }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, - "CVE-2022-1015": { - "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." - }, - "CVE-2022-1652": { - "cmt_msg": "" - }, - "CVE-2022-1651": { - "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" - }, - "CVE-2022-1852": { - "cmt_msg": "KVM: x86: avoid calling x86 emulator without a decoded instruction" - }, "CVE-2019-19241": { "cmt_msg": "io_uring: async workers should inherit the user creds" }, "CVE-2021-43975": { "cmt_msg": "atlantic: Fix OOB read and write in hw_atl_utils_fw_rpc_wait" }, - "CVE-2022-25636": { - "cmt_msg": "netfilter: nf_tables_offload: incorrect flow offload action array size" - }, "CVE-2017-1000405": { "cmt_msg": "mm, thp: Do not make page table dirty unconditionally in touch_p[mu]d()" }, - "CVE-2022-1789": { - "cmt_msg": "KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID" - }, - "CVE-2022-2078": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, "CVE-2016-8660": { "cmt_msg": "" }, @@ -18447,12 +17920,6 @@ "CVE-2008-2544": { "cmt_msg": "" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, - "CVE-2021-39713": { - "cmt_msg": "net: sched: use Qdisc rcu API instead of relying on rtnl lock" - }, "CVE-2019-20908": { "cmt_msg": "efi: Restrict efivar_ssdt_load when the kernel is locked down" }, @@ -18498,18 +17965,12 @@ "CVE-2020-26142": { "cmt_msg": "" }, - "CVE-2022-28893": { - "cmt_msg": "SUNRPC: Ensure we flush any closed sockets before xs_xprt_free()" - }, "CVE-2017-9986": { "cmt_msg": "sound: Retire OSS" }, "CVE-2021-34556": { "cmt_msg": "bpf: Introduce BPF nospec instruction for mitigating Spectre v4" }, - "CVE-2022-29156": { - "cmt_msg": "RDMA/rtrs-clt: Fix possible double free in error case" - }, "CVE-2018-13095": { "cmt_msg": "xfs: More robust inode extent count validation" }, @@ -18522,6 +17983,9 @@ "CVE-2020-10708": { "cmt_msg": "" }, + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()" + }, "CVE-2018-7273": { "cmt_msg": "printk: hash addresses printed with %p" }, @@ -18546,21 +18010,6 @@ "CVE-2012-4542": { "cmt_msg": "" }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, - "CVE-2022-0812": { - "cmt_msg": "xprtrdma: fix incorrect header size calculations" - }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, - "CVE-2022-1679": { - "cmt_msg": "" - }, - "CVE-2022-1972": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, "CVE-2013-7445": { "cmt_msg": "" }, @@ -18570,9 +18019,6 @@ "CVE-2005-3660": { "cmt_msg": "" }, - "CVE-2021-33135": { - "cmt_msg": "" - }, "CVE-2022-1508": { "cmt_msg": "io_uring: reexpand under-reexpanded iters" }, @@ -18588,9 +18034,6 @@ "CVE-2017-5715": { "cmt_msg": "x86/cpufeatures: Add X86_BUG_SPECTRE_V[12]" }, - "CVE-2022-32296": { - "cmt_msg": "tcp: increase source port perturb table to 2^16" - }, "CVE-2021-0695": { "cmt_msg": "" }, @@ -18639,30 +18082,12 @@ "CVE-2020-12363": { "cmt_msg": "drm/i915/guc: Update to use firmware v49.0.1" }, - "CVE-2022-0742": { - "cmt_msg": "ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()" - }, "CVE-2020-12364": { "cmt_msg": "drm/i915/guc: Update to use firmware v49.0.1" }, - "CVE-2022-20153": { - "cmt_msg": "io_uring: return back safer resurrect" - }, - "CVE-2022-0500": { - "cmt_msg": "bpf: Introduce MEM_RDONLY flag" - }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, - "CVE-2022-1055": { - "cmt_msg": "net: sched: fix use-after-free in tc_new_tfilter()" - }, "CVE-2022-0480": { "cmt_msg": "memcg: enable accounting for file lock caches" }, - "CVE-2022-1184": { - "cmt_msg": "" - }, "CVE-2020-26141": { "cmt_msg": "ath10k: Fix TKIP Michael MIC verification for PCIe" }, @@ -18684,12 +18109,6 @@ "CVE-2018-17977": { "cmt_msg": "" }, - "CVE-2022-26878": { - "cmt_msg": "" - }, - "CVE-2022-29582": { - "cmt_msg": "io_uring: fix race between timeout flush and removal" - }, "CVE-2022-1116": { "cmt_msg": "" }, @@ -18702,12 +18121,6 @@ "CVE-2018-12931": { "cmt_msg": "" }, - "CVE-2021-4148": { - "cmt_msg": "mm: khugepaged: skip huge page collapse for special files" - }, - "CVE-2022-1043": { - "cmt_msg": "io_uring: fix xa_alloc_cycle() error return value check" - }, "CVE-2021-39801": { "cmt_msg": "" }, @@ -18729,6 +18142,12 @@ "CVE-2019-12381": { "cmt_msg": "ip_sockglue: Fix missing-check bug in ip_ra_control()" }, + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" + }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, "CVE-2022-21499": { "cmt_msg": "lockdown: also lock down previous kgdb use" }, @@ -18762,12 +18181,6 @@ "CVE-2015-2877": { "cmt_msg": "" }, - "CVE-2022-0171": { - "cmt_msg": "" - }, - "CVE-2019-0146": { - "cmt_msg": "" - }, "CVE-2018-20449": { "cmt_msg": "printk: hash addresses printed with %p" }, @@ -18777,8 +18190,8 @@ "CVE-2022-0400": { "cmt_msg": "" }, - "CVE-2021-0707": { - "cmt_msg": "dmabuf: fix use-after-free of dmabuf's file->f_inode" + "CVE-2022-1679": { + "cmt_msg": "" }, "CVE-2019-11191": { "cmt_msg": "x86: Deprecate a.out support" @@ -18786,9 +18199,6 @@ "CVE-2019-19039": { "cmt_msg": "btrfs: Don't submit any btree write bio if the fs has errors" }, - "CVE-2022-1671": { - "cmt_msg": "rxrpc: fix some null-ptr-deref bugs in server_key.c" - }, "CVE-2021-3847": { "cmt_msg": "" }, @@ -18810,9 +18220,6 @@ "CVE-2021-32078": { "cmt_msg": "ARM: footbridge: remove personal server platform" }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" - }, "CVE-2019-10220": { "cmt_msg": "Convert filldir[64]() from __put_user() to unsafe_put_user()" }, @@ -19049,9 +18456,6 @@ "CVE-2020-24586": { "cmt_msg": "mac80211: prevent mixed key and fragment cache attacks" }, - "CVE-2022-0995": { - "cmt_msg": "watch_queue: Fix filter limit check" - }, "CVE-2021-0129": { "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, @@ -19061,6 +18465,9 @@ "CVE-2021-3444": { "cmt_msg": "bpf: Fix truncation handling for mod32 dst reg wrt zero" }, + "CVE-2022-32250": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier" + }, "CVE-2019-9506": { "cmt_msg": "Bluetooth: Fix faulty expression for minimum encryption key size check" }, @@ -19127,9 +18534,6 @@ "CVE-2020-12114": { "cmt_msg": "make struct mountpoint bear the dentry reference to mountpoint, not struct mount" }, - "CVE-2022-2078": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, "CVE-2019-12379": { "cmt_msg": "consolemap: Fix a memory leaking bug in drivers/tty/vt/consolemap.c" }, @@ -19277,9 +18681,6 @@ "CVE-2019-18680": { "cmt_msg": "" }, - "CVE-2022-20153": { - "cmt_msg": "io_uring: return back safer resurrect" - }, "CVE-2022-23038": { "cmt_msg": "xen/grant-table: add gnttab_try_end_foreign_access()" }, @@ -19415,9 +18816,6 @@ "CVE-2021-3564": { "cmt_msg": "Bluetooth: fix the erroneous flush_work() order" }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, "CVE-2020-26560": { "cmt_msg": "" }, @@ -19496,6 +18894,12 @@ "CVE-2020-36385": { "cmt_msg": "RDMA/ucma: Rework ucma_migrate_id() to avoid races with destroy" }, + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" + }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, "CVE-2020-0009": { "cmt_msg": "staging: android: ashmem: Disallow ashmem memory from being remapped" }, @@ -19608,7 +19012,7 @@ "cmt_msg": "" }, "CVE-2020-26555": { - "cmt_msg": "" + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, "CVE-2019-20794": { "cmt_msg": "" @@ -19637,9 +19041,6 @@ "CVE-2019-19045": { "cmt_msg": "net/mlx5: prevent memory leak in mlx5_fpga_conn_create_cq" }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, "CVE-2019-9466": { "cmt_msg": "brcmfmac: add subtype check for event handling in data path" }, @@ -19709,9 +19110,6 @@ "CVE-2019-19816": { "cmt_msg": "btrfs: inode: Verify inode mode to avoid NULL pointer dereference" }, - "CVE-2022-1015": { - "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." - }, "CVE-2022-1016": { "cmt_msg": "netfilter: nf_tables: initialize registers in nft_do_chain()" }, @@ -19775,9 +19173,6 @@ "CVE-2021-3178": { "cmt_msg": "nfsd4: readdirplus shouldn't return parent of export" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, "CVE-2018-7755": { "cmt_msg": "floppy: Do not copy a kernel pointer to user memory in FDGETPRM ioctl" }, @@ -19805,12 +19200,6 @@ "CVE-2022-24958": { "cmt_msg": "usb: gadget: don't release an existing dev->buf" }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers" - }, - "CVE-2022-28893": { - "cmt_msg": "SUNRPC: Ensure we flush any closed sockets before xs_xprt_free()" - }, "CVE-2021-3772": { "cmt_msg": "sctp: use init_tag from inithdr for ABORT chunk" }, @@ -19877,9 +19266,6 @@ "CVE-2013-7445": { "cmt_msg": "" }, - "CVE-2022-0998": { - "cmt_msg": "vdpa: clean up get_config_size ret value handling" - }, "CVE-2018-18445": { "cmt_msg": "bpf: 32-bit RSH verification must truncate input before the ALU op" }, @@ -19907,9 +19293,6 @@ "CVE-2020-14381": { "cmt_msg": "futex: Fix inode life-time issue" }, - "CVE-2022-1158": { - "cmt_msg": "KVM: x86/mmu: do compare-and-exchange of gPTE via the user address" - }, "CVE-2019-19768": { "cmt_msg": "blktrace: Protect q->blk_trace with RCU" }, @@ -19958,9 +19341,6 @@ "CVE-2019-10639": { "cmt_msg": "netns: provide pure entropy for net_hash_mix()" }, - "CVE-2022-0500": { - "cmt_msg": "bpf: Introduce MEM_RDONLY flag" - }, "CVE-2022-28388": { "cmt_msg": "can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path" }, @@ -19973,9 +19353,6 @@ "CVE-2021-4002": { "cmt_msg": "hugetlbfs: flush TLBs correctly after huge_pmd_unshare" }, - "CVE-2022-1055": { - "cmt_msg": "net: sched: fix use-after-free in tc_new_tfilter()" - }, "CVE-2021-38204": { "cmt_msg": "usb: max-3421: Prevent corruption of freed memory" }, @@ -20015,8 +19392,8 @@ "CVE-2022-0617": { "cmt_msg": "udf: Fix NULL ptr deref when converting from inline format" }, - "CVE-2022-26878": { - "cmt_msg": "" + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()" }, "CVE-2018-12930": { "cmt_msg": "" @@ -20088,7 +19465,7 @@ "cmt_msg": "ext4: work around deleting a file with i_nlink == 0 safely" }, "CVE-2019-0146": { - "cmt_msg": "" + "cmt_msg": "i40e: add num_vectors checker in iwarp handler" }, "CVE-2019-0147": { "cmt_msg": "i40e: add num_vectors checker in iwarp handler" @@ -20138,6 +19515,9 @@ "CVE-2019-19531": { "cmt_msg": "usb: yurex: Fix use-after-free in yurex_delete" }, + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default" + }, "CVE-2021-0929": { "cmt_msg": "staging/android/ion: delete dma_buf->kmap/unmap implemenation" }, @@ -20156,9 +19536,6 @@ "CVE-2022-0168": { "cmt_msg": "cifs: fix NULL ptr dereference in smb2_ioctl_query_info()" }, - "CVE-2021-39713": { - "cmt_msg": "net: sched: use Qdisc rcu API instead of relying on rtnl lock" - }, "CVE-2020-28374": { "cmt_msg": "scsi: target: Fix XCOPY NAA identifier lookup" }, @@ -20210,14 +19587,8 @@ "CVE-2021-3864": { "cmt_msg": "" }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, "CVE-2022-1652": { - "cmt_msg": "" - }, - "CVE-2022-1651": { - "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" + "cmt_msg": "floppy: use a statically allocated error counter" }, "CVE-2020-29568": { "cmt_msg": "xen/xenbus: Allow watches discard events before queueing" @@ -20258,9 +19629,6 @@ "CVE-2019-9458": { "cmt_msg": "media: v4l: event: Prevent freeing event subscriptions while accessed" }, - "CVE-2022-1789": { - "cmt_msg": "KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID" - }, "CVE-2016-8660": { "cmt_msg": "" }, @@ -20366,9 +19734,6 @@ "CVE-2021-4149": { "cmt_msg": "btrfs: unlock newly allocated extent buffer after error" }, - "CVE-2021-4148": { - "cmt_msg": "mm: khugepaged: skip huge page collapse for special files" - }, "CVE-2021-3640": { "cmt_msg": "Bluetooth: sco: Fix lock_sock() blockage by memcpy_from_msg()" }, @@ -20456,12 +19821,6 @@ "CVE-2019-18806": { "cmt_msg": "net: qlogic: Fix memory leak in ql_alloc_large_buffers" }, - "CVE-2022-0742": { - "cmt_msg": "ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()" - }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"" - }, "CVE-2019-6974": { "cmt_msg": "kvm: fix kvm_ioctl_create_device() reference counting (CVE-2019-6974)" }, @@ -20478,7 +19837,7 @@ "cmt_msg": "f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr()" }, "CVE-2022-1184": { - "cmt_msg": "" + "cmt_msg": "ext4: verify dir block before splitting it" }, "CVE-2019-19448": { "cmt_msg": "btrfs: only search for left_info if there is no right_info in try_merge_free_space" @@ -20540,9 +19899,6 @@ "CVE-2022-26490": { "cmt_msg": "nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION" }, - "CVE-2022-1043": { - "cmt_msg": "io_uring: fix xa_alloc_cycle() error return value check" - }, "CVE-2022-1048": { "cmt_msg": "ALSA: pcm: Fix races among concurrent hw_params and hw_free calls" }, @@ -20609,9 +19965,6 @@ "CVE-2022-0400": { "cmt_msg": "" }, - "CVE-2021-0707": { - "cmt_msg": "dmabuf: fix use-after-free of dmabuf's file->f_inode" - }, "CVE-2021-38160": { "cmt_msg": "virtio_console: Assure used length from device is limited" }, @@ -20645,9 +19998,6 @@ "CVE-2020-25284": { "cmt_msg": "rbd: require global CAP_SYS_ADMIN for mapping and unmapping" }, - "CVE-2022-25636": { - "cmt_msg": "netfilter: nf_tables_offload: incorrect flow offload action array size" - }, "CVE-2018-18281": { "cmt_msg": "mremap: properly flush TLB before releasing the page" }, @@ -20666,9 +20016,6 @@ "CVE-2019-19378": { "cmt_msg": "" }, - "CVE-2022-1852": { - "cmt_msg": "KVM: x86: avoid calling x86 emulator without a decoded instruction" - }, "CVE-2020-4788": { "cmt_msg": "powerpc/64s: flush L1D on kernel entry" }, @@ -20708,9 +20055,6 @@ "CVE-2019-19526": { "cmt_msg": "NFC: pn533: fix use-after-free and memleaks" }, - "CVE-2021-33135": { - "cmt_msg": "" - }, "CVE-2019-19523": { "cmt_msg": "USB: adutux: fix use-after-free on disconnect" }, @@ -20735,9 +20079,6 @@ "CVE-2021-41864": { "cmt_msg": "bpf: Fix integer overflow in prealloc_elems_and_freelist()" }, - "CVE-2022-1998": { - "cmt_msg": "fanotify: Fix stale file descriptor in copy_event_to_user()" - }, "CVE-2018-18021": { "cmt_msg": "arm64: KVM: Tighten guest core register access from userspace" }, @@ -20837,9 +20178,6 @@ "CVE-2019-3874": { "cmt_msg": "sctp: implement memory accounting on tx path" }, - "CVE-2022-0171": { - "cmt_msg": "" - }, "CVE-2010-4563": { "cmt_msg": "" }, @@ -20855,9 +20193,6 @@ "CVE-2021-3483": { "cmt_msg": "firewire: nosy: Fix a use-after-free bug in nosy_ioctl()" }, - "CVE-2022-29156": { - "cmt_msg": "RDMA/rtrs-clt: Fix possible double free in error case" - }, "CVE-2021-38300": { "cmt_msg": "bpf, mips: Validate conditional branch offsets" }, @@ -20897,21 +20232,12 @@ "CVE-2021-3573": { "cmt_msg": "Bluetooth: use correct lock to prevent UAF of hdev object" }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, "CVE-2022-1974": { "cmt_msg": "nfc: replace improper check device_is_registered() in netlink related functions" }, "CVE-2022-1975": { "cmt_msg": "NFC: netlink: fix sleep in atomic bug when firmware download timeout" }, - "CVE-2022-1972": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" - }, "CVE-2021-28972": { "cmt_msg": "PCI: rpadlpar: Fix potential drc_name corruption in store functions" }, @@ -20984,9 +20310,6 @@ "CVE-2021-28951": { "cmt_msg": "io_uring: ensure that SQPOLL thread is started for exit" }, - "CVE-2022-1671": { - "cmt_msg": "rxrpc: fix some null-ptr-deref bugs in server_key.c" - }, "CVE-2021-3653": { "cmt_msg": "KVM: nSVM: avoid picking up unsupported bits from L2 in int_ctl (CVE-2021-3653)" }, @@ -21143,18 +20466,12 @@ "CVE-2019-15504": { "cmt_msg": "rsi: fix a double free bug in rsi_91x_deinit()" }, - "CVE-2022-1516": { - "cmt_msg": "net/x25: Fix null-ptr-deref caused by x25_disconnect" - }, "CVE-2015-2877": { "cmt_msg": "" }, "CVE-2020-9383": { "cmt_msg": "floppy: check FDC index for errors before assigning it" }, - "CVE-2022-29582": { - "cmt_msg": "io_uring: fix race between timeout flush and removal" - }, "CVE-2019-16089": { "cmt_msg": "" }, @@ -21410,9 +20727,6 @@ "CVE-2020-24586": { "cmt_msg": "mac80211: prevent mixed key and fragment cache attacks" }, - "CVE-2022-0995": { - "cmt_msg": "watch_queue: Fix filter limit check" - }, "CVE-2021-0129": { "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, @@ -21422,6 +20736,9 @@ "CVE-2021-3444": { "cmt_msg": "bpf: Fix truncation handling for mod32 dst reg wrt zero" }, + "CVE-2022-32250": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier" + }, "CVE-2019-9506": { "cmt_msg": "Bluetooth: Fix faulty expression for minimum encryption key size check" }, @@ -21488,9 +20805,6 @@ "CVE-2018-10878": { "cmt_msg": "ext4: always check block group bounds in ext4_init_block_bitmap()" }, - "CVE-2022-2078": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, "CVE-2019-12379": { "cmt_msg": "consolemap: Fix a memory leaking bug in drivers/tty/vt/consolemap.c" }, @@ -21647,9 +20961,6 @@ "CVE-2019-18680": { "cmt_msg": "" }, - "CVE-2022-20153": { - "cmt_msg": "io_uring: return back safer resurrect" - }, "CVE-2022-23038": { "cmt_msg": "xen/grant-table: add gnttab_try_end_foreign_access()" }, @@ -21785,9 +21096,6 @@ "CVE-2021-3564": { "cmt_msg": "Bluetooth: fix the erroneous flush_work() order" }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, "CVE-2020-26560": { "cmt_msg": "" }, @@ -21872,6 +21180,12 @@ "CVE-2020-36385": { "cmt_msg": "RDMA/ucma: Rework ucma_migrate_id() to avoid races with destroy" }, + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" + }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, "CVE-2020-0009": { "cmt_msg": "staging: android: ashmem: Disallow ashmem memory from being remapped" }, @@ -21993,7 +21307,7 @@ "cmt_msg": "" }, "CVE-2020-26555": { - "cmt_msg": "" + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, "CVE-2019-20794": { "cmt_msg": "" @@ -22022,9 +21336,6 @@ "CVE-2019-19045": { "cmt_msg": "net/mlx5: prevent memory leak in mlx5_fpga_conn_create_cq" }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, "CVE-2019-9466": { "cmt_msg": "brcmfmac: add subtype check for event handling in data path" }, @@ -22097,9 +21408,6 @@ "CVE-2019-19816": { "cmt_msg": "btrfs: inode: Verify inode mode to avoid NULL pointer dereference" }, - "CVE-2022-1015": { - "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." - }, "CVE-2022-1016": { "cmt_msg": "netfilter: nf_tables: initialize registers in nft_do_chain()" }, @@ -22166,9 +21474,6 @@ "CVE-2021-3178": { "cmt_msg": "nfsd4: readdirplus shouldn't return parent of export" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, "CVE-2018-7755": { "cmt_msg": "floppy: Do not copy a kernel pointer to user memory in FDGETPRM ioctl" }, @@ -22193,12 +21498,6 @@ "CVE-2022-24958": { "cmt_msg": "usb: gadget: don't release an existing dev->buf" }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers" - }, - "CVE-2022-28893": { - "cmt_msg": "SUNRPC: Ensure we flush any closed sockets before xs_xprt_free()" - }, "CVE-2021-3772": { "cmt_msg": "sctp: use init_tag from inithdr for ABORT chunk" }, @@ -22271,9 +21570,6 @@ "CVE-2013-7445": { "cmt_msg": "" }, - "CVE-2022-0998": { - "cmt_msg": "vdpa: clean up get_config_size ret value handling" - }, "CVE-2018-18445": { "cmt_msg": "bpf: 32-bit RSH verification must truncate input before the ALU op" }, @@ -22301,9 +21597,6 @@ "CVE-2020-14381": { "cmt_msg": "futex: Fix inode life-time issue" }, - "CVE-2022-1158": { - "cmt_msg": "KVM: x86/mmu: do compare-and-exchange of gPTE via the user address" - }, "CVE-2019-19768": { "cmt_msg": "blktrace: Protect q->blk_trace with RCU" }, @@ -22352,9 +21645,6 @@ "CVE-2020-12364": { "cmt_msg": "drm/i915/guc: Update to use firmware v49.0.1" }, - "CVE-2022-0500": { - "cmt_msg": "bpf: Introduce MEM_RDONLY flag" - }, "CVE-2018-18690": { "cmt_msg": "xfs: don't fail when converting shortform attr to long form during ATTR_REPLACE" }, @@ -22370,9 +21660,6 @@ "CVE-2021-4002": { "cmt_msg": "hugetlbfs: flush TLBs correctly after huge_pmd_unshare" }, - "CVE-2022-1055": { - "cmt_msg": "net: sched: fix use-after-free in tc_new_tfilter()" - }, "CVE-2021-38204": { "cmt_msg": "usb: max-3421: Prevent corruption of freed memory" }, @@ -22415,8 +21702,8 @@ "CVE-2018-10902": { "cmt_msg": "ALSA: rawmidi: Change resized buffers atomically" }, - "CVE-2022-26878": { - "cmt_msg": "" + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()" }, "CVE-2018-12930": { "cmt_msg": "" @@ -22485,7 +21772,7 @@ "cmt_msg": "ext4: work around deleting a file with i_nlink == 0 safely" }, "CVE-2019-0146": { - "cmt_msg": "" + "cmt_msg": "i40e: add num_vectors checker in iwarp handler" }, "CVE-2019-0147": { "cmt_msg": "i40e: add num_vectors checker in iwarp handler" @@ -22538,6 +21825,9 @@ "CVE-2019-10639": { "cmt_msg": "netns: provide pure entropy for net_hash_mix()" }, + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default" + }, "CVE-2021-0929": { "cmt_msg": "staging/android/ion: delete dma_buf->kmap/unmap implemenation" }, @@ -22565,9 +21855,6 @@ "CVE-2018-14610": { "cmt_msg": "btrfs: Check that each block group has corresponding chunk at mount time" }, - "CVE-2021-39713": { - "cmt_msg": "net: sched: use Qdisc rcu API instead of relying on rtnl lock" - }, "CVE-2020-28374": { "cmt_msg": "scsi: target: Fix XCOPY NAA identifier lookup" }, @@ -22622,14 +21909,8 @@ "CVE-2021-3864": { "cmt_msg": "" }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, "CVE-2022-1652": { - "cmt_msg": "" - }, - "CVE-2022-1651": { - "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" + "cmt_msg": "floppy: use a statically allocated error counter" }, "CVE-2020-29568": { "cmt_msg": "xen/xenbus: Allow watches discard events before queueing" @@ -22670,9 +21951,6 @@ "CVE-2019-9458": { "cmt_msg": "media: v4l: event: Prevent freeing event subscriptions while accessed" }, - "CVE-2022-1789": { - "cmt_msg": "KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID" - }, "CVE-2016-8660": { "cmt_msg": "" }, @@ -22784,9 +22062,6 @@ "CVE-2021-4149": { "cmt_msg": "btrfs: unlock newly allocated extent buffer after error" }, - "CVE-2021-4148": { - "cmt_msg": "mm: khugepaged: skip huge page collapse for special files" - }, "CVE-2021-3640": { "cmt_msg": "Bluetooth: sco: Fix lock_sock() blockage by memcpy_from_msg()" }, @@ -22877,12 +22152,6 @@ "CVE-2019-18806": { "cmt_msg": "net: qlogic: Fix memory leak in ql_alloc_large_buffers" }, - "CVE-2022-0742": { - "cmt_msg": "ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()" - }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"" - }, "CVE-2019-6974": { "cmt_msg": "kvm: fix kvm_ioctl_create_device() reference counting (CVE-2019-6974)" }, @@ -22899,7 +22168,7 @@ "cmt_msg": "f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr()" }, "CVE-2022-1184": { - "cmt_msg": "" + "cmt_msg": "ext4: verify dir block before splitting it" }, "CVE-2019-19448": { "cmt_msg": "btrfs: only search for left_info if there is no right_info in try_merge_free_space" @@ -22961,9 +22230,6 @@ "CVE-2022-26490": { "cmt_msg": "nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION" }, - "CVE-2022-1043": { - "cmt_msg": "io_uring: fix xa_alloc_cycle() error return value check" - }, "CVE-2022-1048": { "cmt_msg": "ALSA: pcm: Fix races among concurrent hw_params and hw_free calls" }, @@ -23033,9 +22299,6 @@ "CVE-2022-0400": { "cmt_msg": "" }, - "CVE-2021-0707": { - "cmt_msg": "dmabuf: fix use-after-free of dmabuf's file->f_inode" - }, "CVE-2021-38160": { "cmt_msg": "virtio_console: Assure used length from device is limited" }, @@ -23069,9 +22332,6 @@ "CVE-2020-25284": { "cmt_msg": "rbd: require global CAP_SYS_ADMIN for mapping and unmapping" }, - "CVE-2022-25636": { - "cmt_msg": "netfilter: nf_tables_offload: incorrect flow offload action array size" - }, "CVE-2018-18281": { "cmt_msg": "mremap: properly flush TLB before releasing the page" }, @@ -23093,9 +22353,6 @@ "CVE-2019-19378": { "cmt_msg": "" }, - "CVE-2022-1852": { - "cmt_msg": "KVM: x86: avoid calling x86 emulator without a decoded instruction" - }, "CVE-2020-4788": { "cmt_msg": "powerpc/64s: flush L1D on kernel entry" }, @@ -23135,9 +22392,6 @@ "CVE-2019-19526": { "cmt_msg": "NFC: pn533: fix use-after-free and memleaks" }, - "CVE-2021-33135": { - "cmt_msg": "" - }, "CVE-2019-19523": { "cmt_msg": "USB: adutux: fix use-after-free on disconnect" }, @@ -23162,9 +22416,6 @@ "CVE-2021-41864": { "cmt_msg": "bpf: Fix integer overflow in prealloc_elems_and_freelist()" }, - "CVE-2022-1998": { - "cmt_msg": "fanotify: Fix stale file descriptor in copy_event_to_user()" - }, "CVE-2018-18021": { "cmt_msg": "arm64: KVM: Tighten guest core register access from userspace" }, @@ -23270,9 +22521,6 @@ "CVE-2019-3874": { "cmt_msg": "sctp: implement memory accounting on tx path" }, - "CVE-2022-0171": { - "cmt_msg": "" - }, "CVE-2018-10877": { "cmt_msg": "ext4: verify the depth of extent tree in ext4_find_extent()" }, @@ -23297,9 +22545,6 @@ "CVE-2021-3483": { "cmt_msg": "firewire: nosy: Fix a use-after-free bug in nosy_ioctl()" }, - "CVE-2022-29156": { - "cmt_msg": "RDMA/rtrs-clt: Fix possible double free in error case" - }, "CVE-2021-38300": { "cmt_msg": "bpf, mips: Validate conditional branch offsets" }, @@ -23342,21 +22587,12 @@ "CVE-2021-3573": { "cmt_msg": "Bluetooth: use correct lock to prevent UAF of hdev object" }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, "CVE-2022-1974": { "cmt_msg": "nfc: replace improper check device_is_registered() in netlink related functions" }, "CVE-2022-1975": { "cmt_msg": "NFC: netlink: fix sleep in atomic bug when firmware download timeout" }, - "CVE-2022-1972": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" - }, "CVE-2021-28972": { "cmt_msg": "PCI: rpadlpar: Fix potential drc_name corruption in store functions" }, @@ -23432,9 +22668,6 @@ "CVE-2021-28951": { "cmt_msg": "io_uring: ensure that SQPOLL thread is started for exit" }, - "CVE-2022-1671": { - "cmt_msg": "rxrpc: fix some null-ptr-deref bugs in server_key.c" - }, "CVE-2021-3653": { "cmt_msg": "KVM: nSVM: avoid picking up unsupported bits from L2 in int_ctl (CVE-2021-3653)" }, @@ -23582,18 +22815,12 @@ "CVE-2019-15505": { "cmt_msg": "media: technisat-usb2: break out of loop at end of buffer" }, - "CVE-2022-1516": { - "cmt_msg": "net/x25: Fix null-ptr-deref caused by x25_disconnect" - }, "CVE-2015-2877": { "cmt_msg": "" }, "CVE-2020-9383": { "cmt_msg": "floppy: check FDC index for errors before assigning it" }, - "CVE-2022-29582": { - "cmt_msg": "io_uring: fix race between timeout flush and removal" - }, "CVE-2019-16089": { "cmt_msg": "" }, @@ -25148,25 +24375,29 @@ } }, "4.19.139": { - "CVE-2020-36386": { - "cmt_msg": "Bluetooth: Fix slab-out-of-bounds read in hci_extended_inquiry_result_evt()", - "cmt_id": "8c4a649c20fec015ebb326f36b47d4e39d9ff5b7" - }, "CVE-2019-0148": { "cmt_msg": "i40e: Wrong truncation from u16 to u8", "cmt_id": "48a9be93ff2c5a09e308ef93560ea1f4ecbd22f6" }, - "CVE-2019-0147": { - "cmt_msg": "i40e: add num_vectors checker in iwarp handler", - "cmt_id": "43a7e1cf606e96ee43f8897129972f0b79390367" - }, "CVE-2020-14331": { "cmt_msg": "vgacon: Fix for missing check in scrollback handling", "cmt_id": "61219546f3036d2b4a1898be7a38da22e97a3b62" }, + "CVE-2019-0146": { + "cmt_msg": "i40e: add num_vectors checker in iwarp handler", + "cmt_id": "43a7e1cf606e96ee43f8897129972f0b79390367" + }, + "CVE-2019-0147": { + "cmt_msg": "i40e: add num_vectors checker in iwarp handler", + "cmt_id": "43a7e1cf606e96ee43f8897129972f0b79390367" + }, "CVE-2019-0145": { "cmt_msg": "i40e: add num_vectors checker in iwarp handler", "cmt_id": "43a7e1cf606e96ee43f8897129972f0b79390367" + }, + "CVE-2020-36386": { + "cmt_msg": "Bluetooth: Fix slab-out-of-bounds read in hci_extended_inquiry_result_evt()", + "cmt_id": "8c4a649c20fec015ebb326f36b47d4e39d9ff5b7" } }, "4.19.140": { @@ -25651,6 +24882,10 @@ "CVE-2021-0129": { "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical", "cmt_id": "30126d4ba73119565f1748b116b9869ac6bbda6b" + }, + "CVE-2020-26555": { + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical", + "cmt_id": "30126d4ba73119565f1748b116b9869ac6bbda6b" } }, "4.19.193": { @@ -26242,10 +25477,6 @@ "cmt_msg": "can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path", "cmt_id": "a8bba9fd73775e66b4021b18f2193f769ce48a59" }, - "CVE-2022-1516": { - "cmt_msg": "net/x25: Fix null-ptr-deref caused by x25_disconnect", - "cmt_id": "4c240c5a105557e4546d0836e694868f22fd09b0" - }, "CVE-2022-1011": { "cmt_msg": "fuse: fix pipe buffer lifetime for direct_io", "cmt_id": "99db28212be68030c1db3a525f6bbdce39b039e9" @@ -26256,16 +25487,16 @@ "cmt_msg": "ax25: Fix refcount leaks caused by ax25_cb_del()", "cmt_id": "de55a1338e6a48ff1e41ea8db1432496fbe2a62b" }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers", - "cmt_id": "512f09df261b51b088f17d86dbdf300a3492523d" - }, "CVE-2022-28388": { "cmt_msg": "can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path", "cmt_id": "8eb78da898079c0d7250c32ebf0c35fb81737abe" } }, "4.19.241": { + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default", + "cmt_id": "0e535976774504af36fab1dfb54f3d4d6cc577a9" + }, "CVE-2022-1836": { "cmt_msg": "floppy: disable FDRAWCMD by default", "cmt_id": "0e535976774504af36fab1dfb54f3d4d6cc577a9" @@ -26300,13 +25531,13 @@ } }, "4.19.245": { + "CVE-2022-1652": { + "cmt_msg": "floppy: use a statically allocated error counter", + "cmt_id": "3392d8711ad9e5b688999c948fd36d798c0d075d" + }, "CVE-2022-1729": { "cmt_msg": "perf: Fix sys_perf_event_open() race against self", "cmt_id": "6cdd53a49aa7413e53c14ece27d826f0b628b18a" - }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"", - "cmt_id": "06cb238b0f7ac1669cb06390704c61794724c191" } }, "4.19.246": { @@ -26320,6 +25551,14 @@ } }, "4.19.247": { + "CVE-2022-32250": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier", + "cmt_id": "ed44398b45add3d9be56b7457cc9e05282e518b4" + }, + "CVE-2022-1184": { + "cmt_msg": "ext4: verify dir block before splitting it", + "cmt_id": "78398c2b2cc14f9a9c8592cf6d334c5a479ed611" + }, "CVE-2022-1966": { "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier", "cmt_id": "ed44398b45add3d9be56b7457cc9e05282e518b4" @@ -26329,6 +25568,16 @@ "cmt_id": "a0e38a2808ea708beb4196a8873cecc23efb8e64" } }, + "4.19.249": { + "CVE-2022-32296": { + "cmt_msg": "tcp: increase source port perturb table to 2^16", + "cmt_id": "514cd2859c5017fdc487165b093b328e24afe954" + }, + "CVE-2022-0812": { + "cmt_msg": "xprtrdma: fix incorrect header size calculations", + "cmt_id": "4103bc54d8684a099615ae1fbab0590cf2167024" + } + }, "outstanding": { "CVE-2021-0929": { "cmt_msg": "staging/android/ion: delete dma_buf->kmap/unmap implemenation" @@ -26339,9 +25588,6 @@ "CVE-2020-26557": { "cmt_msg": "" }, - "CVE-2020-26555": { - "cmt_msg": "" - }, "CVE-2019-20794": { "cmt_msg": "" }, @@ -26354,9 +25600,6 @@ "CVE-2022-0168": { "cmt_msg": "cifs: fix NULL ptr dereference in smb2_ioctl_query_info()" }, - "CVE-2022-1998": { - "cmt_msg": "fanotify: Fix stale file descriptor in copy_event_to_user()" - }, "CVE-2018-20854": { "cmt_msg": "phy: ocelot-serdes: fix out-of-bounds read" }, @@ -26366,12 +25609,6 @@ "CVE-2019-19378": { "cmt_msg": "" }, - "CVE-2022-0995": { - "cmt_msg": "watch_queue: Fix filter limit check" - }, - "CVE-2022-0998": { - "cmt_msg": "vdpa: clean up get_config_size ret value handling" - }, "CVE-2019-15794": { "cmt_msg": "ovl: fix reference counting in ovl_mmap error path" }, @@ -26423,36 +25660,15 @@ "CVE-2019-19814": { "cmt_msg": "" }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, - "CVE-2022-1015": { - "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." - }, - "CVE-2022-1652": { - "cmt_msg": "" - }, - "CVE-2022-1651": { - "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" - }, - "CVE-2022-1852": { - "cmt_msg": "KVM: x86: avoid calling x86 emulator without a decoded instruction" - }, "CVE-2019-19241": { "cmt_msg": "io_uring: async workers should inherit the user creds" }, "CVE-2021-26934": { "cmt_msg": "" }, - "CVE-2022-25636": { - "cmt_msg": "netfilter: nf_tables_offload: incorrect flow offload action array size" - }, "CVE-2022-1789": { "cmt_msg": "KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID" }, - "CVE-2022-2078": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, "CVE-2016-8660": { "cmt_msg": "" }, @@ -26477,9 +25693,6 @@ "CVE-2008-2544": { "cmt_msg": "" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, "CVE-2019-20908": { "cmt_msg": "efi: Restrict efivar_ssdt_load when the kernel is locked down" }, @@ -26507,12 +25720,6 @@ "CVE-2020-26142": { "cmt_msg": "" }, - "CVE-2022-28893": { - "cmt_msg": "SUNRPC: Ensure we flush any closed sockets before xs_xprt_free()" - }, - "CVE-2022-29156": { - "cmt_msg": "RDMA/rtrs-clt: Fix possible double free in error case" - }, "CVE-2021-20177": { "cmt_msg": "netfilter: add and use nf_hook_slow_list()" }, @@ -26525,6 +25732,9 @@ "CVE-2020-10708": { "cmt_msg": "" }, + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()" + }, "CVE-2021-4023": { "cmt_msg": "io-wq: fix cancellation on create-worker failure" }, @@ -26546,42 +25756,18 @@ "CVE-2012-4542": { "cmt_msg": "" }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, - "CVE-2022-0812": { - "cmt_msg": "xprtrdma: fix incorrect header size calculations" - }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, - "CVE-2022-1679": { - "cmt_msg": "" - }, - "CVE-2022-1972": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, "CVE-2013-7445": { "cmt_msg": "" }, "CVE-2005-3660": { "cmt_msg": "" }, - "CVE-2021-33135": { - "cmt_msg": "" - }, "CVE-2022-1508": { "cmt_msg": "io_uring: reexpand under-reexpanded iters" }, - "CVE-2022-1158": { - "cmt_msg": "KVM: x86/mmu: do compare-and-exchange of gPTE via the user address" - }, "CVE-2021-4159": { "cmt_msg": "bpf: Verifer, adjust_scalar_min_max_vals to always call update_reg_bounds()" }, - "CVE-2022-32296": { - "cmt_msg": "tcp: increase source port perturb table to 2^16" - }, "CVE-2021-0695": { "cmt_msg": "" }, @@ -26609,9 +25795,6 @@ "CVE-2021-3714": { "cmt_msg": "" }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, "CVE-2019-12455": { "cmt_msg": "clk-sunxi: fix a missing-check bug in sunxi_divs_clk_setup()" }, @@ -26630,27 +25813,12 @@ "CVE-2020-12363": { "cmt_msg": "drm/i915/guc: Update to use firmware v49.0.1" }, - "CVE-2022-0742": { - "cmt_msg": "ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()" - }, "CVE-2020-12364": { "cmt_msg": "drm/i915/guc: Update to use firmware v49.0.1" }, - "CVE-2022-20153": { - "cmt_msg": "io_uring: return back safer resurrect" - }, - "CVE-2022-0500": { - "cmt_msg": "bpf: Introduce MEM_RDONLY flag" - }, - "CVE-2022-1055": { - "cmt_msg": "net: sched: fix use-after-free in tc_new_tfilter()" - }, "CVE-2022-0480": { "cmt_msg": "memcg: enable accounting for file lock caches" }, - "CVE-2022-1184": { - "cmt_msg": "" - }, "CVE-2020-26141": { "cmt_msg": "ath10k: Fix TKIP Michael MIC verification for PCIe" }, @@ -26672,12 +25840,6 @@ "CVE-2018-17977": { "cmt_msg": "" }, - "CVE-2022-26878": { - "cmt_msg": "" - }, - "CVE-2022-29582": { - "cmt_msg": "io_uring: fix race between timeout flush and removal" - }, "CVE-2022-1116": { "cmt_msg": "" }, @@ -26690,12 +25852,6 @@ "CVE-2018-12931": { "cmt_msg": "" }, - "CVE-2021-4148": { - "cmt_msg": "mm: khugepaged: skip huge page collapse for special files" - }, - "CVE-2022-1043": { - "cmt_msg": "io_uring: fix xa_alloc_cycle() error return value check" - }, "CVE-2021-39801": { "cmt_msg": "" }, @@ -26717,6 +25873,12 @@ "CVE-2019-12381": { "cmt_msg": "ip_sockglue: Fix missing-check bug in ip_ra_control()" }, + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" + }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, "CVE-2022-21499": { "cmt_msg": "lockdown: also lock down previous kgdb use" }, @@ -26753,27 +25915,18 @@ "CVE-2015-2877": { "cmt_msg": "" }, - "CVE-2022-0171": { - "cmt_msg": "" - }, - "CVE-2019-0146": { - "cmt_msg": "" - }, "CVE-2019-16089": { "cmt_msg": "" }, "CVE-2022-0400": { "cmt_msg": "" }, - "CVE-2021-0707": { - "cmt_msg": "dmabuf: fix use-after-free of dmabuf's file->f_inode" + "CVE-2022-1679": { + "cmt_msg": "" }, "CVE-2019-11191": { "cmt_msg": "x86: Deprecate a.out support" }, - "CVE-2022-1671": { - "cmt_msg": "rxrpc: fix some null-ptr-deref bugs in server_key.c" - }, "CVE-2021-3847": { "cmt_msg": "" }, @@ -26789,9 +25942,6 @@ "CVE-2021-32078": { "cmt_msg": "ARM: footbridge: remove personal server platform" }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" - }, "CVE-2019-10220": { "cmt_msg": "Convert filldir[64]() from __put_user() to unsafe_put_user()" }, @@ -27012,9 +26162,6 @@ "CVE-2020-24586": { "cmt_msg": "mac80211: prevent mixed key and fragment cache attacks" }, - "CVE-2022-0995": { - "cmt_msg": "watch_queue: Fix filter limit check" - }, "CVE-2021-0129": { "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, @@ -27024,6 +26171,9 @@ "CVE-2021-3444": { "cmt_msg": "bpf: Fix truncation handling for mod32 dst reg wrt zero" }, + "CVE-2022-32250": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier" + }, "CVE-2019-9506": { "cmt_msg": "Bluetooth: Fix faulty expression for minimum encryption key size check" }, @@ -27090,9 +26240,6 @@ "CVE-2019-14835": { "cmt_msg": "vhost: make sure log_num < in_num" }, - "CVE-2022-2078": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, "CVE-2019-12379": { "cmt_msg": "consolemap: Fix a memory leaking bug in drivers/tty/vt/consolemap.c" }, @@ -27234,9 +26381,6 @@ "CVE-2019-18680": { "cmt_msg": "" }, - "CVE-2022-20153": { - "cmt_msg": "io_uring: return back safer resurrect" - }, "CVE-2022-23038": { "cmt_msg": "xen/grant-table: add gnttab_try_end_foreign_access()" }, @@ -27375,9 +26519,6 @@ "CVE-2019-19081": { "cmt_msg": "nfp: flower: fix memory leak in nfp_flower_spawn_vnic_reprs" }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, "CVE-2020-26560": { "cmt_msg": "" }, @@ -27453,6 +26594,12 @@ "CVE-2020-36385": { "cmt_msg": "RDMA/ucma: Rework ucma_migrate_id() to avoid races with destroy" }, + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" + }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, "CVE-2020-0009": { "cmt_msg": "staging: android: ashmem: Disallow ashmem memory from being remapped" }, @@ -27553,7 +26700,7 @@ "cmt_msg": "" }, "CVE-2020-26555": { - "cmt_msg": "" + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, "CVE-2019-20794": { "cmt_msg": "" @@ -27579,9 +26726,6 @@ "CVE-2019-19045": { "cmt_msg": "net/mlx5: prevent memory leak in mlx5_fpga_conn_create_cq" }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, "CVE-2019-9466": { "cmt_msg": "brcmfmac: add subtype check for event handling in data path" }, @@ -27648,9 +26792,6 @@ "CVE-2019-19816": { "cmt_msg": "btrfs: inode: Verify inode mode to avoid NULL pointer dereference" }, - "CVE-2022-1015": { - "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." - }, "CVE-2022-1016": { "cmt_msg": "netfilter: nf_tables: initialize registers in nft_do_chain()" }, @@ -27714,9 +26855,6 @@ "CVE-2021-3178": { "cmt_msg": "nfsd4: readdirplus shouldn't return parent of export" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, "CVE-2019-15031": { "cmt_msg": "powerpc/tm: Fix restoring FP/VMX facility incorrectly on interrupts" }, @@ -27738,12 +26876,6 @@ "CVE-2022-24958": { "cmt_msg": "usb: gadget: don't release an existing dev->buf" }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers" - }, - "CVE-2022-28893": { - "cmt_msg": "SUNRPC: Ensure we flush any closed sockets before xs_xprt_free()" - }, "CVE-2021-3772": { "cmt_msg": "sctp: use init_tag from inithdr for ABORT chunk" }, @@ -27840,9 +26972,6 @@ "CVE-2020-14381": { "cmt_msg": "futex: Fix inode life-time issue" }, - "CVE-2022-1158": { - "cmt_msg": "KVM: x86/mmu: do compare-and-exchange of gPTE via the user address" - }, "CVE-2019-19768": { "cmt_msg": "blktrace: Protect q->blk_trace with RCU" }, @@ -27897,9 +27026,6 @@ "CVE-2019-10639": { "cmt_msg": "netns: provide pure entropy for net_hash_mix()" }, - "CVE-2022-0500": { - "cmt_msg": "bpf: Introduce MEM_RDONLY flag" - }, "CVE-2022-28388": { "cmt_msg": "can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path" }, @@ -27912,9 +27038,6 @@ "CVE-2021-4002": { "cmt_msg": "hugetlbfs: flush TLBs correctly after huge_pmd_unshare" }, - "CVE-2022-1055": { - "cmt_msg": "net: sched: fix use-after-free in tc_new_tfilter()" - }, "CVE-2021-38204": { "cmt_msg": "usb: max-3421: Prevent corruption of freed memory" }, @@ -27951,8 +27074,8 @@ "CVE-2022-0617": { "cmt_msg": "udf: Fix NULL ptr deref when converting from inline format" }, - "CVE-2022-26878": { - "cmt_msg": "" + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()" }, "CVE-2018-12930": { "cmt_msg": "" @@ -28024,7 +27147,7 @@ "cmt_msg": "ext4: work around deleting a file with i_nlink == 0 safely" }, "CVE-2019-0146": { - "cmt_msg": "" + "cmt_msg": "i40e: add num_vectors checker in iwarp handler" }, "CVE-2019-0147": { "cmt_msg": "i40e: add num_vectors checker in iwarp handler" @@ -28074,6 +27197,9 @@ "CVE-2019-19531": { "cmt_msg": "usb: yurex: Fix use-after-free in yurex_delete" }, + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default" + }, "CVE-2021-0929": { "cmt_msg": "staging/android/ion: delete dma_buf->kmap/unmap implemenation" }, @@ -28092,9 +27218,6 @@ "CVE-2022-0168": { "cmt_msg": "cifs: fix NULL ptr dereference in smb2_ioctl_query_info()" }, - "CVE-2021-39713": { - "cmt_msg": "net: sched: use Qdisc rcu API instead of relying on rtnl lock" - }, "CVE-2020-28374": { "cmt_msg": "scsi: target: Fix XCOPY NAA identifier lookup" }, @@ -28143,14 +27266,8 @@ "CVE-2021-3864": { "cmt_msg": "" }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, "CVE-2022-1652": { - "cmt_msg": "" - }, - "CVE-2022-1651": { - "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" + "cmt_msg": "floppy: use a statically allocated error counter" }, "CVE-2020-29568": { "cmt_msg": "xen/xenbus: Allow watches discard events before queueing" @@ -28188,9 +27305,6 @@ "CVE-2020-0423": { "cmt_msg": "binder: fix UAF when releasing todo list" }, - "CVE-2022-1789": { - "cmt_msg": "KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID" - }, "CVE-2016-8660": { "cmt_msg": "" }, @@ -28290,9 +27404,6 @@ "CVE-2021-4149": { "cmt_msg": "btrfs: unlock newly allocated extent buffer after error" }, - "CVE-2021-4148": { - "cmt_msg": "mm: khugepaged: skip huge page collapse for special files" - }, "CVE-2021-3640": { "cmt_msg": "Bluetooth: sco: Fix lock_sock() blockage by memcpy_from_msg()" }, @@ -28377,12 +27488,6 @@ "CVE-2019-18806": { "cmt_msg": "net: qlogic: Fix memory leak in ql_alloc_large_buffers" }, - "CVE-2022-0742": { - "cmt_msg": "ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()" - }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"" - }, "CVE-2019-6974": { "cmt_msg": "kvm: fix kvm_ioctl_create_device() reference counting (CVE-2019-6974)" }, @@ -28399,7 +27504,7 @@ "cmt_msg": "f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr()" }, "CVE-2022-1184": { - "cmt_msg": "" + "cmt_msg": "ext4: verify dir block before splitting it" }, "CVE-2019-19448": { "cmt_msg": "btrfs: only search for left_info if there is no right_info in try_merge_free_space" @@ -28464,9 +27569,6 @@ "CVE-2022-26490": { "cmt_msg": "nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION" }, - "CVE-2022-1043": { - "cmt_msg": "io_uring: fix xa_alloc_cycle() error return value check" - }, "CVE-2022-1048": { "cmt_msg": "ALSA: pcm: Fix races among concurrent hw_params and hw_free calls" }, @@ -28533,9 +27635,6 @@ "CVE-2022-0400": { "cmt_msg": "" }, - "CVE-2021-0707": { - "cmt_msg": "dmabuf: fix use-after-free of dmabuf's file->f_inode" - }, "CVE-2021-38160": { "cmt_msg": "virtio_console: Assure used length from device is limited" }, @@ -28566,9 +27665,6 @@ "CVE-2020-25284": { "cmt_msg": "rbd: require global CAP_SYS_ADMIN for mapping and unmapping" }, - "CVE-2022-25636": { - "cmt_msg": "netfilter: nf_tables_offload: incorrect flow offload action array size" - }, "CVE-2019-8912": { "cmt_msg": "net: crypto set sk to NULL when af_alg_release." }, @@ -28620,9 +27716,6 @@ "CVE-2019-19526": { "cmt_msg": "NFC: pn533: fix use-after-free and memleaks" }, - "CVE-2021-33135": { - "cmt_msg": "" - }, "CVE-2019-19523": { "cmt_msg": "USB: adutux: fix use-after-free on disconnect" }, @@ -28650,21 +27743,12 @@ "CVE-2020-10757": { "cmt_msg": "mm: Fix mremap not considering huge pmd devmap" }, - "CVE-2022-1998": { - "cmt_msg": "fanotify: Fix stale file descriptor in copy_event_to_user()" - }, - "CVE-2022-1852": { - "cmt_msg": "KVM: x86: avoid calling x86 emulator without a decoded instruction" - }, "CVE-2021-37576": { "cmt_msg": "KVM: PPC: Book3S: Fix H_RTAS rets buffer overflow" }, "CVE-2019-8980": { "cmt_msg": "exec: Fix mem leak in kernel_read_file" }, - "CVE-2022-0998": { - "cmt_msg": "vdpa: clean up get_config_size ret value handling" - }, "CVE-2021-33098": { "cmt_msg": "ixgbe: fix large MTU request from VF" }, @@ -28749,9 +27833,6 @@ "CVE-2019-3874": { "cmt_msg": "sctp: implement memory accounting on tx path" }, - "CVE-2022-0171": { - "cmt_msg": "" - }, "CVE-2010-4563": { "cmt_msg": "" }, @@ -28767,9 +27848,6 @@ "CVE-2021-3483": { "cmt_msg": "firewire: nosy: Fix a use-after-free bug in nosy_ioctl()" }, - "CVE-2022-29156": { - "cmt_msg": "RDMA/rtrs-clt: Fix possible double free in error case" - }, "CVE-2021-38300": { "cmt_msg": "bpf, mips: Validate conditional branch offsets" }, @@ -28809,21 +27887,12 @@ "CVE-2021-3573": { "cmt_msg": "Bluetooth: use correct lock to prevent UAF of hdev object" }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, "CVE-2022-1974": { "cmt_msg": "nfc: replace improper check device_is_registered() in netlink related functions" }, "CVE-2022-1975": { "cmt_msg": "NFC: netlink: fix sleep in atomic bug when firmware download timeout" }, - "CVE-2022-1972": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" - }, "CVE-2021-28972": { "cmt_msg": "PCI: rpadlpar: Fix potential drc_name corruption in store functions" }, @@ -28893,9 +27962,6 @@ "CVE-2021-28951": { "cmt_msg": "io_uring: ensure that SQPOLL thread is started for exit" }, - "CVE-2022-1671": { - "cmt_msg": "rxrpc: fix some null-ptr-deref bugs in server_key.c" - }, "CVE-2021-3653": { "cmt_msg": "KVM: nSVM: avoid picking up unsupported bits from L2 in int_ctl (CVE-2021-3653)" }, @@ -29052,18 +28118,12 @@ "CVE-2019-15504": { "cmt_msg": "rsi: fix a double free bug in rsi_91x_deinit()" }, - "CVE-2022-1516": { - "cmt_msg": "net/x25: Fix null-ptr-deref caused by x25_disconnect" - }, "CVE-2015-2877": { "cmt_msg": "" }, "CVE-2020-9383": { "cmt_msg": "floppy: check FDC index for errors before assigning it" }, - "CVE-2022-29582": { - "cmt_msg": "io_uring: fix race between timeout flush and removal" - }, "CVE-2019-16089": { "cmt_msg": "" }, @@ -30660,8 +29720,8 @@ "CVE-2019-19966": { "cmt_msg": "media: cpia2: Fix use-after-free in cpia2_exit" }, - "CVE-2021-3894": { - "cmt_msg": "sctp: account stream padding length for reconf chunk" + "CVE-2022-1184": { + "cmt_msg": "ext4: verify dir block before splitting it" }, "CVE-2020-24587": { "cmt_msg": "mac80211: prevent mixed key and fragment cache attacks" @@ -30747,9 +29807,6 @@ "CVE-2019-14835": { "cmt_msg": "vhost: make sure log_num < in_num" }, - "CVE-2022-2078": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, "CVE-2018-1000204": { "cmt_msg": "scsi: sg: allocate with __GFP_ZERO in sg_build_indirect()" }, @@ -30783,9 +29840,6 @@ "CVE-2022-0002": { "cmt_msg": "x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE" }, - "CVE-2021-39713": { - "cmt_msg": "net: sched: use Qdisc rcu API instead of relying on rtnl lock" - }, "CVE-2015-4178": { "cmt_msg": "fs_pin: Allow for the possibility that m_list or s_list go unused." }, @@ -30801,9 +29855,6 @@ "CVE-2017-7518": { "cmt_msg": "KVM: x86: fix singlestepping over syscall" }, - "CVE-2021-39714": { - "cmt_msg": "staging: android: ion: Drop ion_map_kernel interface" - }, "CVE-2019-11477": { "cmt_msg": "tcp: limit payload size of sacked skbs" }, @@ -30915,17 +29966,11 @@ "CVE-2015-8952": { "cmt_msg": "ext2: convert to mbcache2" }, - "CVE-2022-20153": { - "cmt_msg": "io_uring: return back safer resurrect" - }, "CVE-2022-23038": { "cmt_msg": "xen/grant-table: add gnttab_try_end_foreign_access()" }, - "CVE-2022-0995": { - "cmt_msg": "watch_queue: Fix filter limit check" - }, - "CVE-2022-20154": { - "cmt_msg": "sctp: use call_rcu to free endpoint" + "CVE-2022-23039": { + "cmt_msg": "xen/gntalloc: don't use gnttab_query_foreign_access()" }, "CVE-2021-27363": { "cmt_msg": "scsi: iscsi: Restrict sessions and handles to admin capabilities" @@ -30978,9 +30023,6 @@ "CVE-2019-15212": { "cmt_msg": "USB: rio500: refuse more than one device at a time" }, - "CVE-2021-33135": { - "cmt_msg": "" - }, "CVE-2015-1350": { "cmt_msg": "fs: Avoid premature clearing of capabilities" }, @@ -31035,6 +30077,9 @@ "CVE-2020-15393": { "cmt_msg": "usb: usbtest: fix missing kfree(dev->buf) in usbtest_disconnect" }, + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default" + }, "CVE-2021-3564": { "cmt_msg": "Bluetooth: fix the erroneous flush_work() order" }, @@ -31053,9 +30098,6 @@ "CVE-2020-26560": { "cmt_msg": "" }, - "CVE-2022-1516": { - "cmt_msg": "net/x25: Fix null-ptr-deref caused by x25_disconnect" - }, "CVE-2017-13080": { "cmt_msg": "mac80211: accept key reinstall without changing anything" }, @@ -31122,9 +30164,6 @@ "CVE-2021-4002": { "cmt_msg": "hugetlbfs: flush TLBs correctly after huge_pmd_unshare" }, - "CVE-2022-0998": { - "cmt_msg": "vdpa: clean up get_config_size ret value handling" - }, "CVE-2018-9465": { "cmt_msg": "binder: fix proc->files use-after-free" }, @@ -31161,6 +30200,12 @@ "CVE-2022-1048": { "cmt_msg": "ALSA: pcm: Fix races among concurrent hw_params and hw_free calls" }, + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" + }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, "CVE-2020-0009": { "cmt_msg": "staging: android: ashmem: Disallow ashmem memory from being remapped" }, @@ -31239,9 +30284,6 @@ "CVE-2014-1874": { "cmt_msg": "SELinux: Fix kernel BUG on empty security contexts." }, - "CVE-2022-30594": { - "cmt_msg": "ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE" - }, "CVE-2022-20148": { "cmt_msg": "f2fs: fix UAF in f2fs_available_free_memory" }, @@ -31269,9 +30311,6 @@ "CVE-2021-38208": { "cmt_msg": "nfc: fix NULL ptr dereference in llcp_sock_getname() after failed connect" }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"" - }, "CVE-2017-18232": { "cmt_msg": "scsi: libsas: direct call probe and destruct" }, @@ -31291,7 +30330,7 @@ "cmt_msg": "NFC: llcp: Limit size of SDP URI" }, "CVE-2020-26555": { - "cmt_msg": "" + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, "CVE-2018-9517": { "cmt_msg": "l2tp: pass tunnel pointer to ->session_create()" @@ -31329,9 +30368,6 @@ "CVE-2018-9568": { "cmt_msg": "net: Set sk_prot_creator when cloning sockets to the right proto" }, - "CVE-2022-0644": { - "cmt_msg": "vfs: check fd has read access in kernel_read_file_from_fd()" - }, "CVE-2018-13053": { "cmt_msg": "alarmtimer: Prevent overflow for relative nanosleep" }, @@ -31392,9 +30428,6 @@ "CVE-2019-9453": { "cmt_msg": "f2fs: fix to avoid accessing xattr across the boundary" }, - "CVE-2022-1016": { - "cmt_msg": "netfilter: nf_tables: initialize registers in nft_do_chain()" - }, "CVE-2018-18710": { "cmt_msg": "cdrom: fix improper type cast, which can leat to information leak." }, @@ -31455,9 +30488,6 @@ "CVE-2021-3178": { "cmt_msg": "nfsd4: readdirplus shouldn't return parent of export" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, "CVE-2020-10690": { "cmt_msg": "ptp: fix the race between the release of ptp_clock and cdev" }, @@ -31488,12 +30518,6 @@ "CVE-2022-24958": { "cmt_msg": "usb: gadget: don't release an existing dev->buf" }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers" - }, - "CVE-2022-28893": { - "cmt_msg": "SUNRPC: Ensure we flush any closed sockets before xs_xprt_free()" - }, "CVE-2021-3772": { "cmt_msg": "sctp: use init_tag from inithdr for ABORT chunk" }, @@ -31503,9 +30527,6 @@ "CVE-2021-37159": { "cmt_msg": "usb: hso: fix error handling code of hso_create_net_device" }, - "CVE-2021-39711": { - "cmt_msg": "bpf: fix panic due to oob in bpf_prog_test_run_skb" - }, "CVE-2021-34556": { "cmt_msg": "bpf: Introduce BPF nospec instruction for mitigating Spectre v4" }, @@ -31545,9 +30566,6 @@ "CVE-2019-11091": { "cmt_msg": "s390/speculation: Support 'mitigations=' cmdline option" }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, "CVE-2019-18660": { "cmt_msg": "powerpc/book3s64: Fix link stack flush on context switch" }, @@ -31602,9 +30620,6 @@ "CVE-2014-3180": { "cmt_msg": "compat: nanosleep: Clarify error handling" }, - "CVE-2022-1158": { - "cmt_msg": "KVM: x86/mmu: do compare-and-exchange of gPTE via the user address" - }, "CVE-2019-19768": { "cmt_msg": "blktrace: Protect q->blk_trace with RCU" }, @@ -31662,15 +30677,9 @@ "CVE-2019-12881": { "cmt_msg": "drm/i915/userptr: reject zero user_size" }, - "CVE-2022-28389": { - "cmt_msg": "can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path" - }, "CVE-2018-1000004": { "cmt_msg": "ALSA: seq: Make ioctls race-free" }, - "CVE-2022-0500": { - "cmt_msg": "bpf: Introduce MEM_RDONLY flag" - }, "CVE-2018-18690": { "cmt_msg": "xfs: don't fail when converting shortform attr to long form during ATTR_REPLACE" }, @@ -31689,9 +30698,6 @@ "CVE-2016-7917": { "cmt_msg": "netfilter: nfnetlink: correctly validate length of batch messages" }, - "CVE-2022-1055": { - "cmt_msg": "net: sched: fix use-after-free in tc_new_tfilter()" - }, "CVE-2019-16232": { "cmt_msg": "libertas: fix a potential NULL pointer dereference" }, @@ -31725,11 +30731,8 @@ "CVE-2018-7273": { "cmt_msg": "printk: hash addresses printed with %p" }, - "CVE-2022-0617": { - "cmt_msg": "udf: Fix NULL ptr deref when converting from inline format" - }, - "CVE-2022-26878": { - "cmt_msg": "" + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()" }, "CVE-2019-19531": { "cmt_msg": "usb: yurex: Fix use-after-free in yurex_delete" @@ -31812,9 +30815,6 @@ "CVE-2022-23960": { "cmt_msg": "ARM: report Spectre v2 status through sysfs" }, - "CVE-2019-0146": { - "cmt_msg": "" - }, "CVE-2020-10942": { "cmt_msg": "vhost: Check docket sk_family instead of call getname" }, @@ -31990,10 +30990,7 @@ "cmt_msg": "ext4: fix races between page faults and hole punching" }, "CVE-2022-1652": { - "cmt_msg": "" - }, - "CVE-2022-1651": { - "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" + "cmt_msg": "floppy: use a statically allocated error counter" }, "CVE-2015-8830": { "cmt_msg": "aio: lift iov_iter_init() into aio_setup_..._rw()" @@ -32013,9 +31010,6 @@ "CVE-2016-10741": { "cmt_msg": "xfs: don't BUG() on mixed direct and mapped I/O" }, - "CVE-2022-27223": { - "cmt_msg": "USB: gadget: validate endpoint index for xilinx udc" - }, "CVE-2019-3846": { "cmt_msg": "mwifiex: Fix possible buffer overflows at parsing bss descriptor" }, @@ -32025,15 +31019,9 @@ "CVE-2019-9458": { "cmt_msg": "media: v4l: event: Prevent freeing event subscriptions while accessed" }, - "CVE-2022-1789": { - "cmt_msg": "KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID" - }, "CVE-2017-9242": { "cmt_msg": "ipv6: fix out of bound writes in __ip6_append_data()" }, - "CVE-2022-1419": { - "cmt_msg": "drm/vgem: Close use-after-free race in vgem_gem_create" - }, "CVE-2020-14314": { "cmt_msg": "ext4: fix potential negative array index in do_split()" }, @@ -32148,15 +31136,9 @@ "CVE-2021-4149": { "cmt_msg": "btrfs: unlock newly allocated extent buffer after error" }, - "CVE-2021-4148": { - "cmt_msg": "mm: khugepaged: skip huge page collapse for special files" - }, "CVE-2021-3640": { "cmt_msg": "Bluetooth: sco: Fix lock_sock() blockage by memcpy_from_msg()" }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, "CVE-2017-7618": { "cmt_msg": "crypto: ahash - Fix EINPROGRESS notification callback" }, @@ -32250,9 +31232,6 @@ "CVE-2019-18680": { "cmt_msg": "" }, - "CVE-2022-0812": { - "cmt_msg": "xprtrdma: fix incorrect header size calculations" - }, "CVE-2022-28356": { "cmt_msg": "llc: fix netdevice reference leaks in llc_ui_bind()" }, @@ -32262,9 +31241,6 @@ "CVE-2017-18595": { "cmt_msg": "tracing: Fix possible double free on failure of allocating trace buffer" }, - "CVE-2022-0742": { - "cmt_msg": "ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()" - }, "CVE-2021-3612": { "cmt_msg": "Input: joydev - prevent potential read overflow in ioctl" }, @@ -32304,9 +31280,6 @@ "CVE-2017-7542": { "cmt_msg": "ipv6: avoid overflow of offset in ip6_find_1stfragopt" }, - "CVE-2022-23041": { - "cmt_msg": "xen/9p: use alloc/free_pages_exact()" - }, "CVE-2020-0465": { "cmt_msg": "HID: core: Sanitize event code and type when mapping input" }, @@ -32358,9 +31331,6 @@ "CVE-2018-7566": { "cmt_msg": "ALSA: seq: Fix racy pool initializations" }, - "CVE-2022-1043": { - "cmt_msg": "io_uring: fix xa_alloc_cycle() error return value check" - }, "CVE-2017-5967": { "cmt_msg": "time: Remove CONFIG_TIMER_STATS" }, @@ -32439,9 +31409,6 @@ "CVE-2022-0400": { "cmt_msg": "" }, - "CVE-2021-0707": { - "cmt_msg": "dmabuf: fix use-after-free of dmabuf's file->f_inode" - }, "CVE-2014-9888": { "cmt_msg": "ARM: dma-mapping: don't allow DMA mappings to be marked executable" }, @@ -32481,9 +31448,6 @@ "CVE-2016-1583": { "cmt_msg": "proc: prevent stacking filesystems on top" }, - "CVE-2022-25636": { - "cmt_msg": "netfilter: nf_tables_offload: incorrect flow offload action array size" - }, "CVE-2017-1000379": { "cmt_msg": "mm: larger stack guard gap, between vmas" }, @@ -32502,18 +31466,12 @@ "CVE-2019-15219": { "cmt_msg": "USB: sisusbvga: fix oops in error path of sisusb_probe" }, - "CVE-2022-1015": { - "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." - }, "CVE-2014-9940": { "cmt_msg": "regulator: core: Fix regualtor_ena_gpio_free not to access pin after freeing" }, "CVE-2019-19378": { "cmt_msg": "" }, - "CVE-2022-1852": { - "cmt_msg": "KVM: x86: avoid calling x86 emulator without a decoded instruction" - }, "CVE-2020-4788": { "cmt_msg": "powerpc/64s: flush L1D on kernel entry" }, @@ -32592,9 +31550,6 @@ "CVE-2019-15215": { "cmt_msg": "media: cpia2_usb: first wake up, then free in disconnect" }, - "CVE-2022-1998": { - "cmt_msg": "fanotify: Fix stale file descriptor in copy_event_to_user()" - }, "CVE-2018-18021": { "cmt_msg": "arm64: KVM: Tighten guest core register access from userspace" }, @@ -32703,9 +31658,6 @@ "CVE-2019-3874": { "cmt_msg": "sctp: implement memory accounting on tx path" }, - "CVE-2022-0171": { - "cmt_msg": "" - }, "CVE-2018-10877": { "cmt_msg": "ext4: verify the depth of extent tree in ext4_find_extent()" }, @@ -32724,9 +31676,6 @@ "CVE-2021-3483": { "cmt_msg": "firewire: nosy: Fix a use-after-free bug in nosy_ioctl()" }, - "CVE-2022-29156": { - "cmt_msg": "RDMA/rtrs-clt: Fix possible double free in error case" - }, "CVE-2017-16913": { "cmt_msg": "usbip: fix stub_rx: harden CMD_SUBMIT path to handle malicious input" }, @@ -32775,18 +31724,12 @@ "CVE-2012-4542": { "cmt_msg": "" }, - "CVE-2022-1729": { - "cmt_msg": "perf: Fix sys_perf_event_open() race against self" - }, "CVE-2018-1000028": { "cmt_msg": "nfsd: auth: Fix gid sorting when rootsquash enabled" }, "CVE-2018-7191": { "cmt_msg": "tun: call dev_get_valid_name() before register_netdevice()" }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, "CVE-2022-1679": { "cmt_msg": "" }, @@ -32796,12 +31739,6 @@ "CVE-2022-1975": { "cmt_msg": "NFC: netlink: fix sleep in atomic bug when firmware download timeout" }, - "CVE-2022-1972": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" - }, "CVE-2017-0786": { "cmt_msg": "brcmfmac: add length check in brcmf_cfg80211_escan_handler()" }, @@ -32823,9 +31760,6 @@ "CVE-2017-8065": { "cmt_msg": "crypto: ccm - move cbcmac input off the stack" }, - "CVE-2022-32981": { - "cmt_msg": "powerpc/32: Fix overread/overwrite of thread_struct via ptrace" - }, "CVE-2018-13405": { "cmt_msg": "Fix up non-directory creation in SGID directories" }, @@ -32877,9 +31811,6 @@ "CVE-2021-28951": { "cmt_msg": "io_uring: ensure that SQPOLL thread is started for exit" }, - "CVE-2022-1671": { - "cmt_msg": "rxrpc: fix some null-ptr-deref bugs in server_key.c" - }, "CVE-2020-16166": { "cmt_msg": "random32: update the net random state on interrupt and activity" }, @@ -32946,9 +31877,6 @@ "CVE-2018-20509": { "cmt_msg": "binder: refactor binder ref inc/dec for thread safety" }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, "CVE-2017-18193": { "cmt_msg": "f2fs: fix a bug caused by NULL extent tree" }, @@ -32964,9 +31892,6 @@ "CVE-2020-14331": { "cmt_msg": "vgacon: Fix for missing check in scrollback handling" }, - "CVE-2022-1184": { - "cmt_msg": "" - }, "CVE-2022-23222": { "cmt_msg": "bpf: Replace PTR_TO_XXX_OR_NULL with PTR_TO_XXX | PTR_MAYBE_NULL" }, @@ -33045,9 +31970,6 @@ "CVE-2021-4203": { "cmt_msg": "af_unix: fix races in sk_peer_pid and sk_peer_cred accesses" }, - "CVE-2022-23039": { - "cmt_msg": "xen/gntalloc: don't use gnttab_query_foreign_access()" - }, "CVE-2019-15807": { "cmt_msg": "scsi: libsas: delete sas port if expander discover failed" }, @@ -33081,9 +32003,6 @@ "CVE-2020-9383": { "cmt_msg": "floppy: check FDC index for errors before assigning it" }, - "CVE-2022-29582": { - "cmt_msg": "io_uring: fix race between timeout flush and removal" - }, "CVE-2021-38198": { "cmt_msg": "KVM: X86: MMU: Use the correct inherited permissions to get shadow page" }, @@ -34276,9 +33195,6 @@ "CVE-2019-14835": { "cmt_msg": "vhost: make sure log_num < in_num" }, - "CVE-2022-2078": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, "CVE-2018-1000204": { "cmt_msg": "scsi: sg: allocate with __GFP_ZERO in sg_build_indirect()" }, @@ -34321,9 +33237,6 @@ "CVE-2022-0002": { "cmt_msg": "x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE" }, - "CVE-2021-39713": { - "cmt_msg": "net: sched: use Qdisc rcu API instead of relying on rtnl lock" - }, "CVE-2015-4178": { "cmt_msg": "fs_pin: Allow for the possibility that m_list or s_list go unused." }, @@ -34468,9 +33381,6 @@ "CVE-2015-8952": { "cmt_msg": "ext2: convert to mbcache2" }, - "CVE-2022-20153": { - "cmt_msg": "io_uring: return back safer resurrect" - }, "CVE-2020-26558": { "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, @@ -34480,9 +33390,6 @@ "CVE-2017-1000410": { "cmt_msg": "Bluetooth: Prevent stack info leak from the EFS element." }, - "CVE-2022-20154": { - "cmt_msg": "sctp: use call_rcu to free endpoint" - }, "CVE-2016-8645": { "cmt_msg": "tcp: take care of truncations done by sk_filter()" }, @@ -34594,6 +33501,9 @@ "CVE-2020-15393": { "cmt_msg": "usb: usbtest: fix missing kfree(dev->buf) in usbtest_disconnect" }, + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default" + }, "CVE-2021-3564": { "cmt_msg": "Bluetooth: fix the erroneous flush_work() order" }, @@ -34690,9 +33600,6 @@ "CVE-2021-4002": { "cmt_msg": "hugetlbfs: flush TLBs correctly after huge_pmd_unshare" }, - "CVE-2022-0998": { - "cmt_msg": "vdpa: clean up get_config_size ret value handling" - }, "CVE-2018-20511": { "cmt_msg": "net/appletalk: fix minor pointer leak to userspace in SIOCFINDIPDDPRT" }, @@ -34741,6 +33648,12 @@ "CVE-2022-1048": { "cmt_msg": "ALSA: pcm: Fix races among concurrent hw_params and hw_free calls" }, + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" + }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, "CVE-2020-0009": { "cmt_msg": "staging: android: ashmem: Disallow ashmem memory from being remapped" }, @@ -34753,8 +33666,8 @@ "CVE-2016-6327": { "cmt_msg": "IB/srpt: Simplify srpt_handle_tsk_mgmt()" }, - "CVE-2022-0995": { - "cmt_msg": "watch_queue: Fix filter limit check" + "CVE-2022-1882": { + "cmt_msg": "" }, "CVE-2016-3139": { "cmt_msg": "Input: wacom - compute the HID report size to get the actual packet size" @@ -34828,9 +33741,6 @@ "CVE-2021-32078": { "cmt_msg": "ARM: footbridge: remove personal server platform" }, - "CVE-2022-30594": { - "cmt_msg": "ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE" - }, "CVE-2017-16528": { "cmt_msg": "ALSA: seq: Cancel pending autoload work at unbinding device" }, @@ -34877,7 +33787,7 @@ "cmt_msg": "NFC: llcp: Limit size of SDP URI" }, "CVE-2020-26555": { - "cmt_msg": "" + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, "CVE-2018-9517": { "cmt_msg": "l2tp: pass tunnel pointer to ->session_create()" @@ -34895,7 +33805,7 @@ "cmt_msg": "kvm/x86: fix icebp instruction handling" }, "CVE-2022-1652": { - "cmt_msg": "" + "cmt_msg": "floppy: use a statically allocated error counter" }, "CVE-2018-1120": { "cmt_msg": "proc: do not access cmdline nor environ from file-backed areas" @@ -34924,9 +33834,6 @@ "CVE-2018-9568": { "cmt_msg": "net: Set sk_prot_creator when cloning sockets to the right proto" }, - "CVE-2022-0644": { - "cmt_msg": "vfs: check fd has read access in kernel_read_file_from_fd()" - }, "CVE-2018-13053": { "cmt_msg": "alarmtimer: Prevent overflow for relative nanosleep" }, @@ -35059,9 +33966,6 @@ "CVE-2021-3178": { "cmt_msg": "nfsd4: readdirplus shouldn't return parent of export" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, "CVE-2020-10690": { "cmt_msg": "ptp: fix the race between the release of ptp_clock and cdev" }, @@ -35080,9 +33984,6 @@ "CVE-2007-3719": { "cmt_msg": "" }, - "CVE-2022-1789": { - "cmt_msg": "KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID" - }, "CVE-2017-10911": { "cmt_msg": "xen-blkback: don't leak stack data via response ring" }, @@ -35095,12 +33996,6 @@ "CVE-2022-24958": { "cmt_msg": "usb: gadget: don't release an existing dev->buf" }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers" - }, - "CVE-2022-28893": { - "cmt_msg": "SUNRPC: Ensure we flush any closed sockets before xs_xprt_free()" - }, "CVE-2021-3772": { "cmt_msg": "sctp: use init_tag from inithdr for ABORT chunk" }, @@ -35110,9 +34005,6 @@ "CVE-2021-37159": { "cmt_msg": "usb: hso: fix error handling code of hso_create_net_device" }, - "CVE-2021-39711": { - "cmt_msg": "bpf: fix panic due to oob in bpf_prog_test_run_skb" - }, "CVE-2016-7042": { "cmt_msg": "KEYS: Fix short sprintf buffer in /proc/keys show function" }, @@ -35158,9 +34050,6 @@ "CVE-2019-11091": { "cmt_msg": "s390/speculation: Support 'mitigations=' cmdline option" }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, "CVE-2019-18660": { "cmt_msg": "powerpc/book3s64: Fix link stack flush on context switch" }, @@ -35233,9 +34122,6 @@ "CVE-2014-3180": { "cmt_msg": "compat: nanosleep: Clarify error handling" }, - "CVE-2022-1158": { - "cmt_msg": "KVM: x86/mmu: do compare-and-exchange of gPTE via the user address" - }, "CVE-2019-19768": { "cmt_msg": "blktrace: Protect q->blk_trace with RCU" }, @@ -35299,15 +34185,9 @@ "CVE-2019-12881": { "cmt_msg": "drm/i915/userptr: reject zero user_size" }, - "CVE-2022-28389": { - "cmt_msg": "can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path" - }, "CVE-2018-1000004": { "cmt_msg": "ALSA: seq: Make ioctls race-free" }, - "CVE-2022-0500": { - "cmt_msg": "bpf: Introduce MEM_RDONLY flag" - }, "CVE-2018-18690": { "cmt_msg": "xfs: don't fail when converting shortform attr to long form during ATTR_REPLACE" }, @@ -35365,11 +34245,8 @@ "CVE-2018-7273": { "cmt_msg": "printk: hash addresses printed with %p" }, - "CVE-2022-0617": { - "cmt_msg": "udf: Fix NULL ptr deref when converting from inline format" - }, - "CVE-2022-26878": { - "cmt_msg": "" + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()" }, "CVE-2019-19531": { "cmt_msg": "usb: yurex: Fix use-after-free in yurex_delete" @@ -35467,9 +34344,6 @@ "CVE-2022-23960": { "cmt_msg": "ARM: report Spectre v2 status through sysfs" }, - "CVE-2019-0146": { - "cmt_msg": "" - }, "CVE-2020-10942": { "cmt_msg": "vhost: Check docket sk_family instead of call getname" }, @@ -35611,9 +34485,6 @@ "CVE-2016-9083": { "cmt_msg": "vfio/pci: Fix integer overflows, bitmask check" }, - "CVE-2022-1055": { - "cmt_msg": "net: sched: fix use-after-free in tc_new_tfilter()" - }, "CVE-2020-26141": { "cmt_msg": "ath10k: Fix TKIP Michael MIC verification for PCIe" }, @@ -35668,9 +34539,6 @@ "CVE-2014-9730": { "cmt_msg": "udf: Check component length before reading it" }, - "CVE-2022-1651": { - "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" - }, "CVE-2015-8830": { "cmt_msg": "aio: lift iov_iter_init() into aio_setup_..._rw()" }, @@ -35689,9 +34557,6 @@ "CVE-2016-10741": { "cmt_msg": "xfs: don't BUG() on mixed direct and mapped I/O" }, - "CVE-2022-27223": { - "cmt_msg": "USB: gadget: validate endpoint index for xilinx udc" - }, "CVE-2019-3846": { "cmt_msg": "mwifiex: Fix possible buffer overflows at parsing bss descriptor" }, @@ -35707,9 +34572,6 @@ "CVE-2017-9242": { "cmt_msg": "ipv6: fix out of bound writes in __ip6_append_data()" }, - "CVE-2022-1419": { - "cmt_msg": "drm/vgem: Close use-after-free race in vgem_gem_create" - }, "CVE-2020-14314": { "cmt_msg": "ext4: fix potential negative array index in do_split()" }, @@ -35728,9 +34590,6 @@ "CVE-2020-36322": { "cmt_msg": "fuse: fix bad inode" }, - "CVE-2022-23222": { - "cmt_msg": "bpf: Replace PTR_TO_XXX_OR_NULL with PTR_TO_XXX | PTR_MAYBE_NULL" - }, "CVE-2020-25669": { "cmt_msg": "Input: sunkbd - avoid use-after-free in teardown paths" }, @@ -35842,23 +34701,17 @@ "CVE-2021-4149": { "cmt_msg": "btrfs: unlock newly allocated extent buffer after error" }, - "CVE-2021-4148": { - "cmt_msg": "mm: khugepaged: skip huge page collapse for special files" - }, "CVE-2021-3640": { "cmt_msg": "Bluetooth: sco: Fix lock_sock() blockage by memcpy_from_msg()" }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, "CVE-2017-7618": { "cmt_msg": "crypto: ahash - Fix EINPROGRESS notification callback" }, "CVE-2020-1749": { "cmt_msg": "net: ipv6_stub: use ip6_dst_lookup_flow instead of ip6_dst_lookup" }, - "CVE-2021-3894": { - "cmt_msg": "sctp: account stream padding length for reconf chunk" + "CVE-2022-1786": { + "cmt_msg": "io_uring: remove io_identity" }, "CVE-2020-11608": { "cmt_msg": "media: ov519: add missing endpoint sanity checks" @@ -35950,9 +34803,6 @@ "CVE-2019-18680": { "cmt_msg": "" }, - "CVE-2022-0812": { - "cmt_msg": "xprtrdma: fix incorrect header size calculations" - }, "CVE-2019-5108": { "cmt_msg": "mac80211: Do not send Layer 2 Update frame before authorization" }, @@ -35962,9 +34812,6 @@ "CVE-2017-18595": { "cmt_msg": "tracing: Fix possible double free on failure of allocating trace buffer" }, - "CVE-2022-0742": { - "cmt_msg": "ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()" - }, "CVE-2021-3612": { "cmt_msg": "Input: joydev - prevent potential read overflow in ioctl" }, @@ -36070,9 +34917,6 @@ "CVE-2018-7566": { "cmt_msg": "ALSA: seq: Fix racy pool initializations" }, - "CVE-2022-1043": { - "cmt_msg": "io_uring: fix xa_alloc_cycle() error return value check" - }, "CVE-2017-2647": { "cmt_msg": "KEYS: Remove key_type::match in favour of overriding default by match_preparse" }, @@ -36088,9 +34932,6 @@ "CVE-2018-20976": { "cmt_msg": "xfs: clear sb->s_fs_info on mount failure" }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, "CVE-2016-10147": { "cmt_msg": "crypto: mcryptd - Check mcryptd algorithm compatibility" }, @@ -36109,9 +34950,6 @@ "CVE-2019-16413": { "cmt_msg": "9p: use inode->i_lock to protect i_size_write() under 32-bit" }, - "CVE-2022-1516": { - "cmt_msg": "net/x25: Fix null-ptr-deref caused by x25_disconnect" - }, "CVE-2018-10876": { "cmt_msg": "ext4: only look at the bg_flags field if it is valid" }, @@ -36166,9 +35004,6 @@ "CVE-2022-0400": { "cmt_msg": "" }, - "CVE-2021-0707": { - "cmt_msg": "dmabuf: fix use-after-free of dmabuf's file->f_inode" - }, "CVE-2021-38160": { "cmt_msg": "virtio_console: Assure used length from device is limited" }, @@ -36208,9 +35043,6 @@ "CVE-2016-1583": { "cmt_msg": "proc: prevent stacking filesystems on top" }, - "CVE-2022-25636": { - "cmt_msg": "netfilter: nf_tables_offload: incorrect flow offload action array size" - }, "CVE-2017-1000379": { "cmt_msg": "mm: larger stack guard gap, between vmas" }, @@ -36220,9 +35052,6 @@ "CVE-2018-18281": { "cmt_msg": "mremap: properly flush TLB before releasing the page" }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"" - }, "CVE-2016-6787": { "cmt_msg": "perf: Fix event->ctx locking" }, @@ -36232,9 +35061,6 @@ "CVE-2019-15219": { "cmt_msg": "USB: sisusbvga: fix oops in error path of sisusb_probe" }, - "CVE-2022-1015": { - "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." - }, "CVE-2014-9940": { "cmt_msg": "regulator: core: Fix regualtor_ena_gpio_free not to access pin after freeing" }, @@ -36247,9 +35073,6 @@ "CVE-2019-19378": { "cmt_msg": "" }, - "CVE-2022-1852": { - "cmt_msg": "KVM: x86: avoid calling x86 emulator without a decoded instruction" - }, "CVE-2020-4788": { "cmt_msg": "powerpc/64s: flush L1D on kernel entry" }, @@ -36295,9 +35118,6 @@ "CVE-2019-19449": { "cmt_msg": "f2fs: fix to do sanity check on segment/section count" }, - "CVE-2021-33135": { - "cmt_msg": "" - }, "CVE-2019-19523": { "cmt_msg": "USB: adutux: fix use-after-free on disconnect" }, @@ -36331,9 +35151,6 @@ "CVE-2019-15215": { "cmt_msg": "media: cpia2_usb: first wake up, then free in disconnect" }, - "CVE-2022-1998": { - "cmt_msg": "fanotify: Fix stale file descriptor in copy_event_to_user()" - }, "CVE-2018-18021": { "cmt_msg": "arm64: KVM: Tighten guest core register access from userspace" }, @@ -36361,9 +35178,6 @@ "CVE-2020-0543": { "cmt_msg": "x86/cpu: Add 'table' argument to cpu_matches()" }, - "CVE-2022-23041": { - "cmt_msg": "xen/9p: use alloc/free_pages_exact()" - }, "CVE-2022-1462": { "cmt_msg": "" }, @@ -36451,9 +35265,6 @@ "CVE-2019-3874": { "cmt_msg": "sctp: implement memory accounting on tx path" }, - "CVE-2022-0171": { - "cmt_msg": "" - }, "CVE-2018-10877": { "cmt_msg": "ext4: verify the depth of extent tree in ext4_find_extent()" }, @@ -36466,9 +35277,6 @@ "CVE-2016-8655": { "cmt_msg": "packet: fix race condition in packet_set_ring" }, - "CVE-2022-1882": { - "cmt_msg": "" - }, "CVE-2020-14331": { "cmt_msg": "vgacon: Fix for missing check in scrollback handling" }, @@ -36484,9 +35292,6 @@ "CVE-2021-3483": { "cmt_msg": "firewire: nosy: Fix a use-after-free bug in nosy_ioctl()" }, - "CVE-2022-29156": { - "cmt_msg": "RDMA/rtrs-clt: Fix possible double free in error case" - }, "CVE-2017-16913": { "cmt_msg": "usbip: fix stub_rx: harden CMD_SUBMIT path to handle malicious input" }, @@ -36544,18 +35349,12 @@ "CVE-2012-4542": { "cmt_msg": "" }, - "CVE-2022-1729": { - "cmt_msg": "perf: Fix sys_perf_event_open() race against self" - }, "CVE-2018-1000028": { "cmt_msg": "nfsd: auth: Fix gid sorting when rootsquash enabled" }, "CVE-2018-7191": { "cmt_msg": "tun: call dev_get_valid_name() before register_netdevice()" }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, "CVE-2022-1679": { "cmt_msg": "" }, @@ -36565,12 +35364,6 @@ "CVE-2022-1975": { "cmt_msg": "NFC: netlink: fix sleep in atomic bug when firmware download timeout" }, - "CVE-2022-1972": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" - }, "CVE-2017-0786": { "cmt_msg": "brcmfmac: add length check in brcmf_cfg80211_escan_handler()" }, @@ -36652,9 +35445,6 @@ "CVE-2015-4176": { "cmt_msg": "mnt: Update detach_mounts to leave mounts connected" }, - "CVE-2022-1671": { - "cmt_msg": "rxrpc: fix some null-ptr-deref bugs in server_key.c" - }, "CVE-2020-16166": { "cmt_msg": "random32: update the net random state on interrupt and activity" }, @@ -36749,10 +35539,10 @@ "cmt_msg": "sched/fair: Don't free p->numa_faults with concurrent readers" }, "CVE-2022-1184": { - "cmt_msg": "" + "cmt_msg": "ext4: verify dir block before splitting it" }, - "CVE-2022-1786": { - "cmt_msg": "io_uring: remove io_identity" + "CVE-2022-23222": { + "cmt_msg": "bpf: Replace PTR_TO_XXX_OR_NULL with PTR_TO_XXX | PTR_MAYBE_NULL" }, "CVE-2021-0448": { "cmt_msg": "netfilter: ctnetlink: add a range check for l3/l4 protonum" @@ -36877,9 +35667,6 @@ "CVE-2020-9383": { "cmt_msg": "floppy: check FDC index for errors before assigning it" }, - "CVE-2022-29582": { - "cmt_msg": "io_uring: fix race between timeout flush and removal" - }, "CVE-2021-38198": { "cmt_msg": "KVM: X86: MMU: Use the correct inherited permissions to get shadow page" }, @@ -39689,18 +38476,12 @@ "CVE-2021-45469": { "cmt_msg": "f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr()" }, - "CVE-2021-3894": { - "cmt_msg": "sctp: account stream padding length for reconf chunk" - }, "CVE-2020-24587": { "cmt_msg": "mac80211: prevent mixed key and fragment cache attacks" }, "CVE-2020-24586": { "cmt_msg": "mac80211: prevent mixed key and fragment cache attacks" }, - "CVE-2022-0995": { - "cmt_msg": "watch_queue: Fix filter limit check" - }, "CVE-2021-0129": { "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, @@ -39746,9 +38527,6 @@ "CVE-2020-0466": { "cmt_msg": "do_epoll_ctl(): clean the failure exits up a bit" }, - "CVE-2022-2078": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, "CVE-2019-12379": { "cmt_msg": "consolemap: Fix a memory leaking bug in drivers/tty/vt/consolemap.c" }, @@ -39770,9 +38548,6 @@ "CVE-2022-0002": { "cmt_msg": "x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE" }, - "CVE-2021-39713": { - "cmt_msg": "net: sched: use Qdisc rcu API instead of relying on rtnl lock" - }, "CVE-2015-4178": { "cmt_msg": "fs_pin: Allow for the possibility that m_list or s_list go unused." }, @@ -39842,18 +38617,12 @@ "CVE-2019-18680": { "cmt_msg": "" }, - "CVE-2022-20153": { - "cmt_msg": "io_uring: return back safer resurrect" - }, "CVE-2022-23038": { "cmt_msg": "xen/grant-table: add gnttab_try_end_foreign_access()" }, "CVE-2022-23039": { "cmt_msg": "xen/gntalloc: don't use gnttab_query_foreign_access()" }, - "CVE-2022-20154": { - "cmt_msg": "sctp: use call_rcu to free endpoint" - }, "CVE-2021-45868": { "cmt_msg": "quota: check block number when reading the block in quota file" }, @@ -39869,18 +38638,12 @@ "CVE-2021-42008": { "cmt_msg": "net: 6pack: fix slab-out-of-bounds in decode_data" }, - "CVE-2022-0998": { - "cmt_msg": "vdpa: clean up get_config_size ret value handling" - }, "CVE-2020-25643": { "cmt_msg": "hdlc_ppp: add range checks in ppp_cp_parse_cr()" }, "CVE-2005-3660": { "cmt_msg": "" }, - "CVE-2021-33135": { - "cmt_msg": "" - }, "CVE-2021-33034": { "cmt_msg": "Bluetooth: verify AMP hci_chan before amp_destroy" }, @@ -39914,6 +38677,9 @@ "CVE-2020-15393": { "cmt_msg": "usb: usbtest: fix missing kfree(dev->buf) in usbtest_disconnect" }, + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default" + }, "CVE-2021-3564": { "cmt_msg": "Bluetooth: fix the erroneous flush_work() order" }, @@ -39971,6 +38737,12 @@ "CVE-2022-1048": { "cmt_msg": "ALSA: pcm: Fix races among concurrent hw_params and hw_free calls" }, + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" + }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, "CVE-2018-7480": { "cmt_msg": "blkcg: fix double free of new_blkg in blkcg_init_queue" }, @@ -39986,9 +38758,6 @@ "CVE-2022-1204": { "cmt_msg": "ax25: Fix refcount leaks caused by ax25_cb_del()" }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers" - }, "CVE-2016-10723": { "cmt_msg": "mm, oom: remove sleep from under oom_lock" }, @@ -40013,9 +38782,6 @@ "CVE-2021-32078": { "cmt_msg": "ARM: footbridge: remove personal server platform" }, - "CVE-2022-30594": { - "cmt_msg": "ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE" - }, "CVE-2017-16528": { "cmt_msg": "ALSA: seq: Cancel pending autoload work at unbinding device" }, @@ -40050,7 +38816,7 @@ "cmt_msg": "" }, "CVE-2020-26555": { - "cmt_msg": "" + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, "CVE-2019-20794": { "cmt_msg": "" @@ -40073,9 +38839,6 @@ "CVE-2017-5753": { "cmt_msg": "x86/cpufeatures: Add X86_BUG_SPECTRE_V[12]" }, - "CVE-2022-0644": { - "cmt_msg": "vfs: check fd has read access in kernel_read_file_from_fd()" - }, "CVE-2020-29568": { "cmt_msg": "xen/xenbus: Allow watches discard events before queueing" }, @@ -40118,9 +38881,6 @@ "CVE-2019-19816": { "cmt_msg": "btrfs: inode: Verify inode mode to avoid NULL pointer dereference" }, - "CVE-2022-1015": { - "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." - }, "CVE-2019-9453": { "cmt_msg": "f2fs: fix to avoid accessing xattr across the boundary" }, @@ -40172,9 +38932,6 @@ "CVE-2021-3178": { "cmt_msg": "nfsd4: readdirplus shouldn't return parent of export" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, "CVE-2018-7754": { "cmt_msg": "printk: hash addresses printed with %p" }, @@ -40184,9 +38941,6 @@ "CVE-2007-3719": { "cmt_msg": "" }, - "CVE-2022-28893": { - "cmt_msg": "SUNRPC: Ensure we flush any closed sockets before xs_xprt_free()" - }, "CVE-2021-3772": { "cmt_msg": "sctp: use init_tag from inithdr for ABORT chunk" }, @@ -40196,9 +38950,6 @@ "CVE-2021-37159": { "cmt_msg": "usb: hso: fix error handling code of hso_create_net_device" }, - "CVE-2021-39711": { - "cmt_msg": "bpf: fix panic due to oob in bpf_prog_test_run_skb" - }, "CVE-2021-34556": { "cmt_msg": "bpf: Introduce BPF nospec instruction for mitigating Spectre v4" }, @@ -40250,9 +39001,6 @@ "CVE-2014-3180": { "cmt_msg": "compat: nanosleep: Clarify error handling" }, - "CVE-2022-1158": { - "cmt_msg": "KVM: x86/mmu: do compare-and-exchange of gPTE via the user address" - }, "CVE-2017-8797": { "cmt_msg": "nfsd: fix undefined behavior in nfsd4_layout_verify" }, @@ -40274,9 +39022,6 @@ "CVE-2021-29155": { "cmt_msg": "bpf: Use correct permission flag for mixed signed bounds arithmetic" }, - "CVE-2022-28389": { - "cmt_msg": "can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path" - }, "CVE-2022-28388": { "cmt_msg": "can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path" }, @@ -40289,9 +39034,6 @@ "CVE-2020-12364": { "cmt_msg": "drm/i915/guc: Update to use firmware v49.0.1" }, - "CVE-2022-0500": { - "cmt_msg": "bpf: Introduce MEM_RDONLY flag" - }, "CVE-2021-0605": { "cmt_msg": "af_key: pfkey_dump needs parameter validation" }, @@ -40301,9 +39043,6 @@ "CVE-2021-4002": { "cmt_msg": "hugetlbfs: flush TLBs correctly after huge_pmd_unshare" }, - "CVE-2022-1055": { - "cmt_msg": "net: sched: fix use-after-free in tc_new_tfilter()" - }, "CVE-2019-16232": { "cmt_msg": "libertas: fix a potential NULL pointer dereference" }, @@ -40325,11 +39064,8 @@ "CVE-2018-7273": { "cmt_msg": "printk: hash addresses printed with %p" }, - "CVE-2022-0617": { - "cmt_msg": "udf: Fix NULL ptr deref when converting from inline format" - }, - "CVE-2022-26878": { - "cmt_msg": "" + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()" }, "CVE-2018-12930": { "cmt_msg": "" @@ -40376,9 +39112,6 @@ "CVE-2014-7145": { "cmt_msg": "[CIFS] Possible null ptr deref in SMB2_tcon" }, - "CVE-2019-0146": { - "cmt_msg": "" - }, "CVE-2017-0750": { "cmt_msg": "f2fs: do more integrity verification for superblock" }, @@ -40412,9 +39145,6 @@ "CVE-2020-28374": { "cmt_msg": "scsi: target: Fix XCOPY NAA identifier lookup" }, - "CVE-2022-1419": { - "cmt_msg": "drm/vgem: Close use-after-free race in vgem_gem_create" - }, "CVE-2020-27825": { "cmt_msg": "tracing: Fix race in trace_open and buffer resize call" }, @@ -40445,14 +39175,8 @@ "CVE-2017-18552": { "cmt_msg": "RDS: validate the requested traces user input against max supported" }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, "CVE-2022-1652": { - "cmt_msg": "" - }, - "CVE-2022-1651": { - "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" + "cmt_msg": "floppy: use a statically allocated error counter" }, "CVE-2015-8830": { "cmt_msg": "aio: lift iov_iter_init() into aio_setup_..._rw()" @@ -40469,9 +39193,6 @@ "CVE-2020-0427": { "cmt_msg": "pinctrl: devicetree: Avoid taking direct reference to device name string" }, - "CVE-2022-1789": { - "cmt_msg": "KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID" - }, "CVE-2017-9984": { "cmt_msg": "ALSA: msnd: Optimize / harden DSP and MIDI loops" }, @@ -40541,15 +39262,9 @@ "CVE-2021-4149": { "cmt_msg": "btrfs: unlock newly allocated extent buffer after error" }, - "CVE-2021-4148": { - "cmt_msg": "mm: khugepaged: skip huge page collapse for special files" - }, "CVE-2021-3640": { "cmt_msg": "Bluetooth: sco: Fix lock_sock() blockage by memcpy_from_msg()" }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, "CVE-2020-28097": { "cmt_msg": "vgacon: remove software scrollback support" }, @@ -40586,15 +39301,6 @@ "CVE-2015-8952": { "cmt_msg": "ext2: convert to mbcache2" }, - "CVE-2022-0812": { - "cmt_msg": "xprtrdma: fix incorrect header size calculations" - }, - "CVE-2022-0742": { - "cmt_msg": "ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()" - }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"" - }, "CVE-2020-14390": { "cmt_msg": "fbcon: remove soft scrollback code" }, @@ -40605,7 +39311,7 @@ "cmt_msg": "f2fs: sanity check segment count" }, "CVE-2022-1184": { - "cmt_msg": "" + "cmt_msg": "ext4: verify dir block before splitting it" }, "CVE-2020-0465": { "cmt_msg": "HID: core: Sanitize event code and type when mapping input" @@ -40637,9 +39343,6 @@ "CVE-2021-20321": { "cmt_msg": "ovl: fix missing negative dentry check in ovl_rename()" }, - "CVE-2022-1043": { - "cmt_msg": "io_uring: fix xa_alloc_cycle() error return value check" - }, "CVE-2017-5967": { "cmt_msg": "time: Remove CONFIG_TIMER_STATS" }, @@ -40688,9 +39391,6 @@ "CVE-2022-0400": { "cmt_msg": "" }, - "CVE-2021-0707": { - "cmt_msg": "dmabuf: fix use-after-free of dmabuf's file->f_inode" - }, "CVE-2022-26966": { "cmt_msg": "sr9700: sanity check for packet length" }, @@ -40712,18 +39412,12 @@ "CVE-2020-25284": { "cmt_msg": "rbd: require global CAP_SYS_ADMIN for mapping and unmapping" }, - "CVE-2022-25636": { - "cmt_msg": "netfilter: nf_tables_offload: incorrect flow offload action array size" - }, "CVE-2015-3339": { "cmt_msg": "fs: take i_mutex during prepare_binprm for set[ug]id executables" }, "CVE-2019-19378": { "cmt_msg": "" }, - "CVE-2022-1852": { - "cmt_msg": "KVM: x86: avoid calling x86 emulator without a decoded instruction" - }, "CVE-2020-4788": { "cmt_msg": "powerpc/64s: flush L1D on kernel entry" }, @@ -40772,9 +39466,6 @@ "CVE-2021-35477": { "cmt_msg": "bpf: Introduce BPF nospec instruction for mitigating Spectre v4" }, - "CVE-2022-1998": { - "cmt_msg": "fanotify: Fix stale file descriptor in copy_event_to_user()" - }, "CVE-2019-12614": { "cmt_msg": "powerpc/pseries/dlpar: Fix a missing check in dlpar_parse_cc_property()" }, @@ -40784,9 +39475,6 @@ "CVE-2020-27815": { "cmt_msg": "jfs: Fix array index bounds check in dbAdjTree" }, - "CVE-2022-23041": { - "cmt_msg": "xen/9p: use alloc/free_pages_exact()" - }, "CVE-2022-1462": { "cmt_msg": "" }, @@ -40847,9 +39535,6 @@ "CVE-2021-3483": { "cmt_msg": "firewire: nosy: Fix a use-after-free bug in nosy_ioctl()" }, - "CVE-2022-29156": { - "cmt_msg": "RDMA/rtrs-clt: Fix possible double free in error case" - }, "CVE-2021-38300": { "cmt_msg": "bpf, mips: Validate conditional branch offsets" }, @@ -40877,9 +39562,6 @@ "CVE-2021-3573": { "cmt_msg": "Bluetooth: use correct lock to prevent UAF of hdev object" }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, "CVE-2022-1679": { "cmt_msg": "" }, @@ -40889,12 +39571,6 @@ "CVE-2022-1975": { "cmt_msg": "NFC: netlink: fix sleep in atomic bug when firmware download timeout" }, - "CVE-2022-1972": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" - }, "CVE-2018-12130": { "cmt_msg": "s390/speculation: Support 'mitigations=' cmdline option" }, @@ -40925,9 +39601,6 @@ "CVE-2021-0695": { "cmt_msg": "" }, - "CVE-2022-1729": { - "cmt_msg": "perf: Fix sys_perf_event_open() race against self" - }, "CVE-2021-4150": { "cmt_msg": "block: fix incorrect references to disk objects" }, @@ -40937,9 +39610,6 @@ "CVE-2021-28951": { "cmt_msg": "io_uring: ensure that SQPOLL thread is started for exit" }, - "CVE-2022-1671": { - "cmt_msg": "rxrpc: fix some null-ptr-deref bugs in server_key.c" - }, "CVE-2021-3653": { "cmt_msg": "KVM: nSVM: avoid picking up unsupported bits from L2 in int_ctl (CVE-2021-3653)" }, @@ -40979,9 +39649,6 @@ "CVE-2021-39633": { "cmt_msg": "ip_gre: add validation for csum_start" }, - "CVE-2022-27223": { - "cmt_msg": "USB: gadget: validate endpoint index for xilinx udc" - }, "CVE-2021-39636": { "cmt_msg": "netfilter: x_tables: fix pointer leaks to userspace" }, @@ -40997,9 +39664,6 @@ "CVE-2018-20509": { "cmt_msg": "binder: refactor binder ref inc/dec for thread safety" }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, "CVE-2017-18193": { "cmt_msg": "f2fs: fix a bug caused by NULL extent tree" }, @@ -41075,18 +39739,9 @@ "CVE-2021-44879": { "cmt_msg": "f2fs: fix to do sanity check on inode type during garbage collection" }, - "CVE-2022-1516": { - "cmt_msg": "net/x25: Fix null-ptr-deref caused by x25_disconnect" - }, "CVE-2015-2877": { "cmt_msg": "" }, - "CVE-2022-0171": { - "cmt_msg": "" - }, - "CVE-2022-29582": { - "cmt_msg": "io_uring: fix race between timeout flush and removal" - }, "CVE-2021-38198": { "cmt_msg": "KVM: X86: MMU: Use the correct inherited permissions to get shadow page" }, @@ -43296,18 +41951,12 @@ "CVE-2019-19966": { "cmt_msg": "media: cpia2: Fix use-after-free in cpia2_exit" }, - "CVE-2021-3894": { - "cmt_msg": "sctp: account stream padding length for reconf chunk" - }, "CVE-2020-24587": { "cmt_msg": "mac80211: prevent mixed key and fragment cache attacks" }, "CVE-2020-24586": { "cmt_msg": "mac80211: prevent mixed key and fragment cache attacks" }, - "CVE-2022-0995": { - "cmt_msg": "watch_queue: Fix filter limit check" - }, "CVE-2021-0129": { "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, @@ -43374,9 +42023,6 @@ "CVE-2019-14835": { "cmt_msg": "vhost: make sure log_num < in_num" }, - "CVE-2022-2078": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, "CVE-2018-1000204": { "cmt_msg": "scsi: sg: allocate with __GFP_ZERO in sg_build_indirect()" }, @@ -43404,9 +42050,6 @@ "CVE-2019-3460": { "cmt_msg": "Bluetooth: Check L2CAP option sizes returned from l2cap_get_conf_opt" }, - "CVE-2021-39713": { - "cmt_msg": "net: sched: use Qdisc rcu API instead of relying on rtnl lock" - }, "CVE-2015-4178": { "cmt_msg": "fs_pin: Allow for the possibility that m_list or s_list go unused." }, @@ -43416,9 +42059,6 @@ "CVE-2017-7518": { "cmt_msg": "KVM: x86: fix singlestepping over syscall" }, - "CVE-2021-39714": { - "cmt_msg": "staging: android: ion: Drop ion_map_kernel interface" - }, "CVE-2019-11477": { "cmt_msg": "tcp: limit payload size of sacked skbs" }, @@ -43518,18 +42158,12 @@ "CVE-2015-8952": { "cmt_msg": "ext2: convert to mbcache2" }, - "CVE-2022-20153": { - "cmt_msg": "io_uring: return back safer resurrect" - }, "CVE-2022-23038": { "cmt_msg": "xen/grant-table: add gnttab_try_end_foreign_access()" }, "CVE-2022-23039": { "cmt_msg": "xen/gntalloc: don't use gnttab_query_foreign_access()" }, - "CVE-2022-20154": { - "cmt_msg": "sctp: use call_rcu to free endpoint" - }, "CVE-2021-27363": { "cmt_msg": "scsi: iscsi: Restrict sessions and handles to admin capabilities" }, @@ -43548,9 +42182,6 @@ "CVE-2019-15926": { "cmt_msg": "ath6kl: add some bounds checking" }, - "CVE-2022-0998": { - "cmt_msg": "vdpa: clean up get_config_size ret value handling" - }, "CVE-2019-14821": { "cmt_msg": "KVM: coalesced_mmio: add bounds checking" }, @@ -43581,9 +42212,6 @@ "CVE-2019-15212": { "cmt_msg": "USB: rio500: refuse more than one device at a time" }, - "CVE-2021-33135": { - "cmt_msg": "" - }, "CVE-2019-15217": { "cmt_msg": "media: usb:zr364xx:Fix KASAN:null-ptr-deref Read in zr364xx_vidioc_querycap" }, @@ -43647,9 +42275,6 @@ "CVE-2019-18675": { "cmt_msg": "mmap: introduce sane default mmap limits" }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, "CVE-2020-26560": { "cmt_msg": "" }, @@ -43725,6 +42350,12 @@ "CVE-2022-1048": { "cmt_msg": "ALSA: pcm: Fix races among concurrent hw_params and hw_free calls" }, + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" + }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, "CVE-2018-7480": { "cmt_msg": "blkcg: fix double free of new_blkg in blkcg_init_queue" }, @@ -43785,9 +42416,6 @@ "CVE-2014-1874": { "cmt_msg": "SELinux: Fix kernel BUG on empty security contexts." }, - "CVE-2022-30594": { - "cmt_msg": "ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE" - }, "CVE-2017-16528": { "cmt_msg": "ALSA: seq: Cancel pending autoload work at unbinding device" }, @@ -43822,7 +42450,7 @@ "cmt_msg": "" }, "CVE-2020-26555": { - "cmt_msg": "" + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, "CVE-2019-20794": { "cmt_msg": "" @@ -43863,9 +42491,6 @@ "CVE-2018-9568": { "cmt_msg": "net: Set sk_prot_creator when cloning sockets to the right proto" }, - "CVE-2022-0644": { - "cmt_msg": "vfs: check fd has read access in kernel_read_file_from_fd()" - }, "CVE-2018-13053": { "cmt_msg": "alarmtimer: Prevent overflow for relative nanosleep" }, @@ -43896,15 +42521,9 @@ "CVE-2019-19816": { "cmt_msg": "btrfs: inode: Verify inode mode to avoid NULL pointer dereference" }, - "CVE-2022-1015": { - "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." - }, "CVE-2020-0429": { "cmt_msg": "l2tp: fix race between l2tp_session_delete() and l2tp_tunnel_closeall()" }, - "CVE-2022-1016": { - "cmt_msg": "netfilter: nf_tables: initialize registers in nft_do_chain()" - }, "CVE-2018-18710": { "cmt_msg": "cdrom: fix improper type cast, which can leat to information leak." }, @@ -43956,9 +42575,6 @@ "CVE-2021-3178": { "cmt_msg": "nfsd4: readdirplus shouldn't return parent of export" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, "CVE-2018-7755": { "cmt_msg": "floppy: Do not copy a kernel pointer to user memory in FDGETPRM ioctl" }, @@ -43971,12 +42587,6 @@ "CVE-2019-19319": { "cmt_msg": "ext4: protect journal inode's blocks using block_validity" }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers" - }, - "CVE-2022-28893": { - "cmt_msg": "SUNRPC: Ensure we flush any closed sockets before xs_xprt_free()" - }, "CVE-2021-3772": { "cmt_msg": "sctp: use init_tag from inithdr for ABORT chunk" }, @@ -43992,9 +42602,6 @@ "CVE-2013-3235": { "cmt_msg": "tipc: fix info leaks via msg_name in recv_msg/recv_stream" }, - "CVE-2021-39711": { - "cmt_msg": "bpf: fix panic due to oob in bpf_prog_test_run_skb" - }, "CVE-2021-34556": { "cmt_msg": "bpf: Introduce BPF nospec instruction for mitigating Spectre v4" }, @@ -44034,9 +42641,6 @@ "CVE-2014-9914": { "cmt_msg": "ipv4: fix a race in ip4_datagram_release_cb()" }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, "CVE-2019-19227": { "cmt_msg": "appletalk: Fix potential NULL pointer dereference in unregister_snap_client" }, @@ -44055,9 +42659,6 @@ "CVE-2021-0941": { "cmt_msg": "bpf: Remove MTU check in __bpf_skb_max_len" }, - "CVE-2022-26966": { - "cmt_msg": "sr9700: sanity check for packet length" - }, "CVE-2021-34693": { "cmt_msg": "can: bcm: fix infoleak in struct bcm_msg_head" }, @@ -44067,9 +42668,6 @@ "CVE-2014-3180": { "cmt_msg": "compat: nanosleep: Clarify error handling" }, - "CVE-2022-1158": { - "cmt_msg": "KVM: x86/mmu: do compare-and-exchange of gPTE via the user address" - }, "CVE-2019-19768": { "cmt_msg": "blktrace: Protect q->blk_trace with RCU" }, @@ -44112,30 +42710,18 @@ "CVE-2019-12881": { "cmt_msg": "drm/i915/userptr: reject zero user_size" }, - "CVE-2022-28389": { - "cmt_msg": "can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path" - }, "CVE-2020-12364": { "cmt_msg": "drm/i915/guc: Update to use firmware v49.0.1" }, - "CVE-2022-0500": { - "cmt_msg": "bpf: Introduce MEM_RDONLY flag" - }, "CVE-2018-18690": { "cmt_msg": "xfs: don't fail when converting shortform attr to long form during ATTR_REPLACE" }, - "CVE-2022-28388": { - "cmt_msg": "can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path" - }, "CVE-2021-3896": { "cmt_msg": "isdn: cpai: check ctr->cnr to avoid array index out of bound" }, "CVE-2016-7917": { "cmt_msg": "netfilter: nfnetlink: correctly validate length of batch messages" }, - "CVE-2022-1055": { - "cmt_msg": "net: sched: fix use-after-free in tc_new_tfilter()" - }, "CVE-2019-16232": { "cmt_msg": "libertas: fix a potential NULL pointer dereference" }, @@ -44166,12 +42752,6 @@ "CVE-2018-7273": { "cmt_msg": "printk: hash addresses printed with %p" }, - "CVE-2022-0617": { - "cmt_msg": "udf: Fix NULL ptr deref when converting from inline format" - }, - "CVE-2022-26878": { - "cmt_msg": "" - }, "CVE-2018-12930": { "cmt_msg": "" }, @@ -44223,9 +42803,6 @@ "CVE-2019-19447": { "cmt_msg": "ext4: work around deleting a file with i_nlink == 0 safely" }, - "CVE-2019-0146": { - "cmt_msg": "" - }, "CVE-2020-10942": { "cmt_msg": "vhost: Check docket sk_family instead of call getname" }, @@ -44283,6 +42860,9 @@ "CVE-2019-10639": { "cmt_msg": "netns: provide pure entropy for net_hash_mix()" }, + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default" + }, "CVE-2021-0929": { "cmt_msg": "staging/android/ion: delete dma_buf->kmap/unmap implemenation" }, @@ -44356,10 +42936,7 @@ "cmt_msg": "ext4: fix races between page faults and hole punching" }, "CVE-2022-1652": { - "cmt_msg": "" - }, - "CVE-2022-1651": { - "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" + "cmt_msg": "floppy: use a statically allocated error counter" }, "CVE-2020-29568": { "cmt_msg": "xen/xenbus: Allow watches discard events before queueing" @@ -44385,12 +42962,6 @@ "CVE-2019-9458": { "cmt_msg": "media: v4l: event: Prevent freeing event subscriptions while accessed" }, - "CVE-2022-1789": { - "cmt_msg": "KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID" - }, - "CVE-2022-1419": { - "cmt_msg": "drm/vgem: Close use-after-free race in vgem_gem_create" - }, "CVE-2019-13272": { "cmt_msg": "ptrace: Fix ->ptracer_cred handling for PTRACE_TRACEME" }, @@ -44475,15 +43046,9 @@ "CVE-2021-4149": { "cmt_msg": "btrfs: unlock newly allocated extent buffer after error" }, - "CVE-2021-4148": { - "cmt_msg": "mm: khugepaged: skip huge page collapse for special files" - }, "CVE-2021-3640": { "cmt_msg": "Bluetooth: sco: Fix lock_sock() blockage by memcpy_from_msg()" }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, "CVE-2013-3225": { "cmt_msg": "Bluetooth: RFCOMM - Fix missing msg_namelen update in rfcomm_sock_recvmsg()" }, @@ -44553,27 +43118,15 @@ "CVE-2015-1805": { "cmt_msg": "new helper: copy_page_from_iter()" }, - "CVE-2022-27223": { - "cmt_msg": "USB: gadget: validate endpoint index for xilinx udc" - }, "CVE-2016-9754": { "cmt_msg": "ring-buffer: Prevent overflow of size in ring_buffer_resize()" }, "CVE-2019-18680": { "cmt_msg": "" }, - "CVE-2022-0812": { - "cmt_msg": "xprtrdma: fix incorrect header size calculations" - }, "CVE-2019-18806": { "cmt_msg": "net: qlogic: Fix memory leak in ql_alloc_large_buffers" }, - "CVE-2022-0742": { - "cmt_msg": "ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()" - }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"" - }, "CVE-2020-14390": { "cmt_msg": "fbcon: remove soft scrollback code" }, @@ -44587,7 +43140,7 @@ "cmt_msg": "f2fs: sanity check segment count" }, "CVE-2022-1184": { - "cmt_msg": "" + "cmt_msg": "ext4: verify dir block before splitting it" }, "CVE-2019-19527": { "cmt_msg": "HID: hiddev: do cleanup in failure of opening a device" @@ -44646,9 +43199,6 @@ "CVE-2016-4998": { "cmt_msg": "netfilter: x_tables: check for bogus target offset" }, - "CVE-2022-1043": { - "cmt_msg": "io_uring: fix xa_alloc_cycle() error return value check" - }, "CVE-2017-5967": { "cmt_msg": "time: Remove CONFIG_TIMER_STATS" }, @@ -44715,9 +43265,6 @@ "CVE-2022-0400": { "cmt_msg": "" }, - "CVE-2021-0707": { - "cmt_msg": "dmabuf: fix use-after-free of dmabuf's file->f_inode" - }, "CVE-2021-38160": { "cmt_msg": "virtio_console: Assure used length from device is limited" }, @@ -44754,9 +43301,6 @@ "CVE-2020-25284": { "cmt_msg": "rbd: require global CAP_SYS_ADMIN for mapping and unmapping" }, - "CVE-2022-25636": { - "cmt_msg": "netfilter: nf_tables_offload: incorrect flow offload action array size" - }, "CVE-2015-3332": { "cmt_msg": "tcp: Fix crash in TCP Fast Open" }, @@ -44832,15 +43376,6 @@ "CVE-2019-16746": { "cmt_msg": "nl80211: validate beacon head" }, - "CVE-2022-1998": { - "cmt_msg": "fanotify: Fix stale file descriptor in copy_event_to_user()" - }, - "CVE-2022-1852": { - "cmt_msg": "KVM: x86: avoid calling x86 emulator without a decoded instruction" - }, - "CVE-2022-1516": { - "cmt_msg": "net/x25: Fix null-ptr-deref caused by x25_disconnect" - }, "CVE-2017-9725": { "cmt_msg": "mm: cma: fix incorrect type conversion for size during dma allocation" }, @@ -44859,9 +43394,6 @@ "CVE-2020-0543": { "cmt_msg": "x86/cpu: Add 'table' argument to cpu_matches()" }, - "CVE-2022-23041": { - "cmt_msg": "xen/9p: use alloc/free_pages_exact()" - }, "CVE-2022-1462": { "cmt_msg": "" }, @@ -44916,9 +43448,6 @@ "CVE-2019-3874": { "cmt_msg": "sctp: implement memory accounting on tx path" }, - "CVE-2022-0171": { - "cmt_msg": "" - }, "CVE-2018-10877": { "cmt_msg": "ext4: verify the depth of extent tree in ext4_find_extent()" }, @@ -44937,9 +43466,6 @@ "CVE-2021-3483": { "cmt_msg": "firewire: nosy: Fix a use-after-free bug in nosy_ioctl()" }, - "CVE-2022-29156": { - "cmt_msg": "RDMA/rtrs-clt: Fix possible double free in error case" - }, "CVE-2020-25656": { "cmt_msg": "vt: keyboard, extend func_buf_lock to readers" }, @@ -44961,30 +43487,15 @@ "CVE-2012-4542": { "cmt_msg": "" }, - "CVE-2022-1729": { - "cmt_msg": "perf: Fix sys_perf_event_open() race against self" - }, "CVE-2021-3573": { "cmt_msg": "Bluetooth: use correct lock to prevent UAF of hdev object" }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, "CVE-2022-1679": { "cmt_msg": "" }, "CVE-2018-1000026": { "cmt_msg": "bnx2x: disable GSO where gso_size is too big for hardware" }, - "CVE-2022-1975": { - "cmt_msg": "NFC: netlink: fix sleep in atomic bug when firmware download timeout" - }, - "CVE-2022-1972": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" - }, "CVE-2017-0786": { "cmt_msg": "brcmfmac: add length check in brcmf_cfg80211_escan_handler()" }, @@ -45003,9 +43514,6 @@ "CVE-2017-8065": { "cmt_msg": "crypto: ccm - move cbcmac input off the stack" }, - "CVE-2022-32981": { - "cmt_msg": "powerpc/32: Fix overread/overwrite of thread_struct via ptrace" - }, "CVE-2018-13405": { "cmt_msg": "Fix up non-directory creation in SGID directories" }, @@ -45057,9 +43565,6 @@ "CVE-2021-28951": { "cmt_msg": "io_uring: ensure that SQPOLL thread is started for exit" }, - "CVE-2022-1671": { - "cmt_msg": "rxrpc: fix some null-ptr-deref bugs in server_key.c" - }, "CVE-2021-3653": { "cmt_msg": "KVM: nSVM: avoid picking up unsupported bits from L2 in int_ctl (CVE-2021-3653)" }, @@ -45231,9 +43736,6 @@ "CVE-2020-9383": { "cmt_msg": "floppy: check FDC index for errors before assigning it" }, - "CVE-2022-29582": { - "cmt_msg": "io_uring: fix race between timeout flush and removal" - }, "CVE-2021-38198": { "cmt_msg": "KVM: X86: MMU: Use the correct inherited permissions to get shadow page" }, @@ -45506,8 +44008,8 @@ "CVE-2016-9794": { "cmt_msg": "ALSA: pcm : Call kill_fasync() in stream lock" }, - "CVE-2021-3894": { - "cmt_msg": "sctp: account stream padding length for reconf chunk" + "CVE-2022-1184": { + "cmt_msg": "ext4: verify dir block before splitting it" }, "CVE-2020-24587": { "cmt_msg": "mac80211: prevent mixed key and fragment cache attacks" @@ -45533,6 +44035,9 @@ "CVE-2018-10940": { "cmt_msg": "cdrom: information leak in cdrom_ioctl_media_changed()" }, + "CVE-2022-32250": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier" + }, "CVE-2018-10087": { "cmt_msg": "kernel/exit.c: avoid undefined behaviour when calling wait4()" }, @@ -45608,9 +44113,6 @@ "CVE-2019-14835": { "cmt_msg": "vhost: make sure log_num < in_num" }, - "CVE-2022-2078": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, "CVE-2018-1000204": { "cmt_msg": "scsi: sg: allocate with __GFP_ZERO in sg_build_indirect()" }, @@ -45815,9 +44317,6 @@ "CVE-2017-1000410": { "cmt_msg": "Bluetooth: Prevent stack info leak from the EFS element." }, - "CVE-2022-20154": { - "cmt_msg": "sctp: use call_rcu to free endpoint" - }, "CVE-2016-8645": { "cmt_msg": "tcp: take care of truncations done by sk_filter()" }, @@ -45836,9 +44335,6 @@ "CVE-2019-15926": { "cmt_msg": "ath6kl: add some bounds checking" }, - "CVE-2022-0998": { - "cmt_msg": "vdpa: clean up get_config_size ret value handling" - }, "CVE-2019-14821": { "cmt_msg": "KVM: coalesced_mmio: add bounds checking" }, @@ -45929,6 +44425,9 @@ "CVE-2020-15393": { "cmt_msg": "usb: usbtest: fix missing kfree(dev->buf) in usbtest_disconnect" }, + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default" + }, "CVE-2021-3564": { "cmt_msg": "Bluetooth: fix the erroneous flush_work() order" }, @@ -46094,6 +44593,9 @@ "CVE-2022-1048": { "cmt_msg": "ALSA: pcm: Fix races among concurrent hw_params and hw_free calls" }, + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" + }, "CVE-2019-14897": { "cmt_msg": "libertas: Fix two buffer overflows at parsing bss descriptor" }, @@ -46118,8 +44620,8 @@ "CVE-2018-9415": { "cmt_msg": "ARM: amba: Fix race condition with driver_override" }, - "CVE-2022-0995": { - "cmt_msg": "watch_queue: Fix filter limit check" + "CVE-2022-1882": { + "cmt_msg": "" }, "CVE-2020-12771": { "cmt_msg": "bcache: fix potential deadlock problem in btree_gc_coalesce" @@ -46160,6 +44662,9 @@ "CVE-2020-25212": { "cmt_msg": "nfs: Fix getxattr kernel panic and memory overflow" }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, "CVE-2019-19036": { "cmt_msg": "btrfs: Detect unbalanced tree with empty leaf before crashing btree operations" }, @@ -46229,9 +44734,6 @@ "CVE-2021-38208": { "cmt_msg": "nfc: fix NULL ptr dereference in llcp_sock_getname() after failed connect" }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"" - }, "CVE-2017-18232": { "cmt_msg": "scsi: libsas: direct call probe and destruct" }, @@ -46251,7 +44753,7 @@ "cmt_msg": "NFC: llcp: Limit size of SDP URI" }, "CVE-2020-26555": { - "cmt_msg": "" + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, "CVE-2018-9517": { "cmt_msg": "l2tp: pass tunnel pointer to ->session_create()" @@ -46304,9 +44806,6 @@ "CVE-2018-9568": { "cmt_msg": "net: Set sk_prot_creator when cloning sockets to the right proto" }, - "CVE-2022-0644": { - "cmt_msg": "vfs: check fd has read access in kernel_read_file_from_fd()" - }, "CVE-2018-13053": { "cmt_msg": "alarmtimer: Prevent overflow for relative nanosleep" }, @@ -46439,9 +44938,6 @@ "CVE-2021-3178": { "cmt_msg": "nfsd4: readdirplus shouldn't return parent of export" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, "CVE-2018-7755": { "cmt_msg": "floppy: Do not copy a kernel pointer to user memory in FDGETPRM ioctl" }, @@ -46457,9 +44953,6 @@ "CVE-2007-3719": { "cmt_msg": "" }, - "CVE-2022-1789": { - "cmt_msg": "KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID" - }, "CVE-2017-10911": { "cmt_msg": "xen-blkback: don't leak stack data via response ring" }, @@ -46472,12 +44965,6 @@ "CVE-2022-24958": { "cmt_msg": "usb: gadget: don't release an existing dev->buf" }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers" - }, - "CVE-2022-28893": { - "cmt_msg": "SUNRPC: Ensure we flush any closed sockets before xs_xprt_free()" - }, "CVE-2021-3772": { "cmt_msg": "sctp: use init_tag from inithdr for ABORT chunk" }, @@ -46490,9 +44977,6 @@ "CVE-2016-8399": { "cmt_msg": "net: ping: check minimum size on ICMP header length" }, - "CVE-2021-39711": { - "cmt_msg": "bpf: fix panic due to oob in bpf_prog_test_run_skb" - }, "CVE-2016-7042": { "cmt_msg": "KEYS: Fix short sprintf buffer in /proc/keys show function" }, @@ -46604,9 +45088,6 @@ "CVE-2020-14381": { "cmt_msg": "futex: Fix inode life-time issue" }, - "CVE-2022-1158": { - "cmt_msg": "KVM: x86/mmu: do compare-and-exchange of gPTE via the user address" - }, "CVE-2019-19768": { "cmt_msg": "blktrace: Protect q->blk_trace with RCU" }, @@ -46667,15 +45148,9 @@ "CVE-2019-12881": { "cmt_msg": "drm/i915/userptr: reject zero user_size" }, - "CVE-2022-28389": { - "cmt_msg": "can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path" - }, "CVE-2018-1000004": { "cmt_msg": "ALSA: seq: Make ioctls race-free" }, - "CVE-2022-0500": { - "cmt_msg": "bpf: Introduce MEM_RDONLY flag" - }, "CVE-2018-18690": { "cmt_msg": "xfs: don't fail when converting shortform attr to long form during ATTR_REPLACE" }, @@ -46751,8 +45226,8 @@ "CVE-2022-0617": { "cmt_msg": "udf: Fix NULL ptr deref when converting from inline format" }, - "CVE-2022-26878": { - "cmt_msg": "" + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()" }, "CVE-2019-19531": { "cmt_msg": "usb: yurex: Fix use-after-free in yurex_delete" @@ -46853,9 +45328,6 @@ "CVE-2022-23960": { "cmt_msg": "ARM: report Spectre v2 status through sysfs" }, - "CVE-2019-0146": { - "cmt_msg": "" - }, "CVE-2020-10942": { "cmt_msg": "vhost: Check docket sk_family instead of call getname" }, @@ -46961,9 +45433,6 @@ "CVE-2016-7097": { "cmt_msg": "posix_acl: Clear SGID bit when setting file permissions" }, - "CVE-2021-39713": { - "cmt_msg": "net: sched: use Qdisc rcu API instead of relying on rtnl lock" - }, "CVE-2020-28374": { "cmt_msg": "scsi: target: Fix XCOPY NAA identifier lookup" }, @@ -47012,9 +45481,6 @@ "CVE-2016-9083": { "cmt_msg": "vfio/pci: Fix integer overflows, bitmask check" }, - "CVE-2022-1055": { - "cmt_msg": "net: sched: fix use-after-free in tc_new_tfilter()" - }, "CVE-2017-18222": { "cmt_msg": "net: hns: fix ethtool_get_strings overflow in hns driver" }, @@ -47060,14 +45526,8 @@ "CVE-2021-26931": { "cmt_msg": "xen-blkback: don't \"handle\" error by BUG()" }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, "CVE-2022-1652": { - "cmt_msg": "" - }, - "CVE-2022-1651": { - "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" + "cmt_msg": "floppy: use a statically allocated error counter" }, "CVE-2020-29568": { "cmt_msg": "xen/xenbus: Allow watches discard events before queueing" @@ -47255,18 +45715,12 @@ "CVE-2021-4149": { "cmt_msg": "btrfs: unlock newly allocated extent buffer after error" }, - "CVE-2021-4148": { - "cmt_msg": "mm: khugepaged: skip huge page collapse for special files" - }, "CVE-2021-3864": { "cmt_msg": "" }, "CVE-2021-3640": { "cmt_msg": "Bluetooth: sco: Fix lock_sock() blockage by memcpy_from_msg()" }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, "CVE-2017-7618": { "cmt_msg": "crypto: ahash - Fix EINPROGRESS notification callback" }, @@ -47384,9 +45838,6 @@ "CVE-2016-9756": { "cmt_msg": "KVM: x86: drop error recovery in em_jmp_far and em_ret_far" }, - "CVE-2022-0812": { - "cmt_msg": "xprtrdma: fix incorrect header size calculations" - }, "CVE-2019-5108": { "cmt_msg": "mac80211: Do not send Layer 2 Update frame before authorization" }, @@ -47396,18 +45847,12 @@ "CVE-2017-18595": { "cmt_msg": "tracing: Fix possible double free on failure of allocating trace buffer" }, - "CVE-2022-0742": { - "cmt_msg": "ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()" - }, "CVE-2021-3612": { "cmt_msg": "Input: joydev - prevent potential read overflow in ioctl" }, "CVE-2017-2636": { "cmt_msg": "tty: n_hdlc: get rid of racy n_hdlc.tbuf" }, - "CVE-2022-20153": { - "cmt_msg": "io_uring: return back safer resurrect" - }, "CVE-2020-15437": { "cmt_msg": "serial: 8250: fix null-ptr-deref in serial8250_start_tx()" }, @@ -47525,9 +45970,6 @@ "CVE-2022-26490": { "cmt_msg": "nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION" }, - "CVE-2022-1043": { - "cmt_msg": "io_uring: fix xa_alloc_cycle() error return value check" - }, "CVE-2017-5967": { "cmt_msg": "time: Remove CONFIG_TIMER_STATS" }, @@ -47543,9 +45985,6 @@ "CVE-2018-20976": { "cmt_msg": "xfs: clear sb->s_fs_info on mount failure" }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, "CVE-2016-10147": { "cmt_msg": "crypto: mcryptd - Check mcryptd algorithm compatibility" }, @@ -47561,9 +46000,6 @@ "CVE-2019-16413": { "cmt_msg": "9p: use inode->i_lock to protect i_size_write() under 32-bit" }, - "CVE-2022-1516": { - "cmt_msg": "net/x25: Fix null-ptr-deref caused by x25_disconnect" - }, "CVE-2018-10876": { "cmt_msg": "ext4: only look at the bg_flags field if it is valid" }, @@ -47621,9 +46057,6 @@ "CVE-2022-0400": { "cmt_msg": "" }, - "CVE-2021-0707": { - "cmt_msg": "dmabuf: fix use-after-free of dmabuf's file->f_inode" - }, "CVE-2021-38160": { "cmt_msg": "virtio_console: Assure used length from device is limited" }, @@ -47666,9 +46099,6 @@ "CVE-2016-1583": { "cmt_msg": "proc: prevent stacking filesystems on top" }, - "CVE-2022-25636": { - "cmt_msg": "netfilter: nf_tables_offload: incorrect flow offload action array size" - }, "CVE-2017-1000379": { "cmt_msg": "mm: larger stack guard gap, between vmas" }, @@ -47690,9 +46120,6 @@ "CVE-2019-15219": { "cmt_msg": "USB: sisusbvga: fix oops in error path of sisusb_probe" }, - "CVE-2022-1015": { - "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." - }, "CVE-2017-5549": { "cmt_msg": "USB: serial: kl5kusb105: fix line-state error handling" }, @@ -47705,9 +46132,6 @@ "CVE-2019-19378": { "cmt_msg": "" }, - "CVE-2022-1852": { - "cmt_msg": "KVM: x86: avoid calling x86 emulator without a decoded instruction" - }, "CVE-2020-4788": { "cmt_msg": "powerpc/64s: flush L1D on kernel entry" }, @@ -47753,9 +46177,6 @@ "CVE-2019-19449": { "cmt_msg": "f2fs: fix to do sanity check on segment/section count" }, - "CVE-2021-33135": { - "cmt_msg": "" - }, "CVE-2019-19523": { "cmt_msg": "USB: adutux: fix use-after-free on disconnect" }, @@ -47792,9 +46213,6 @@ "CVE-2019-15215": { "cmt_msg": "media: cpia2_usb: first wake up, then free in disconnect" }, - "CVE-2022-1998": { - "cmt_msg": "fanotify: Fix stale file descriptor in copy_event_to_user()" - }, "CVE-2018-18021": { "cmt_msg": "arm64: KVM: Tighten guest core register access from userspace" }, @@ -47819,9 +46237,6 @@ "CVE-2020-27815": { "cmt_msg": "jfs: Fix array index bounds check in dbAdjTree" }, - "CVE-2022-23041": { - "cmt_msg": "xen/9p: use alloc/free_pages_exact()" - }, "CVE-2022-1462": { "cmt_msg": "" }, @@ -47912,9 +46327,6 @@ "CVE-2019-3874": { "cmt_msg": "sctp: implement memory accounting on tx path" }, - "CVE-2022-0171": { - "cmt_msg": "" - }, "CVE-2018-10877": { "cmt_msg": "ext4: verify the depth of extent tree in ext4_find_extent()" }, @@ -47927,9 +46339,6 @@ "CVE-2016-8655": { "cmt_msg": "packet: fix race condition in packet_set_ring" }, - "CVE-2022-1882": { - "cmt_msg": "" - }, "CVE-2020-14331": { "cmt_msg": "vgacon: Fix for missing check in scrollback handling" }, @@ -47945,9 +46354,6 @@ "CVE-2021-3483": { "cmt_msg": "firewire: nosy: Fix a use-after-free bug in nosy_ioctl()" }, - "CVE-2022-29156": { - "cmt_msg": "RDMA/rtrs-clt: Fix possible double free in error case" - }, "CVE-2022-1419": { "cmt_msg": "drm/vgem: Close use-after-free race in vgem_gem_create" }, @@ -48020,21 +46426,12 @@ "CVE-2018-7191": { "cmt_msg": "tun: call dev_get_valid_name() before register_netdevice()" }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, "CVE-2018-1000026": { "cmt_msg": "bnx2x: disable GSO where gso_size is too big for hardware" }, "CVE-2022-1975": { "cmt_msg": "NFC: netlink: fix sleep in atomic bug when firmware download timeout" }, - "CVE-2022-1972": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" - }, "CVE-2017-2596": { "cmt_msg": "kvm: fix page struct leak in handle_vmon" }, @@ -48122,9 +46519,6 @@ "CVE-2021-28951": { "cmt_msg": "io_uring: ensure that SQPOLL thread is started for exit" }, - "CVE-2022-1671": { - "cmt_msg": "rxrpc: fix some null-ptr-deref bugs in server_key.c" - }, "CVE-2020-16166": { "cmt_msg": "random32: update the net random state on interrupt and activity" }, @@ -48233,9 +46627,6 @@ "CVE-2022-1247": { "cmt_msg": "" }, - "CVE-2022-1184": { - "cmt_msg": "" - }, "CVE-2022-23222": { "cmt_msg": "bpf: Replace PTR_TO_XXX_OR_NULL with PTR_TO_XXX | PTR_MAYBE_NULL" }, @@ -48356,9 +46747,6 @@ "CVE-2020-9383": { "cmt_msg": "floppy: check FDC index for errors before assigning it" }, - "CVE-2022-29582": { - "cmt_msg": "io_uring: fix race between timeout flush and removal" - }, "CVE-2021-38198": { "cmt_msg": "KVM: X86: MMU: Use the correct inherited permissions to get shadow page" }, @@ -51701,6 +50089,10 @@ "CVE-2021-0129": { "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical", "cmt_id": "75523bbfb0eaead670c97fbcf096ca2ab556f0c0" + }, + "CVE-2020-26555": { + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical", + "cmt_id": "75523bbfb0eaead670c97fbcf096ca2ab556f0c0" } }, "4.4.271": { @@ -52011,9 +50403,6 @@ "CVE-2020-26557": { "cmt_msg": "" }, - "CVE-2020-26555": { - "cmt_msg": "" - }, "CVE-2019-20794": { "cmt_msg": "" }, @@ -52035,9 +50424,6 @@ "CVE-2022-0001": { "cmt_msg": "x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE" }, - "CVE-2022-29156": { - "cmt_msg": "RDMA/rtrs-clt: Fix possible double free in error case" - }, "CVE-2022-0002": { "cmt_msg": "x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE" }, @@ -52059,17 +50445,14 @@ "CVE-2017-5753": { "cmt_msg": "x86/cpufeatures: Add X86_BUG_SPECTRE_V[12]" }, - "CVE-2022-0995": { - "cmt_msg": "watch_queue: Fix filter limit check" - }, "CVE-2020-26560": { "cmt_msg": "" }, "CVE-2022-0492": { "cmt_msg": "cgroup-v1: Require capabilities to set release_agent" }, - "CVE-2022-0998": { - "cmt_msg": "vdpa: clean up get_config_size ret value handling" + "CVE-2022-32981": { + "cmt_msg": "powerpc/32: Fix overread/overwrite of thread_struct via ptrace" }, "CVE-2022-1882": { "cmt_msg": "" @@ -52083,15 +50466,12 @@ "CVE-2019-2181": { "cmt_msg": "binder: check for overflow when alloc for security context" }, - "CVE-2022-0644": { - "cmt_msg": "vfs: check fd has read access in kernel_read_file_from_fd()" + "CVE-2022-32250": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier" }, "CVE-2020-27820": { "cmt_msg": "drm/nouveau: use drm_dev_unplug() during device removal" }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"" - }, "CVE-2020-24503": { "cmt_msg": "" }, @@ -52125,9 +50505,6 @@ "CVE-2022-1263": { "cmt_msg": "KVM: avoid NULL pointer dereference in kvm_dirty_ring_push" }, - "CVE-2022-1158": { - "cmt_msg": "KVM: x86/mmu: do compare-and-exchange of gPTE via the user address" - }, "CVE-2021-35477": { "cmt_msg": "bpf: Introduce BPF nospec instruction for mitigating Spectre v4" }, @@ -52146,17 +50523,8 @@ "CVE-2019-19814": { "cmt_msg": "" }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, - "CVE-2022-1015": { - "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." - }, "CVE-2022-1652": { - "cmt_msg": "" - }, - "CVE-2022-1651": { - "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" + "cmt_msg": "floppy: use a statically allocated error counter" }, "CVE-2021-39648": { "cmt_msg": "usb: gadget: configfs: Fix use-after-free issue with udc_name" @@ -52176,18 +50544,9 @@ "CVE-2021-43975": { "cmt_msg": "atlantic: Fix OOB read and write in hw_atl_utils_fw_rpc_wait" }, - "CVE-2022-25636": { - "cmt_msg": "netfilter: nf_tables_offload: incorrect flow offload action array size" - }, "CVE-2017-1000405": { "cmt_msg": "mm, thp: Do not make page table dirty unconditionally in touch_p[mu]d()" }, - "CVE-2022-1789": { - "cmt_msg": "KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID" - }, - "CVE-2022-2078": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, "CVE-2016-8660": { "cmt_msg": "" }, @@ -52197,11 +50556,8 @@ "CVE-2019-12378": { "cmt_msg": "ipv6_sockglue: Fix a missing-check bug in ip6_ra_control()" }, - "CVE-2022-23041": { - "cmt_msg": "xen/9p: use alloc/free_pages_exact()" - }, - "CVE-2022-1462": { - "cmt_msg": "" + "CVE-2022-23042": { + "cmt_msg": "xen/netfront: react properly to failing gnttab_end_foreign_access_ref()" }, "CVE-2022-0494": { "cmt_msg": "block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern" @@ -52215,21 +50571,12 @@ "CVE-2020-16120": { "cmt_msg": "ovl: switch to mounter creds in readdir" }, - "CVE-2022-23222": { - "cmt_msg": "bpf: Replace PTR_TO_XXX_OR_NULL with PTR_TO_XXX | PTR_MAYBE_NULL" - }, "CVE-2020-15802": { "cmt_msg": "" }, "CVE-2008-2544": { "cmt_msg": "" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, - "CVE-2021-39713": { - "cmt_msg": "net: sched: use Qdisc rcu API instead of relying on rtnl lock" - }, "CVE-2018-25020": { "cmt_msg": "bpf: fix truncated jump targets on heavy expansions" }, @@ -52272,9 +50619,6 @@ "CVE-2020-26145": { "cmt_msg": "ath10k: drop fragments with multicast DA for PCIe" }, - "CVE-2022-1204": { - "cmt_msg": "ax25: Fix refcount leaks caused by ax25_cb_del()" - }, "CVE-2022-25265": { "cmt_msg": "" }, @@ -52290,9 +50634,6 @@ "CVE-2020-26142": { "cmt_msg": "" }, - "CVE-2022-28893": { - "cmt_msg": "SUNRPC: Ensure we flush any closed sockets before xs_xprt_free()" - }, "CVE-2021-29155": { "cmt_msg": "bpf: Use correct permission flag for mixed signed bounds arithmetic" }, @@ -52302,9 +50643,6 @@ "CVE-2017-9986": { "cmt_msg": "sound: Retire OSS" }, - "CVE-2021-39711": { - "cmt_msg": "bpf: fix panic due to oob in bpf_prog_test_run_skb" - }, "CVE-2021-34556": { "cmt_msg": "bpf: Introduce BPF nospec instruction for mitigating Spectre v4" }, @@ -52323,9 +50661,6 @@ "CVE-2022-24958": { "cmt_msg": "usb: gadget: don't release an existing dev->buf" }, - "CVE-2022-25258": { - "cmt_msg": "USB: gadget: validate interface OS descriptor requests" - }, "CVE-2018-13098": { "cmt_msg": "f2fs: fix to do sanity check with extra_attr feature" }, @@ -52335,17 +50670,14 @@ "CVE-2021-38300": { "cmt_msg": "bpf, mips: Validate conditional branch offsets" }, - "CVE-2022-1998": { - "cmt_msg": "fanotify: Fix stale file descriptor in copy_event_to_user()" - }, "CVE-2021-3669": { "cmt_msg": "ipc: replace costly bailout check in sysvipc_find_ipc()" }, "CVE-2019-18885": { "cmt_msg": "btrfs: merge btrfs_find_device and find_device" }, - "CVE-2022-23042": { - "cmt_msg": "xen/netfront: react properly to failing gnttab_end_foreign_access_ref()" + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()" }, "CVE-2019-11091": { "cmt_msg": "s390/speculation: Support 'mitigations=' cmdline option" @@ -52368,9 +50700,6 @@ "CVE-2022-23039": { "cmt_msg": "xen/gntalloc: don't use gnttab_query_foreign_access()" }, - "CVE-2022-20154": { - "cmt_msg": "sctp: use call_rcu to free endpoint" - }, "CVE-2017-13694": { "cmt_msg": "" }, @@ -52392,30 +50721,15 @@ "CVE-2022-1729": { "cmt_msg": "perf: Fix sys_perf_event_open() race against self" }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, - "CVE-2021-3894": { - "cmt_msg": "sctp: account stream padding length for reconf chunk" - }, - "CVE-2022-0812": { - "cmt_msg": "xprtrdma: fix incorrect header size calculations" - }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, - "CVE-2022-1679": { + "CVE-2022-1462": { "cmt_msg": "" }, "CVE-2022-1184": { - "cmt_msg": "" + "cmt_msg": "ext4: verify dir block before splitting it" }, "CVE-2022-1975": { "cmt_msg": "NFC: netlink: fix sleep in atomic bug when firmware download timeout" }, - "CVE-2022-1972": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, "CVE-2013-7445": { "cmt_msg": "" }, @@ -52437,9 +50751,6 @@ "CVE-2005-3660": { "cmt_msg": "" }, - "CVE-2021-33135": { - "cmt_msg": "" - }, "CVE-2022-1508": { "cmt_msg": "io_uring: reexpand under-reexpanded iters" }, @@ -52473,8 +50784,8 @@ "CVE-2022-32296": { "cmt_msg": "tcp: increase source port perturb table to 2^16" }, - "CVE-2022-1852": { - "cmt_msg": "KVM: x86: avoid calling x86 emulator without a decoded instruction" + "CVE-2022-25258": { + "cmt_msg": "USB: gadget: validate interface OS descriptor requests" }, "CVE-2019-20806": { "cmt_msg": "media: tw5864: Fix possible NULL pointer dereference in tw5864_handle_frame" @@ -52488,8 +50799,8 @@ "CVE-2021-28951": { "cmt_msg": "io_uring: ensure that SQPOLL thread is started for exit" }, - "CVE-2022-1671": { - "cmt_msg": "rxrpc: fix some null-ptr-deref bugs in server_key.c" + "CVE-2022-20148": { + "cmt_msg": "f2fs: fix UAF in f2fs_available_free_memory" }, "CVE-2020-14304": { "cmt_msg": "" @@ -52506,6 +50817,9 @@ "CVE-2020-0347": { "cmt_msg": "" }, + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default" + }, "CVE-2019-12615": { "cmt_msg": "mdesc: fix a missing-check bug in get_vdev_port_node_info()" }, @@ -52548,30 +50862,21 @@ "CVE-2021-39636": { "cmt_msg": "netfilter: x_tables: fix pointer leaks to userspace" }, - "CVE-2022-28389": { - "cmt_msg": "can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path" - }, "CVE-2018-12127": { "cmt_msg": "s390/speculation: Support 'mitigations=' cmdline option" }, "CVE-2018-12126": { "cmt_msg": "s390/speculation: Support 'mitigations=' cmdline option" }, - "CVE-2022-0500": { - "cmt_msg": "bpf: Introduce MEM_RDONLY flag" + "CVE-2022-25375": { + "cmt_msg": "usb: gadget: rndis: check size of RNDIS_MSG_SET command" }, "CVE-2018-20509": { "cmt_msg": "binder: refactor binder ref inc/dec for thread safety" }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, "CVE-2022-0168": { "cmt_msg": "cifs: fix NULL ptr dereference in smb2_ioctl_query_info()" }, - "CVE-2022-1055": { - "cmt_msg": "net: sched: fix use-after-free in tc_new_tfilter()" - }, "CVE-2022-0480": { "cmt_msg": "memcg: enable accounting for file lock caches" }, @@ -52593,17 +50898,14 @@ "CVE-2019-2025": { "cmt_msg": "binder: fix race that allows malicious free of live buffer" }, - "CVE-2022-1199": { - "cmt_msg": "ax25: Fix NULL pointer dereference in ax25_kill_by_device" - }, "CVE-2021-4218": { "cmt_msg": "sysctl: pass kernel pointers to ->proc_handler" }, "CVE-2022-23960": { "cmt_msg": "ARM: report Spectre v2 status through sysfs" }, - "CVE-2022-20153": { - "cmt_msg": "io_uring: return back safer resurrect" + "CVE-2022-23222": { + "cmt_msg": "bpf: Replace PTR_TO_XXX_OR_NULL with PTR_TO_XXX | PTR_MAYBE_NULL" }, "CVE-2018-5995": { "cmt_msg": "printk: hash addresses printed with %p" @@ -52620,9 +50922,6 @@ "CVE-2018-17977": { "cmt_msg": "" }, - "CVE-2022-26878": { - "cmt_msg": "" - }, "CVE-2016-5728": { "cmt_msg": "misc: mic: Fix for double fetch security bug in VOP driver" }, @@ -52644,14 +50943,11 @@ "CVE-2018-12931": { "cmt_msg": "" }, - "CVE-2021-4148": { - "cmt_msg": "mm: khugepaged: skip huge page collapse for special files" - }, "CVE-2022-1198": { "cmt_msg": "drivers: hamradio: 6pack: fix UAF bug caused by mod_timer()" }, - "CVE-2022-1043": { - "cmt_msg": "io_uring: fix xa_alloc_cycle() error return value check" + "CVE-2022-1199": { + "cmt_msg": "ax25: Fix NULL pointer dereference in ax25_kill_by_device" }, "CVE-2017-5967": { "cmt_msg": "time: Remove CONFIG_TIMER_STATS" @@ -52689,6 +50985,9 @@ "CVE-2019-12382": { "cmt_msg": "drm/edid: Fix a missing-check bug in drm_load_edid_firmware()" }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, "CVE-2020-12364": { "cmt_msg": "drm/i915/guc: Update to use firmware v49.0.1" }, @@ -52701,9 +51000,6 @@ "CVE-2022-20166": { "cmt_msg": "drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions" }, - "CVE-2022-25375": { - "cmt_msg": "usb: gadget: rndis: check size of RNDIS_MSG_SET command" - }, "CVE-2017-13166": { "cmt_msg": "media: v4l2-ioctl.c: use check_fmt for enum/g/s/try_fmt" }, @@ -52713,9 +51009,6 @@ "CVE-2018-12207": { "cmt_msg": "kvm: x86, powerpc: do not allow clearing largepages debugfs entry" }, - "CVE-2022-1516": { - "cmt_msg": "net/x25: Fix null-ptr-deref caused by x25_disconnect" - }, "CVE-2022-1016": { "cmt_msg": "netfilter: nf_tables: initialize registers in nft_do_chain()" }, @@ -52743,17 +51036,11 @@ "CVE-2015-2877": { "cmt_msg": "" }, - "CVE-2022-0171": { - "cmt_msg": "" + "CVE-2022-1204": { + "cmt_msg": "ax25: Fix refcount leaks caused by ax25_cb_del()" }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers" - }, - "CVE-2022-29582": { - "cmt_msg": "io_uring: fix race between timeout flush and removal" - }, - "CVE-2019-0146": { - "cmt_msg": "" + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" }, "CVE-2020-10708": { "cmt_msg": "" @@ -52764,8 +51051,8 @@ "CVE-2022-0400": { "cmt_msg": "" }, - "CVE-2021-0707": { - "cmt_msg": "dmabuf: fix use-after-free of dmabuf's file->f_inode" + "CVE-2022-1679": { + "cmt_msg": "" }, "CVE-2019-11191": { "cmt_msg": "x86: Deprecate a.out support" @@ -52806,24 +51093,12 @@ "CVE-2011-4917": { "cmt_msg": "" }, - "CVE-2022-32981": { - "cmt_msg": "powerpc/32: Fix overread/overwrite of thread_struct via ptrace" - }, - "CVE-2022-0742": { - "cmt_msg": "ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()" - }, "CVE-2021-32078": { "cmt_msg": "ARM: footbridge: remove personal server platform" }, "CVE-2022-30594": { "cmt_msg": "ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE" }, - "CVE-2022-20148": { - "cmt_msg": "f2fs: fix UAF in f2fs_available_free_memory" - }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" - }, "CVE-2019-10220": { "cmt_msg": "Convert filldir[64]() from __put_user() to unsafe_put_user()" }, @@ -52971,8 +51246,8 @@ "CVE-2019-19966": { "cmt_msg": "media: cpia2: Fix use-after-free in cpia2_exit" }, - "CVE-2021-3894": { - "cmt_msg": "sctp: account stream padding length for reconf chunk" + "CVE-2022-1184": { + "cmt_msg": "ext4: verify dir block before splitting it" }, "CVE-2020-24587": { "cmt_msg": "mac80211: prevent mixed key and fragment cache attacks" @@ -52995,6 +51270,9 @@ "CVE-2018-10940": { "cmt_msg": "cdrom: information leak in cdrom_ioctl_media_changed()" }, + "CVE-2022-32250": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier" + }, "CVE-2018-10087": { "cmt_msg": "kernel/exit.c: avoid undefined behaviour when calling wait4()" }, @@ -53070,9 +51348,6 @@ "CVE-2019-14835": { "cmt_msg": "vhost: make sure log_num < in_num" }, - "CVE-2022-2078": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, "CVE-2018-1000204": { "cmt_msg": "scsi: sg: allocate with __GFP_ZERO in sg_build_indirect()" }, @@ -53262,18 +51537,12 @@ "CVE-2019-18680": { "cmt_msg": "unknown" }, - "CVE-2022-20153": { - "cmt_msg": "io_uring: return back safer resurrect" - }, "CVE-2022-23038": { "cmt_msg": "xen/grant-table: add gnttab_try_end_foreign_access()" }, "CVE-2017-1000410": { "cmt_msg": "Bluetooth: Prevent stack info leak from the EFS element." }, - "CVE-2022-20154": { - "cmt_msg": "sctp: use call_rcu to free endpoint" - }, "CVE-2016-8645": { "cmt_msg": "tcp: take care of truncations done by sk_filter()" }, @@ -53292,9 +51561,6 @@ "CVE-2019-15926": { "cmt_msg": "ath6kl: add some bounds checking" }, - "CVE-2022-0998": { - "cmt_msg": "vdpa: clean up get_config_size ret value handling" - }, "CVE-2019-14821": { "cmt_msg": "KVM: coalesced_mmio: add bounds checking" }, @@ -53385,6 +51651,9 @@ "CVE-2020-15393": { "cmt_msg": "usb: usbtest: fix missing kfree(dev->buf) in usbtest_disconnect" }, + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default" + }, "CVE-2021-3564": { "cmt_msg": "Bluetooth: fix the erroneous flush_work() order" }, @@ -53544,6 +51813,9 @@ "CVE-2022-1048": { "cmt_msg": "ALSA: pcm: Fix races among concurrent hw_params and hw_free calls" }, + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" + }, "CVE-2019-14897": { "cmt_msg": "libertas: Fix two buffer overflows at parsing bss descriptor" }, @@ -53565,8 +51837,8 @@ "CVE-2018-9415": { "cmt_msg": "ARM: amba: Fix race condition with driver_override" }, - "CVE-2022-0995": { - "cmt_msg": "watch_queue: Fix filter limit check" + "CVE-2022-1882": { + "cmt_msg": "" }, "CVE-2020-12771": { "cmt_msg": "bcache: fix potential deadlock problem in btree_gc_coalesce" @@ -53610,6 +51882,9 @@ "CVE-2020-25212": { "cmt_msg": "nfs: Fix getxattr kernel panic and memory overflow" }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, "CVE-2019-19036": { "cmt_msg": "btrfs: Detect unbalanced tree with empty leaf before crashing btree operations" }, @@ -53673,9 +51948,6 @@ "CVE-2021-38208": { "cmt_msg": "nfc: fix NULL ptr dereference in llcp_sock_getname() after failed connect" }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"" - }, "CVE-2017-18232": { "cmt_msg": "scsi: libsas: direct call probe and destruct" }, @@ -53695,7 +51967,7 @@ "cmt_msg": "NFC: llcp: Limit size of SDP URI" }, "CVE-2020-26555": { - "cmt_msg": "" + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, "CVE-2018-9517": { "cmt_msg": "l2tp: pass tunnel pointer to ->session_create()" @@ -53712,9 +51984,6 @@ "CVE-2018-1087": { "cmt_msg": "kvm/x86: fix icebp instruction handling" }, - "CVE-2022-29156": { - "cmt_msg": "RDMA/rtrs-clt: Fix possible double free in error case" - }, "CVE-2018-20854": { "cmt_msg": "phy: ocelot-serdes: fix out-of-bounds read" }, @@ -53880,9 +52149,6 @@ "CVE-2021-3178": { "cmt_msg": "nfsd4: readdirplus shouldn't return parent of export" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, "CVE-2018-7755": { "cmt_msg": "floppy: Do not copy a kernel pointer to user memory in FDGETPRM ioctl" }, @@ -53910,12 +52176,6 @@ "CVE-2022-24958": { "cmt_msg": "usb: gadget: don't release an existing dev->buf" }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers" - }, - "CVE-2022-28893": { - "cmt_msg": "SUNRPC: Ensure we flush any closed sockets before xs_xprt_free()" - }, "CVE-2021-3772": { "cmt_msg": "sctp: use init_tag from inithdr for ABORT chunk" }, @@ -53928,9 +52188,6 @@ "CVE-2016-8399": { "cmt_msg": "net: ping: check minimum size on ICMP header length" }, - "CVE-2021-39711": { - "cmt_msg": "bpf: fix panic due to oob in bpf_prog_test_run_skb" - }, "CVE-2016-7042": { "cmt_msg": "KEYS: Fix short sprintf buffer in /proc/keys show function" }, @@ -54039,9 +52296,6 @@ "CVE-2020-14381": { "cmt_msg": "futex: Fix inode life-time issue" }, - "CVE-2022-1158": { - "cmt_msg": "KVM: x86/mmu: do compare-and-exchange of gPTE via the user address" - }, "CVE-2019-19768": { "cmt_msg": "blktrace: Protect q->blk_trace with RCU" }, @@ -54108,15 +52362,9 @@ "CVE-2019-12881": { "cmt_msg": "drm/i915/userptr: reject zero user_size" }, - "CVE-2022-28389": { - "cmt_msg": "can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path" - }, "CVE-2018-1000004": { "cmt_msg": "ALSA: seq: Make ioctls race-free" }, - "CVE-2022-0500": { - "cmt_msg": "bpf: Introduce MEM_RDONLY flag" - }, "CVE-2018-18690": { "cmt_msg": "xfs: don't fail when converting shortform attr to long form during ATTR_REPLACE" }, @@ -54135,9 +52383,6 @@ "CVE-2021-4002": { "cmt_msg": "hugetlbfs: flush TLBs correctly after huge_pmd_unshare" }, - "CVE-2022-1055": { - "cmt_msg": "net: sched: fix use-after-free in tc_new_tfilter()" - }, "CVE-2021-38204": { "cmt_msg": "usb: max-3421: Prevent corruption of freed memory" }, @@ -54180,8 +52425,8 @@ "CVE-2022-0617": { "cmt_msg": "udf: Fix NULL ptr deref when converting from inline format" }, - "CVE-2022-26878": { - "cmt_msg": "" + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()" }, "CVE-2019-19531": { "cmt_msg": "usb: yurex: Fix use-after-free in yurex_delete" @@ -54274,7 +52519,7 @@ "cmt_msg": "ARM: report Spectre v2 status through sysfs" }, "CVE-2019-0146": { - "cmt_msg": "" + "cmt_msg": "i40e: add num_vectors checker in iwarp handler" }, "CVE-2019-0147": { "cmt_msg": "i40e: add num_vectors checker in iwarp handler" @@ -54375,9 +52620,6 @@ "CVE-2016-7097": { "cmt_msg": "posix_acl: Clear SGID bit when setting file permissions" }, - "CVE-2021-39713": { - "cmt_msg": "net: sched: use Qdisc rcu API instead of relying on rtnl lock" - }, "CVE-2020-28374": { "cmt_msg": "scsi: target: Fix XCOPY NAA identifier lookup" }, @@ -54477,14 +52719,8 @@ "CVE-2021-26931": { "cmt_msg": "xen-blkback: don't \"handle\" error by BUG()" }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, "CVE-2022-1652": { - "cmt_msg": "" - }, - "CVE-2022-1651": { - "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" + "cmt_msg": "floppy: use a statically allocated error counter" }, "CVE-2020-29568": { "cmt_msg": "xen/xenbus: Allow watches discard events before queueing" @@ -54519,9 +52755,6 @@ "CVE-2019-9458": { "cmt_msg": "media: v4l: event: Prevent freeing event subscriptions while accessed" }, - "CVE-2022-1789": { - "cmt_msg": "KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID" - }, "CVE-2021-39714": { "cmt_msg": "staging: android: ion: Drop ion_map_kernel interface" }, @@ -54663,18 +52896,12 @@ "CVE-2021-4149": { "cmt_msg": "btrfs: unlock newly allocated extent buffer after error" }, - "CVE-2021-4148": { - "cmt_msg": "mm: khugepaged: skip huge page collapse for special files" - }, "CVE-2021-3864": { "cmt_msg": "" }, "CVE-2021-3640": { "cmt_msg": "Bluetooth: sco: Fix lock_sock() blockage by memcpy_from_msg()" }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, "CVE-2017-7618": { "cmt_msg": "crypto: ahash - Fix EINPROGRESS notification callback" }, @@ -54801,9 +53028,6 @@ "CVE-2017-18595": { "cmt_msg": "tracing: Fix possible double free on failure of allocating trace buffer" }, - "CVE-2022-0742": { - "cmt_msg": "ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()" - }, "CVE-2021-3612": { "cmt_msg": "Input: joydev - prevent potential read overflow in ioctl" }, @@ -54915,9 +53139,6 @@ "CVE-2022-26490": { "cmt_msg": "nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION" }, - "CVE-2022-1043": { - "cmt_msg": "io_uring: fix xa_alloc_cycle() error return value check" - }, "CVE-2017-5967": { "cmt_msg": "time: Remove CONFIG_TIMER_STATS" }, @@ -54933,9 +53154,6 @@ "CVE-2018-20976": { "cmt_msg": "xfs: clear sb->s_fs_info on mount failure" }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, "CVE-2016-10147": { "cmt_msg": "crypto: mcryptd - Check mcryptd algorithm compatibility" }, @@ -54954,9 +53172,6 @@ "CVE-2019-16413": { "cmt_msg": "9p: use inode->i_lock to protect i_size_write() under 32-bit" }, - "CVE-2022-1516": { - "cmt_msg": "net/x25: Fix null-ptr-deref caused by x25_disconnect" - }, "CVE-2018-10876": { "cmt_msg": "ext4: only look at the bg_flags field if it is valid" }, @@ -55011,9 +53226,6 @@ "CVE-2022-0400": { "cmt_msg": "" }, - "CVE-2021-0707": { - "cmt_msg": "dmabuf: fix use-after-free of dmabuf's file->f_inode" - }, "CVE-2021-38160": { "cmt_msg": "virtio_console: Assure used length from device is limited" }, @@ -55053,9 +53265,6 @@ "CVE-2020-25284": { "cmt_msg": "rbd: require global CAP_SYS_ADMIN for mapping and unmapping" }, - "CVE-2022-25636": { - "cmt_msg": "netfilter: nf_tables_offload: incorrect flow offload action array size" - }, "CVE-2017-1000379": { "cmt_msg": "mm: larger stack guard gap, between vmas" }, @@ -55077,9 +53286,6 @@ "CVE-2019-15219": { "cmt_msg": "USB: sisusbvga: fix oops in error path of sisusb_probe" }, - "CVE-2022-1015": { - "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." - }, "CVE-2017-5549": { "cmt_msg": "USB: serial: kl5kusb105: fix line-state error handling" }, @@ -55092,9 +53298,6 @@ "CVE-2019-19378": { "cmt_msg": "" }, - "CVE-2022-1852": { - "cmt_msg": "KVM: x86: avoid calling x86 emulator without a decoded instruction" - }, "CVE-2020-4788": { "cmt_msg": "powerpc/64s: flush L1D on kernel entry" }, @@ -55140,9 +53343,6 @@ "CVE-2019-19449": { "cmt_msg": "f2fs: fix to do sanity check on segment/section count" }, - "CVE-2021-33135": { - "cmt_msg": "" - }, "CVE-2019-19523": { "cmt_msg": "USB: adutux: fix use-after-free on disconnect" }, @@ -55182,9 +53382,6 @@ "CVE-2019-15215": { "cmt_msg": "media: cpia2_usb: first wake up, then free in disconnect" }, - "CVE-2022-1998": { - "cmt_msg": "fanotify: Fix stale file descriptor in copy_event_to_user()" - }, "CVE-2018-18021": { "cmt_msg": "arm64: KVM: Tighten guest core register access from userspace" }, @@ -55212,9 +53409,6 @@ "CVE-2020-27815": { "cmt_msg": "jfs: Fix array index bounds check in dbAdjTree" }, - "CVE-2022-23041": { - "cmt_msg": "xen/9p: use alloc/free_pages_exact()" - }, "CVE-2022-1462": { "cmt_msg": "" }, @@ -55308,9 +53502,6 @@ "CVE-2019-3874": { "cmt_msg": "sctp: implement memory accounting on tx path" }, - "CVE-2022-0171": { - "cmt_msg": "" - }, "CVE-2018-10877": { "cmt_msg": "ext4: verify the depth of extent tree in ext4_find_extent()" }, @@ -55323,9 +53514,6 @@ "CVE-2016-8655": { "cmt_msg": "packet: fix race condition in packet_set_ring" }, - "CVE-2022-1882": { - "cmt_msg": "" - }, "CVE-2020-14331": { "cmt_msg": "vgacon: Fix for missing check in scrollback handling" }, @@ -55413,21 +53601,12 @@ "CVE-2018-7191": { "cmt_msg": "tun: call dev_get_valid_name() before register_netdevice()" }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, "CVE-2018-1000026": { "cmt_msg": "bnx2x: disable GSO where gso_size is too big for hardware" }, "CVE-2022-1975": { "cmt_msg": "NFC: netlink: fix sleep in atomic bug when firmware download timeout" }, - "CVE-2022-1972": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" - }, "CVE-2017-2596": { "cmt_msg": "kvm: fix page struct leak in handle_vmon" }, @@ -55515,9 +53694,6 @@ "CVE-2021-28951": { "cmt_msg": "io_uring: ensure that SQPOLL thread is started for exit" }, - "CVE-2022-1671": { - "cmt_msg": "rxrpc: fix some null-ptr-deref bugs in server_key.c" - }, "CVE-2020-16166": { "cmt_msg": "random32: update the net random state on interrupt and activity" }, @@ -55620,9 +53796,6 @@ "CVE-2022-1247": { "cmt_msg": "" }, - "CVE-2022-1184": { - "cmt_msg": "" - }, "CVE-2022-23222": { "cmt_msg": "bpf: Replace PTR_TO_XXX_OR_NULL with PTR_TO_XXX | PTR_MAYBE_NULL" }, @@ -55743,9 +53916,6 @@ "CVE-2020-9383": { "cmt_msg": "floppy: check FDC index for errors before assigning it" }, - "CVE-2022-29582": { - "cmt_msg": "io_uring: fix race between timeout flush and removal" - }, "CVE-2021-38198": { "cmt_msg": "KVM: X86: MMU: Use the correct inherited permissions to get shadow page" }, @@ -56009,8 +54179,8 @@ "CVE-2016-9794": { "cmt_msg": "ALSA: pcm : Call kill_fasync() in stream lock" }, - "CVE-2021-3894": { - "cmt_msg": "sctp: account stream padding length for reconf chunk" + "CVE-2022-1184": { + "cmt_msg": "ext4: verify dir block before splitting it" }, "CVE-2020-24587": { "cmt_msg": "mac80211: prevent mixed key and fragment cache attacks" @@ -56036,6 +54206,9 @@ "CVE-2018-10940": { "cmt_msg": "cdrom: information leak in cdrom_ioctl_media_changed()" }, + "CVE-2022-32250": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier" + }, "CVE-2018-10087": { "cmt_msg": "kernel/exit.c: avoid undefined behaviour when calling wait4()" }, @@ -56108,9 +54281,6 @@ "CVE-2019-14835": { "cmt_msg": "vhost: make sure log_num < in_num" }, - "CVE-2022-2078": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, "CVE-2018-1000204": { "cmt_msg": "scsi: sg: allocate with __GFP_ZERO in sg_build_indirect()" }, @@ -56309,9 +54479,6 @@ "CVE-2019-18680": { "cmt_msg": "unknown" }, - "CVE-2022-20153": { - "cmt_msg": "io_uring: return back safer resurrect" - }, "CVE-2020-26558": { "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, @@ -56321,9 +54488,6 @@ "CVE-2017-1000410": { "cmt_msg": "Bluetooth: Prevent stack info leak from the EFS element." }, - "CVE-2022-20154": { - "cmt_msg": "sctp: use call_rcu to free endpoint" - }, "CVE-2016-8645": { "cmt_msg": "tcp: take care of truncations done by sk_filter()" }, @@ -56342,9 +54506,6 @@ "CVE-2019-15926": { "cmt_msg": "ath6kl: add some bounds checking" }, - "CVE-2022-0998": { - "cmt_msg": "vdpa: clean up get_config_size ret value handling" - }, "CVE-2019-14821": { "cmt_msg": "KVM: coalesced_mmio: add bounds checking" }, @@ -56435,6 +54596,9 @@ "CVE-2020-15393": { "cmt_msg": "usb: usbtest: fix missing kfree(dev->buf) in usbtest_disconnect" }, + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default" + }, "CVE-2021-3564": { "cmt_msg": "Bluetooth: fix the erroneous flush_work() order" }, @@ -56594,6 +54758,9 @@ "CVE-2022-1048": { "cmt_msg": "ALSA: pcm: Fix races among concurrent hw_params and hw_free calls" }, + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" + }, "CVE-2019-14897": { "cmt_msg": "libertas: Fix two buffer overflows at parsing bss descriptor" }, @@ -56615,8 +54782,8 @@ "CVE-2018-9415": { "cmt_msg": "ARM: amba: Fix race condition with driver_override" }, - "CVE-2022-0995": { - "cmt_msg": "watch_queue: Fix filter limit check" + "CVE-2022-1882": { + "cmt_msg": "" }, "CVE-2020-12771": { "cmt_msg": "bcache: fix potential deadlock problem in btree_gc_coalesce" @@ -56657,6 +54824,9 @@ "CVE-2020-25212": { "cmt_msg": "nfs: Fix getxattr kernel panic and memory overflow" }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, "CVE-2019-19036": { "cmt_msg": "btrfs: Detect unbalanced tree with empty leaf before crashing btree operations" }, @@ -56720,9 +54890,6 @@ "CVE-2021-38208": { "cmt_msg": "nfc: fix NULL ptr dereference in llcp_sock_getname() after failed connect" }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"" - }, "CVE-2017-18232": { "cmt_msg": "scsi: libsas: direct call probe and destruct" }, @@ -56742,7 +54909,7 @@ "cmt_msg": "NFC: llcp: Limit size of SDP URI" }, "CVE-2020-26555": { - "cmt_msg": "" + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, "CVE-2018-9517": { "cmt_msg": "l2tp: pass tunnel pointer to ->session_create()" @@ -56759,9 +54926,6 @@ "CVE-2018-1087": { "cmt_msg": "kvm/x86: fix icebp instruction handling" }, - "CVE-2022-29156": { - "cmt_msg": "RDMA/rtrs-clt: Fix possible double free in error case" - }, "CVE-2018-1120": { "cmt_msg": "proc: do not access cmdline nor environ from file-backed areas" }, @@ -56930,9 +55094,6 @@ "CVE-2021-3178": { "cmt_msg": "nfsd4: readdirplus shouldn't return parent of export" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, "CVE-2018-7755": { "cmt_msg": "floppy: Do not copy a kernel pointer to user memory in FDGETPRM ioctl" }, @@ -56960,12 +55121,6 @@ "CVE-2022-24958": { "cmt_msg": "usb: gadget: don't release an existing dev->buf" }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers" - }, - "CVE-2022-28893": { - "cmt_msg": "SUNRPC: Ensure we flush any closed sockets before xs_xprt_free()" - }, "CVE-2021-3772": { "cmt_msg": "sctp: use init_tag from inithdr for ABORT chunk" }, @@ -56978,9 +55133,6 @@ "CVE-2016-8399": { "cmt_msg": "net: ping: check minimum size on ICMP header length" }, - "CVE-2021-39711": { - "cmt_msg": "bpf: fix panic due to oob in bpf_prog_test_run_skb" - }, "CVE-2016-7042": { "cmt_msg": "KEYS: Fix short sprintf buffer in /proc/keys show function" }, @@ -57089,9 +55241,6 @@ "CVE-2020-14381": { "cmt_msg": "futex: Fix inode life-time issue" }, - "CVE-2022-1158": { - "cmt_msg": "KVM: x86/mmu: do compare-and-exchange of gPTE via the user address" - }, "CVE-2019-19768": { "cmt_msg": "blktrace: Protect q->blk_trace with RCU" }, @@ -57155,15 +55304,9 @@ "CVE-2019-12881": { "cmt_msg": "drm/i915/userptr: reject zero user_size" }, - "CVE-2022-28389": { - "cmt_msg": "can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path" - }, "CVE-2018-1000004": { "cmt_msg": "ALSA: seq: Make ioctls race-free" }, - "CVE-2022-0500": { - "cmt_msg": "bpf: Introduce MEM_RDONLY flag" - }, "CVE-2018-18690": { "cmt_msg": "xfs: don't fail when converting shortform attr to long form during ATTR_REPLACE" }, @@ -57182,9 +55325,6 @@ "CVE-2021-4002": { "cmt_msg": "hugetlbfs: flush TLBs correctly after huge_pmd_unshare" }, - "CVE-2022-1055": { - "cmt_msg": "net: sched: fix use-after-free in tc_new_tfilter()" - }, "CVE-2021-38204": { "cmt_msg": "usb: max-3421: Prevent corruption of freed memory" }, @@ -57227,8 +55367,8 @@ "CVE-2022-0617": { "cmt_msg": "udf: Fix NULL ptr deref when converting from inline format" }, - "CVE-2022-26878": { - "cmt_msg": "" + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()" }, "CVE-2019-19531": { "cmt_msg": "usb: yurex: Fix use-after-free in yurex_delete" @@ -57324,7 +55464,7 @@ "cmt_msg": "ARM: report Spectre v2 status through sysfs" }, "CVE-2019-0146": { - "cmt_msg": "" + "cmt_msg": "i40e: add num_vectors checker in iwarp handler" }, "CVE-2019-0147": { "cmt_msg": "i40e: add num_vectors checker in iwarp handler" @@ -57434,9 +55574,6 @@ "CVE-2016-7097": { "cmt_msg": "posix_acl: Clear SGID bit when setting file permissions" }, - "CVE-2021-39713": { - "cmt_msg": "net: sched: use Qdisc rcu API instead of relying on rtnl lock" - }, "CVE-2020-28374": { "cmt_msg": "scsi: target: Fix XCOPY NAA identifier lookup" }, @@ -57536,14 +55673,8 @@ "CVE-2021-26931": { "cmt_msg": "xen-blkback: don't \"handle\" error by BUG()" }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, "CVE-2022-1652": { - "cmt_msg": "" - }, - "CVE-2022-1651": { - "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" + "cmt_msg": "floppy: use a statically allocated error counter" }, "CVE-2020-29568": { "cmt_msg": "xen/xenbus: Allow watches discard events before queueing" @@ -57578,9 +55709,6 @@ "CVE-2019-9458": { "cmt_msg": "media: v4l: event: Prevent freeing event subscriptions while accessed" }, - "CVE-2022-1789": { - "cmt_msg": "KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID" - }, "CVE-2021-39714": { "cmt_msg": "staging: android: ion: Drop ion_map_kernel interface" }, @@ -57722,18 +55850,12 @@ "CVE-2021-4149": { "cmt_msg": "btrfs: unlock newly allocated extent buffer after error" }, - "CVE-2021-4148": { - "cmt_msg": "mm: khugepaged: skip huge page collapse for special files" - }, "CVE-2021-3864": { "cmt_msg": "" }, "CVE-2021-3640": { "cmt_msg": "Bluetooth: sco: Fix lock_sock() blockage by memcpy_from_msg()" }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, "CVE-2017-7618": { "cmt_msg": "crypto: ahash - Fix EINPROGRESS notification callback" }, @@ -57842,9 +55964,6 @@ "CVE-2016-9756": { "cmt_msg": "KVM: x86: drop error recovery in em_jmp_far and em_ret_far" }, - "CVE-2022-0812": { - "cmt_msg": "xprtrdma: fix incorrect header size calculations" - }, "CVE-2019-5108": { "cmt_msg": "mac80211: Do not send Layer 2 Update frame before authorization" }, @@ -57854,9 +55973,6 @@ "CVE-2017-18595": { "cmt_msg": "tracing: Fix possible double free on failure of allocating trace buffer" }, - "CVE-2022-0742": { - "cmt_msg": "ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()" - }, "CVE-2021-3612": { "cmt_msg": "Input: joydev - prevent potential read overflow in ioctl" }, @@ -57971,9 +56087,6 @@ "CVE-2022-26490": { "cmt_msg": "nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION" }, - "CVE-2022-1043": { - "cmt_msg": "io_uring: fix xa_alloc_cycle() error return value check" - }, "CVE-2017-5967": { "cmt_msg": "time: Remove CONFIG_TIMER_STATS" }, @@ -57989,9 +56102,6 @@ "CVE-2018-20976": { "cmt_msg": "xfs: clear sb->s_fs_info on mount failure" }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, "CVE-2016-10147": { "cmt_msg": "crypto: mcryptd - Check mcryptd algorithm compatibility" }, @@ -58007,9 +56117,6 @@ "CVE-2019-16413": { "cmt_msg": "9p: use inode->i_lock to protect i_size_write() under 32-bit" }, - "CVE-2022-1516": { - "cmt_msg": "net/x25: Fix null-ptr-deref caused by x25_disconnect" - }, "CVE-2018-10876": { "cmt_msg": "ext4: only look at the bg_flags field if it is valid" }, @@ -58067,9 +56174,6 @@ "CVE-2022-0400": { "cmt_msg": "" }, - "CVE-2021-0707": { - "cmt_msg": "dmabuf: fix use-after-free of dmabuf's file->f_inode" - }, "CVE-2021-38160": { "cmt_msg": "virtio_console: Assure used length from device is limited" }, @@ -58109,9 +56213,6 @@ "CVE-2020-25284": { "cmt_msg": "rbd: require global CAP_SYS_ADMIN for mapping and unmapping" }, - "CVE-2022-25636": { - "cmt_msg": "netfilter: nf_tables_offload: incorrect flow offload action array size" - }, "CVE-2017-1000379": { "cmt_msg": "mm: larger stack guard gap, between vmas" }, @@ -58133,9 +56234,6 @@ "CVE-2019-15219": { "cmt_msg": "USB: sisusbvga: fix oops in error path of sisusb_probe" }, - "CVE-2022-1015": { - "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." - }, "CVE-2017-5549": { "cmt_msg": "USB: serial: kl5kusb105: fix line-state error handling" }, @@ -58148,9 +56246,6 @@ "CVE-2019-19378": { "cmt_msg": "" }, - "CVE-2022-1852": { - "cmt_msg": "KVM: x86: avoid calling x86 emulator without a decoded instruction" - }, "CVE-2020-4788": { "cmt_msg": "powerpc/64s: flush L1D on kernel entry" }, @@ -58196,9 +56291,6 @@ "CVE-2019-19449": { "cmt_msg": "f2fs: fix to do sanity check on segment/section count" }, - "CVE-2021-33135": { - "cmt_msg": "" - }, "CVE-2019-19523": { "cmt_msg": "USB: adutux: fix use-after-free on disconnect" }, @@ -58238,9 +56330,6 @@ "CVE-2019-15215": { "cmt_msg": "media: cpia2_usb: first wake up, then free in disconnect" }, - "CVE-2022-1998": { - "cmt_msg": "fanotify: Fix stale file descriptor in copy_event_to_user()" - }, "CVE-2018-18021": { "cmt_msg": "arm64: KVM: Tighten guest core register access from userspace" }, @@ -58265,9 +56354,6 @@ "CVE-2020-27815": { "cmt_msg": "jfs: Fix array index bounds check in dbAdjTree" }, - "CVE-2022-23041": { - "cmt_msg": "xen/9p: use alloc/free_pages_exact()" - }, "CVE-2022-1462": { "cmt_msg": "" }, @@ -58361,9 +56447,6 @@ "CVE-2019-3874": { "cmt_msg": "sctp: implement memory accounting on tx path" }, - "CVE-2022-0171": { - "cmt_msg": "" - }, "CVE-2018-10877": { "cmt_msg": "ext4: verify the depth of extent tree in ext4_find_extent()" }, @@ -58376,9 +56459,6 @@ "CVE-2016-8655": { "cmt_msg": "packet: fix race condition in packet_set_ring" }, - "CVE-2022-1882": { - "cmt_msg": "" - }, "CVE-2020-14331": { "cmt_msg": "vgacon: Fix for missing check in scrollback handling" }, @@ -58469,21 +56549,12 @@ "CVE-2018-7191": { "cmt_msg": "tun: call dev_get_valid_name() before register_netdevice()" }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, "CVE-2018-1000026": { "cmt_msg": "bnx2x: disable GSO where gso_size is too big for hardware" }, "CVE-2022-1975": { "cmt_msg": "NFC: netlink: fix sleep in atomic bug when firmware download timeout" }, - "CVE-2022-1972": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" - }, "CVE-2017-2596": { "cmt_msg": "kvm: fix page struct leak in handle_vmon" }, @@ -58571,9 +56642,6 @@ "CVE-2021-28951": { "cmt_msg": "io_uring: ensure that SQPOLL thread is started for exit" }, - "CVE-2022-1671": { - "cmt_msg": "rxrpc: fix some null-ptr-deref bugs in server_key.c" - }, "CVE-2020-16166": { "cmt_msg": "random32: update the net random state on interrupt and activity" }, @@ -58676,9 +56744,6 @@ "CVE-2022-1247": { "cmt_msg": "" }, - "CVE-2022-1184": { - "cmt_msg": "" - }, "CVE-2022-23222": { "cmt_msg": "bpf: Replace PTR_TO_XXX_OR_NULL with PTR_TO_XXX | PTR_MAYBE_NULL" }, @@ -58796,9 +56861,6 @@ "CVE-2020-9383": { "cmt_msg": "floppy: check FDC index for errors before assigning it" }, - "CVE-2022-29582": { - "cmt_msg": "io_uring: fix race between timeout flush and removal" - }, "CVE-2021-38198": { "cmt_msg": "KVM: X86: MMU: Use the correct inherited permissions to get shadow page" }, @@ -60230,18 +58292,12 @@ "CVE-2016-9794": { "cmt_msg": "ALSA: pcm : Call kill_fasync() in stream lock" }, - "CVE-2021-3894": { - "cmt_msg": "sctp: account stream padding length for reconf chunk" - }, "CVE-2020-24587": { "cmt_msg": "mac80211: prevent mixed key and fragment cache attacks" }, "CVE-2020-24586": { "cmt_msg": "mac80211: prevent mixed key and fragment cache attacks" }, - "CVE-2022-0995": { - "cmt_msg": "watch_queue: Fix filter limit check" - }, "CVE-2021-0129": { "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, @@ -60254,6 +58310,9 @@ "CVE-2016-10044": { "cmt_msg": "aio: mark AIO pseudo-fs noexec" }, + "CVE-2022-32250": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier" + }, "CVE-2018-10087": { "cmt_msg": "kernel/exit.c: avoid undefined behaviour when calling wait4()" }, @@ -60311,9 +58370,6 @@ "CVE-2019-14835": { "cmt_msg": "vhost: make sure log_num < in_num" }, - "CVE-2022-2078": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, "CVE-2018-1000204": { "cmt_msg": "scsi: sg: allocate with __GFP_ZERO in sg_build_indirect()" }, @@ -60476,18 +58532,12 @@ "CVE-2015-8952": { "cmt_msg": "ext2: convert to mbcache2" }, - "CVE-2022-20153": { - "cmt_msg": "io_uring: return back safer resurrect" - }, "CVE-2022-23038": { "cmt_msg": "xen/grant-table: add gnttab_try_end_foreign_access()" }, "CVE-2022-23039": { "cmt_msg": "xen/gntalloc: don't use gnttab_query_foreign_access()" }, - "CVE-2022-20154": { - "cmt_msg": "sctp: use call_rcu to free endpoint" - }, "CVE-2016-8645": { "cmt_msg": "tcp: take care of truncations done by sk_filter()" }, @@ -60593,6 +58643,9 @@ "CVE-2020-15393": { "cmt_msg": "usb: usbtest: fix missing kfree(dev->buf) in usbtest_disconnect" }, + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default" + }, "CVE-2021-3564": { "cmt_msg": "Bluetooth: fix the erroneous flush_work() order" }, @@ -60662,9 +58715,6 @@ "CVE-2021-4002": { "cmt_msg": "hugetlbfs: flush TLBs correctly after huge_pmd_unshare" }, - "CVE-2022-0998": { - "cmt_msg": "vdpa: clean up get_config_size ret value handling" - }, "CVE-2018-9465": { "cmt_msg": "binder: fix proc->files use-after-free" }, @@ -60704,6 +58754,9 @@ "CVE-2022-1048": { "cmt_msg": "ALSA: pcm: Fix races among concurrent hw_params and hw_free calls" }, + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" + }, "CVE-2020-36385": { "cmt_msg": "RDMA/ucma: Rework ucma_migrate_id() to avoid races with destroy" }, @@ -60755,6 +58808,9 @@ "CVE-2020-25212": { "cmt_msg": "nfs: Fix getxattr kernel panic and memory overflow" }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, "CVE-2019-19036": { "cmt_msg": "btrfs: Detect unbalanced tree with empty leaf before crashing btree operations" }, @@ -60782,9 +58838,6 @@ "CVE-2021-32078": { "cmt_msg": "ARM: footbridge: remove personal server platform" }, - "CVE-2022-30594": { - "cmt_msg": "ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE" - }, "CVE-2022-20148": { "cmt_msg": "f2fs: fix UAF in f2fs_available_free_memory" }, @@ -60828,7 +58881,7 @@ "cmt_msg": "NFC: llcp: Limit size of SDP URI" }, "CVE-2020-26555": { - "cmt_msg": "" + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, "CVE-2018-9517": { "cmt_msg": "l2tp: pass tunnel pointer to ->session_create()" @@ -60872,9 +58925,6 @@ "CVE-2019-19049": { "cmt_msg": "of: unittest: fix memory leak in unittest_data_add" }, - "CVE-2022-0644": { - "cmt_msg": "vfs: check fd has read access in kernel_read_file_from_fd()" - }, "CVE-2018-13053": { "cmt_msg": "alarmtimer: Prevent overflow for relative nanosleep" }, @@ -60929,9 +58979,6 @@ "CVE-2019-19816": { "cmt_msg": "btrfs: inode: Verify inode mode to avoid NULL pointer dereference" }, - "CVE-2022-1015": { - "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." - }, "CVE-2019-9453": { "cmt_msg": "f2fs: fix to avoid accessing xattr across the boundary" }, @@ -60995,9 +59042,6 @@ "CVE-2021-3178": { "cmt_msg": "nfsd4: readdirplus shouldn't return parent of export" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, "CVE-2018-7755": { "cmt_msg": "floppy: Do not copy a kernel pointer to user memory in FDGETPRM ioctl" }, @@ -61013,12 +59057,6 @@ "CVE-2019-19319": { "cmt_msg": "ext4: protect journal inode's blocks using block_validity" }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers" - }, - "CVE-2022-28893": { - "cmt_msg": "SUNRPC: Ensure we flush any closed sockets before xs_xprt_free()" - }, "CVE-2021-3772": { "cmt_msg": "sctp: use init_tag from inithdr for ABORT chunk" }, @@ -61028,9 +59066,6 @@ "CVE-2021-37159": { "cmt_msg": "usb: hso: fix error handling code of hso_create_net_device" }, - "CVE-2021-39711": { - "cmt_msg": "bpf: fix panic due to oob in bpf_prog_test_run_skb" - }, "CVE-2021-28715": { "cmt_msg": "xen/netback: don't queue unlimited number of packages" }, @@ -61097,9 +59132,6 @@ "CVE-2020-14381": { "cmt_msg": "futex: Fix inode life-time issue" }, - "CVE-2022-1158": { - "cmt_msg": "KVM: x86/mmu: do compare-and-exchange of gPTE via the user address" - }, "CVE-2019-19768": { "cmt_msg": "blktrace: Protect q->blk_trace with RCU" }, @@ -61142,15 +59174,9 @@ "CVE-2019-12881": { "cmt_msg": "drm/i915/userptr: reject zero user_size" }, - "CVE-2022-28389": { - "cmt_msg": "can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path" - }, "CVE-2020-12364": { "cmt_msg": "drm/i915/guc: Update to use firmware v49.0.1" }, - "CVE-2022-0500": { - "cmt_msg": "bpf: Introduce MEM_RDONLY flag" - }, "CVE-2018-18690": { "cmt_msg": "xfs: don't fail when converting shortform attr to long form during ATTR_REPLACE" }, @@ -61166,9 +59192,6 @@ "CVE-2016-7917": { "cmt_msg": "netfilter: nfnetlink: correctly validate length of batch messages" }, - "CVE-2022-1055": { - "cmt_msg": "net: sched: fix use-after-free in tc_new_tfilter()" - }, "CVE-2021-38204": { "cmt_msg": "usb: max-3421: Prevent corruption of freed memory" }, @@ -61205,15 +59228,12 @@ "CVE-2018-7273": { "cmt_msg": "printk: hash addresses printed with %p" }, - "CVE-2022-0617": { - "cmt_msg": "udf: Fix NULL ptr deref when converting from inline format" - }, - "CVE-2022-26878": { - "cmt_msg": "" - }, "CVE-2022-23036": { "cmt_msg": "xen/grant-table: add gnttab_try_end_foreign_access()" }, + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()" + }, "CVE-2018-12930": { "cmt_msg": "" }, @@ -61280,9 +59300,6 @@ "CVE-2019-19447": { "cmt_msg": "ext4: work around deleting a file with i_nlink == 0 safely" }, - "CVE-2019-0146": { - "cmt_msg": "" - }, "CVE-2020-10942": { "cmt_msg": "vhost: Check docket sk_family instead of call getname" }, @@ -61358,9 +59375,6 @@ "CVE-2018-5953": { "cmt_msg": "printk: hash addresses printed with %p" }, - "CVE-2021-39713": { - "cmt_msg": "net: sched: use Qdisc rcu API instead of relying on rtnl lock" - }, "CVE-2020-28374": { "cmt_msg": "scsi: target: Fix XCOPY NAA identifier lookup" }, @@ -61430,14 +59444,8 @@ "CVE-2021-26931": { "cmt_msg": "xen-blkback: don't \"handle\" error by BUG()" }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, "CVE-2022-1652": { - "cmt_msg": "" - }, - "CVE-2022-1651": { - "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" + "cmt_msg": "floppy: use a statically allocated error counter" }, "CVE-2020-29568": { "cmt_msg": "xen/xenbus: Allow watches discard events before queueing" @@ -61469,9 +59477,6 @@ "CVE-2019-9458": { "cmt_msg": "media: v4l: event: Prevent freeing event subscriptions while accessed" }, - "CVE-2022-1789": { - "cmt_msg": "KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID" - }, "CVE-2022-1419": { "cmt_msg": "drm/vgem: Close use-after-free race in vgem_gem_create" }, @@ -61580,15 +59585,9 @@ "CVE-2021-4149": { "cmt_msg": "btrfs: unlock newly allocated extent buffer after error" }, - "CVE-2021-4148": { - "cmt_msg": "mm: khugepaged: skip huge page collapse for special files" - }, "CVE-2021-3640": { "cmt_msg": "Bluetooth: sco: Fix lock_sock() blockage by memcpy_from_msg()" }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, "CVE-2020-1749": { "cmt_msg": "net: ipv6_stub: use ip6_dst_lookup_flow instead of ip6_dst_lookup" }, @@ -61670,18 +59669,9 @@ "CVE-2017-18174": { "cmt_msg": "pinctrl: amd: Use devm_pinctrl_register() for pinctrl registration" }, - "CVE-2022-0812": { - "cmt_msg": "xprtrdma: fix incorrect header size calculations" - }, "CVE-2019-18806": { "cmt_msg": "net: qlogic: Fix memory leak in ql_alloc_large_buffers" }, - "CVE-2022-0742": { - "cmt_msg": "ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()" - }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"" - }, "CVE-2020-15437": { "cmt_msg": "serial: 8250: fix null-ptr-deref in serial8250_start_tx()" }, @@ -61701,7 +59691,7 @@ "cmt_msg": "KEYS: add missing permission check for request_key() destination" }, "CVE-2022-1184": { - "cmt_msg": "" + "cmt_msg": "ext4: verify dir block before splitting it" }, "CVE-2019-19448": { "cmt_msg": "btrfs: only search for left_info if there is no right_info in try_merge_free_space" @@ -61763,9 +59753,6 @@ "CVE-2022-26490": { "cmt_msg": "nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION" }, - "CVE-2022-1043": { - "cmt_msg": "io_uring: fix xa_alloc_cycle() error return value check" - }, "CVE-2017-5967": { "cmt_msg": "time: Remove CONFIG_TIMER_STATS" }, @@ -61778,9 +59765,6 @@ "CVE-2018-20976": { "cmt_msg": "xfs: clear sb->s_fs_info on mount failure" }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, "CVE-2016-10147": { "cmt_msg": "crypto: mcryptd - Check mcryptd algorithm compatibility" }, @@ -61793,9 +59777,6 @@ "CVE-2019-16413": { "cmt_msg": "9p: use inode->i_lock to protect i_size_write() under 32-bit" }, - "CVE-2022-1516": { - "cmt_msg": "net/x25: Fix null-ptr-deref caused by x25_disconnect" - }, "CVE-2018-10876": { "cmt_msg": "ext4: only look at the bg_flags field if it is valid" }, @@ -61844,9 +59825,6 @@ "CVE-2022-0400": { "cmt_msg": "" }, - "CVE-2021-0707": { - "cmt_msg": "dmabuf: fix use-after-free of dmabuf's file->f_inode" - }, "CVE-2021-38160": { "cmt_msg": "virtio_console: Assure used length from device is limited" }, @@ -61883,9 +59861,6 @@ "CVE-2020-25284": { "cmt_msg": "rbd: require global CAP_SYS_ADMIN for mapping and unmapping" }, - "CVE-2022-25636": { - "cmt_msg": "netfilter: nf_tables_offload: incorrect flow offload action array size" - }, "CVE-2018-18281": { "cmt_msg": "mremap: properly flush TLB before releasing the page" }, @@ -61898,9 +59873,6 @@ "CVE-2019-19378": { "cmt_msg": "" }, - "CVE-2022-1852": { - "cmt_msg": "KVM: x86: avoid calling x86 emulator without a decoded instruction" - }, "CVE-2020-4788": { "cmt_msg": "powerpc/64s: flush L1D on kernel entry" }, @@ -61940,9 +59912,6 @@ "CVE-2019-19449": { "cmt_msg": "f2fs: fix to do sanity check on segment/section count" }, - "CVE-2021-33135": { - "cmt_msg": "" - }, "CVE-2019-19523": { "cmt_msg": "USB: adutux: fix use-after-free on disconnect" }, @@ -61970,9 +59939,6 @@ "CVE-2019-16746": { "cmt_msg": "nl80211: validate beacon head" }, - "CVE-2022-1998": { - "cmt_msg": "fanotify: Fix stale file descriptor in copy_event_to_user()" - }, "CVE-2018-18021": { "cmt_msg": "arm64: KVM: Tighten guest core register access from userspace" }, @@ -61994,9 +59960,6 @@ "CVE-2020-27815": { "cmt_msg": "jfs: Fix array index bounds check in dbAdjTree" }, - "CVE-2022-23041": { - "cmt_msg": "xen/9p: use alloc/free_pages_exact()" - }, "CVE-2022-1462": { "cmt_msg": "" }, @@ -62069,9 +60032,6 @@ "CVE-2019-3874": { "cmt_msg": "sctp: implement memory accounting on tx path" }, - "CVE-2022-0171": { - "cmt_msg": "" - }, "CVE-2018-10877": { "cmt_msg": "ext4: verify the depth of extent tree in ext4_find_extent()" }, @@ -62096,9 +60056,6 @@ "CVE-2021-3483": { "cmt_msg": "firewire: nosy: Fix a use-after-free bug in nosy_ioctl()" }, - "CVE-2022-29156": { - "cmt_msg": "RDMA/rtrs-clt: Fix possible double free in error case" - }, "CVE-2021-38300": { "cmt_msg": "bpf, mips: Validate conditional branch offsets" }, @@ -62135,9 +60092,6 @@ "CVE-2021-3573": { "cmt_msg": "Bluetooth: use correct lock to prevent UAF of hdev object" }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, "CVE-2022-1679": { "cmt_msg": "" }, @@ -62147,12 +60101,6 @@ "CVE-2022-1975": { "cmt_msg": "NFC: netlink: fix sleep in atomic bug when firmware download timeout" }, - "CVE-2022-1972": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" - }, "CVE-2021-28972": { "cmt_msg": "PCI: rpadlpar: Fix potential drc_name corruption in store functions" }, @@ -62231,9 +60179,6 @@ "CVE-2021-28951": { "cmt_msg": "io_uring: ensure that SQPOLL thread is started for exit" }, - "CVE-2022-1671": { - "cmt_msg": "rxrpc: fix some null-ptr-deref bugs in server_key.c" - }, "CVE-2021-3653": { "cmt_msg": "KVM: nSVM: avoid picking up unsupported bits from L2 in int_ctl (CVE-2021-3653)" }, @@ -62429,9 +60374,6 @@ "CVE-2020-9383": { "cmt_msg": "floppy: check FDC index for errors before assigning it" }, - "CVE-2022-29582": { - "cmt_msg": "io_uring: fix race between timeout flush and removal" - }, "CVE-2021-38198": { "cmt_msg": "KVM: X86: MMU: Use the correct inherited permissions to get shadow page" }, @@ -62727,9 +60669,6 @@ "CVE-2020-24586": { "cmt_msg": "mac80211: prevent mixed key and fragment cache attacks" }, - "CVE-2022-0995": { - "cmt_msg": "watch_queue: Fix filter limit check" - }, "CVE-2021-0129": { "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, @@ -62739,6 +60678,9 @@ "CVE-2021-3444": { "cmt_msg": "bpf: Fix truncation handling for mod32 dst reg wrt zero" }, + "CVE-2022-32250": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier" + }, "CVE-2020-36158": { "cmt_msg": "mwifiex: Fix possible buffer overflows in mwifiex_cmd_802_11_ad_hoc_start" }, @@ -62754,9 +60696,6 @@ "CVE-2021-42252": { "cmt_msg": "soc: aspeed: lpc-ctrl: Fix boundary check for mmap" }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, "CVE-2020-29368": { "cmt_msg": "mm: thp: make the THP mapcount atomic against __split_huge_pmd_locked()" }, @@ -62775,9 +60714,6 @@ "CVE-2020-0466": { "cmt_msg": "do_epoll_ctl(): clean the failure exits up a bit" }, - "CVE-2022-2078": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, "CVE-2021-3669": { "cmt_msg": "ipc: replace costly bailout check in sysvipc_find_ipc()" }, @@ -62838,9 +60774,6 @@ "CVE-2021-32399": { "cmt_msg": "bluetooth: eliminate the potential race condition when removing the HCI controller" }, - "CVE-2022-20153": { - "cmt_msg": "io_uring: return back safer resurrect" - }, "CVE-2021-27364": { "cmt_msg": "scsi: iscsi: Restrict sessions and handles to admin capabilities" }, @@ -62862,9 +60795,6 @@ "CVE-2022-23037": { "cmt_msg": "xen/netfront: don't use gnttab_query_foreign_access() for mapped status" }, - "CVE-2022-0812": { - "cmt_msg": "xprtrdma: fix incorrect header size calculations" - }, "CVE-2021-38160": { "cmt_msg": "virtio_console: Assure used length from device is limited" }, @@ -62874,9 +60804,6 @@ "CVE-2020-25645": { "cmt_msg": "geneve: add transport ports in route lookup for geneve" }, - "CVE-2022-0998": { - "cmt_msg": "vdpa: clean up get_config_size ret value handling" - }, "CVE-2020-25643": { "cmt_msg": "hdlc_ppp: add range checks in ppp_cp_parse_cr()" }, @@ -62886,9 +60813,6 @@ "CVE-2005-3660": { "cmt_msg": "" }, - "CVE-2021-33135": { - "cmt_msg": "" - }, "CVE-2021-33034": { "cmt_msg": "Bluetooth: verify AMP hci_chan before amp_destroy" }, @@ -62913,12 +60837,12 @@ "CVE-2020-15393": { "cmt_msg": "usb: usbtest: fix missing kfree(dev->buf) in usbtest_disconnect" }, + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default" + }, "CVE-2021-3564": { "cmt_msg": "Bluetooth: fix the erroneous flush_work() order" }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, "CVE-2020-26560": { "cmt_msg": "" }, @@ -62958,6 +60882,12 @@ "CVE-2020-36385": { "cmt_msg": "RDMA/ucma: Rework ucma_migrate_id() to avoid races with destroy" }, + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" + }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, "CVE-2022-1882": { "cmt_msg": "" }, @@ -62967,9 +60897,6 @@ "CVE-2022-1204": { "cmt_msg": "ax25: Fix refcount leaks caused by ax25_cb_del()" }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers" - }, "CVE-2021-34693": { "cmt_msg": "can: bcm: fix infoleak in struct bcm_msg_head" }, @@ -63022,7 +60949,7 @@ "cmt_msg": "" }, "CVE-2020-26555": { - "cmt_msg": "" + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, "CVE-2019-20794": { "cmt_msg": "" @@ -63075,9 +61002,6 @@ "CVE-2020-29371": { "cmt_msg": "romfs: fix uninitialized memory leak in romfs_dev_read()" }, - "CVE-2022-1015": { - "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." - }, "CVE-2022-1016": { "cmt_msg": "netfilter: nf_tables: initialize registers in nft_do_chain()" }, @@ -63126,9 +61050,6 @@ "CVE-2021-3178": { "cmt_msg": "nfsd4: readdirplus shouldn't return parent of export" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, "CVE-2022-0330": { "cmt_msg": "drm/i915: Flush TLBs before releasing backing store" }, @@ -63240,9 +61161,6 @@ "CVE-2020-12364": { "cmt_msg": "drm/i915/guc: Update to use firmware v49.0.1" }, - "CVE-2022-0500": { - "cmt_msg": "bpf: Introduce MEM_RDONLY flag" - }, "CVE-2020-25639": { "cmt_msg": "drm/nouveau: bail out of nouveau_channel_new if channel init fails" }, @@ -63276,8 +61194,8 @@ "CVE-2022-0617": { "cmt_msg": "udf: Fix NULL ptr deref when converting from inline format" }, - "CVE-2022-26878": { - "cmt_msg": "" + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()" }, "CVE-2018-12930": { "cmt_msg": "" @@ -63324,9 +61242,6 @@ "CVE-2021-35039": { "cmt_msg": "module: limit enabling module.sig_enforce" }, - "CVE-2019-0146": { - "cmt_msg": "" - }, "CVE-2021-20226": { "cmt_msg": "io_uring: don't rely on weak ->files references" }, @@ -63381,14 +61296,8 @@ "CVE-2021-3864": { "cmt_msg": "" }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, "CVE-2022-1652": { - "cmt_msg": "" - }, - "CVE-2022-1651": { - "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" + "cmt_msg": "floppy: use a statically allocated error counter" }, "CVE-2020-29568": { "cmt_msg": "xen/xenbus: Allow watches discard events before queueing" @@ -63528,18 +61437,12 @@ "CVE-2019-12456": { "cmt_msg": "" }, - "CVE-2021-29646": { - "cmt_msg": "tipc: better validate user input in tipc_nl_retrieve_key()" + "CVE-2022-0812": { + "cmt_msg": "xprtrdma: fix incorrect header size calculations" }, "CVE-2021-29647": { "cmt_msg": "net: qrtr: fix a kernel-infoleak in qrtr_recvmsg()" }, - "CVE-2022-0742": { - "cmt_msg": "ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()" - }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"" - }, "CVE-2020-14390": { "cmt_msg": "fbcon: remove soft scrollback code" }, @@ -63547,7 +61450,7 @@ "cmt_msg": "f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr()" }, "CVE-2022-1184": { - "cmt_msg": "" + "cmt_msg": "ext4: verify dir block before splitting it" }, "CVE-2020-0465": { "cmt_msg": "HID: core: Sanitize event code and type when mapping input" @@ -63591,9 +61494,6 @@ "CVE-2021-20321": { "cmt_msg": "ovl: fix missing negative dentry check in ovl_rename()" }, - "CVE-2022-1043": { - "cmt_msg": "io_uring: fix xa_alloc_cycle() error return value check" - }, "CVE-2022-1048": { "cmt_msg": "ALSA: pcm: Fix races among concurrent hw_params and hw_free calls" }, @@ -63642,9 +61542,6 @@ "CVE-2022-0400": { "cmt_msg": "" }, - "CVE-2021-0707": { - "cmt_msg": "dmabuf: fix use-after-free of dmabuf's file->f_inode" - }, "CVE-2022-26966": { "cmt_msg": "sr9700: sanity check for packet length" }, @@ -63693,6 +61590,9 @@ "CVE-2021-3612": { "cmt_msg": "Input: joydev - prevent potential read overflow in ioctl" }, + "CVE-2021-29646": { + "cmt_msg": "tipc: better validate user input in tipc_nl_retrieve_key()" + }, "CVE-2020-24503": { "cmt_msg": "" }, @@ -63729,12 +61629,6 @@ "CVE-2021-41864": { "cmt_msg": "bpf: Fix integer overflow in prealloc_elems_and_freelist()" }, - "CVE-2022-1998": { - "cmt_msg": "fanotify: Fix stale file descriptor in copy_event_to_user()" - }, - "CVE-2022-1852": { - "cmt_msg": "KVM: x86: avoid calling x86 emulator without a decoded instruction" - }, "CVE-2021-37576": { "cmt_msg": "KVM: PPC: Book3S: Fix H_RTAS rets buffer overflow" }, @@ -63774,9 +61668,6 @@ "CVE-2021-3483": { "cmt_msg": "firewire: nosy: Fix a use-after-free bug in nosy_ioctl()" }, - "CVE-2022-29156": { - "cmt_msg": "RDMA/rtrs-clt: Fix possible double free in error case" - }, "CVE-2021-38300": { "cmt_msg": "bpf, mips: Validate conditional branch offsets" }, @@ -63804,21 +61695,12 @@ "CVE-2021-3573": { "cmt_msg": "Bluetooth: use correct lock to prevent UAF of hdev object" }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, "CVE-2022-1974": { "cmt_msg": "nfc: replace improper check device_is_registered() in netlink related functions" }, "CVE-2022-1975": { "cmt_msg": "NFC: netlink: fix sleep in atomic bug when firmware download timeout" }, - "CVE-2022-1972": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" - }, "CVE-2021-28972": { "cmt_msg": "PCI: rpadlpar: Fix potential drc_name corruption in store functions" }, @@ -63855,9 +61737,6 @@ "CVE-2021-28951": { "cmt_msg": "io_uring: ensure that SQPOLL thread is started for exit" }, - "CVE-2022-1671": { - "cmt_msg": "rxrpc: fix some null-ptr-deref bugs in server_key.c" - }, "CVE-2021-3653": { "cmt_msg": "KVM: nSVM: avoid picking up unsupported bits from L2 in int_ctl (CVE-2021-3653)" }, @@ -63969,15 +61848,9 @@ "CVE-2021-44879": { "cmt_msg": "f2fs: fix to do sanity check on inode type during garbage collection" }, - "CVE-2022-1516": { - "cmt_msg": "net/x25: Fix null-ptr-deref caused by x25_disconnect" - }, "CVE-2015-2877": { "cmt_msg": "" }, - "CVE-2022-0171": { - "cmt_msg": "" - }, "CVE-2019-16089": { "cmt_msg": "" }, @@ -64220,8 +62093,8 @@ "CVE-2016-9794": { "cmt_msg": "ALSA: pcm : Call kill_fasync() in stream lock" }, - "CVE-2021-3894": { - "cmt_msg": "sctp: account stream padding length for reconf chunk" + "CVE-2022-1184": { + "cmt_msg": "ext4: verify dir block before splitting it" }, "CVE-2020-24587": { "cmt_msg": "mac80211: prevent mixed key and fragment cache attacks" @@ -64250,6 +62123,9 @@ "CVE-2018-10940": { "cmt_msg": "cdrom: information leak in cdrom_ioctl_media_changed()" }, + "CVE-2022-32250": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier" + }, "CVE-2018-10087": { "cmt_msg": "kernel/exit.c: avoid undefined behaviour when calling wait4()" }, @@ -64322,9 +62198,6 @@ "CVE-2019-14835": { "cmt_msg": "vhost: make sure log_num < in_num" }, - "CVE-2022-2078": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, "CVE-2018-1000204": { "cmt_msg": "scsi: sg: allocate with __GFP_ZERO in sg_build_indirect()" }, @@ -64538,9 +62411,6 @@ "CVE-2017-1000410": { "cmt_msg": "Bluetooth: Prevent stack info leak from the EFS element." }, - "CVE-2022-20154": { - "cmt_msg": "sctp: use call_rcu to free endpoint" - }, "CVE-2016-8645": { "cmt_msg": "tcp: take care of truncations done by sk_filter()" }, @@ -64649,6 +62519,9 @@ "CVE-2020-15393": { "cmt_msg": "usb: usbtest: fix missing kfree(dev->buf) in usbtest_disconnect" }, + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default" + }, "CVE-2021-3564": { "cmt_msg": "Bluetooth: fix the erroneous flush_work() order" }, @@ -64757,9 +62630,6 @@ "CVE-2021-4002": { "cmt_msg": "hugetlbfs: flush TLBs correctly after huge_pmd_unshare" }, - "CVE-2022-0998": { - "cmt_msg": "vdpa: clean up get_config_size ret value handling" - }, "CVE-2018-20511": { "cmt_msg": "net/appletalk: fix minor pointer leak to userspace in SIOCFINDIPDDPRT" }, @@ -64811,6 +62681,9 @@ "CVE-2022-1048": { "cmt_msg": "ALSA: pcm: Fix races among concurrent hw_params and hw_free calls" }, + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" + }, "CVE-2020-36385": { "cmt_msg": "RDMA/ucma: Rework ucma_migrate_id() to avoid races with destroy" }, @@ -64838,8 +62711,8 @@ "CVE-2018-9415": { "cmt_msg": "ARM: amba: Fix race condition with driver_override" }, - "CVE-2022-0995": { - "cmt_msg": "watch_queue: Fix filter limit check" + "CVE-2022-1882": { + "cmt_msg": "" }, "CVE-2020-12771": { "cmt_msg": "bcache: fix potential deadlock problem in btree_gc_coalesce" @@ -64889,6 +62762,9 @@ "CVE-2020-25212": { "cmt_msg": "nfs: Fix getxattr kernel panic and memory overflow" }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, "CVE-2019-19036": { "cmt_msg": "btrfs: Detect unbalanced tree with empty leaf before crashing btree operations" }, @@ -64958,9 +62834,6 @@ "CVE-2021-38208": { "cmt_msg": "nfc: fix NULL ptr dereference in llcp_sock_getname() after failed connect" }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"" - }, "CVE-2017-18232": { "cmt_msg": "scsi: libsas: direct call probe and destruct" }, @@ -64980,7 +62853,7 @@ "cmt_msg": "NFC: llcp: Limit size of SDP URI" }, "CVE-2020-26555": { - "cmt_msg": "" + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, "CVE-2018-9517": { "cmt_msg": "l2tp: pass tunnel pointer to ->session_create()" @@ -65036,9 +62909,6 @@ "CVE-2018-9568": { "cmt_msg": "net: Set sk_prot_creator when cloning sockets to the right proto" }, - "CVE-2022-0644": { - "cmt_msg": "vfs: check fd has read access in kernel_read_file_from_fd()" - }, "CVE-2018-13053": { "cmt_msg": "alarmtimer: Prevent overflow for relative nanosleep" }, @@ -65174,9 +63044,6 @@ "CVE-2021-3178": { "cmt_msg": "nfsd4: readdirplus shouldn't return parent of export" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, "CVE-2018-7755": { "cmt_msg": "floppy: Do not copy a kernel pointer to user memory in FDGETPRM ioctl" }, @@ -65192,9 +63059,6 @@ "CVE-2007-3719": { "cmt_msg": "" }, - "CVE-2022-1789": { - "cmt_msg": "KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID" - }, "CVE-2020-36313": { "cmt_msg": "KVM: Fix out of range accesses to memslots" }, @@ -65213,12 +63077,6 @@ "CVE-2022-24958": { "cmt_msg": "usb: gadget: don't release an existing dev->buf" }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers" - }, - "CVE-2022-28893": { - "cmt_msg": "SUNRPC: Ensure we flush any closed sockets before xs_xprt_free()" - }, "CVE-2021-3772": { "cmt_msg": "sctp: use init_tag from inithdr for ABORT chunk" }, @@ -65231,9 +63089,6 @@ "CVE-2016-8399": { "cmt_msg": "net: ping: check minimum size on ICMP header length" }, - "CVE-2021-39711": { - "cmt_msg": "bpf: fix panic due to oob in bpf_prog_test_run_skb" - }, "CVE-2016-7042": { "cmt_msg": "KEYS: Fix short sprintf buffer in /proc/keys show function" }, @@ -65282,9 +63137,6 @@ "CVE-2019-11091": { "cmt_msg": "s390/speculation: Support 'mitigations=' cmdline option" }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, "CVE-2019-18660": { "cmt_msg": "powerpc/book3s64: Fix link stack flush on context switch" }, @@ -65357,9 +63209,6 @@ "CVE-2020-14381": { "cmt_msg": "futex: Fix inode life-time issue" }, - "CVE-2022-1158": { - "cmt_msg": "KVM: x86/mmu: do compare-and-exchange of gPTE via the user address" - }, "CVE-2019-19768": { "cmt_msg": "blktrace: Protect q->blk_trace with RCU" }, @@ -65426,15 +63275,9 @@ "CVE-2019-12881": { "cmt_msg": "drm/i915/userptr: reject zero user_size" }, - "CVE-2022-28389": { - "cmt_msg": "can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path" - }, "CVE-2018-1000004": { "cmt_msg": "ALSA: seq: Make ioctls race-free" }, - "CVE-2022-0500": { - "cmt_msg": "bpf: Introduce MEM_RDONLY flag" - }, "CVE-2018-18690": { "cmt_msg": "xfs: don't fail when converting shortform attr to long form during ATTR_REPLACE" }, @@ -65513,8 +63356,8 @@ "CVE-2022-0617": { "cmt_msg": "udf: Fix NULL ptr deref when converting from inline format" }, - "CVE-2022-26878": { - "cmt_msg": "" + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()" }, "CVE-2019-19531": { "cmt_msg": "usb: yurex: Fix use-after-free in yurex_delete" @@ -65618,9 +63461,6 @@ "CVE-2022-23960": { "cmt_msg": "ARM: report Spectre v2 status through sysfs" }, - "CVE-2019-0146": { - "cmt_msg": "" - }, "CVE-2020-10942": { "cmt_msg": "vhost: Check docket sk_family instead of call getname" }, @@ -65735,9 +63575,6 @@ "CVE-2016-3713": { "cmt_msg": "KVM: MTRR: remove MSR 0x2f8" }, - "CVE-2021-39713": { - "cmt_msg": "net: sched: use Qdisc rcu API instead of relying on rtnl lock" - }, "CVE-2020-28374": { "cmt_msg": "scsi: target: Fix XCOPY NAA identifier lookup" }, @@ -65789,9 +63626,6 @@ "CVE-2016-9083": { "cmt_msg": "vfio/pci: Fix integer overflows, bitmask check" }, - "CVE-2022-1055": { - "cmt_msg": "net: sched: fix use-after-free in tc_new_tfilter()" - }, "CVE-2019-11815": { "cmt_msg": "net: rds: force to destroy connection if t_sock is NULL in rds_tcp_kill_sock()." }, @@ -65841,10 +63675,7 @@ "cmt_msg": "ext4: fix races between page faults and hole punching" }, "CVE-2022-1652": { - "cmt_msg": "" - }, - "CVE-2022-1651": { - "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" + "cmt_msg": "floppy: use a statically allocated error counter" }, "CVE-2020-29568": { "cmt_msg": "xen/xenbus: Allow watches discard events before queueing" @@ -66041,18 +63872,12 @@ "CVE-2021-4149": { "cmt_msg": "btrfs: unlock newly allocated extent buffer after error" }, - "CVE-2021-4148": { - "cmt_msg": "mm: khugepaged: skip huge page collapse for special files" - }, "CVE-2021-3864": { "cmt_msg": "" }, "CVE-2021-3640": { "cmt_msg": "Bluetooth: sco: Fix lock_sock() blockage by memcpy_from_msg()" }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, "CVE-2017-7618": { "cmt_msg": "crypto: ahash - Fix EINPROGRESS notification callback" }, @@ -66170,9 +63995,6 @@ "CVE-2016-9756": { "cmt_msg": "KVM: x86: drop error recovery in em_jmp_far and em_ret_far" }, - "CVE-2022-0812": { - "cmt_msg": "xprtrdma: fix incorrect header size calculations" - }, "CVE-2019-5108": { "cmt_msg": "mac80211: Do not send Layer 2 Update frame before authorization" }, @@ -66191,9 +64013,6 @@ "CVE-2017-2636": { "cmt_msg": "tty: n_hdlc: get rid of racy n_hdlc.tbuf" }, - "CVE-2022-20153": { - "cmt_msg": "io_uring: return back safer resurrect" - }, "CVE-2020-15437": { "cmt_msg": "serial: 8250: fix null-ptr-deref in serial8250_start_tx()" }, @@ -66320,9 +64139,6 @@ "CVE-2022-26490": { "cmt_msg": "nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION" }, - "CVE-2022-1043": { - "cmt_msg": "io_uring: fix xa_alloc_cycle() error return value check" - }, "CVE-2017-5967": { "cmt_msg": "time: Remove CONFIG_TIMER_STATS" }, @@ -66338,9 +64154,6 @@ "CVE-2018-20976": { "cmt_msg": "xfs: clear sb->s_fs_info on mount failure" }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, "CVE-2016-10229": { "cmt_msg": "udp: properly support MSG_PEEK with truncated buffers" }, @@ -66359,9 +64172,6 @@ "CVE-2019-16413": { "cmt_msg": "9p: use inode->i_lock to protect i_size_write() under 32-bit" }, - "CVE-2022-1516": { - "cmt_msg": "net/x25: Fix null-ptr-deref caused by x25_disconnect" - }, "CVE-2018-10876": { "cmt_msg": "ext4: only look at the bg_flags field if it is valid" }, @@ -66416,9 +64226,6 @@ "CVE-2022-0400": { "cmt_msg": "" }, - "CVE-2021-0707": { - "cmt_msg": "dmabuf: fix use-after-free of dmabuf's file->f_inode" - }, "CVE-2021-38160": { "cmt_msg": "virtio_console: Assure used length from device is limited" }, @@ -66464,9 +64271,6 @@ "CVE-2016-1583": { "cmt_msg": "proc: prevent stacking filesystems on top" }, - "CVE-2022-25636": { - "cmt_msg": "netfilter: nf_tables_offload: incorrect flow offload action array size" - }, "CVE-2017-1000379": { "cmt_msg": "mm: larger stack guard gap, between vmas" }, @@ -66491,9 +64295,6 @@ "CVE-2021-3896": { "cmt_msg": "isdn: cpai: check ctr->cnr to avoid array index out of bound" }, - "CVE-2022-1015": { - "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." - }, "CVE-2017-5549": { "cmt_msg": "USB: serial: kl5kusb105: fix line-state error handling" }, @@ -66503,9 +64304,6 @@ "CVE-2019-11884": { "cmt_msg": "Bluetooth: hidp: fix buffer overflow" }, - "CVE-2022-1852": { - "cmt_msg": "KVM: x86: avoid calling x86 emulator without a decoded instruction" - }, "CVE-2020-4788": { "cmt_msg": "powerpc/64s: flush L1D on kernel entry" }, @@ -66548,9 +64346,6 @@ "CVE-2019-19449": { "cmt_msg": "f2fs: fix to do sanity check on segment/section count" }, - "CVE-2021-33135": { - "cmt_msg": "" - }, "CVE-2019-19523": { "cmt_msg": "USB: adutux: fix use-after-free on disconnect" }, @@ -66587,9 +64382,6 @@ "CVE-2019-15215": { "cmt_msg": "media: cpia2_usb: first wake up, then free in disconnect" }, - "CVE-2022-1998": { - "cmt_msg": "fanotify: Fix stale file descriptor in copy_event_to_user()" - }, "CVE-2018-18021": { "cmt_msg": "arm64: KVM: Tighten guest core register access from userspace" }, @@ -66623,9 +64415,6 @@ "CVE-2019-15222": { "cmt_msg": "ALSA: usb-audio: Fix gpf in snd_usb_pipe_sanity_check" }, - "CVE-2022-23041": { - "cmt_msg": "xen/9p: use alloc/free_pages_exact()" - }, "CVE-2022-1462": { "cmt_msg": "" }, @@ -66716,9 +64505,6 @@ "CVE-2019-3874": { "cmt_msg": "sctp: implement memory accounting on tx path" }, - "CVE-2022-0171": { - "cmt_msg": "" - }, "CVE-2018-10877": { "cmt_msg": "ext4: verify the depth of extent tree in ext4_find_extent()" }, @@ -66731,9 +64517,6 @@ "CVE-2016-8655": { "cmt_msg": "packet: fix race condition in packet_set_ring" }, - "CVE-2022-1882": { - "cmt_msg": "" - }, "CVE-2020-14331": { "cmt_msg": "vgacon: Fix for missing check in scrollback handling" }, @@ -66749,9 +64532,6 @@ "CVE-2021-3483": { "cmt_msg": "firewire: nosy: Fix a use-after-free bug in nosy_ioctl()" }, - "CVE-2022-29156": { - "cmt_msg": "RDMA/rtrs-clt: Fix possible double free in error case" - }, "CVE-2017-16913": { "cmt_msg": "usbip: fix stub_rx: harden CMD_SUBMIT path to handle malicious input" }, @@ -66830,9 +64610,6 @@ "CVE-2018-7191": { "cmt_msg": "tun: call dev_get_valid_name() before register_netdevice()" }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, "CVE-2022-1679": { "cmt_msg": "" }, @@ -66842,12 +64619,6 @@ "CVE-2022-1975": { "cmt_msg": "NFC: netlink: fix sleep in atomic bug when firmware download timeout" }, - "CVE-2022-1972": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" - }, "CVE-2017-2596": { "cmt_msg": "kvm: fix page struct leak in handle_vmon" }, @@ -66935,9 +64706,6 @@ "CVE-2021-28951": { "cmt_msg": "io_uring: ensure that SQPOLL thread is started for exit" }, - "CVE-2022-1671": { - "cmt_msg": "rxrpc: fix some null-ptr-deref bugs in server_key.c" - }, "CVE-2020-16166": { "cmt_msg": "random32: update the net random state on interrupt and activity" }, @@ -67049,9 +64817,6 @@ "CVE-2016-4486": { "cmt_msg": "net: fix infoleak in rtnetlink" }, - "CVE-2022-1184": { - "cmt_msg": "" - }, "CVE-2016-4485": { "cmt_msg": "net: fix infoleak in llc" }, @@ -67124,9 +64889,6 @@ "CVE-2015-8963": { "cmt_msg": "perf: Fix race in swevent hash" }, - "CVE-2022-0742": { - "cmt_msg": "ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()" - }, "CVE-2018-16884": { "cmt_msg": "sunrpc: use-after-free in svc_process_common()" }, @@ -67181,9 +64943,6 @@ "CVE-2020-9383": { "cmt_msg": "floppy: check FDC index for errors before assigning it" }, - "CVE-2022-29582": { - "cmt_msg": "io_uring: fix race between timeout flush and removal" - }, "CVE-2021-38198": { "cmt_msg": "KVM: X86: MMU: Use the correct inherited permissions to get shadow page" }, @@ -67472,9 +65231,6 @@ "CVE-2020-24586": { "cmt_msg": "mac80211: prevent mixed key and fragment cache attacks" }, - "CVE-2022-0995": { - "cmt_msg": "watch_queue: Fix filter limit check" - }, "CVE-2021-0129": { "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, @@ -67484,6 +65240,9 @@ "CVE-2021-3444": { "cmt_msg": "bpf: Fix truncation handling for mod32 dst reg wrt zero" }, + "CVE-2022-32250": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier" + }, "CVE-2020-36158": { "cmt_msg": "mwifiex: Fix possible buffer overflows in mwifiex_cmd_802_11_ad_hoc_start" }, @@ -67571,9 +65330,6 @@ "CVE-2021-32399": { "cmt_msg": "bluetooth: eliminate the potential race condition when removing the HCI controller" }, - "CVE-2022-20153": { - "cmt_msg": "io_uring: return back safer resurrect" - }, "CVE-2021-27364": { "cmt_msg": "scsi: iscsi: Restrict sessions and handles to admin capabilities" }, @@ -67622,9 +65378,6 @@ "CVE-2022-0516": { "cmt_msg": "KVM: s390: Return error on SIDA memop on normal guest" }, - "CVE-2021-33135": { - "cmt_msg": "" - }, "CVE-2021-33034": { "cmt_msg": "Bluetooth: verify AMP hci_chan before amp_destroy" }, @@ -67643,12 +65396,12 @@ "CVE-2022-29581": { "cmt_msg": "net/sched: cls_u32: fix netns refcount changes in u32_change()" }, + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default" + }, "CVE-2021-3564": { "cmt_msg": "Bluetooth: fix the erroneous flush_work() order" }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, "CVE-2020-26560": { "cmt_msg": "" }, @@ -67673,6 +65426,12 @@ "CVE-2020-36385": { "cmt_msg": "RDMA/ucma: Rework ucma_migrate_id() to avoid races with destroy" }, + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" + }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, "CVE-2020-16120": { "cmt_msg": "ovl: switch to mounter creds in readdir" }, @@ -67682,9 +65441,6 @@ "CVE-2022-1204": { "cmt_msg": "ax25: Fix refcount leaks caused by ax25_cb_del()" }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers" - }, "CVE-2021-34693": { "cmt_msg": "can: bcm: fix infoleak in struct bcm_msg_head" }, @@ -67734,7 +65490,7 @@ "cmt_msg": "" }, "CVE-2020-26555": { - "cmt_msg": "" + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, "CVE-2019-20794": { "cmt_msg": "" @@ -67778,9 +65534,6 @@ "CVE-2019-19814": { "cmt_msg": "" }, - "CVE-2022-1015": { - "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." - }, "CVE-2022-1016": { "cmt_msg": "netfilter: nf_tables: initialize registers in nft_do_chain()" }, @@ -67823,9 +65576,6 @@ "CVE-2021-3178": { "cmt_msg": "nfsd4: readdirplus shouldn't return parent of export" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, "CVE-2022-0330": { "cmt_msg": "drm/i915: Flush TLBs before releasing backing store" }, @@ -67928,9 +65678,6 @@ "CVE-2020-12364": { "cmt_msg": "drm/i915/guc: Update to use firmware v49.0.1" }, - "CVE-2022-0500": { - "cmt_msg": "bpf: Introduce MEM_RDONLY flag" - }, "CVE-2020-25639": { "cmt_msg": "drm/nouveau: bail out of nouveau_channel_new if channel init fails" }, @@ -67961,8 +65708,8 @@ "CVE-2022-0617": { "cmt_msg": "udf: Fix NULL ptr deref when converting from inline format" }, - "CVE-2022-26878": { - "cmt_msg": "" + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()" }, "CVE-2020-12363": { "cmt_msg": "drm/i915/guc: Update to use firmware v49.0.1" @@ -68000,9 +65747,6 @@ "CVE-2021-35039": { "cmt_msg": "module: limit enabling module.sig_enforce" }, - "CVE-2019-0146": { - "cmt_msg": "" - }, "CVE-2021-20226": { "cmt_msg": "io_uring: don't rely on weak ->files references" }, @@ -68045,14 +65789,8 @@ "CVE-2021-3864": { "cmt_msg": "" }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, "CVE-2022-1652": { - "cmt_msg": "" - }, - "CVE-2022-1651": { - "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" + "cmt_msg": "floppy: use a statically allocated error counter" }, "CVE-2020-29568": { "cmt_msg": "xen/xenbus: Allow watches discard events before queueing" @@ -68195,12 +65933,6 @@ "CVE-2021-29647": { "cmt_msg": "net: qrtr: fix a kernel-infoleak in qrtr_recvmsg()" }, - "CVE-2022-0742": { - "cmt_msg": "ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()" - }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"" - }, "CVE-2020-14390": { "cmt_msg": "fbcon: remove soft scrollback code" }, @@ -68208,7 +65940,7 @@ "cmt_msg": "f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr()" }, "CVE-2022-1184": { - "cmt_msg": "" + "cmt_msg": "ext4: verify dir block before splitting it" }, "CVE-2020-0465": { "cmt_msg": "HID: core: Sanitize event code and type when mapping input" @@ -68249,15 +65981,9 @@ "CVE-2021-20321": { "cmt_msg": "ovl: fix missing negative dentry check in ovl_rename()" }, - "CVE-2022-1043": { - "cmt_msg": "io_uring: fix xa_alloc_cycle() error return value check" - }, "CVE-2022-1048": { "cmt_msg": "ALSA: pcm: Fix races among concurrent hw_params and hw_free calls" }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, "CVE-2021-3542": { "cmt_msg": "" }, @@ -68294,9 +66020,6 @@ "CVE-2022-0400": { "cmt_msg": "" }, - "CVE-2021-0707": { - "cmt_msg": "dmabuf: fix use-after-free of dmabuf's file->f_inode" - }, "CVE-2022-26966": { "cmt_msg": "sr9700: sanity check for packet length" }, @@ -68378,12 +66101,6 @@ "CVE-2021-41864": { "cmt_msg": "bpf: Fix integer overflow in prealloc_elems_and_freelist()" }, - "CVE-2022-1998": { - "cmt_msg": "fanotify: Fix stale file descriptor in copy_event_to_user()" - }, - "CVE-2022-1852": { - "cmt_msg": "KVM: x86: avoid calling x86 emulator without a decoded instruction" - }, "CVE-2021-37576": { "cmt_msg": "KVM: PPC: Book3S: Fix H_RTAS rets buffer overflow" }, @@ -68423,9 +66140,6 @@ "CVE-2021-3483": { "cmt_msg": "firewire: nosy: Fix a use-after-free bug in nosy_ioctl()" }, - "CVE-2022-29156": { - "cmt_msg": "RDMA/rtrs-clt: Fix possible double free in error case" - }, "CVE-2021-38300": { "cmt_msg": "bpf, mips: Validate conditional branch offsets" }, @@ -68453,9 +66167,6 @@ "CVE-2021-3573": { "cmt_msg": "Bluetooth: use correct lock to prevent UAF of hdev object" }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, "CVE-2022-1974": { "cmt_msg": "nfc: replace improper check device_is_registered() in netlink related functions" }, @@ -68465,9 +66176,6 @@ "CVE-2022-1972": { "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" - }, "CVE-2021-28972": { "cmt_msg": "PCI: rpadlpar: Fix potential drc_name corruption in store functions" }, @@ -68501,9 +66209,6 @@ "CVE-2021-28951": { "cmt_msg": "io_uring: ensure that SQPOLL thread is started for exit" }, - "CVE-2021-26401": { - "cmt_msg": "x86/speculation: Use generic retpoline by default on AMD" - }, "CVE-2021-28952": { "cmt_msg": "ASoC: qcom: sdm845: Fix array out of bounds access" }, @@ -68618,9 +66323,6 @@ "CVE-2015-2877": { "cmt_msg": "" }, - "CVE-2022-0171": { - "cmt_msg": "" - }, "CVE-2019-16089": { "cmt_msg": "" }, @@ -68633,8 +66335,8 @@ "CVE-2022-1679": { "cmt_msg": "" }, - "CVE-2022-1671": { - "cmt_msg": "rxrpc: fix some null-ptr-deref bugs in server_key.c" + "CVE-2021-26401": { + "cmt_msg": "x86/speculation: Use generic retpoline by default on AMD" }, "CVE-2020-28941": { "cmt_msg": "speakup: Do not let the line discipline be used several times" @@ -68888,6 +66590,9 @@ "CVE-2021-3444": { "cmt_msg": "bpf: Fix truncation handling for mod32 dst reg wrt zero" }, + "CVE-2022-32250": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier" + }, "CVE-2020-36158": { "cmt_msg": "mwifiex: Fix possible buffer overflows in mwifiex_cmd_802_11_ad_hoc_start" }, @@ -68972,9 +66677,6 @@ "CVE-2021-32399": { "cmt_msg": "bluetooth: eliminate the potential race condition when removing the HCI controller" }, - "CVE-2022-20153": { - "cmt_msg": "io_uring: return back safer resurrect" - }, "CVE-2021-27364": { "cmt_msg": "scsi: iscsi: Restrict sessions and handles to admin capabilities" }, @@ -69017,9 +66719,6 @@ "CVE-2022-0516": { "cmt_msg": "KVM: s390: Return error on SIDA memop on normal guest" }, - "CVE-2021-33135": { - "cmt_msg": "" - }, "CVE-2021-33034": { "cmt_msg": "Bluetooth: verify AMP hci_chan before amp_destroy" }, @@ -69038,12 +66737,12 @@ "CVE-2022-29581": { "cmt_msg": "net/sched: cls_u32: fix netns refcount changes in u32_change()" }, + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default" + }, "CVE-2021-3564": { "cmt_msg": "Bluetooth: fix the erroneous flush_work() order" }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, "CVE-2020-26560": { "cmt_msg": "" }, @@ -69068,15 +66767,21 @@ "CVE-2020-36385": { "cmt_msg": "RDMA/ucma: Rework ucma_migrate_id() to avoid races with destroy" }, + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" + }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, + "CVE-2022-1882": { + "cmt_msg": "" + }, "CVE-2021-3573": { "cmt_msg": "Bluetooth: use correct lock to prevent UAF of hdev object" }, "CVE-2022-1204": { "cmt_msg": "ax25: Fix refcount leaks caused by ax25_cb_del()" }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers" - }, "CVE-2021-34693": { "cmt_msg": "can: bcm: fix infoleak in struct bcm_msg_head" }, @@ -69123,7 +66828,7 @@ "cmt_msg": "" }, "CVE-2020-26555": { - "cmt_msg": "" + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, "CVE-2019-20794": { "cmt_msg": "" @@ -69161,9 +66866,6 @@ "CVE-2019-19814": { "cmt_msg": "" }, - "CVE-2022-1015": { - "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." - }, "CVE-2022-1016": { "cmt_msg": "netfilter: nf_tables: initialize registers in nft_do_chain()" }, @@ -69200,9 +66902,6 @@ "CVE-2021-3178": { "cmt_msg": "nfsd4: readdirplus shouldn't return parent of export" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, "CVE-2022-0330": { "cmt_msg": "drm/i915: Flush TLBs before releasing backing store" }, @@ -69242,8 +66941,8 @@ "CVE-2022-23960": { "cmt_msg": "ARM: report Spectre v2 status through sysfs" }, - "CVE-2022-25258": { - "cmt_msg": "USB: gadget: validate interface OS descriptor requests" + "CVE-2021-4154": { + "cmt_msg": "cgroup: verify that source is a string" }, "CVE-2021-39656": { "cmt_msg": "configfs: fix a use-after-free in __configfs_open_file" @@ -69296,9 +66995,6 @@ "CVE-2020-12364": { "cmt_msg": "drm/i915/guc: Update to use firmware v49.0.1" }, - "CVE-2022-0500": { - "cmt_msg": "bpf: Introduce MEM_RDONLY flag" - }, "CVE-2020-25639": { "cmt_msg": "drm/nouveau: bail out of nouveau_channel_new if channel init fails" }, @@ -69326,8 +67022,8 @@ "CVE-2022-0617": { "cmt_msg": "udf: Fix NULL ptr deref when converting from inline format" }, - "CVE-2022-26878": { - "cmt_msg": "" + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()" }, "CVE-2018-12930": { "cmt_msg": "" @@ -69359,9 +67055,6 @@ "CVE-2021-35039": { "cmt_msg": "module: limit enabling module.sig_enforce" }, - "CVE-2019-0146": { - "cmt_msg": "" - }, "CVE-2020-26139": { "cmt_msg": "mac80211: do not accept/forward invalid EAPOL frames" }, @@ -69404,14 +67097,8 @@ "CVE-2021-3864": { "cmt_msg": "" }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, "CVE-2022-1652": { - "cmt_msg": "" - }, - "CVE-2022-1651": { - "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" + "cmt_msg": "floppy: use a statically allocated error counter" }, "CVE-2020-29568": { "cmt_msg": "xen/xenbus: Allow watches discard events before queueing" @@ -69545,17 +67232,11 @@ "CVE-2021-29647": { "cmt_msg": "net: qrtr: fix a kernel-infoleak in qrtr_recvmsg()" }, - "CVE-2022-0742": { - "cmt_msg": "ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()" - }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"" - }, "CVE-2021-45469": { "cmt_msg": "f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr()" }, "CVE-2022-1184": { - "cmt_msg": "" + "cmt_msg": "ext4: verify dir block before splitting it" }, "CVE-2019-15902": { "cmt_msg": "unknown" @@ -69587,23 +67268,17 @@ "CVE-2021-20321": { "cmt_msg": "ovl: fix missing negative dentry check in ovl_rename()" }, - "CVE-2022-1043": { - "cmt_msg": "io_uring: fix xa_alloc_cycle() error return value check" - }, "CVE-2022-1048": { "cmt_msg": "ALSA: pcm: Fix races among concurrent hw_params and hw_free calls" }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, "CVE-2021-3542": { "cmt_msg": "" }, "CVE-2022-20166": { "cmt_msg": "drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions" }, - "CVE-2022-1882": { - "cmt_msg": "" + "CVE-2022-23041": { + "cmt_msg": "xen/9p: use alloc/free_pages_exact()" }, "CVE-2022-23040": { "cmt_msg": "xen/xenbus: don't let xenbus_grant_ring() remove grants in error case" @@ -69710,21 +67385,12 @@ "CVE-2021-41864": { "cmt_msg": "bpf: Fix integer overflow in prealloc_elems_and_freelist()" }, - "CVE-2022-1998": { - "cmt_msg": "fanotify: Fix stale file descriptor in copy_event_to_user()" - }, - "CVE-2022-1852": { - "cmt_msg": "KVM: x86: avoid calling x86 emulator without a decoded instruction" - }, "CVE-2021-37576": { "cmt_msg": "KVM: PPC: Book3S: Fix H_RTAS rets buffer overflow" }, "CVE-2020-27815": { "cmt_msg": "jfs: Fix array index bounds check in dbAdjTree" }, - "CVE-2022-23041": { - "cmt_msg": "xen/9p: use alloc/free_pages_exact()" - }, "CVE-2022-1462": { "cmt_msg": "" }, @@ -69752,9 +67418,6 @@ "CVE-2021-3483": { "cmt_msg": "firewire: nosy: Fix a use-after-free bug in nosy_ioctl()" }, - "CVE-2022-29156": { - "cmt_msg": "RDMA/rtrs-clt: Fix possible double free in error case" - }, "CVE-2021-3489": { "cmt_msg": "bpf, ringbuf: Deny reserve of buffers larger than ringbuf" }, @@ -69785,9 +67448,6 @@ "CVE-2021-46283": { "cmt_msg": "netfilter: nf_tables: initialize set before expression setup" }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, "CVE-2022-1974": { "cmt_msg": "nfc: replace improper check device_is_registered() in netlink related functions" }, @@ -69797,9 +67457,6 @@ "CVE-2022-1972": { "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" - }, "CVE-2021-28972": { "cmt_msg": "PCI: rpadlpar: Fix potential drc_name corruption in store functions" }, @@ -69812,8 +67469,8 @@ "CVE-2021-4157": { "cmt_msg": "pNFS/flexfiles: fix incorrect size check in decode_nfs_fh()" }, - "CVE-2021-4154": { - "cmt_msg": "cgroup: verify that source is a string" + "CVE-2022-25258": { + "cmt_msg": "USB: gadget: validate interface OS descriptor requests" }, "CVE-2021-4155": { "cmt_msg": "xfs: map unwritten blocks in XFS_IOC_{ALLOC,FREE}SP just like fallocate" @@ -69833,9 +67490,6 @@ "CVE-2021-28951": { "cmt_msg": "io_uring: ensure that SQPOLL thread is started for exit" }, - "CVE-2021-26401": { - "cmt_msg": "x86/speculation: Use generic retpoline by default on AMD" - }, "CVE-2021-28952": { "cmt_msg": "ASoC: qcom: sdm845: Fix array out of bounds access" }, @@ -69941,9 +67595,6 @@ "CVE-2015-2877": { "cmt_msg": "" }, - "CVE-2022-0171": { - "cmt_msg": "" - }, "CVE-2019-16089": { "cmt_msg": "" }, @@ -69956,8 +67607,8 @@ "CVE-2022-1679": { "cmt_msg": "" }, - "CVE-2022-1671": { - "cmt_msg": "rxrpc: fix some null-ptr-deref bugs in server_key.c" + "CVE-2021-26401": { + "cmt_msg": "x86/speculation: Use generic retpoline by default on AMD" }, "CVE-2021-3847": { "cmt_msg": "" @@ -70138,18 +67789,54 @@ "CVE-2020-36322": { "cmt_msg": "fuse: fix bad inode" }, + "CVE-2020-26556": { + "cmt_msg": "" + }, + "CVE-2020-26557": { + "cmt_msg": "" + }, + "CVE-2020-26555": { + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" + }, + "CVE-2019-20794": { + "cmt_msg": "" + }, + "CVE-2021-0920": { + "cmt_msg": "af_unix: fix garbage collect vs MSG_PEEK" + }, "CVE-2020-35501": { "cmt_msg": "" }, + "CVE-2022-0168": { + "cmt_msg": "cifs: fix NULL ptr dereference in smb2_ioctl_query_info()" + }, "CVE-2021-45095": { "cmt_msg": "phonet: refcount leak in pep_sock_accep" }, + "CVE-2022-28388": { + "cmt_msg": "can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path" + }, + "CVE-2021-3491": { + "cmt_msg": "io_uring: truncate lengths larger than MAX_RW_COUNT on provide buffers" + }, "CVE-2022-0001": { "cmt_msg": "x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE" }, "CVE-2022-0002": { "cmt_msg": "x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE" }, + "CVE-2020-28374": { + "cmt_msg": "scsi: target: Fix XCOPY NAA identifier lookup" + }, + "CVE-2019-19378": { + "cmt_msg": "" + }, + "CVE-2022-25265": { + "cmt_msg": "" + }, + "CVE-2022-1016": { + "cmt_msg": "netfilter: nf_tables: initialize registers in nft_do_chain()" + }, "CVE-2020-24587": { "cmt_msg": "mac80211: prevent mixed key and fragment cache attacks" }, @@ -70159,261 +67846,90 @@ "CVE-2022-0995": { "cmt_msg": "watch_queue: Fix filter limit check" }, + "CVE-2022-0185": { + "cmt_msg": "vfs: fs_context: fix up param length parsing in legacy_parse_param" + }, + "CVE-2022-20008": { + "cmt_msg": "mmc: block: fix read single on recovery logic" + }, "CVE-2021-0129": { "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, "CVE-2020-24588": { "cmt_msg": "cfg80211: mitigate A-MSDU aggregation attacks" }, + "CVE-2021-39698": { + "cmt_msg": "wait: add wake_up_pollfree()" + }, + "CVE-2019-15794": { + "cmt_msg": "ovl: fix reference counting in ovl_mmap error path" + }, "CVE-2021-3444": { "cmt_msg": "bpf: Fix truncation handling for mod32 dst reg wrt zero" }, + "CVE-2022-0850": { + "cmt_msg": "ext4: fix kernel infoleak via ext4_extent_header" + }, + "CVE-2022-0644": { + "cmt_msg": "vfs: check fd has read access in kernel_read_file_from_fd()" + }, + "CVE-2021-3759": { + "cmt_msg": "memcg: enable accounting of ipc resources" + }, + "CVE-2020-27820": { + "cmt_msg": "drm/nouveau: use drm_dev_unplug() during device removal" + }, + "CVE-2021-3612": { + "cmt_msg": "Input: joydev - prevent potential read overflow in ioctl" + }, "CVE-2020-36158": { "cmt_msg": "mwifiex: Fix possible buffer overflows in mwifiex_cmd_802_11_ad_hoc_start" }, - "CVE-2022-0480": { - "cmt_msg": "memcg: enable accounting for file lock caches" - }, - "CVE-2022-0487": { - "cmt_msg": "moxart: fix potential use-after-free on remove path" - }, - "CVE-2021-42252": { - "cmt_msg": "soc: aspeed: lpc-ctrl: Fix boundary check for mmap" - }, - "CVE-2021-28688": { - "cmt_msg": "xen-blkback: don't leak persistent grants from xen_blkbk_map()" - }, - "CVE-2021-39686": { - "cmt_msg": "binder: use euid from cred instead of using task" - }, - "CVE-2021-39685": { - "cmt_msg": "USB: gadget: detect too-big endpoint 0 requests" - }, - "CVE-2021-43975": { - "cmt_msg": "atlantic: Fix OOB read and write in hw_atl_utils_fw_rpc_wait" - }, - "CVE-2021-43976": { - "cmt_msg": "mwifiex: Fix skb_over_panic in mwifiex_usb_recv()" - }, - "CVE-2022-2078": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, - "CVE-2021-3669": { - "cmt_msg": "ipc: replace costly bailout check in sysvipc_find_ipc()" - }, - "CVE-2021-3744": { - "cmt_msg": "crypto: ccp - fix resource leaks in ccp_run_aes_gcm_cmd()" - }, - "CVE-2021-30002": { - "cmt_msg": "media: v4l: ioctl: Fix memory leak in video_usercopy" - }, - "CVE-2021-3743": { - "cmt_msg": "net: qrtr: fix OOB Read in qrtr_endpoint_post" - }, - "CVE-2021-0941": { - "cmt_msg": "bpf: Remove MTU check in __bpf_skb_max_len" - }, - "CVE-2020-15802": { + "CVE-2020-24503": { "cmt_msg": "" }, - "CVE-2021-28715": { - "cmt_msg": "xen/netback: don't queue unlimited number of packages" - }, - "CVE-2020-26145": { - "cmt_msg": "ath10k: drop fragments with multicast DA for PCIe" - }, - "CVE-2020-26147": { - "cmt_msg": "mac80211: assure all fragments are encrypted" - }, - "CVE-2020-26141": { - "cmt_msg": "ath10k: Fix TKIP Michael MIC verification for PCIe" - }, - "CVE-2020-26140": { + "CVE-2020-24502": { "cmt_msg": "" }, - "CVE-2021-43389": { - "cmt_msg": "isdn: cpai: check ctr->cnr to avoid array index out of bound" + "CVE-2019-19449": { + "cmt_msg": "f2fs: fix to do sanity check on segment/section count" }, - "CVE-2020-26142": { - "cmt_msg": "" + "CVE-2020-26558": { + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, - "CVE-2022-1734": { - "cmt_msg": "nfc: nfcmrvl: main: reorder destructive operations in nfcmrvl_nci_unregister_dev to avoid bugs" + "CVE-2021-3753": { + "cmt_msg": "vt_kdsetmode: extend console locking" }, - "CVE-2021-32399": { - "cmt_msg": "bluetooth: eliminate the potential race condition when removing the HCI controller" + "CVE-2020-24504": { + "cmt_msg": "ice: create scheduler aggregator node config and move VSIs" }, - "CVE-2022-20153": { - "cmt_msg": "io_uring: return back safer resurrect" + "CVE-2020-26541": { + "cmt_msg": "certs: Add EFI_CERT_X509_GUID support for dbx entries" }, - "CVE-2021-27364": { - "cmt_msg": "scsi: iscsi: Restrict sessions and handles to admin capabilities" - }, - "CVE-2022-23038": { - "cmt_msg": "xen/grant-table: add gnttab_try_end_foreign_access()" - }, - "CVE-2022-23039": { - "cmt_msg": "xen/gntalloc: don't use gnttab_query_foreign_access()" - }, - "CVE-2022-20154": { - "cmt_msg": "sctp: use call_rcu to free endpoint" - }, - "CVE-2021-45868": { - "cmt_msg": "quota: check block number when reading the block in quota file" - }, - "CVE-2022-23036": { - "cmt_msg": "xen/grant-table: add gnttab_try_end_foreign_access()" - }, - "CVE-2022-23037": { - "cmt_msg": "xen/netfront: don't use gnttab_query_foreign_access() for mapped status" - }, - "CVE-2021-38160": { - "cmt_msg": "virtio_console: Assure used length from device is limited" - }, - "CVE-2021-42008": { - "cmt_msg": "net: 6pack: fix slab-out-of-bounds in decode_data" - }, - "CVE-2021-38166": { - "cmt_msg": "bpf: Fix integer overflow involving bucket_size" - }, - "CVE-2021-3490": { - "cmt_msg": "bpf: Fix alu32 const subreg bound tracking on bitwise operations" - }, - "CVE-2021-3491": { - "cmt_msg": "io_uring: truncate lengths larger than MAX_RW_COUNT on provide buffers" - }, - "CVE-2005-3660": { - "cmt_msg": "" - }, - "CVE-2022-0516": { - "cmt_msg": "KVM: s390: Return error on SIDA memop on normal guest" - }, - "CVE-2021-33135": { - "cmt_msg": "" - }, - "CVE-2021-33034": { - "cmt_msg": "Bluetooth: verify AMP hci_chan before amp_destroy" - }, - "CVE-2021-33033": { - "cmt_msg": "cipso,calipso: resolve a number of problems with the DOI refcounts" - }, - "CVE-2022-0286": { - "cmt_msg": "bonding: fix null dereference in bond_ipsec_add_sa()" - }, - "CVE-2022-32296": { - "cmt_msg": "tcp: increase source port perturb table to 2^16" - }, - "CVE-2020-14304": { - "cmt_msg": "" - }, - "CVE-2022-29581": { - "cmt_msg": "net/sched: cls_u32: fix netns refcount changes in u32_change()" - }, - "CVE-2021-3564": { - "cmt_msg": "Bluetooth: fix the erroneous flush_work() order" - }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, - "CVE-2020-26560": { - "cmt_msg": "" - }, - "CVE-2021-28964": { - "cmt_msg": "btrfs: fix race when cloning extent buffer during rewind of an old root" - }, - "CVE-2021-4083": { - "cmt_msg": "fget: check that the fd still exists after getting a ref to it" - }, - "CVE-2022-29582": { - "cmt_msg": "io_uring: fix race between timeout flush and removal" - }, - "CVE-2022-1116": { - "cmt_msg": "" - }, - "CVE-2021-28660": { - "cmt_msg": "staging: rtl8188eu: prevent ->ssid overflow in rtw_wx_set_scan()" - }, - "CVE-2020-36385": { - "cmt_msg": "RDMA/ucma: Rework ucma_migrate_id() to avoid races with destroy" - }, - "CVE-2022-1882": { - "cmt_msg": "" - }, - "CVE-2021-3573": { - "cmt_msg": "Bluetooth: use correct lock to prevent UAF of hdev object" - }, - "CVE-2022-1204": { - "cmt_msg": "ax25: Fix refcount leaks caused by ax25_cb_del()" - }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers" - }, - "CVE-2021-34693": { - "cmt_msg": "can: bcm: fix infoleak in struct bcm_msg_head" - }, - "CVE-2022-26490": { - "cmt_msg": "nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION" - }, - "CVE-2022-1836": { - "cmt_msg": "floppy: disable FDRAWCMD by default" - }, - "CVE-2021-32078": { - "cmt_msg": "ARM: footbridge: remove personal server platform" - }, - "CVE-2022-30594": { - "cmt_msg": "ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE" - }, - "CVE-2021-38204": { - "cmt_msg": "usb: max-3421: Prevent corruption of freed memory" - }, - "CVE-2021-38205": { - "cmt_msg": "net: xilinx_emaclite: Do not print real IOMEM pointer" - }, - "CVE-2021-38206": { - "cmt_msg": "mac80211: Fix NULL ptr deref for injected rate info" - }, - "CVE-2021-38207": { - "cmt_msg": "net: ll_temac: Fix TX BD buffer overwrite" - }, - "CVE-2022-27666": { - "cmt_msg": "esp: Fix possible buffer overflow in ESP transformation" - }, - "CVE-2021-38208": { - "cmt_msg": "nfc: fix NULL ptr dereference in llcp_sock_getname() after failed connect" - }, - "CVE-2021-38209": { - "cmt_msg": "netfilter: conntrack: Make global sysctls readonly in non-init netns" - }, - "CVE-2022-0168": { - "cmt_msg": "cifs: fix NULL ptr dereference in smb2_ioctl_query_info()" - }, - "CVE-2020-26556": { - "cmt_msg": "" - }, - "CVE-2020-26557": { - "cmt_msg": "" - }, - "CVE-2020-26555": { - "cmt_msg": "" - }, - "CVE-2019-20794": { + "CVE-2020-11725": { "cmt_msg": "" }, "CVE-2020-26559": { "cmt_msg": "" }, - "CVE-2018-1121": { - "cmt_msg": "" - }, - "CVE-2019-15794": { - "cmt_msg": "ovl: fix reference counting in ovl_mmap error path" - }, - "CVE-2022-0644": { - "cmt_msg": "vfs: check fd has read access in kernel_read_file_from_fd()" - }, "CVE-2022-0382": { "cmt_msg": "net ticp:fix a kernel-infoleak in __tipc_sendmsg()" }, + "CVE-2021-43389": { + "cmt_msg": "isdn: cpai: check ctr->cnr to avoid array index out of bound" + }, + "CVE-2021-39633": { + "cmt_msg": "ip_gre: add validation for csum_start" + }, + "CVE-2021-33061": { + "cmt_msg": "ixgbe: add improvement for MDD response functionality" + }, + "CVE-2021-42252": { + "cmt_msg": "soc: aspeed: lpc-ctrl: Fix boundary check for mmap" + }, + "CVE-2021-35477": { + "cmt_msg": "bpf: Introduce BPF nospec instruction for mitigating Spectre v4" + }, "CVE-2020-25672": { "cmt_msg": "nfc: fix memory leak in llcp_sock_connect()" }, @@ -70429,27 +67945,57 @@ "CVE-2022-0998": { "cmt_msg": "vdpa: clean up get_config_size ret value handling" }, + "CVE-2021-3864": { + "cmt_msg": "" + }, + "CVE-2021-41864": { + "cmt_msg": "bpf: Fix integer overflow in prealloc_elems_and_freelist()" + }, "CVE-2019-19814": { "cmt_msg": "" }, - "CVE-2022-1015": { - "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." + "CVE-2022-1652": { + "cmt_msg": "floppy: use a statically allocated error counter" }, - "CVE-2022-1016": { - "cmt_msg": "netfilter: nf_tables: initialize registers in nft_do_chain()" + "CVE-2021-39648": { + "cmt_msg": "usb: gadget: configfs: Fix use-after-free issue with udc_name" }, "CVE-2022-1011": { "cmt_msg": "fuse: fix pipe buffer lifetime for direct_io" }, - "CVE-2021-3659": { - "cmt_msg": "net: mac802154: Fix general protection fault" + "CVE-2021-37576": { + "cmt_msg": "KVM: PPC: Book3S: Fix H_RTAS rets buffer overflow" }, - "CVE-2022-1012": { - "cmt_msg": "secure_seq: use the 64 bits of the siphash for port offset calculation" + "CVE-2020-29568": { + "cmt_msg": "xen/xenbus: Allow watches discard events before queueing" + }, + "CVE-2020-29569": { + "cmt_msg": "xen-blkback: set ring->xenblkd to NULL after kthread_stop()" + }, + "CVE-2021-28688": { + "cmt_msg": "xen-blkback: don't leak persistent grants from xen_blkbk_map()" + }, + "CVE-2022-1966": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier" + }, + "CVE-2021-39686": { + "cmt_msg": "binder: use euid from cred instead of using task" + }, + "CVE-2021-39685": { + "cmt_msg": "USB: gadget: detect too-big endpoint 0 requests" + }, + "CVE-2021-43056": { + "cmt_msg": "KVM: PPC: Book3S HV: Make idle_kvm_start_guest() return 0 if it went to guest" + }, + "CVE-2021-44879": { + "cmt_msg": "f2fs: fix to do sanity check on inode type during garbage collection" }, "CVE-2021-26934": { "cmt_msg": "" }, + "CVE-2021-43976": { + "cmt_msg": "mwifiex: Fix skb_over_panic in mwifiex_usb_recv()" + }, "CVE-2021-26931": { "cmt_msg": "xen-blkback: don't \"handle\" error by BUG()" }, @@ -70459,23 +68005,89 @@ "CVE-2021-26932": { "cmt_msg": "Xen/x86: don't bail early from clear_foreign_p2m_mapping()" }, - "CVE-2022-0492": { - "cmt_msg": "cgroup-v1: Require capabilities to set release_agent" + "CVE-2022-1789": { + "cmt_msg": "KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID" }, - "CVE-2022-25636": { - "cmt_msg": "netfilter: nf_tables_offload: incorrect flow offload action array size" + "CVE-2021-38206": { + "cmt_msg": "mac80211: Fix NULL ptr deref for injected rate info" + }, + "CVE-2022-2078": { + "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" + }, + "CVE-2020-27815": { + "cmt_msg": "jfs: Fix array index bounds check in dbAdjTree" + }, + "CVE-2016-8660": { + "cmt_msg": "" + }, + "CVE-2021-43975": { + "cmt_msg": "atlantic: Fix OOB read and write in hw_atl_utils_fw_rpc_wait" + }, + "CVE-2021-3669": { + "cmt_msg": "ipc: replace costly bailout check in sysvipc_find_ipc()" + }, + "CVE-2021-3744": { + "cmt_msg": "crypto: ccp - fix resource leaks in ccp_run_aes_gcm_cmd()" + }, + "CVE-2022-23041": { + "cmt_msg": "xen/9p: use alloc/free_pages_exact()" + }, + "CVE-2021-30002": { + "cmt_msg": "media: v4l: ioctl: Fix memory leak in video_usercopy" + }, + "CVE-2021-3743": { + "cmt_msg": "net: qrtr: fix OOB Read in qrtr_endpoint_post" }, "CVE-2022-0494": { "cmt_msg": "block-map: add __GFP_ZERO flag for alloc_page in function bio_copy_kern" }, + "CVE-2022-1786": { + "cmt_msg": "io_uring: remove io_identity" + }, + "CVE-2021-0941": { + "cmt_msg": "bpf: Remove MTU check in __bpf_skb_max_len" + }, + "CVE-2022-23222": { + "cmt_msg": "bpf: Replace PTR_TO_XXX_OR_NULL with PTR_TO_XXX | PTR_MAYBE_NULL" + }, + "CVE-2020-15802": { + "cmt_msg": "" + }, "CVE-2008-2544": { "cmt_msg": "" }, "CVE-2021-3178": { "cmt_msg": "nfsd4: readdirplus shouldn't return parent of export" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" + "CVE-2021-34556": { + "cmt_msg": "bpf: Introduce BPF nospec instruction for mitigating Spectre v4" + }, + "CVE-2021-31440": { + "cmt_msg": "bpf: Fix propagation of 32 bit unsigned bounds from 64 bit bounds" + }, + "CVE-2022-1353": { + "cmt_msg": "af_key: add __GFP_ZERO flag for compose_sadb_supported in function pfkey_register" + }, + "CVE-2021-46283": { + "cmt_msg": "netfilter: nf_tables: initialize set before expression setup" + }, + "CVE-2021-28714": { + "cmt_msg": "xen/netback: fix rx queue stall detection" + }, + "CVE-2021-4135": { + "cmt_msg": "netdevsim: Zero-initialize memory for new map's value in function nsim_bpf_map_alloc" + }, + "CVE-2021-28038": { + "cmt_msg": "Xen/gnttab: handle p2m update errors on a per-slot basis" + }, + "CVE-2018-1121": { + "cmt_msg": "" + }, + "CVE-2019-15239": { + "cmt_msg": "unknown" + }, + "CVE-2022-23040": { + "cmt_msg": "xen/xenbus: don't let xenbus_grant_ring() remove grants in error case" }, "CVE-2022-0330": { "cmt_msg": "drm/i915: Flush TLBs before releasing backing store" @@ -70483,11 +68095,53 @@ "CVE-2007-3719": { "cmt_msg": "" }, - "CVE-2021-45402": { - "cmt_msg": "bpf: Fix signed bounds propagation after mov32" + "CVE-2021-31829": { + "cmt_msg": "bpf: Fix masking negation logic upon negative dst register" }, - "CVE-2022-28893": { - "cmt_msg": "SUNRPC: Ensure we flush any closed sockets before xs_xprt_free()" + "CVE-2021-22543": { + "cmt_msg": "KVM: do not allow mapping valid but non-reference-counted pages" + }, + "CVE-2021-3501": { + "cmt_msg": "KVM: VMX: Don't use vcpu->run->internal.ndata as an array index" + }, + "CVE-2021-3348": { + "cmt_msg": "nbd: freeze the queue while we're adding connections" + }, + "CVE-2021-3752": { + "cmt_msg": "Bluetooth: fix use-after-free error in lock_sock_nested()" + }, + "CVE-2021-3506": { + "cmt_msg": "f2fs: fix to avoid out-of-bounds memory access" + }, + "CVE-2022-1247": { + "cmt_msg": "" + }, + "CVE-2021-3347": { + "cmt_msg": "futex: Ensure the correct return value from futex_lock_pi()" + }, + "CVE-2020-26145": { + "cmt_msg": "ath10k: drop fragments with multicast DA for PCIe" + }, + "CVE-2022-1204": { + "cmt_msg": "ax25: Fix refcount leaks caused by ax25_cb_del()" + }, + "CVE-2020-26147": { + "cmt_msg": "mac80211: assure all fragments are encrypted" + }, + "CVE-2010-4563": { + "cmt_msg": "" + }, + "CVE-2020-26140": { + "cmt_msg": "" + }, + "CVE-2020-26143": { + "cmt_msg": "" + }, + "CVE-2020-26142": { + "cmt_msg": "" + }, + "CVE-2021-3483": { + "cmt_msg": "firewire: nosy: Fix a use-after-free bug in nosy_ioctl()" }, "CVE-2021-3772": { "cmt_msg": "sctp: use init_tag from inithdr for ABORT chunk" @@ -70495,11 +68149,23 @@ "CVE-2021-3679": { "cmt_msg": "tracing: Fix bug in rb_per_cpu_empty() that might cause deadloop." }, - "CVE-2021-34556": { - "cmt_msg": "bpf: Introduce BPF nospec instruction for mitigating Spectre v4" + "CVE-2022-1280": { + "cmt_msg": "drm: avoid circular locks in drm_mode_getconnector" }, - "CVE-2021-28714": { - "cmt_msg": "xen/netback: fix rx queue stall detection" + "CVE-2021-3587": { + "cmt_msg": "nfc: fix NULL ptr dereference in llcp_sock_getname() after failed connect" + }, + "CVE-2021-44733": { + "cmt_msg": "tee: handle lookup of shm with reference count 0" + }, + "CVE-2022-20141": { + "cmt_msg": "igmp: Add ip_mc_list lock in ip_check_mc_rcu" + }, + "CVE-2021-28715": { + "cmt_msg": "xen/netback: don't queue unlimited number of packages" + }, + "CVE-2021-20268": { + "cmt_msg": "bpf: Fix signed_{sub,add32}_overflows type handling" }, "CVE-2021-28713": { "cmt_msg": "xen/console: harden hvc_xen against event channel storms" @@ -70510,14 +68176,26 @@ "CVE-2021-28711": { "cmt_msg": "xen/blkfront: harden blkfront against event channel storms" }, - "CVE-2022-1247": { - "cmt_msg": "" + "CVE-2021-4157": { + "cmt_msg": "pNFS/flexfiles: fix incorrect size check in decode_nfs_fh()" + }, + "CVE-2021-3489": { + "cmt_msg": "bpf, ringbuf: Deny reserve of buffers larger than ringbuf" + }, + "CVE-2022-25258": { + "cmt_msg": "USB: gadget: validate interface OS descriptor requests" }, "CVE-2022-23960": { "cmt_msg": "ARM: report Spectre v2 status through sysfs" }, - "CVE-2021-4154": { - "cmt_msg": "cgroup: verify that source is a string" + "CVE-2022-28389": { + "cmt_msg": "can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path" + }, + "CVE-2022-1734": { + "cmt_msg": "nfc: nfcmrvl: main: reorder destructive operations in nfcmrvl_nci_unregister_dev to avoid bugs" + }, + "CVE-2021-38300": { + "cmt_msg": "bpf, mips: Validate conditional branch offsets" }, "CVE-2021-39656": { "cmt_msg": "configfs: fix a use-after-free in __configfs_open_file" @@ -70525,224 +68203,71 @@ "CVE-2021-39657": { "cmt_msg": "scsi: ufs: Correct the LUN used in eh_device_reset_handler() callback" }, - "CVE-2021-34866": { - "cmt_msg": "bpf: Fix ringbuf helper function compatibility" + "CVE-2022-32981": { + "cmt_msg": "powerpc/32: Fix overread/overwrite of thread_struct via ptrace" }, - "CVE-2021-34981": { - "cmt_msg": "Bluetooth: cmtp: fix file refcount when cmtp_attach_device fails" + "CVE-2022-0492": { + "cmt_msg": "cgroup-v1: Require capabilities to set release_agent" }, - "CVE-2013-7445": { + "CVE-2021-22600": { + "cmt_msg": "net/packet: rx_owner_map depends on pg_vec" + }, + "CVE-2020-10708": { "cmt_msg": "" }, - "CVE-2022-28390": { - "cmt_msg": "can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path" + "CVE-2022-0322": { + "cmt_msg": "sctp: account stream padding length for reconf chunk" }, - "CVE-2021-3653": { - "cmt_msg": "KVM: nSVM: avoid picking up unsupported bits from L2 in int_ctl (CVE-2021-3653)" + "CVE-2022-1975": { + "cmt_msg": "NFC: netlink: fix sleep in atomic bug when firmware download timeout" }, - "CVE-2022-1158": { - "cmt_msg": "KVM: x86/mmu: do compare-and-exchange of gPTE via the user address" + "CVE-2021-4023": { + "cmt_msg": "io-wq: fix cancellation on create-worker failure" }, - "CVE-2022-20141": { - "cmt_msg": "igmp: Add ip_mc_list lock in ip_check_mc_rcu" + "CVE-2021-22555": { + "cmt_msg": "netfilter: x_tables: fix compat match/target pad out-of-bound write" }, - "CVE-2022-20148": { - "cmt_msg": "f2fs: fix UAF in f2fs_available_free_memory" + "CVE-2021-32399": { + "cmt_msg": "bluetooth: eliminate the potential race condition when removing the HCI controller" }, - "CVE-2022-28389": { - "cmt_msg": "can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path" + "CVE-2017-13693": { + "cmt_msg": "" }, - "CVE-2022-28388": { - "cmt_msg": "can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path" - }, - "CVE-2020-12362": { - "cmt_msg": "drm/i915/guc: Update to use firmware v49.0.1" - }, - "CVE-2020-12363": { - "cmt_msg": "drm/i915/guc: Update to use firmware v49.0.1" - }, - "CVE-2020-12364": { - "cmt_msg": "drm/i915/guc: Update to use firmware v49.0.1" - }, - "CVE-2022-0500": { - "cmt_msg": "bpf: Introduce MEM_RDONLY flag" - }, - "CVE-2020-25639": { - "cmt_msg": "drm/nouveau: bail out of nouveau_channel_new if channel init fails" - }, - "CVE-2021-4001": { - "cmt_msg": "bpf: Fix toctou on read-only map's constant scalar tracking" - }, - "CVE-2021-4002": { - "cmt_msg": "hugetlbfs: flush TLBs correctly after huge_pmd_unshare" - }, - "CVE-2022-1055": { - "cmt_msg": "net: sched: fix use-after-free in tc_new_tfilter()" - }, - "CVE-2022-20008": { - "cmt_msg": "mmc: block: fix read single on recovery logic" - }, - "CVE-2021-31440": { - "cmt_msg": "bpf: Fix propagation of 32 bit unsigned bounds from 64 bit bounds" - }, - "CVE-2019-15290": { + "CVE-2021-0399": { "cmt_msg": "" }, "CVE-2022-0617": { "cmt_msg": "udf: Fix NULL ptr deref when converting from inline format" }, - "CVE-2022-26878": { - "cmt_msg": "" + "CVE-2022-23038": { + "cmt_msg": "xen/grant-table: add gnttab_try_end_foreign_access()" }, - "CVE-2018-12930": { - "cmt_msg": "" + "CVE-2022-23039": { + "cmt_msg": "xen/gntalloc: don't use gnttab_query_foreign_access()" }, - "CVE-2018-12931": { - "cmt_msg": "" - }, - "CVE-2021-33098": { - "cmt_msg": "ixgbe: fix large MTU request from VF" - }, - "CVE-2022-0185": { - "cmt_msg": "vfs: fs_context: fix up param length parsing in legacy_parse_param" - }, - "CVE-2021-28971": { - "cmt_msg": "perf/x86/intel: Fix a crash caused by zero PEBS status" - }, - "CVE-2022-22942": { - "cmt_msg": "drm/vmwgfx: Fix stale file descriptors on failed usercopy" - }, - "CVE-2021-3739": { - "cmt_msg": "btrfs: fix NULL pointer dereference when deleting device by invalid id" - }, - "CVE-2021-3732": { - "cmt_msg": "ovl: prevent private clone if bind mount is not allowed" - }, - "CVE-2021-35039": { - "cmt_msg": "module: limit enabling module.sig_enforce" - }, - "CVE-2019-0146": { - "cmt_msg": "" - }, - "CVE-2020-26139": { - "cmt_msg": "mac80211: do not accept/forward invalid EAPOL frames" - }, - "CVE-2021-3609": { - "cmt_msg": "can: bcm: delay release of struct bcm_op after synchronize_rcu()" - }, - "CVE-2022-0847": { - "cmt_msg": "lib/iov_iter: initialize \"flags\" in new pipe_buffer" - }, - "CVE-2021-3600": { - "cmt_msg": "bpf: Fix 32 bit src register truncation on div/mod" - }, - "CVE-2021-23133": { - "cmt_msg": "net/sctp: fix race condition in sctp_destroy_sock" - }, - "CVE-2021-0920": { - "cmt_msg": "af_unix: fix garbage collect vs MSG_PEEK" - }, - "CVE-2020-28374": { - "cmt_msg": "scsi: target: Fix XCOPY NAA identifier lookup" - }, - "CVE-2020-27820": { - "cmt_msg": "drm/nouveau: use drm_dev_unplug() during device removal" - }, - "CVE-2020-26558": { - "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" - }, - "CVE-2020-26541": { - "cmt_msg": "certs: Add EFI_CERT_X509_GUID support for dbx entries" - }, - "CVE-2020-26143": { - "cmt_msg": "" - }, - "CVE-2021-33061": { - "cmt_msg": "ixgbe: add improvement for MDD response functionality" - }, - "CVE-2021-3864": { - "cmt_msg": "" - }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, - "CVE-2022-1652": { - "cmt_msg": "" - }, - "CVE-2022-1651": { - "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" - }, - "CVE-2020-29568": { - "cmt_msg": "xen/xenbus: Allow watches discard events before queueing" - }, - "CVE-2020-29569": { - "cmt_msg": "xen-blkback: set ring->xenblkd to NULL after kthread_stop()" - }, - "CVE-2022-20132": { - "cmt_msg": "HID: add hid_is_usb() function to make it simpler for USB detection" - }, - "CVE-2022-1789": { - "cmt_msg": "KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID" - }, - "CVE-2016-8660": { - "cmt_msg": "" - }, - "CVE-2022-1786": { - "cmt_msg": "io_uring: remove io_identity" - }, - "CVE-2008-4609": { - "cmt_msg": "" - }, - "CVE-2022-0435": { - "cmt_msg": "tipc: improve size validations for received domain records" - }, - "CVE-2021-4135": { - "cmt_msg": "netdevsim: Zero-initialize memory for new map's value in function nsim_bpf_map_alloc" - }, - "CVE-2019-15239": { - "cmt_msg": "unknown" - }, - "CVE-2021-4037": { - "cmt_msg": "xfs: fix up non-directory creation in SGID directories" - }, - "CVE-2021-22543": { - "cmt_msg": "KVM: do not allow mapping valid but non-reference-counted pages" - }, - "CVE-2021-3348": { - "cmt_msg": "nbd: freeze the queue while we're adding connections" - }, - "CVE-2021-3347": { - "cmt_msg": "futex: Ensure the correct return value from futex_lock_pi()" - }, - "CVE-2022-1966": { - "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier" - }, - "CVE-2021-3587": { - "cmt_msg": "nfc: fix NULL ptr dereference in llcp_sock_getname() after failed connect" - }, - "CVE-2021-44733": { - "cmt_msg": "tee: handle lookup of shm with reference count 0" - }, - "CVE-2021-20268": { - "cmt_msg": "bpf: Fix signed_{sub,add32}_overflows type handling" - }, - "CVE-2021-22600": { - "cmt_msg": "net/packet: rx_owner_map depends on pg_vec" - }, - "CVE-2022-0322": { - "cmt_msg": "sctp: account stream padding length for reconf chunk" - }, - "CVE-2017-13693": { - "cmt_msg": "" + "CVE-2021-34866": { + "cmt_msg": "bpf: Fix ringbuf helper function compatibility" }, "CVE-2017-13694": { "cmt_msg": "" }, - "CVE-2021-4149": { - "cmt_msg": "btrfs: unlock newly allocated extent buffer after error" + "CVE-2020-36516": { + "cmt_msg": "" }, - "CVE-2021-4148": { - "cmt_msg": "mm: khugepaged: skip huge page collapse for special files" + "CVE-2021-34981": { + "cmt_msg": "Bluetooth: cmtp: fix file refcount when cmtp_attach_device fails" + }, + "CVE-2022-23037": { + "cmt_msg": "xen/netfront: don't use gnttab_query_foreign_access() for mapped status" + }, + "CVE-2021-28039": { + "cmt_msg": "xen: fix p2m size in dom0 for disabled memory hotplug case" + }, + "CVE-2012-4542": { + "cmt_msg": "" + }, + "CVE-2022-1729": { + "cmt_msg": "perf: Fix sys_perf_event_open() race against self" }, "CVE-2021-3640": { "cmt_msg": "Bluetooth: sco: Fix lock_sock() blockage by memcpy_from_msg()" @@ -70753,6 +68278,57 @@ "CVE-2021-3760": { "cmt_msg": "nfc: nci: fix the UAF of rf_conn_info object" }, + "CVE-2022-1462": { + "cmt_msg": "" + }, + "CVE-2021-3573": { + "cmt_msg": "Bluetooth: use correct lock to prevent UAF of hdev object" + }, + "CVE-2022-20148": { + "cmt_msg": "f2fs: fix UAF in f2fs_available_free_memory" + }, + "CVE-2022-1679": { + "cmt_msg": "" + }, + "CVE-2021-38160": { + "cmt_msg": "virtio_console: Assure used length from device is limited" + }, + "CVE-2022-1974": { + "cmt_msg": "nfc: replace improper check device_is_registered() in netlink related functions" + }, + "CVE-2021-42008": { + "cmt_msg": "net: 6pack: fix slab-out-of-bounds in decode_data" + }, + "CVE-2022-1972": { + "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" + }, + "CVE-2013-7445": { + "cmt_msg": "" + }, + "CVE-2021-38166": { + "cmt_msg": "bpf: Fix integer overflow involving bucket_size" + }, + "CVE-2022-28390": { + "cmt_msg": "can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path" + }, + "CVE-2021-3490": { + "cmt_msg": "bpf: Fix alu32 const subreg bound tracking on bitwise operations" + }, + "CVE-2021-28691": { + "cmt_msg": "xen-netback: take a reference to the RX task thread" + }, + "CVE-2021-31916": { + "cmt_msg": "dm ioctl: fix out of bounds array access when no devices" + }, + "CVE-2005-3660": { + "cmt_msg": "" + }, + "CVE-2021-28952": { + "cmt_msg": "ASoC: qcom: sdm845: Fix array out of bounds access" + }, + "CVE-2022-32250": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier" + }, "CVE-2022-1508": { "cmt_msg": "io_uring: reexpand under-reexpanded iters" }, @@ -70765,11 +68341,20 @@ "CVE-2021-29266": { "cmt_msg": "vhost-vdpa: fix use-after-free of v->config_ctx" }, - "CVE-2021-39648": { - "cmt_msg": "usb: gadget: configfs: Fix use-after-free issue with udc_name" + "CVE-2021-3655": { + "cmt_msg": "sctp: validate from_addr_param return" }, - "CVE-2021-43056": { - "cmt_msg": "KVM: PPC: Book3S HV: Make idle_kvm_start_guest() return 0 if it went to guest" + "CVE-2021-42739": { + "cmt_msg": "media: firewire: firedtv-avc: fix a buffer overflow in avc_ca_pmt()" + }, + "CVE-2021-33034": { + "cmt_msg": "Bluetooth: verify AMP hci_chan before amp_destroy" + }, + "CVE-2021-33033": { + "cmt_msg": "cipso,calipso: resolve a number of problems with the DOI refcounts" + }, + "CVE-2022-0286": { + "cmt_msg": "bonding: fix null dereference in bond_ipsec_add_sa()" }, "CVE-2021-21781": { "cmt_msg": "ARM: ensure the signal page contains defined contents" @@ -70777,269 +68362,11 @@ "CVE-2021-0512": { "cmt_msg": "HID: make arrays usage and value to be the same" }, - "CVE-2020-0347": { - "cmt_msg": "" + "CVE-2021-3659": { + "cmt_msg": "net: mac802154: Fix general protection fault" }, - "CVE-2021-40490": { - "cmt_msg": "ext4: fix race writing to an inline_data file while its xattrs are changing" - }, - "CVE-2021-33909": { - "cmt_msg": "seq_file: disallow extremely large seq buffer allocations" - }, - "CVE-2019-12456": { - "cmt_msg": "" - }, - "CVE-2021-29646": { - "cmt_msg": "tipc: better validate user input in tipc_nl_retrieve_key()" - }, - "CVE-2021-29647": { - "cmt_msg": "net: qrtr: fix a kernel-infoleak in qrtr_recvmsg()" - }, - "CVE-2022-0742": { - "cmt_msg": "ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()" - }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"" - }, - "CVE-2021-45469": { - "cmt_msg": "f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr()" - }, - "CVE-2022-1184": { - "cmt_msg": "" - }, - "CVE-2019-15902": { - "cmt_msg": "unknown" - }, - "CVE-2021-33624": { - "cmt_msg": "bpf: Inherit expanded/patched seen count from old aux data" - }, - "CVE-2021-27365": { - "cmt_msg": "scsi: iscsi: Ensure sysfs attributes are limited to PAGE_SIZE" - }, - "CVE-2021-3752": { - "cmt_msg": "Bluetooth: fix use-after-free error in lock_sock_nested()" - }, - "CVE-2021-27363": { - "cmt_msg": "scsi: iscsi: Restrict sessions and handles to admin capabilities" - }, - "CVE-2018-17977": { - "cmt_msg": "" - }, - "CVE-2010-5321": { - "cmt_msg": "" - }, - "CVE-2021-20322": { - "cmt_msg": "ipv6: make exception cache less predictible" - }, - "CVE-2021-20320": { - "cmt_msg": "s390/bpf: Fix optimizing out zero-extensions" - }, - "CVE-2021-20321": { - "cmt_msg": "ovl: fix missing negative dentry check in ovl_rename()" - }, - "CVE-2022-1043": { - "cmt_msg": "io_uring: fix xa_alloc_cycle() error return value check" - }, - "CVE-2022-1048": { - "cmt_msg": "ALSA: pcm: Fix races among concurrent hw_params and hw_free calls" - }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, - "CVE-2021-3542": { - "cmt_msg": "" - }, - "CVE-2022-20166": { - "cmt_msg": "drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions" - }, - "CVE-2022-23041": { - "cmt_msg": "xen/9p: use alloc/free_pages_exact()" - }, - "CVE-2022-23040": { - "cmt_msg": "xen/xenbus: don't let xenbus_grant_ring() remove grants in error case" - }, - "CVE-2022-23042": { - "cmt_msg": "xen/netfront: react properly to failing gnttab_end_foreign_access_ref()" - }, - "CVE-2018-12929": { - "cmt_msg": "" - }, - "CVE-2018-12928": { - "cmt_msg": "" - }, - "CVE-2021-28972": { - "cmt_msg": "PCI: rpadlpar: Fix potential drc_name corruption in store functions" - }, - "CVE-2020-10708": { - "cmt_msg": "" - }, - "CVE-2022-0400": { - "cmt_msg": "" - }, - "CVE-2021-0707": { - "cmt_msg": "dmabuf: fix use-after-free of dmabuf's file->f_inode" - }, - "CVE-2022-26966": { - "cmt_msg": "sr9700: sanity check for packet length" - }, - "CVE-2021-42739": { - "cmt_msg": "media: firewire: firedtv-avc: fix a buffer overflow in avc_ca_pmt()" - }, - "CVE-2021-37159": { - "cmt_msg": "usb: hso: fix error handling code of hso_create_net_device" - }, - "CVE-2022-25265": { - "cmt_msg": "" - }, - "CVE-2022-21499": { - "cmt_msg": "lockdown: also lock down previous kgdb use" - }, - "CVE-2019-19378": { - "cmt_msg": "" - }, - "CVE-2021-28691": { - "cmt_msg": "xen-netback: take a reference to the RX task thread" - }, - "CVE-2021-39698": { - "cmt_msg": "wait: add wake_up_pollfree()" - }, - "CVE-2022-0850": { - "cmt_msg": "ext4: fix kernel infoleak via ext4_extent_header" - }, - "CVE-2021-3759": { - "cmt_msg": "memcg: enable accounting of ipc resources" - }, - "CVE-2021-4197": { - "cmt_msg": "cgroup: Use open-time credentials for process migraton perm checks" - }, - "CVE-2021-3612": { - "cmt_msg": "Input: joydev - prevent potential read overflow in ioctl" - }, - "CVE-2020-24503": { - "cmt_msg": "" - }, - "CVE-2020-24502": { - "cmt_msg": "" - }, - "CVE-2019-19449": { - "cmt_msg": "f2fs: fix to do sanity check on segment/section count" - }, - "CVE-2021-3753": { - "cmt_msg": "vt_kdsetmode: extend console locking" - }, - "CVE-2020-24504": { - "cmt_msg": "ice: create scheduler aggregator node config and move VSIs" - }, - "CVE-2020-11725": { - "cmt_msg": "" - }, - "CVE-2021-0937": { - "cmt_msg": "netfilter: x_tables: fix compat match/target pad out-of-bound write" - }, - "CVE-2022-1263": { - "cmt_msg": "KVM: avoid NULL pointer dereference in kvm_dirty_ring_push" - }, - "CVE-2021-35477": { - "cmt_msg": "bpf: Introduce BPF nospec instruction for mitigating Spectre v4" - }, - "CVE-2021-41864": { - "cmt_msg": "bpf: Fix integer overflow in prealloc_elems_and_freelist()" - }, - "CVE-2022-1998": { - "cmt_msg": "fanotify: Fix stale file descriptor in copy_event_to_user()" - }, - "CVE-2022-1852": { - "cmt_msg": "KVM: x86: avoid calling x86 emulator without a decoded instruction" - }, - "CVE-2021-37576": { - "cmt_msg": "KVM: PPC: Book3S: Fix H_RTAS rets buffer overflow" - }, - "CVE-2020-27815": { - "cmt_msg": "jfs: Fix array index bounds check in dbAdjTree" - }, - "CVE-2022-1462": { - "cmt_msg": "" - }, - "CVE-2022-1729": { - "cmt_msg": "perf: Fix sys_perf_event_open() race against self" - }, - "CVE-2021-28038": { - "cmt_msg": "Xen/gnttab: handle p2m update errors on a per-slot basis" - }, - "CVE-2021-28039": { - "cmt_msg": "xen: fix p2m size in dom0 for disabled memory hotplug case" - }, - "CVE-2021-31829": { - "cmt_msg": "bpf: Fix masking negation logic upon negative dst register" - }, - "CVE-2021-3501": { - "cmt_msg": "KVM: VMX: Don't use vcpu->run->internal.ndata as an array index" - }, - "CVE-2021-3506": { - "cmt_msg": "f2fs: fix to avoid out-of-bounds memory access" - }, - "CVE-2010-4563": { - "cmt_msg": "" - }, - "CVE-2021-3483": { - "cmt_msg": "firewire: nosy: Fix a use-after-free bug in nosy_ioctl()" - }, - "CVE-2022-29156": { - "cmt_msg": "RDMA/rtrs-clt: Fix possible double free in error case" - }, - "CVE-2021-3489": { - "cmt_msg": "bpf, ringbuf: Deny reserve of buffers larger than ringbuf" - }, - "CVE-2021-38300": { - "cmt_msg": "bpf, mips: Validate conditional branch offsets" - }, - "CVE-2022-24448": { - "cmt_msg": "NFSv4: Handle case where the lookup of a directory fails" - }, - "CVE-2021-4023": { - "cmt_msg": "io-wq: fix cancellation on create-worker failure" - }, - "CVE-2021-22555": { - "cmt_msg": "netfilter: x_tables: fix compat match/target pad out-of-bound write" - }, - "CVE-2021-0399": { - "cmt_msg": "" - }, - "CVE-2020-36516": { - "cmt_msg": "" - }, - "CVE-2012-4542": { - "cmt_msg": "" - }, - "CVE-2021-46283": { - "cmt_msg": "netfilter: nf_tables: initialize set before expression setup" - }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, - "CVE-2022-1974": { - "cmt_msg": "nfc: replace improper check device_is_registered() in netlink related functions" - }, - "CVE-2022-1975": { - "cmt_msg": "NFC: netlink: fix sleep in atomic bug when firmware download timeout" - }, - "CVE-2022-1972": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" - }, - "CVE-2021-31916": { - "cmt_msg": "dm ioctl: fix out of bounds array access when no devices" - }, - "CVE-2022-32981": { - "cmt_msg": "powerpc/32: Fix overread/overwrite of thread_struct via ptrace" - }, - "CVE-2021-4157": { - "cmt_msg": "pNFS/flexfiles: fix incorrect size check in decode_nfs_fh()" - }, - "CVE-2022-25258": { - "cmt_msg": "USB: gadget: validate interface OS descriptor requests" + "CVE-2021-4154": { + "cmt_msg": "cgroup: verify that source is a string" }, "CVE-2021-4155": { "cmt_msg": "xfs: map unwritten blocks in XFS_IOC_{ALLOC,FREE}SP just like fallocate" @@ -71047,6 +68374,9 @@ "CVE-2021-0695": { "cmt_msg": "" }, + "CVE-2008-4609": { + "cmt_msg": "" + }, "CVE-2021-4150": { "cmt_msg": "block: fix incorrect references to disk objects" }, @@ -71056,18 +68386,30 @@ "CVE-2021-28951": { "cmt_msg": "io_uring: ensure that SQPOLL thread is started for exit" }, - "CVE-2021-26401": { - "cmt_msg": "x86/speculation: Use generic retpoline by default on AMD" + "CVE-2021-37159": { + "cmt_msg": "usb: hso: fix error handling code of hso_create_net_device" }, - "CVE-2021-28952": { - "cmt_msg": "ASoC: qcom: sdm845: Fix array out of bounds access" + "CVE-2020-14304": { + "cmt_msg": "" }, - "CVE-2021-3655": { - "cmt_msg": "sctp: validate from_addr_param return" + "CVE-2021-28660": { + "cmt_msg": "staging: rtl8188eu: prevent ->ssid overflow in rtw_wx_set_scan()" + }, + "CVE-2022-29581": { + "cmt_msg": "net/sched: cls_u32: fix netns refcount changes in u32_change()" + }, + "CVE-2021-3564": { + "cmt_msg": "Bluetooth: fix the erroneous flush_work() order" }, "CVE-2021-3656": { "cmt_msg": "KVM: nSVM: always intercept VMLOAD/VMSAVE when nested (CVE-2021-3656)" }, + "CVE-2020-0347": { + "cmt_msg": "" + }, + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default" + }, "CVE-2021-29154": { "cmt_msg": "bpf, x86: Validate computation of branch displacements for x86-64" }, @@ -71077,23 +68419,44 @@ "CVE-2021-3714": { "cmt_msg": "" }, + "CVE-2021-40490": { + "cmt_msg": "ext4: fix race writing to an inline_data file while its xattrs are changing" + }, + "CVE-2021-33909": { + "cmt_msg": "seq_file: disallow extremely large seq buffer allocations" + }, "CVE-2021-3896": { "cmt_msg": "isdn: cpai: check ctr->cnr to avoid array index out of bound" }, - "CVE-2021-3894": { - "cmt_msg": "sctp: account stream padding length for reconf chunk" - }, - "CVE-2021-3892": { + "CVE-2019-12456": { "cmt_msg": "" }, - "CVE-2021-39633": { - "cmt_msg": "ip_gre: add validation for csum_start" + "CVE-2020-26560": { + "cmt_msg": "" + }, + "CVE-2021-29646": { + "cmt_msg": "tipc: better validate user input in tipc_nl_retrieve_key()" + }, + "CVE-2021-20320": { + "cmt_msg": "s390/bpf: Fix optimizing out zero-extensions" + }, + "CVE-2021-4197": { + "cmt_msg": "cgroup: Use open-time credentials for process migraton perm checks" + }, + "CVE-2020-12362": { + "cmt_msg": "drm/i915/guc: Update to use firmware v49.0.1" + }, + "CVE-2020-12363": { + "cmt_msg": "drm/i915/guc: Update to use firmware v49.0.1" + }, + "CVE-2021-20321": { + "cmt_msg": "ovl: fix missing negative dentry check in ovl_rename()" }, "CVE-2022-27223": { "cmt_msg": "USB: gadget: validate endpoint index for xilinx udc" }, - "CVE-2022-24958": { - "cmt_msg": "usb: gadget: don't release an existing dev->buf" + "CVE-2020-12364": { + "cmt_msg": "drm/i915/guc: Update to use firmware v49.0.1" }, "CVE-2022-24959": { "cmt_msg": "yam: fix a memory leak in yam_siocdevprivate()" @@ -71101,30 +68464,144 @@ "CVE-2022-25375": { "cmt_msg": "usb: gadget: rndis: check size of RNDIS_MSG_SET command" }, - "CVE-2021-45486": { - "cmt_msg": "inet: use bigger hash table for IP ID generation" + "CVE-2020-25639": { + "cmt_msg": "drm/nouveau: bail out of nouveau_channel_new if channel init fails" }, - "CVE-2022-23222": { - "cmt_msg": "bpf: Replace PTR_TO_XXX_OR_NULL with PTR_TO_XXX | PTR_MAYBE_NULL" + "CVE-2022-32296": { + "cmt_msg": "tcp: increase source port perturb table to 2^16" }, - "CVE-2021-29650": { - "cmt_msg": "netfilter: x_tables: Use correct memory barriers." + "CVE-2022-0435": { + "cmt_msg": "tipc: improve size validations for received domain records" }, - "CVE-2022-1353": { - "cmt_msg": "af_key: add __GFP_ZERO flag for compose_sadb_supported in function pfkey_register" + "CVE-2022-28893": { + "cmt_msg": "SUNRPC: Ensure we flush any closed sockets before xs_xprt_free()" + }, + "CVE-2021-4001": { + "cmt_msg": "bpf: Fix toctou on read-only map's constant scalar tracking" + }, + "CVE-2021-4002": { + "cmt_msg": "hugetlbfs: flush TLBs correctly after huge_pmd_unshare" + }, + "CVE-2022-1055": { + "cmt_msg": "net: sched: fix use-after-free in tc_new_tfilter()" + }, + "CVE-2022-20132": { + "cmt_msg": "HID: add hid_is_usb() function to make it simpler for USB detection" + }, + "CVE-2022-0480": { + "cmt_msg": "memcg: enable accounting for file lock caches" + }, + "CVE-2021-45469": { + "cmt_msg": "f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr()" + }, + "CVE-2022-1184": { + "cmt_msg": "ext4: verify dir block before splitting it" + }, + "CVE-2022-0516": { + "cmt_msg": "KVM: s390: Return error on SIDA memop on normal guest" + }, + "CVE-2021-3894": { + "cmt_msg": "sctp: account stream padding length for reconf chunk" + }, + "CVE-2022-1836": { + "cmt_msg": "floppy: disable FDRAWCMD by default" + }, + "CVE-2021-28964": { + "cmt_msg": "btrfs: fix race when cloning extent buffer during rewind of an old root" + }, + "CVE-2021-4203": { + "cmt_msg": "af_unix: fix races in sk_peer_pid and sk_peer_cred accesses" + }, + "CVE-2020-26141": { + "cmt_msg": "ath10k: Fix TKIP Michael MIC verification for PCIe" + }, + "CVE-2022-20154": { + "cmt_msg": "sctp: use call_rcu to free endpoint" + }, + "CVE-2021-3892": { + "cmt_msg": "" + }, + "CVE-2021-4083": { + "cmt_msg": "fget: check that the fd still exists after getting a ref to it" + }, + "CVE-2019-15902": { + "cmt_msg": "unknown" }, "CVE-2022-28356": { "cmt_msg": "llc: fix netdevice reference leaks in llc_ui_bind()" }, + "CVE-2021-29647": { + "cmt_msg": "net: qrtr: fix a kernel-infoleak in qrtr_recvmsg()" + }, + "CVE-2019-15290": { + "cmt_msg": "" + }, + "CVE-2022-0487": { + "cmt_msg": "moxart: fix potential use-after-free on remove path" + }, + "CVE-2021-33624": { + "cmt_msg": "bpf: Inherit expanded/patched seen count from old aux data" + }, + "CVE-2022-24448": { + "cmt_msg": "NFSv4: Handle case where the lookup of a directory fails" + }, + "CVE-2021-29650": { + "cmt_msg": "netfilter: x_tables: Use correct memory barriers." + }, + "CVE-2021-27365": { + "cmt_msg": "scsi: iscsi: Ensure sysfs attributes are limited to PAGE_SIZE" + }, + "CVE-2021-27364": { + "cmt_msg": "scsi: iscsi: Restrict sessions and handles to admin capabilities" + }, + "CVE-2021-27363": { + "cmt_msg": "scsi: iscsi: Restrict sessions and handles to admin capabilities" + }, + "CVE-2022-23036": { + "cmt_msg": "xen/grant-table: add gnttab_try_end_foreign_access()" + }, + "CVE-2022-27666": { + "cmt_msg": "esp: Fix possible buffer overflow in ESP transformation" + }, + "CVE-2018-17977": { + "cmt_msg": "" + }, + "CVE-2022-29582": { + "cmt_msg": "io_uring: fix race between timeout flush and removal" + }, + "CVE-2021-4149": { + "cmt_msg": "btrfs: unlock newly allocated extent buffer after error" + }, + "CVE-2010-5321": { + "cmt_msg": "" + }, + "CVE-2021-20322": { + "cmt_msg": "ipv6: make exception cache less predictible" + }, + "CVE-2021-3653": { + "cmt_msg": "KVM: nSVM: avoid picking up unsupported bits from L2 in int_ctl (CVE-2021-3653)" + }, + "CVE-2018-12930": { + "cmt_msg": "" + }, + "CVE-2018-12931": { + "cmt_msg": "" + }, "CVE-2020-16119": { "cmt_msg": "dccp: don't duplicate ccid when cloning dccp sock" }, + "CVE-2021-4148": { + "cmt_msg": "mm: khugepaged: skip huge page collapse for special files" + }, "CVE-2022-1198": { "cmt_msg": "drivers: hamradio: 6pack: fix UAF bug caused by mod_timer()" }, "CVE-2022-1199": { "cmt_msg": "ax25: Fix NULL pointer dereference in ax25_kill_by_device" }, + "CVE-2021-0937": { + "cmt_msg": "netfilter: x_tables: fix compat match/target pad out-of-bound write" + }, "CVE-2021-39801": { "cmt_msg": "" }, @@ -71137,35 +68614,95 @@ "CVE-2021-28375": { "cmt_msg": "misc: fastrpc: restrict user apps from sending kernel RPC messages" }, + "CVE-2022-1048": { + "cmt_msg": "ALSA: pcm: Fix races among concurrent hw_params and hw_free calls" + }, + "CVE-2020-36385": { + "cmt_msg": "RDMA/ucma: Rework ucma_migrate_id() to avoid races with destroy" + }, "CVE-2022-1195": { "cmt_msg": "hamradio: improve the incomplete fix to avoid NPD" }, "CVE-2021-26708": { "cmt_msg": "vsock: fix the race conditions in multi-transport support" }, - "CVE-2021-4202": { - "cmt_msg": "NFC: reorganize the functions in nci_request" + "CVE-2021-45868": { + "cmt_msg": "quota: check block number when reading the block in quota file" }, - "CVE-2021-4203": { - "cmt_msg": "af_unix: fix races in sk_peer_pid and sk_peer_cred accesses" + "CVE-2021-33098": { + "cmt_msg": "ixgbe: fix large MTU request from VF" }, - "CVE-2021-4204": { - "cmt_msg": "bpf: Generalize check_ctx_reg for reuse with other types" + "CVE-2021-28972": { + "cmt_msg": "PCI: rpadlpar: Fix potential drc_name corruption in store functions" }, - "CVE-2021-44879": { - "cmt_msg": "f2fs: fix to do sanity check on inode type during garbage collection" + "CVE-2021-28971": { + "cmt_msg": "perf/x86/intel: Fix a crash caused by zero PEBS status" + }, + "CVE-2022-24958": { + "cmt_msg": "usb: gadget: don't release an existing dev->buf" + }, + "CVE-2022-22942": { + "cmt_msg": "drm/vmwgfx: Fix stale file descriptors on failed usercopy" + }, + "CVE-2021-3739": { + "cmt_msg": "btrfs: fix NULL pointer dereference when deleting device by invalid id" + }, + "CVE-2022-21499": { + "cmt_msg": "lockdown: also lock down previous kgdb use" + }, + "CVE-2022-1116": { + "cmt_msg": "" + }, + "CVE-2021-3732": { + "cmt_msg": "ovl: prevent private clone if bind mount is not allowed" + }, + "CVE-2021-3542": { + "cmt_msg": "" + }, + "CVE-2022-20166": { + "cmt_msg": "drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions" + }, + "CVE-2021-4037": { + "cmt_msg": "xfs: fix up non-directory creation in SGID directories" + }, + "CVE-2022-1263": { + "cmt_msg": "KVM: avoid NULL pointer dereference in kvm_dirty_ring_push" }, "CVE-2022-1516": { "cmt_msg": "net/x25: Fix null-ptr-deref caused by x25_disconnect" }, + "CVE-2022-1882": { + "cmt_msg": "" + }, + "CVE-2021-35039": { + "cmt_msg": "module: limit enabling module.sig_enforce" + }, + "CVE-2022-23042": { + "cmt_msg": "xen/netfront: react properly to failing gnttab_end_foreign_access_ref()" + }, + "CVE-2018-12929": { + "cmt_msg": "" + }, + "CVE-2018-12928": { + "cmt_msg": "" + }, + "CVE-2021-4202": { + "cmt_msg": "NFC: reorganize the functions in nci_request" + }, + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()" + }, "CVE-2020-25220": { "cmt_msg": "" }, "CVE-2015-2877": { "cmt_msg": "" }, - "CVE-2022-0171": { - "cmt_msg": "" + "CVE-2021-45402": { + "cmt_msg": "bpf: Fix signed bounds propagation after mov32" + }, + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" }, "CVE-2019-16089": { "cmt_msg": "" @@ -71176,23 +68713,86 @@ "CVE-2021-38199": { "cmt_msg": "NFSv4: Initialise connection to the server in nfs4_alloc_client()" }, - "CVE-2022-1679": { - "cmt_msg": "" + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" }, - "CVE-2022-1671": { - "cmt_msg": "rxrpc: fix some null-ptr-deref bugs in server_key.c" + "CVE-2021-0707": { + "cmt_msg": "dmabuf: fix use-after-free of dmabuf's file->f_inode" + }, + "CVE-2022-1158": { + "cmt_msg": "KVM: x86/mmu: do compare-and-exchange of gPTE via the user address" + }, + "CVE-2022-26966": { + "cmt_msg": "sr9700: sanity check for packet length" + }, + "CVE-2021-34693": { + "cmt_msg": "can: bcm: fix infoleak in struct bcm_msg_head" + }, + "CVE-2022-26490": { + "cmt_msg": "nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION" + }, + "CVE-2021-26401": { + "cmt_msg": "x86/speculation: Use generic retpoline by default on AMD" }, "CVE-2021-3847": { "cmt_msg": "" }, - "CVE-2022-1280": { - "cmt_msg": "drm: avoid circular locks in drm_mode_getconnector" + "CVE-2022-1012": { + "cmt_msg": "secure_seq: use the 64 bits of the siphash for port offset calculation" + }, + "CVE-2021-45486": { + "cmt_msg": "inet: use bigger hash table for IP ID generation" + }, + "CVE-2021-4204": { + "cmt_msg": "bpf: Generalize check_ctx_reg for reuse with other types" }, "CVE-2011-4917": { "cmt_msg": "" }, "CVE-2021-45485": { "cmt_msg": "ipv6: use prandom_u32() for ID generation" + }, + "CVE-2021-32078": { + "cmt_msg": "ARM: footbridge: remove personal server platform" + }, + "CVE-2022-30594": { + "cmt_msg": "ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE" + }, + "CVE-2020-26139": { + "cmt_msg": "mac80211: do not accept/forward invalid EAPOL frames" + }, + "CVE-2021-38209": { + "cmt_msg": "netfilter: conntrack: Make global sysctls readonly in non-init netns" + }, + "CVE-2021-38204": { + "cmt_msg": "usb: max-3421: Prevent corruption of freed memory" + }, + "CVE-2021-38205": { + "cmt_msg": "net: xilinx_emaclite: Do not print real IOMEM pointer" + }, + "CVE-2021-3609": { + "cmt_msg": "can: bcm: delay release of struct bcm_op after synchronize_rcu()" + }, + "CVE-2021-38207": { + "cmt_msg": "net: ll_temac: Fix TX BD buffer overwrite" + }, + "CVE-2022-25636": { + "cmt_msg": "netfilter: nf_tables_offload: incorrect flow offload action array size" + }, + "CVE-2022-0847": { + "cmt_msg": "lib/iov_iter: initialize \"flags\" in new pipe_buffer" + }, + "CVE-2022-0400": { + "cmt_msg": "" + }, + "CVE-2021-3600": { + "cmt_msg": "bpf: Fix 32 bit src register truncation on div/mod" + }, + "CVE-2021-38208": { + "cmt_msg": "nfc: fix NULL ptr dereference in llcp_sock_getname() after failed connect" + }, + "CVE-2021-23133": { + "cmt_msg": "net/sctp: fix race condition in sctp_destroy_sock" } } }, @@ -73964,21 +71564,25 @@ "cmt_msg": "xen/events: add a proper barrier to 2-level uevent unmasking", "cmt_id": "d7b048485f6f71e55f32ce904ead727b187b3671" }, - "CVE-2020-25645": { - "cmt_msg": "geneve: add transport ports in route lookup for geneve", - "cmt_id": "1200ebbd06c2f569421dcab4e10649f3e299867c" + "CVE-2019-0146": { + "cmt_msg": "i40e: add num_vectors checker in iwarp handler", + "cmt_id": "f4a3ff4df40053000d56554f0d34aa98d4d917d6" }, "CVE-2019-0147": { "cmt_msg": "i40e: add num_vectors checker in iwarp handler", "cmt_id": "f4a3ff4df40053000d56554f0d34aa98d4d917d6" }, + "CVE-2019-0145": { + "cmt_msg": "i40e: add num_vectors checker in iwarp handler", + "cmt_id": "f4a3ff4df40053000d56554f0d34aa98d4d917d6" + }, "CVE-2020-27675": { "cmt_msg": "xen/events: avoid removing an event channel while handling it", "cmt_id": "e4ccd4b1a6e586659005a231e793af325e575e53" }, - "CVE-2019-0145": { - "cmt_msg": "i40e: add num_vectors checker in iwarp handler", - "cmt_id": "f4a3ff4df40053000d56554f0d34aa98d4d917d6" + "CVE-2020-25645": { + "cmt_msg": "geneve: add transport ports in route lookup for geneve", + "cmt_id": "1200ebbd06c2f569421dcab4e10649f3e299867c" } }, "4.9.245": { @@ -74223,6 +71827,10 @@ "CVE-2021-0129": { "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical", "cmt_id": "6555a006b21ab49090b9a7b36e92d0421db19328" + }, + "CVE-2020-26555": { + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical", + "cmt_id": "6555a006b21ab49090b9a7b36e92d0421db19328" } }, "4.9.271": { @@ -74690,20 +72298,20 @@ "cmt_msg": "af_key: add __GFP_ZERO flag for compose_sadb_supported in function pfkey_register", "cmt_id": "7b0e01a9b7f2aaeb6fa73b35864b1d7dc6e795c4" }, - "CVE-2022-1516": { - "cmt_msg": "net/x25: Fix null-ptr-deref caused by x25_disconnect", - "cmt_id": "dffc859d1d9560da594e4282091781b8d2715f00" + "CVE-2022-28390": { + "cmt_msg": "can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path", + "cmt_id": "e9c4ee674586ff0b098d17638af719aa56c9c272" }, "CVE-2022-30594": { "cmt_msg": "ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE", "cmt_id": "4f96b94a8342fac058117962f1a76fc7ebd1c245" - }, - "CVE-2022-28390": { - "cmt_msg": "can: ems_usb: ems_usb_start_xmit(): fix double dev_kfree_skb() in error path", - "cmt_id": "e9c4ee674586ff0b098d17638af719aa56c9c272" } }, "4.9.313": { + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default", + "cmt_id": "0dd02ff72c6daf4e7800fb5dd1109fbacdde97dc" + }, "CVE-2022-1974": { "cmt_msg": "nfc: replace improper check device_is_registered() in netlink related functions", "cmt_id": "fa2217b66467917a623993c14d671661ad625fb6" @@ -74722,6 +72330,10 @@ } }, "4.9.316": { + "CVE-2022-1652": { + "cmt_msg": "floppy: use a statically allocated error counter", + "cmt_id": "2adafe1c646b462c755e99216f966927eec96059" + }, "CVE-2022-1729": { "cmt_msg": "perf: Fix sys_perf_event_open() race against self", "cmt_id": "a1466528d8ae5d9a3bb29781f0098fa3476e9e1c" @@ -74734,6 +72346,14 @@ } }, "4.9.318": { + "CVE-2022-32250": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier", + "cmt_id": "94e9b75919619ba8c4072abc4917011a7a888a79" + }, + "CVE-2022-1184": { + "cmt_msg": "ext4: verify dir block before splitting it", + "cmt_id": "93bbf0498ba20eadcd7132bd3cfdaff54eb72751" + }, "CVE-2022-1966": { "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier", "cmt_id": "94e9b75919619ba8c4072abc4917011a7a888a79" @@ -74743,6 +72363,24 @@ "cmt_id": "89dda10b73b7ce184caf18754907126ce7ce3fad" } }, + "4.9.320": { + "CVE-2022-32296": { + "cmt_msg": "tcp: increase source port perturb table to 2^16", + "cmt_id": "3c78eea640f69e2198b69128173e6d65a0bcdc02" + }, + "CVE-2022-1011": { + "cmt_msg": "fuse: fix pipe buffer lifetime for direct_io", + "cmt_id": "b79d4d0da659a3c7bd1d5913e62188ceb9be9c49" + }, + "CVE-2022-0812": { + "cmt_msg": "xprtrdma: fix incorrect header size calculations", + "cmt_id": "ca6226b5c5b4cf8c41ab7c759686c9aab43a2a33" + }, + "CVE-2022-1012": { + "cmt_msg": "secure_seq: use the 64 bits of the siphash for port offset calculation", + "cmt_id": "576696ed0dee677ec868960c39d96ae3b8c95a3f" + } + }, "outstanding": { "CVE-2021-0929": { "cmt_msg": "staging/android/ion: delete dma_buf->kmap/unmap implemenation" @@ -74753,9 +72391,6 @@ "CVE-2020-26557": { "cmt_msg": "" }, - "CVE-2020-26555": { - "cmt_msg": "" - }, "CVE-2019-20794": { "cmt_msg": "" }, @@ -74768,9 +72403,6 @@ "CVE-2022-0168": { "cmt_msg": "cifs: fix NULL ptr dereference in smb2_ioctl_query_info()" }, - "CVE-2022-1998": { - "cmt_msg": "fanotify: Fix stale file descriptor in copy_event_to_user()" - }, "CVE-2018-20854": { "cmt_msg": "phy: ocelot-serdes: fix out-of-bounds read" }, @@ -74792,12 +72424,6 @@ "CVE-2017-5753": { "cmt_msg": "x86/cpufeatures: Add X86_BUG_SPECTRE_V[12]" }, - "CVE-2022-0995": { - "cmt_msg": "watch_queue: Fix filter limit check" - }, - "CVE-2022-0998": { - "cmt_msg": "vdpa: clean up get_config_size ret value handling" - }, "CVE-2022-1247": { "cmt_msg": "" }, @@ -74813,9 +72439,6 @@ "CVE-2020-27820": { "cmt_msg": "drm/nouveau: use drm_dev_unplug() during device removal" }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"" - }, "CVE-2020-24503": { "cmt_msg": "" }, @@ -74846,9 +72469,6 @@ "CVE-2022-1263": { "cmt_msg": "KVM: avoid NULL pointer dereference in kvm_dirty_ring_push" }, - "CVE-2022-1158": { - "cmt_msg": "KVM: x86/mmu: do compare-and-exchange of gPTE via the user address" - }, "CVE-2021-35477": { "cmt_msg": "bpf: Introduce BPF nospec instruction for mitigating Spectre v4" }, @@ -74867,48 +72487,18 @@ "CVE-2019-19814": { "cmt_msg": "" }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, - "CVE-2022-1015": { - "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." - }, - "CVE-2022-1652": { - "cmt_msg": "" - }, - "CVE-2022-1651": { - "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" - }, - "CVE-2022-1852": { - "cmt_msg": "KVM: x86: avoid calling x86 emulator without a decoded instruction" - }, - "CVE-2022-1011": { - "cmt_msg": "fuse: fix pipe buffer lifetime for direct_io" - }, "CVE-2019-19241": { "cmt_msg": "io_uring: async workers should inherit the user creds" }, - "CVE-2022-1012": { - "cmt_msg": "secure_seq: use the 64 bits of the siphash for port offset calculation" - }, "CVE-2019-9453": { "cmt_msg": "f2fs: fix to avoid accessing xattr across the boundary" }, "CVE-2021-43975": { "cmt_msg": "atlantic: Fix OOB read and write in hw_atl_utils_fw_rpc_wait" }, - "CVE-2022-25636": { - "cmt_msg": "netfilter: nf_tables_offload: incorrect flow offload action array size" - }, "CVE-2017-1000405": { "cmt_msg": "mm, thp: Do not make page table dirty unconditionally in touch_p[mu]d()" }, - "CVE-2022-1789": { - "cmt_msg": "KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID" - }, - "CVE-2022-2078": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, "CVE-2016-8660": { "cmt_msg": "" }, @@ -74918,9 +72508,6 @@ "CVE-2019-12378": { "cmt_msg": "ipv6_sockglue: Fix a missing-check bug in ip6_ra_control()" }, - "CVE-2022-23041": { - "cmt_msg": "xen/9p: use alloc/free_pages_exact()" - }, "CVE-2022-1462": { "cmt_msg": "" }, @@ -74930,9 +72517,6 @@ "CVE-2020-16120": { "cmt_msg": "ovl: switch to mounter creds in readdir" }, - "CVE-2022-23222": { - "cmt_msg": "bpf: Replace PTR_TO_XXX_OR_NULL with PTR_TO_XXX | PTR_MAYBE_NULL" - }, "CVE-2020-15802": { "cmt_msg": "" }, @@ -74942,12 +72526,6 @@ "CVE-2020-8834": { "cmt_msg": "KVM: PPC: Book3S HV: Factor fake-suspend handling out of kvmppc_save/restore_tm" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, - "CVE-2021-39713": { - "cmt_msg": "net: sched: use Qdisc rcu API instead of relying on rtnl lock" - }, "CVE-2018-25020": { "cmt_msg": "bpf: fix truncated jump targets on heavy expansions" }, @@ -74987,9 +72565,6 @@ "CVE-2020-26145": { "cmt_msg": "ath10k: drop fragments with multicast DA for PCIe" }, - "CVE-2022-1204": { - "cmt_msg": "ax25: Fix refcount leaks caused by ax25_cb_del()" - }, "CVE-2022-25265": { "cmt_msg": "" }, @@ -75005,24 +72580,15 @@ "CVE-2020-26142": { "cmt_msg": "" }, - "CVE-2022-28893": { - "cmt_msg": "SUNRPC: Ensure we flush any closed sockets before xs_xprt_free()" - }, "CVE-2021-29155": { "cmt_msg": "bpf: Use correct permission flag for mixed signed bounds arithmetic" }, "CVE-2017-9986": { "cmt_msg": "sound: Retire OSS" }, - "CVE-2021-39711": { - "cmt_msg": "bpf: fix panic due to oob in bpf_prog_test_run_skb" - }, "CVE-2021-34556": { "cmt_msg": "bpf: Introduce BPF nospec instruction for mitigating Spectre v4" }, - "CVE-2022-29156": { - "cmt_msg": "RDMA/rtrs-clt: Fix possible double free in error case" - }, "CVE-2021-39714": { "cmt_msg": "staging: android: ion: Drop ion_map_kernel interface" }, @@ -75047,6 +72613,9 @@ "CVE-2020-10708": { "cmt_msg": "" }, + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()" + }, "CVE-2020-15780": { "cmt_msg": "ACPI: configfs: Disallow loading ACPI tables when locked down" }, @@ -75065,9 +72634,6 @@ "CVE-2021-0399": { "cmt_msg": "" }, - "CVE-2022-20154": { - "cmt_msg": "sctp: use call_rcu to free endpoint" - }, "CVE-2017-13694": { "cmt_msg": "" }, @@ -75077,21 +72643,6 @@ "CVE-2012-4542": { "cmt_msg": "" }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, - "CVE-2022-0812": { - "cmt_msg": "xprtrdma: fix incorrect header size calculations" - }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, - "CVE-2022-1679": { - "cmt_msg": "" - }, - "CVE-2022-1972": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, "CVE-2013-7445": { "cmt_msg": "" }, @@ -75107,9 +72658,6 @@ "CVE-2005-3660": { "cmt_msg": "" }, - "CVE-2021-33135": { - "cmt_msg": "" - }, "CVE-2022-1508": { "cmt_msg": "io_uring: reexpand under-reexpanded iters" }, @@ -75131,9 +72679,6 @@ "CVE-2017-5715": { "cmt_msg": "x86/cpufeatures: Add X86_BUG_SPECTRE_V[12]" }, - "CVE-2022-32296": { - "cmt_msg": "tcp: increase source port perturb table to 2^16" - }, "CVE-2021-0695": { "cmt_msg": "" }, @@ -75167,9 +72712,6 @@ "CVE-2021-3714": { "cmt_msg": "" }, - "CVE-2022-28389": { - "cmt_msg": "can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path" - }, "CVE-2022-28388": { "cmt_msg": "can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path" }, @@ -75206,30 +72748,15 @@ "CVE-2018-12126": { "cmt_msg": "s390/speculation: Support 'mitigations=' cmdline option" }, - "CVE-2022-0500": { - "cmt_msg": "bpf: Introduce MEM_RDONLY flag" - }, "CVE-2018-20509": { "cmt_msg": "binder: refactor binder ref inc/dec for thread safety" }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, - "CVE-2022-1055": { - "cmt_msg": "net: sched: fix use-after-free in tc_new_tfilter()" - }, "CVE-2022-0480": { "cmt_msg": "memcg: enable accounting for file lock caches" }, "CVE-2021-45469": { "cmt_msg": "f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr()" }, - "CVE-2022-1184": { - "cmt_msg": "" - }, - "CVE-2021-3894": { - "cmt_msg": "sctp: account stream padding length for reconf chunk" - }, "CVE-2019-20811": { "cmt_msg": "net-sysfs: call dev_hold if kobject_init_and_add success" }, @@ -75242,8 +72769,8 @@ "CVE-2021-4218": { "cmt_msg": "sysctl: pass kernel pointers to ->proc_handler" }, - "CVE-2022-20153": { - "cmt_msg": "io_uring: return back safer resurrect" + "CVE-2022-23222": { + "cmt_msg": "bpf: Replace PTR_TO_XXX_OR_NULL with PTR_TO_XXX | PTR_MAYBE_NULL" }, "CVE-2019-15290": { "cmt_msg": "" @@ -75254,12 +72781,6 @@ "CVE-2018-17977": { "cmt_msg": "" }, - "CVE-2022-26878": { - "cmt_msg": "" - }, - "CVE-2022-29582": { - "cmt_msg": "io_uring: fix race between timeout flush and removal" - }, "CVE-2022-1116": { "cmt_msg": "" }, @@ -75272,12 +72793,6 @@ "CVE-2018-12931": { "cmt_msg": "" }, - "CVE-2021-4148": { - "cmt_msg": "mm: khugepaged: skip huge page collapse for special files" - }, - "CVE-2022-1043": { - "cmt_msg": "io_uring: fix xa_alloc_cycle() error return value check" - }, "CVE-2017-5967": { "cmt_msg": "time: Remove CONFIG_TIMER_STATS" }, @@ -75290,9 +72805,6 @@ "CVE-2021-39802": { "cmt_msg": "" }, - "CVE-2022-0742": { - "cmt_msg": "ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()" - }, "CVE-2022-1048": { "cmt_msg": "ALSA: pcm: Fix races among concurrent hw_params and hw_free calls" }, @@ -75311,6 +72823,9 @@ "CVE-2019-12382": { "cmt_msg": "drm/edid: Fix a missing-check bug in drm_load_edid_firmware()" }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, "CVE-2020-12364": { "cmt_msg": "drm/i915/guc: Update to use firmware v49.0.1" }, @@ -75350,14 +72865,11 @@ "CVE-2015-2877": { "cmt_msg": "" }, - "CVE-2022-0171": { - "cmt_msg": "" + "CVE-2022-1204": { + "cmt_msg": "ax25: Fix refcount leaks caused by ax25_cb_del()" }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers" - }, - "CVE-2019-0146": { - "cmt_msg": "" + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" }, "CVE-2018-20449": { "cmt_msg": "printk: hash addresses printed with %p" @@ -75368,8 +72880,8 @@ "CVE-2022-0400": { "cmt_msg": "" }, - "CVE-2021-0707": { - "cmt_msg": "dmabuf: fix use-after-free of dmabuf's file->f_inode" + "CVE-2022-1679": { + "cmt_msg": "" }, "CVE-2019-11191": { "cmt_msg": "x86: Deprecate a.out support" @@ -75377,9 +72889,6 @@ "CVE-2019-19039": { "cmt_msg": "btrfs: Don't submit any btree write bio if the fs has errors" }, - "CVE-2022-1671": { - "cmt_msg": "rxrpc: fix some null-ptr-deref bugs in server_key.c" - }, "CVE-2021-3847": { "cmt_msg": "" }, @@ -75398,9 +72907,6 @@ "CVE-2021-32078": { "cmt_msg": "ARM: footbridge: remove personal server platform" }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" - }, "CVE-2019-10220": { "cmt_msg": "Convert filldir[64]() from __put_user() to unsafe_put_user()" }, @@ -75591,8 +73097,8 @@ "CVE-2019-19966": { "cmt_msg": "media: cpia2: Fix use-after-free in cpia2_exit" }, - "CVE-2021-3894": { - "cmt_msg": "sctp: account stream padding length for reconf chunk" + "CVE-2022-1184": { + "cmt_msg": "ext4: verify dir block before splitting it" }, "CVE-2020-24587": { "cmt_msg": "mac80211: prevent mixed key and fragment cache attacks" @@ -75615,6 +73121,9 @@ "CVE-2018-10940": { "cmt_msg": "cdrom: information leak in cdrom_ioctl_media_changed()" }, + "CVE-2022-32250": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier" + }, "CVE-2018-10087": { "cmt_msg": "kernel/exit.c: avoid undefined behaviour when calling wait4()" }, @@ -75690,9 +73199,6 @@ "CVE-2019-14835": { "cmt_msg": "vhost: make sure log_num < in_num" }, - "CVE-2022-2078": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, "CVE-2018-1000204": { "cmt_msg": "scsi: sg: allocate with __GFP_ZERO in sg_build_indirect()" }, @@ -75879,18 +73385,12 @@ "CVE-2019-18680": { "cmt_msg": "unknown" }, - "CVE-2022-20153": { - "cmt_msg": "io_uring: return back safer resurrect" - }, "CVE-2022-23038": { "cmt_msg": "xen/grant-table: add gnttab_try_end_foreign_access()" }, "CVE-2017-6074": { "cmt_msg": "dccp: fix freeing skb too early for IPV6_RECVPKTINFO" }, - "CVE-2022-20154": { - "cmt_msg": "sctp: use call_rcu to free endpoint" - }, "CVE-2019-11815": { "cmt_msg": "net: rds: force to destroy connection if t_sock is NULL in rds_tcp_kill_sock()." }, @@ -75912,9 +73412,6 @@ "CVE-2019-15926": { "cmt_msg": "ath6kl: add some bounds checking" }, - "CVE-2022-0998": { - "cmt_msg": "vdpa: clean up get_config_size ret value handling" - }, "CVE-2019-14821": { "cmt_msg": "KVM: coalesced_mmio: add bounds checking" }, @@ -76011,6 +73508,9 @@ "CVE-2020-15393": { "cmt_msg": "usb: usbtest: fix missing kfree(dev->buf) in usbtest_disconnect" }, + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default" + }, "CVE-2021-3564": { "cmt_msg": "Bluetooth: fix the erroneous flush_work() order" }, @@ -76167,6 +73667,9 @@ "CVE-2017-6347": { "cmt_msg": "ip: fix IP_CHECKSUM handling" }, + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" + }, "CVE-2019-14897": { "cmt_msg": "libertas: Fix two buffer overflows at parsing bss descriptor" }, @@ -76188,8 +73691,8 @@ "CVE-2018-9415": { "cmt_msg": "ARM: amba: Fix race condition with driver_override" }, - "CVE-2022-0995": { - "cmt_msg": "watch_queue: Fix filter limit check" + "CVE-2022-1882": { + "cmt_msg": "" }, "CVE-2019-13648": { "cmt_msg": "powerpc/tm: Fix oops on sigreturn on systems without TM" @@ -76230,6 +73733,9 @@ "CVE-2020-25212": { "cmt_msg": "nfs: Fix getxattr kernel panic and memory overflow" }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, "CVE-2019-19036": { "cmt_msg": "btrfs: Detect unbalanced tree with empty leaf before crashing btree operations" }, @@ -76318,7 +73824,7 @@ "cmt_msg": "NFC: llcp: Limit size of SDP URI" }, "CVE-2020-26555": { - "cmt_msg": "" + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, "CVE-2018-9517": { "cmt_msg": "l2tp: pass tunnel pointer to ->session_create()" @@ -76335,9 +73841,6 @@ "CVE-2018-1087": { "cmt_msg": "kvm/x86: fix icebp instruction handling" }, - "CVE-2022-29156": { - "cmt_msg": "RDMA/rtrs-clt: Fix possible double free in error case" - }, "CVE-2018-20854": { "cmt_msg": "phy: ocelot-serdes: fix out-of-bounds read" }, @@ -76503,9 +74006,6 @@ "CVE-2021-3178": { "cmt_msg": "nfsd4: readdirplus shouldn't return parent of export" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, "CVE-2018-7755": { "cmt_msg": "floppy: Do not copy a kernel pointer to user memory in FDGETPRM ioctl" }, @@ -76533,12 +74033,6 @@ "CVE-2022-24958": { "cmt_msg": "usb: gadget: don't release an existing dev->buf" }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers" - }, - "CVE-2022-28893": { - "cmt_msg": "SUNRPC: Ensure we flush any closed sockets before xs_xprt_free()" - }, "CVE-2021-3772": { "cmt_msg": "sctp: use init_tag from inithdr for ABORT chunk" }, @@ -76548,9 +74042,6 @@ "CVE-2021-37159": { "cmt_msg": "usb: hso: fix error handling code of hso_create_net_device" }, - "CVE-2021-39711": { - "cmt_msg": "bpf: fix panic due to oob in bpf_prog_test_run_skb" - }, "CVE-2021-28715": { "cmt_msg": "xen/netback: don't queue unlimited number of packages" }, @@ -76656,9 +74147,6 @@ "CVE-2020-14381": { "cmt_msg": "futex: Fix inode life-time issue" }, - "CVE-2022-1158": { - "cmt_msg": "KVM: x86/mmu: do compare-and-exchange of gPTE via the user address" - }, "CVE-2019-19768": { "cmt_msg": "blktrace: Protect q->blk_trace with RCU" }, @@ -76722,18 +74210,12 @@ "CVE-2019-12881": { "cmt_msg": "drm/i915/userptr: reject zero user_size" }, - "CVE-2022-28389": { - "cmt_msg": "can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path" - }, "CVE-2018-1000004": { "cmt_msg": "ALSA: seq: Make ioctls race-free" }, "CVE-2019-19530": { "cmt_msg": "usb: cdc-acm: make sure a refcount is taken early enough" }, - "CVE-2022-0500": { - "cmt_msg": "bpf: Introduce MEM_RDONLY flag" - }, "CVE-2018-18690": { "cmt_msg": "xfs: don't fail when converting shortform attr to long form during ATTR_REPLACE" }, @@ -76752,9 +74234,6 @@ "CVE-2021-4002": { "cmt_msg": "hugetlbfs: flush TLBs correctly after huge_pmd_unshare" }, - "CVE-2022-1055": { - "cmt_msg": "net: sched: fix use-after-free in tc_new_tfilter()" - }, "CVE-2021-38204": { "cmt_msg": "usb: max-3421: Prevent corruption of freed memory" }, @@ -76797,8 +74276,8 @@ "CVE-2022-0617": { "cmt_msg": "udf: Fix NULL ptr deref when converting from inline format" }, - "CVE-2022-26878": { - "cmt_msg": "" + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()" }, "CVE-2019-19531": { "cmt_msg": "usb: yurex: Fix use-after-free in yurex_delete" @@ -76888,7 +74367,7 @@ "cmt_msg": "ARM: report Spectre v2 status through sysfs" }, "CVE-2019-0146": { - "cmt_msg": "" + "cmt_msg": "i40e: add num_vectors checker in iwarp handler" }, "CVE-2019-0147": { "cmt_msg": "i40e: add num_vectors checker in iwarp handler" @@ -76983,9 +74462,6 @@ "CVE-2018-5953": { "cmt_msg": "printk: hash addresses printed with %p" }, - "CVE-2021-39713": { - "cmt_msg": "net: sched: use Qdisc rcu API instead of relying on rtnl lock" - }, "CVE-2020-28374": { "cmt_msg": "scsi: target: Fix XCOPY NAA identifier lookup" }, @@ -77085,14 +74561,8 @@ "CVE-2021-26931": { "cmt_msg": "xen-blkback: don't \"handle\" error by BUG()" }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, "CVE-2022-1652": { - "cmt_msg": "" - }, - "CVE-2022-1651": { - "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" + "cmt_msg": "floppy: use a statically allocated error counter" }, "CVE-2020-29568": { "cmt_msg": "xen/xenbus: Allow watches discard events before queueing" @@ -77127,9 +74597,6 @@ "CVE-2019-9458": { "cmt_msg": "media: v4l: event: Prevent freeing event subscriptions while accessed" }, - "CVE-2022-1789": { - "cmt_msg": "KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID" - }, "CVE-2021-39714": { "cmt_msg": "staging: android: ion: Drop ion_map_kernel interface" }, @@ -77271,18 +74738,12 @@ "CVE-2021-4149": { "cmt_msg": "btrfs: unlock newly allocated extent buffer after error" }, - "CVE-2021-4148": { - "cmt_msg": "mm: khugepaged: skip huge page collapse for special files" - }, "CVE-2021-3864": { "cmt_msg": "" }, "CVE-2021-3640": { "cmt_msg": "Bluetooth: sco: Fix lock_sock() blockage by memcpy_from_msg()" }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, "CVE-2017-7618": { "cmt_msg": "crypto: ahash - Fix EINPROGRESS notification callback" }, @@ -77406,9 +74867,6 @@ "CVE-2017-18595": { "cmt_msg": "tracing: Fix possible double free on failure of allocating trace buffer" }, - "CVE-2022-0742": { - "cmt_msg": "ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()" - }, "CVE-2021-3612": { "cmt_msg": "Input: joydev - prevent potential read overflow in ioctl" }, @@ -77520,9 +74978,6 @@ "CVE-2022-26490": { "cmt_msg": "nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION" }, - "CVE-2022-1043": { - "cmt_msg": "io_uring: fix xa_alloc_cycle() error return value check" - }, "CVE-2017-5967": { "cmt_msg": "time: Remove CONFIG_TIMER_STATS" }, @@ -77541,9 +74996,6 @@ "CVE-2018-20976": { "cmt_msg": "xfs: clear sb->s_fs_info on mount failure" }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, "CVE-2018-1108": { "cmt_msg": "random: fix crng_ready() test" }, @@ -77559,9 +75011,6 @@ "CVE-2019-16413": { "cmt_msg": "9p: use inode->i_lock to protect i_size_write() under 32-bit" }, - "CVE-2022-1516": { - "cmt_msg": "net/x25: Fix null-ptr-deref caused by x25_disconnect" - }, "CVE-2022-1263": { "cmt_msg": "KVM: avoid NULL pointer dereference in kvm_dirty_ring_push" }, @@ -77613,9 +75062,6 @@ "CVE-2022-0400": { "cmt_msg": "" }, - "CVE-2021-0707": { - "cmt_msg": "dmabuf: fix use-after-free of dmabuf's file->f_inode" - }, "CVE-2021-38160": { "cmt_msg": "virtio_console: Assure used length from device is limited" }, @@ -77655,9 +75101,6 @@ "CVE-2020-25284": { "cmt_msg": "rbd: require global CAP_SYS_ADMIN for mapping and unmapping" }, - "CVE-2022-25636": { - "cmt_msg": "netfilter: nf_tables_offload: incorrect flow offload action array size" - }, "CVE-2017-1000379": { "cmt_msg": "mm: larger stack guard gap, between vmas" }, @@ -77679,9 +75122,6 @@ "CVE-2019-15219": { "cmt_msg": "USB: sisusbvga: fix oops in error path of sisusb_probe" }, - "CVE-2022-1015": { - "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." - }, "CVE-2022-0850": { "cmt_msg": "ext4: fix kernel infoleak via ext4_extent_header" }, @@ -77697,15 +75137,9 @@ "CVE-2019-19378": { "cmt_msg": "" }, - "CVE-2022-1852": { - "cmt_msg": "KVM: x86: avoid calling x86 emulator without a decoded instruction" - }, "CVE-2020-4788": { "cmt_msg": "powerpc/64s: flush L1D on kernel entry" }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"" - }, "CVE-2017-8831": { "cmt_msg": "[media] saa7164: fix double fetch PCIe access condition" }, @@ -77748,9 +75182,6 @@ "CVE-2019-19449": { "cmt_msg": "f2fs: fix to do sanity check on segment/section count" }, - "CVE-2021-33135": { - "cmt_msg": "" - }, "CVE-2019-19523": { "cmt_msg": "USB: adutux: fix use-after-free on disconnect" }, @@ -77790,9 +75221,6 @@ "CVE-2019-15215": { "cmt_msg": "media: cpia2_usb: first wake up, then free in disconnect" }, - "CVE-2022-1998": { - "cmt_msg": "fanotify: Fix stale file descriptor in copy_event_to_user()" - }, "CVE-2018-18021": { "cmt_msg": "arm64: KVM: Tighten guest core register access from userspace" }, @@ -77820,9 +75248,6 @@ "CVE-2020-27815": { "cmt_msg": "jfs: Fix array index bounds check in dbAdjTree" }, - "CVE-2022-23041": { - "cmt_msg": "xen/9p: use alloc/free_pages_exact()" - }, "CVE-2022-1462": { "cmt_msg": "" }, @@ -77916,9 +75341,6 @@ "CVE-2019-3874": { "cmt_msg": "sctp: implement memory accounting on tx path" }, - "CVE-2022-0171": { - "cmt_msg": "" - }, "CVE-2018-10877": { "cmt_msg": "ext4: verify the depth of extent tree in ext4_find_extent()" }, @@ -77931,9 +75353,6 @@ "CVE-2019-15217": { "cmt_msg": "media: usb:zr364xx:Fix KASAN:null-ptr-deref Read in zr364xx_vidioc_querycap" }, - "CVE-2022-1882": { - "cmt_msg": "" - }, "CVE-2020-14331": { "cmt_msg": "vgacon: Fix for missing check in scrollback handling" }, @@ -78018,21 +75437,12 @@ "CVE-2018-7191": { "cmt_msg": "tun: call dev_get_valid_name() before register_netdevice()" }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, "CVE-2018-1000026": { "cmt_msg": "bnx2x: disable GSO where gso_size is too big for hardware" }, "CVE-2022-1975": { "cmt_msg": "NFC: netlink: fix sleep in atomic bug when firmware download timeout" }, - "CVE-2022-1972": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" - }, "CVE-2017-2596": { "cmt_msg": "kvm: fix page struct leak in handle_vmon" }, @@ -78120,9 +75530,6 @@ "CVE-2021-28951": { "cmt_msg": "io_uring: ensure that SQPOLL thread is started for exit" }, - "CVE-2022-1671": { - "cmt_msg": "rxrpc: fix some null-ptr-deref bugs in server_key.c" - }, "CVE-2020-16166": { "cmt_msg": "random32: update the net random state on interrupt and activity" }, @@ -78225,9 +75632,6 @@ "CVE-2022-1247": { "cmt_msg": "" }, - "CVE-2022-1184": { - "cmt_msg": "" - }, "CVE-2022-23222": { "cmt_msg": "bpf: Replace PTR_TO_XXX_OR_NULL with PTR_TO_XXX | PTR_MAYBE_NULL" }, @@ -78345,9 +75749,6 @@ "CVE-2020-9383": { "cmt_msg": "floppy: check FDC index for errors before assigning it" }, - "CVE-2022-29582": { - "cmt_msg": "io_uring: fix race between timeout flush and removal" - }, "CVE-2021-38198": { "cmt_msg": "KVM: X86: MMU: Use the correct inherited permissions to get shadow page" }, @@ -78663,6 +76064,9 @@ "CVE-2018-10940": { "cmt_msg": "cdrom: information leak in cdrom_ioctl_media_changed()" }, + "CVE-2022-32250": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier" + }, "CVE-2018-10087": { "cmt_msg": "kernel/exit.c: avoid undefined behaviour when calling wait4()" }, @@ -78762,9 +76166,6 @@ "CVE-2020-0543": { "cmt_msg": "x86/cpu: Add 'table' argument to cpu_matches()" }, - "CVE-2022-29156": { - "cmt_msg": "RDMA/rtrs-clt: Fix possible double free in error case" - }, "CVE-2018-3646": { "cmt_msg": "x86/microcode: Allow late microcode loading with SMT disabled" }, @@ -78900,17 +76301,11 @@ "CVE-2019-18680": { "cmt_msg": "" }, - "CVE-2022-20153": { - "cmt_msg": "io_uring: return back safer resurrect" - }, "CVE-2022-23038": { "cmt_msg": "xen/grant-table: add gnttab_try_end_foreign_access()" }, - "CVE-2022-0995": { - "cmt_msg": "watch_queue: Fix filter limit check" - }, - "CVE-2022-20154": { - "cmt_msg": "sctp: use call_rcu to free endpoint" + "CVE-2022-23039": { + "cmt_msg": "xen/gntalloc: don't use gnttab_query_foreign_access()" }, "CVE-2017-14991": { "cmt_msg": "scsi: sg: fixup infoleak when using SG_GET_REQUEST_TABLE" @@ -78936,9 +76331,6 @@ "CVE-2019-15921": { "cmt_msg": "genetlink: Fix a memory leak on error path" }, - "CVE-2022-0998": { - "cmt_msg": "vdpa: clean up get_config_size ret value handling" - }, "CVE-2019-14821": { "cmt_msg": "KVM: coalesced_mmio: add bounds checking" }, @@ -79035,6 +76427,9 @@ "CVE-2020-15393": { "cmt_msg": "usb: usbtest: fix missing kfree(dev->buf) in usbtest_disconnect" }, + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default" + }, "CVE-2021-3564": { "cmt_msg": "Bluetooth: fix the erroneous flush_work() order" }, @@ -79053,9 +76448,6 @@ "CVE-2020-26560": { "cmt_msg": "" }, - "CVE-2022-1516": { - "cmt_msg": "net/x25: Fix null-ptr-deref caused by x25_disconnect" - }, "CVE-2018-18397": { "cmt_msg": "userfaultfd: use ENOENT instead of EFAULT if the atomic copy user fails" }, @@ -79170,6 +76562,9 @@ "CVE-2020-36385": { "cmt_msg": "RDMA/ucma: Rework ucma_migrate_id() to avoid races with destroy" }, + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" + }, "CVE-2019-14897": { "cmt_msg": "libertas: Fix two buffer overflows at parsing bss descriptor" }, @@ -79236,6 +76631,9 @@ "CVE-2020-25212": { "cmt_msg": "nfs: Fix getxattr kernel panic and memory overflow" }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, "CVE-2019-19036": { "cmt_msg": "btrfs: Detect unbalanced tree with empty leaf before crashing btree operations" }, @@ -79324,7 +76722,7 @@ "cmt_msg": "NFC: llcp: Limit size of SDP URI" }, "CVE-2020-26555": { - "cmt_msg": "" + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, "CVE-2018-9517": { "cmt_msg": "l2tp: pass tunnel pointer to ->session_create()" @@ -79342,7 +76740,7 @@ "cmt_msg": "kvm/x86: fix icebp instruction handling" }, "CVE-2022-1652": { - "cmt_msg": "" + "cmt_msg": "floppy: use a statically allocated error counter" }, "CVE-2018-1120": { "cmt_msg": "proc: do not access cmdline nor environ from file-backed areas" @@ -79509,9 +76907,6 @@ "CVE-2021-3178": { "cmt_msg": "nfsd4: readdirplus shouldn't return parent of export" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, "CVE-2020-10690": { "cmt_msg": "ptp: fix the race between the release of ptp_clock and cdev" }, @@ -79533,9 +76928,6 @@ "CVE-2019-19319": { "cmt_msg": "ext4: protect journal inode's blocks using block_validity" }, - "CVE-2022-2078": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, "CVE-2019-19462": { "cmt_msg": "kernel/relay.c: handle alloc_percpu returning NULL in relay_open" }, @@ -79545,12 +76937,6 @@ "CVE-2022-24958": { "cmt_msg": "usb: gadget: don't release an existing dev->buf" }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers" - }, - "CVE-2022-28893": { - "cmt_msg": "SUNRPC: Ensure we flush any closed sockets before xs_xprt_free()" - }, "CVE-2021-3772": { "cmt_msg": "sctp: use init_tag from inithdr for ABORT chunk" }, @@ -79560,9 +76946,6 @@ "CVE-2021-37159": { "cmt_msg": "usb: hso: fix error handling code of hso_create_net_device" }, - "CVE-2021-39711": { - "cmt_msg": "bpf: fix panic due to oob in bpf_prog_test_run_skb" - }, "CVE-2021-28715": { "cmt_msg": "xen/netback: don't queue unlimited number of packages" }, @@ -79653,9 +77036,6 @@ "CVE-2020-14381": { "cmt_msg": "futex: Fix inode life-time issue" }, - "CVE-2022-1158": { - "cmt_msg": "KVM: x86/mmu: do compare-and-exchange of gPTE via the user address" - }, "CVE-2019-19768": { "cmt_msg": "blktrace: Protect q->blk_trace with RCU" }, @@ -79716,15 +77096,9 @@ "CVE-2019-12881": { "cmt_msg": "drm/i915/userptr: reject zero user_size" }, - "CVE-2022-28389": { - "cmt_msg": "can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path" - }, "CVE-2018-1000004": { "cmt_msg": "ALSA: seq: Make ioctls race-free" }, - "CVE-2022-0500": { - "cmt_msg": "bpf: Introduce MEM_RDONLY flag" - }, "CVE-2018-18690": { "cmt_msg": "xfs: don't fail when converting shortform attr to long form during ATTR_REPLACE" }, @@ -79743,9 +77117,6 @@ "CVE-2021-4002": { "cmt_msg": "hugetlbfs: flush TLBs correctly after huge_pmd_unshare" }, - "CVE-2022-1055": { - "cmt_msg": "net: sched: fix use-after-free in tc_new_tfilter()" - }, "CVE-2021-38204": { "cmt_msg": "usb: max-3421: Prevent corruption of freed memory" }, @@ -79785,8 +77156,8 @@ "CVE-2019-3016": { "cmt_msg": "x86/kvm: Be careful not to clear KVM_VCPU_FLUSH_TLB bit" }, - "CVE-2022-26878": { - "cmt_msg": "" + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()" }, "CVE-2019-19531": { "cmt_msg": "usb: yurex: Fix use-after-free in yurex_delete" @@ -79855,7 +77226,7 @@ "cmt_msg": "ARM: report Spectre v2 status through sysfs" }, "CVE-2019-0146": { - "cmt_msg": "" + "cmt_msg": "i40e: add num_vectors checker in iwarp handler" }, "CVE-2019-0147": { "cmt_msg": "i40e: add num_vectors checker in iwarp handler" @@ -79944,9 +77315,6 @@ "CVE-2018-5953": { "cmt_msg": "printk: hash addresses printed with %p" }, - "CVE-2021-39713": { - "cmt_msg": "net: sched: use Qdisc rcu API instead of relying on rtnl lock" - }, "CVE-2020-28374": { "cmt_msg": "scsi: target: Fix XCOPY NAA identifier lookup" }, @@ -80043,15 +77411,9 @@ "CVE-2021-26931": { "cmt_msg": "xen-blkback: don't \"handle\" error by BUG()" }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, "CVE-2021-4203": { "cmt_msg": "af_unix: fix races in sk_peer_pid and sk_peer_cred accesses" }, - "CVE-2022-1651": { - "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" - }, "CVE-2020-29568": { "cmt_msg": "xen/xenbus: Allow watches discard events before queueing" }, @@ -80091,9 +77453,6 @@ "CVE-2019-9458": { "cmt_msg": "media: v4l: event: Prevent freeing event subscriptions while accessed" }, - "CVE-2022-1789": { - "cmt_msg": "KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID" - }, "CVE-2021-39714": { "cmt_msg": "staging: android: ion: Drop ion_map_kernel interface" }, @@ -80253,15 +77612,9 @@ "CVE-2021-4149": { "cmt_msg": "btrfs: unlock newly allocated extent buffer after error" }, - "CVE-2021-4148": { - "cmt_msg": "mm: khugepaged: skip huge page collapse for special files" - }, "CVE-2021-3640": { "cmt_msg": "Bluetooth: sco: Fix lock_sock() blockage by memcpy_from_msg()" }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, "CVE-2020-1749": { "cmt_msg": "net: ipv6_stub: use ip6_dst_lookup_flow instead of ip6_dst_lookup" }, @@ -80373,9 +77726,6 @@ "CVE-2017-18595": { "cmt_msg": "tracing: Fix possible double free on failure of allocating trace buffer" }, - "CVE-2022-0742": { - "cmt_msg": "ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()" - }, "CVE-2021-3612": { "cmt_msg": "Input: joydev - prevent potential read overflow in ioctl" }, @@ -80469,9 +77819,6 @@ "CVE-2022-26490": { "cmt_msg": "nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION" }, - "CVE-2022-1043": { - "cmt_msg": "io_uring: fix xa_alloc_cycle() error return value check" - }, "CVE-2021-0937": { "cmt_msg": "netfilter: x_tables: fix compat match/target pad out-of-bound write" }, @@ -80544,9 +77891,6 @@ "CVE-2022-0400": { "cmt_msg": "" }, - "CVE-2021-0707": { - "cmt_msg": "dmabuf: fix use-after-free of dmabuf's file->f_inode" - }, "CVE-2021-38160": { "cmt_msg": "virtio_console: Assure used length from device is limited" }, @@ -80586,9 +77930,6 @@ "CVE-2020-25284": { "cmt_msg": "rbd: require global CAP_SYS_ADMIN for mapping and unmapping" }, - "CVE-2022-25636": { - "cmt_msg": "netfilter: nf_tables_offload: incorrect flow offload action array size" - }, "CVE-2018-18281": { "cmt_msg": "mremap: properly flush TLB before releasing the page" }, @@ -80604,9 +77945,6 @@ "CVE-2019-15219": { "cmt_msg": "USB: sisusbvga: fix oops in error path of sisusb_probe" }, - "CVE-2022-1015": { - "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." - }, "CVE-2020-25643": { "cmt_msg": "hdlc_ppp: add range checks in ppp_cp_parse_cr()" }, @@ -80616,15 +77954,9 @@ "CVE-2019-19378": { "cmt_msg": "" }, - "CVE-2022-1852": { - "cmt_msg": "KVM: x86: avoid calling x86 emulator without a decoded instruction" - }, "CVE-2020-4788": { "cmt_msg": "powerpc/64s: flush L1D on kernel entry" }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"" - }, "CVE-2017-8831": { "cmt_msg": "[media] saa7164: fix double fetch PCIe access condition" }, @@ -80667,9 +77999,6 @@ "CVE-2019-19449": { "cmt_msg": "f2fs: fix to do sanity check on segment/section count" }, - "CVE-2021-33135": { - "cmt_msg": "" - }, "CVE-2019-19523": { "cmt_msg": "USB: adutux: fix use-after-free on disconnect" }, @@ -80706,9 +78035,6 @@ "CVE-2021-41864": { "cmt_msg": "bpf: Fix integer overflow in prealloc_elems_and_freelist()" }, - "CVE-2022-1998": { - "cmt_msg": "fanotify: Fix stale file descriptor in copy_event_to_user()" - }, "CVE-2018-18021": { "cmt_msg": "arm64: KVM: Tighten guest core register access from userspace" }, @@ -80736,9 +78062,6 @@ "CVE-2020-27815": { "cmt_msg": "jfs: Fix array index bounds check in dbAdjTree" }, - "CVE-2022-23041": { - "cmt_msg": "xen/9p: use alloc/free_pages_exact()" - }, "CVE-2022-1462": { "cmt_msg": "" }, @@ -80820,9 +78143,6 @@ "CVE-2019-3874": { "cmt_msg": "sctp: implement memory accounting on tx path" }, - "CVE-2022-0171": { - "cmt_msg": "" - }, "CVE-2018-10877": { "cmt_msg": "ext4: verify the depth of extent tree in ext4_find_extent()" }, @@ -80913,21 +78233,12 @@ "CVE-2018-7191": { "cmt_msg": "tun: call dev_get_valid_name() before register_netdevice()" }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, "CVE-2018-1000026": { "cmt_msg": "bnx2x: disable GSO where gso_size is too big for hardware" }, "CVE-2022-1975": { "cmt_msg": "NFC: netlink: fix sleep in atomic bug when firmware download timeout" }, - "CVE-2022-1972": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" - }, "CVE-2017-0786": { "cmt_msg": "brcmfmac: add length check in brcmf_cfg80211_escan_handler()" }, @@ -81012,9 +78323,6 @@ "CVE-2021-28951": { "cmt_msg": "io_uring: ensure that SQPOLL thread is started for exit" }, - "CVE-2022-1671": { - "cmt_msg": "rxrpc: fix some null-ptr-deref bugs in server_key.c" - }, "CVE-2020-16166": { "cmt_msg": "random32: update the net random state on interrupt and activity" }, @@ -81090,9 +78398,6 @@ "CVE-2018-20509": { "cmt_msg": "binder: refactor binder ref inc/dec for thread safety" }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, "CVE-2017-18193": { "cmt_msg": "f2fs: fix a bug caused by NULL extent tree" }, @@ -81112,7 +78417,7 @@ "cmt_msg": "" }, "CVE-2022-1184": { - "cmt_msg": "" + "cmt_msg": "ext4: verify dir block before splitting it" }, "CVE-2022-23222": { "cmt_msg": "bpf: Replace PTR_TO_XXX_OR_NULL with PTR_TO_XXX | PTR_MAYBE_NULL" @@ -81186,9 +78491,6 @@ "CVE-2017-16647": { "cmt_msg": "net: usb: asix: fill null-ptr-deref in asix_suspend" }, - "CVE-2022-23039": { - "cmt_msg": "xen/gntalloc: don't use gnttab_query_foreign_access()" - }, "CVE-2019-10220": { "cmt_msg": "Convert filldir[64]() from __put_user() to unsafe_put_user()" }, @@ -81216,9 +78518,6 @@ "CVE-2020-9383": { "cmt_msg": "floppy: check FDC index for errors before assigning it" }, - "CVE-2022-29582": { - "cmt_msg": "io_uring: fix race between timeout flush and removal" - }, "CVE-2021-38198": { "cmt_msg": "KVM: X86: MMU: Use the correct inherited permissions to get shadow page" }, @@ -81620,9 +78919,6 @@ "CVE-2020-24586": { "cmt_msg": "mac80211: prevent mixed key and fragment cache attacks" }, - "CVE-2022-0995": { - "cmt_msg": "watch_queue: Fix filter limit check" - }, "CVE-2021-0129": { "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, @@ -81632,6 +78928,9 @@ "CVE-2021-3444": { "cmt_msg": "bpf: Fix truncation handling for mod32 dst reg wrt zero" }, + "CVE-2022-32250": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier" + }, "CVE-2019-9506": { "cmt_msg": "Bluetooth: Fix faulty expression for minimum encryption key size check" }, @@ -81653,9 +78952,6 @@ "CVE-2020-35501": { "cmt_msg": "" }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, "CVE-2019-19241": { "cmt_msg": "io_uring: async workers should inherit the user creds" }, @@ -81683,9 +78979,6 @@ "CVE-2019-14835": { "cmt_msg": "vhost: make sure log_num < in_num" }, - "CVE-2022-2078": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, "CVE-2019-12379": { "cmt_msg": "consolemap: Fix a memory leaking bug in drivers/tty/vt/consolemap.c" }, @@ -81713,9 +79006,6 @@ "CVE-2019-15902": { "cmt_msg": "unknown" }, - "CVE-2022-0998": { - "cmt_msg": "vdpa: clean up get_config_size ret value handling" - }, "CVE-2019-11477": { "cmt_msg": "tcp: limit payload size of sacked skbs" }, @@ -81803,9 +79093,6 @@ "CVE-2019-19070": { "cmt_msg": "spi: gpio: prevent memory leak in spi_gpio_probe" }, - "CVE-2022-20153": { - "cmt_msg": "io_uring: return back safer resurrect" - }, "CVE-2022-23038": { "cmt_msg": "xen/grant-table: add gnttab_try_end_foreign_access()" }, @@ -81932,9 +79219,6 @@ "CVE-2019-19081": { "cmt_msg": "nfp: flower: fix memory leak in nfp_flower_spawn_vnic_reprs" }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, "CVE-2020-26560": { "cmt_msg": "" }, @@ -81998,6 +79282,12 @@ "CVE-2020-36385": { "cmt_msg": "RDMA/ucma: Rework ucma_migrate_id() to avoid races with destroy" }, + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" + }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, "CVE-2020-0009": { "cmt_msg": "staging: android: ashmem: Disallow ashmem memory from being remapped" }, @@ -82019,9 +79309,6 @@ "CVE-2022-1204": { "cmt_msg": "ax25: Fix refcount leaks caused by ax25_cb_del()" }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers" - }, "CVE-2019-17666": { "cmt_msg": "rtlwifi: Fix potential overflow on P2P code" }, @@ -82092,7 +79379,7 @@ "cmt_msg": "" }, "CVE-2020-26555": { - "cmt_msg": "" + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, "CVE-2019-20794": { "cmt_msg": "" @@ -82172,9 +79459,6 @@ "CVE-2019-19816": { "cmt_msg": "btrfs: inode: Verify inode mode to avoid NULL pointer dereference" }, - "CVE-2022-1015": { - "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." - }, "CVE-2022-1016": { "cmt_msg": "netfilter: nf_tables: initialize registers in nft_do_chain()" }, @@ -82238,9 +79522,6 @@ "CVE-2021-3178": { "cmt_msg": "nfsd4: readdirplus shouldn't return parent of export" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, "CVE-2019-15031": { "cmt_msg": "powerpc/tm: Fix restoring FP/VMX facility incorrectly on interrupts" }, @@ -82265,9 +79546,6 @@ "CVE-2022-24958": { "cmt_msg": "usb: gadget: don't release an existing dev->buf" }, - "CVE-2022-28893": { - "cmt_msg": "SUNRPC: Ensure we flush any closed sockets before xs_xprt_free()" - }, "CVE-2021-3772": { "cmt_msg": "sctp: use init_tag from inithdr for ABORT chunk" }, @@ -82352,9 +79630,6 @@ "CVE-2020-14381": { "cmt_msg": "futex: Fix inode life-time issue" }, - "CVE-2022-1158": { - "cmt_msg": "KVM: x86/mmu: do compare-and-exchange of gPTE via the user address" - }, "CVE-2019-19769": { "cmt_msg": "locks: fix a potential use-after-free problem when wakeup a waiter" }, @@ -82400,9 +79675,6 @@ "CVE-2020-12364": { "cmt_msg": "drm/i915/guc: Update to use firmware v49.0.1" }, - "CVE-2022-0500": { - "cmt_msg": "bpf: Introduce MEM_RDONLY flag" - }, "CVE-2021-0605": { "cmt_msg": "af_key: pfkey_dump needs parameter validation" }, @@ -82412,9 +79684,6 @@ "CVE-2021-4002": { "cmt_msg": "hugetlbfs: flush TLBs correctly after huge_pmd_unshare" }, - "CVE-2022-1055": { - "cmt_msg": "net: sched: fix use-after-free in tc_new_tfilter()" - }, "CVE-2022-20008": { "cmt_msg": "mmc: block: fix read single on recovery logic" }, @@ -82445,8 +79714,8 @@ "CVE-2022-0617": { "cmt_msg": "udf: Fix NULL ptr deref when converting from inline format" }, - "CVE-2022-26878": { - "cmt_msg": "" + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()" }, "CVE-2018-12930": { "cmt_msg": "" @@ -82509,7 +79778,7 @@ "cmt_msg": "RDMA/cxgb4: Do not dma memory off of the stack" }, "CVE-2019-0146": { - "cmt_msg": "" + "cmt_msg": "i40e: add num_vectors checker in iwarp handler" }, "CVE-2019-0147": { "cmt_msg": "i40e: add num_vectors checker in iwarp handler" @@ -82559,6 +79828,9 @@ "CVE-2019-19531": { "cmt_msg": "usb: yurex: Fix use-after-free in yurex_delete" }, + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default" + }, "CVE-2021-0929": { "cmt_msg": "staging/android/ion: delete dma_buf->kmap/unmap implemenation" }, @@ -82613,14 +79885,8 @@ "CVE-2021-3864": { "cmt_msg": "" }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, "CVE-2022-1652": { - "cmt_msg": "" - }, - "CVE-2022-1651": { - "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" + "cmt_msg": "floppy: use a statically allocated error counter" }, "CVE-2020-29568": { "cmt_msg": "xen/xenbus: Allow watches discard events before queueing" @@ -82754,9 +80020,6 @@ "CVE-2021-4149": { "cmt_msg": "btrfs: unlock newly allocated extent buffer after error" }, - "CVE-2021-4148": { - "cmt_msg": "mm: khugepaged: skip huge page collapse for special files" - }, "CVE-2021-3640": { "cmt_msg": "Bluetooth: sco: Fix lock_sock() blockage by memcpy_from_msg()" }, @@ -82838,12 +80101,6 @@ "CVE-2019-17133": { "cmt_msg": "cfg80211: wext: avoid copying malformed SSIDs" }, - "CVE-2022-0742": { - "cmt_msg": "ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()" - }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"" - }, "CVE-2019-19525": { "cmt_msg": "ieee802154: atusb: fix use-after-free at disconnect" }, @@ -82857,7 +80114,7 @@ "cmt_msg": "f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr()" }, "CVE-2022-1184": { - "cmt_msg": "" + "cmt_msg": "ext4: verify dir block before splitting it" }, "CVE-2019-19448": { "cmt_msg": "btrfs: only search for left_info if there is no right_info in try_merge_free_space" @@ -82913,9 +80170,6 @@ "CVE-2022-26490": { "cmt_msg": "nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION" }, - "CVE-2022-1043": { - "cmt_msg": "io_uring: fix xa_alloc_cycle() error return value check" - }, "CVE-2022-1048": { "cmt_msg": "ALSA: pcm: Fix races among concurrent hw_params and hw_free calls" }, @@ -82976,9 +80230,6 @@ "CVE-2022-0400": { "cmt_msg": "" }, - "CVE-2021-0707": { - "cmt_msg": "dmabuf: fix use-after-free of dmabuf's file->f_inode" - }, "CVE-2022-26966": { "cmt_msg": "sr9700: sanity check for packet length" }, @@ -83009,9 +80260,6 @@ "CVE-2020-25284": { "cmt_msg": "rbd: require global CAP_SYS_ADMIN for mapping and unmapping" }, - "CVE-2022-25636": { - "cmt_msg": "netfilter: nf_tables_offload: incorrect flow offload action array size" - }, "CVE-2020-29370": { "cmt_msg": "mm: slub: add missing TID bump in kmem_cache_alloc_bulk()" }, @@ -83057,9 +80305,6 @@ "CVE-2019-19526": { "cmt_msg": "NFC: pn533: fix use-after-free and memleaks" }, - "CVE-2021-33135": { - "cmt_msg": "" - }, "CVE-2019-19523": { "cmt_msg": "USB: adutux: fix use-after-free on disconnect" }, @@ -83090,12 +80335,6 @@ "CVE-2021-41864": { "cmt_msg": "bpf: Fix integer overflow in prealloc_elems_and_freelist()" }, - "CVE-2022-1998": { - "cmt_msg": "fanotify: Fix stale file descriptor in copy_event_to_user()" - }, - "CVE-2022-1852": { - "cmt_msg": "KVM: x86: avoid calling x86 emulator without a decoded instruction" - }, "CVE-2021-37576": { "cmt_msg": "KVM: PPC: Book3S: Fix H_RTAS rets buffer overflow" }, @@ -83168,9 +80407,6 @@ "CVE-2020-0431": { "cmt_msg": "HID: hid-input: clear unmapped usages" }, - "CVE-2022-0171": { - "cmt_msg": "" - }, "CVE-2010-4563": { "cmt_msg": "" }, @@ -83183,9 +80419,6 @@ "CVE-2021-3483": { "cmt_msg": "firewire: nosy: Fix a use-after-free bug in nosy_ioctl()" }, - "CVE-2022-29156": { - "cmt_msg": "RDMA/rtrs-clt: Fix possible double free in error case" - }, "CVE-2021-20177": { "cmt_msg": "netfilter: add and use nf_hook_slow_list()" }, @@ -83222,21 +80455,12 @@ "CVE-2021-3573": { "cmt_msg": "Bluetooth: use correct lock to prevent UAF of hdev object" }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, "CVE-2022-1974": { "cmt_msg": "nfc: replace improper check device_is_registered() in netlink related functions" }, "CVE-2022-1975": { "cmt_msg": "NFC: netlink: fix sleep in atomic bug when firmware download timeout" }, - "CVE-2022-1972": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" - }, "CVE-2021-28972": { "cmt_msg": "PCI: rpadlpar: Fix potential drc_name corruption in store functions" }, @@ -83294,9 +80518,6 @@ "CVE-2021-28951": { "cmt_msg": "io_uring: ensure that SQPOLL thread is started for exit" }, - "CVE-2022-1671": { - "cmt_msg": "rxrpc: fix some null-ptr-deref bugs in server_key.c" - }, "CVE-2021-3653": { "cmt_msg": "KVM: nSVM: avoid picking up unsupported bits from L2 in int_ctl (CVE-2021-3653)" }, @@ -83423,18 +80644,12 @@ "CVE-2019-15504": { "cmt_msg": "rsi: fix a double free bug in rsi_91x_deinit()" }, - "CVE-2022-1516": { - "cmt_msg": "net/x25: Fix null-ptr-deref caused by x25_disconnect" - }, "CVE-2015-2877": { "cmt_msg": "" }, "CVE-2020-9383": { "cmt_msg": "floppy: check FDC index for errors before assigning it" }, - "CVE-2022-29582": { - "cmt_msg": "io_uring: fix race between timeout flush and removal" - }, "CVE-2019-16089": { "cmt_msg": "" }, @@ -83763,9 +80978,6 @@ "CVE-2020-24586": { "cmt_msg": "mac80211: prevent mixed key and fragment cache attacks" }, - "CVE-2022-0995": { - "cmt_msg": "watch_queue: Fix filter limit check" - }, "CVE-2021-0129": { "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, @@ -83775,6 +80987,9 @@ "CVE-2021-3444": { "cmt_msg": "bpf: Fix truncation handling for mod32 dst reg wrt zero" }, + "CVE-2022-32250": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier" + }, "CVE-2020-36158": { "cmt_msg": "mwifiex: Fix possible buffer overflows in mwifiex_cmd_802_11_ad_hoc_start" }, @@ -83790,9 +81005,6 @@ "CVE-2020-35501": { "cmt_msg": "" }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, "CVE-2019-19241": { "cmt_msg": "io_uring: async workers should inherit the user creds" }, @@ -83820,9 +81032,6 @@ "CVE-2019-14835": { "cmt_msg": "vhost: make sure log_num < in_num" }, - "CVE-2022-2078": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, "CVE-2019-12379": { "cmt_msg": "consolemap: Fix a memory leaking bug in drivers/tty/vt/consolemap.c" }, @@ -83934,9 +81143,6 @@ "CVE-2019-19070": { "cmt_msg": "spi: gpio: prevent memory leak in spi_gpio_probe" }, - "CVE-2022-20153": { - "cmt_msg": "io_uring: return back safer resurrect" - }, "CVE-2022-23038": { "cmt_msg": "xen/grant-table: add gnttab_try_end_foreign_access()" }, @@ -83979,9 +81185,6 @@ "CVE-2020-25645": { "cmt_msg": "geneve: add transport ports in route lookup for geneve" }, - "CVE-2022-0998": { - "cmt_msg": "vdpa: clean up get_config_size ret value handling" - }, "CVE-2020-25643": { "cmt_msg": "hdlc_ppp: add range checks in ppp_cp_parse_cr()" }, @@ -84045,9 +81248,6 @@ "CVE-2019-19081": { "cmt_msg": "nfp: flower: fix memory leak in nfp_flower_spawn_vnic_reprs" }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, "CVE-2020-26560": { "cmt_msg": "" }, @@ -84108,6 +81308,12 @@ "CVE-2020-36385": { "cmt_msg": "RDMA/ucma: Rework ucma_migrate_id() to avoid races with destroy" }, + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" + }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, "CVE-2020-0009": { "cmt_msg": "staging: android: ashmem: Disallow ashmem memory from being remapped" }, @@ -84129,9 +81335,6 @@ "CVE-2022-1204": { "cmt_msg": "ax25: Fix refcount leaks caused by ax25_cb_del()" }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers" - }, "CVE-2019-17666": { "cmt_msg": "rtlwifi: Fix potential overflow on P2P code" }, @@ -84202,7 +81405,7 @@ "cmt_msg": "" }, "CVE-2020-26555": { - "cmt_msg": "" + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, "CVE-2019-20794": { "cmt_msg": "" @@ -84279,9 +81482,6 @@ "CVE-2019-19816": { "cmt_msg": "btrfs: inode: Verify inode mode to avoid NULL pointer dereference" }, - "CVE-2022-1015": { - "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." - }, "CVE-2022-1016": { "cmt_msg": "netfilter: nf_tables: initialize registers in nft_do_chain()" }, @@ -84345,9 +81545,6 @@ "CVE-2021-3178": { "cmt_msg": "nfsd4: readdirplus shouldn't return parent of export" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, "CVE-2019-15031": { "cmt_msg": "powerpc/tm: Fix restoring FP/VMX facility incorrectly on interrupts" }, @@ -84453,9 +81650,6 @@ "CVE-2020-14381": { "cmt_msg": "futex: Fix inode life-time issue" }, - "CVE-2022-1158": { - "cmt_msg": "KVM: x86/mmu: do compare-and-exchange of gPTE via the user address" - }, "CVE-2019-19769": { "cmt_msg": "locks: fix a potential use-after-free problem when wakeup a waiter" }, @@ -84498,9 +81692,6 @@ "CVE-2020-12364": { "cmt_msg": "drm/i915/guc: Update to use firmware v49.0.1" }, - "CVE-2022-0500": { - "cmt_msg": "bpf: Introduce MEM_RDONLY flag" - }, "CVE-2020-25639": { "cmt_msg": "drm/nouveau: bail out of nouveau_channel_new if channel init fails" }, @@ -84546,8 +81737,8 @@ "CVE-2022-0617": { "cmt_msg": "udf: Fix NULL ptr deref when converting from inline format" }, - "CVE-2022-26878": { - "cmt_msg": "" + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()" }, "CVE-2018-12930": { "cmt_msg": "" @@ -84610,7 +81801,7 @@ "cmt_msg": "RDMA/cxgb4: Do not dma memory off of the stack" }, "CVE-2019-0146": { - "cmt_msg": "" + "cmt_msg": "i40e: add num_vectors checker in iwarp handler" }, "CVE-2019-0147": { "cmt_msg": "i40e: add num_vectors checker in iwarp handler" @@ -84657,6 +81848,9 @@ "CVE-2019-19531": { "cmt_msg": "usb: yurex: Fix use-after-free in yurex_delete" }, + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default" + }, "CVE-2021-0929": { "cmt_msg": "staging/android/ion: delete dma_buf->kmap/unmap implemenation" }, @@ -84708,14 +81902,8 @@ "CVE-2021-3864": { "cmt_msg": "" }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, "CVE-2022-1652": { - "cmt_msg": "" - }, - "CVE-2022-1651": { - "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" + "cmt_msg": "floppy: use a statically allocated error counter" }, "CVE-2020-29568": { "cmt_msg": "xen/xenbus: Allow watches discard events before queueing" @@ -84828,9 +82016,6 @@ "CVE-2021-4149": { "cmt_msg": "btrfs: unlock newly allocated extent buffer after error" }, - "CVE-2021-4148": { - "cmt_msg": "mm: khugepaged: skip huge page collapse for special files" - }, "CVE-2021-3640": { "cmt_msg": "Bluetooth: sco: Fix lock_sock() blockage by memcpy_from_msg()" }, @@ -84915,12 +82100,6 @@ "CVE-2019-17133": { "cmt_msg": "cfg80211: wext: avoid copying malformed SSIDs" }, - "CVE-2022-0742": { - "cmt_msg": "ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()" - }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"" - }, "CVE-2019-19525": { "cmt_msg": "ieee802154: atusb: fix use-after-free at disconnect" }, @@ -84934,7 +82113,7 @@ "cmt_msg": "f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr()" }, "CVE-2022-1184": { - "cmt_msg": "" + "cmt_msg": "ext4: verify dir block before splitting it" }, "CVE-2019-19527": { "cmt_msg": "HID: hiddev: do cleanup in failure of opening a device" @@ -84993,9 +82172,6 @@ "CVE-2022-26490": { "cmt_msg": "nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION" }, - "CVE-2022-1043": { - "cmt_msg": "io_uring: fix xa_alloc_cycle() error return value check" - }, "CVE-2022-1048": { "cmt_msg": "ALSA: pcm: Fix races among concurrent hw_params and hw_free calls" }, @@ -85056,9 +82232,6 @@ "CVE-2022-0400": { "cmt_msg": "" }, - "CVE-2021-0707": { - "cmt_msg": "dmabuf: fix use-after-free of dmabuf's file->f_inode" - }, "CVE-2022-26966": { "cmt_msg": "sr9700: sanity check for packet length" }, @@ -85089,9 +82262,6 @@ "CVE-2020-25284": { "cmt_msg": "rbd: require global CAP_SYS_ADMIN for mapping and unmapping" }, - "CVE-2022-25636": { - "cmt_msg": "netfilter: nf_tables_offload: incorrect flow offload action array size" - }, "CVE-2020-29373": { "cmt_msg": "io_uring: grab ->fs as part of async preparation" }, @@ -85137,9 +82307,6 @@ "CVE-2019-19526": { "cmt_msg": "NFC: pn533: fix use-after-free and memleaks" }, - "CVE-2021-33135": { - "cmt_msg": "" - }, "CVE-2019-19523": { "cmt_msg": "USB: adutux: fix use-after-free on disconnect" }, @@ -85167,12 +82334,6 @@ "CVE-2021-41864": { "cmt_msg": "bpf: Fix integer overflow in prealloc_elems_and_freelist()" }, - "CVE-2022-1998": { - "cmt_msg": "fanotify: Fix stale file descriptor in copy_event_to_user()" - }, - "CVE-2022-1852": { - "cmt_msg": "KVM: x86: avoid calling x86 emulator without a decoded instruction" - }, "CVE-2021-37576": { "cmt_msg": "KVM: PPC: Book3S: Fix H_RTAS rets buffer overflow" }, @@ -85248,9 +82409,6 @@ "CVE-2020-0431": { "cmt_msg": "HID: hid-input: clear unmapped usages" }, - "CVE-2022-0171": { - "cmt_msg": "" - }, "CVE-2010-4563": { "cmt_msg": "" }, @@ -85263,9 +82421,6 @@ "CVE-2021-3483": { "cmt_msg": "firewire: nosy: Fix a use-after-free bug in nosy_ioctl()" }, - "CVE-2022-29156": { - "cmt_msg": "RDMA/rtrs-clt: Fix possible double free in error case" - }, "CVE-2021-20177": { "cmt_msg": "netfilter: add and use nf_hook_slow_list()" }, @@ -85302,21 +82457,12 @@ "CVE-2021-3573": { "cmt_msg": "Bluetooth: use correct lock to prevent UAF of hdev object" }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, "CVE-2022-1974": { "cmt_msg": "nfc: replace improper check device_is_registered() in netlink related functions" }, "CVE-2022-1975": { "cmt_msg": "NFC: netlink: fix sleep in atomic bug when firmware download timeout" }, - "CVE-2022-1972": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" - }, "CVE-2021-28972": { "cmt_msg": "PCI: rpadlpar: Fix potential drc_name corruption in store functions" }, @@ -85371,9 +82517,6 @@ "CVE-2021-28951": { "cmt_msg": "io_uring: ensure that SQPOLL thread is started for exit" }, - "CVE-2022-1671": { - "cmt_msg": "rxrpc: fix some null-ptr-deref bugs in server_key.c" - }, "CVE-2021-3653": { "cmt_msg": "KVM: nSVM: avoid picking up unsupported bits from L2 in int_ctl (CVE-2021-3653)" }, @@ -85503,18 +82646,12 @@ "CVE-2019-15504": { "cmt_msg": "rsi: fix a double free bug in rsi_91x_deinit()" }, - "CVE-2022-1516": { - "cmt_msg": "net/x25: Fix null-ptr-deref caused by x25_disconnect" - }, "CVE-2015-2877": { "cmt_msg": "" }, "CVE-2020-9383": { "cmt_msg": "floppy: check FDC index for errors before assigning it" }, - "CVE-2022-29582": { - "cmt_msg": "io_uring: fix race between timeout flush and removal" - }, "CVE-2019-16089": { "cmt_msg": "" }, @@ -85850,9 +82987,6 @@ "CVE-2020-24586": { "cmt_msg": "mac80211: prevent mixed key and fragment cache attacks" }, - "CVE-2022-0995": { - "cmt_msg": "watch_queue: Fix filter limit check" - }, "CVE-2021-0129": { "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, @@ -85865,6 +82999,9 @@ "CVE-2021-3444": { "cmt_msg": "bpf: Fix truncation handling for mod32 dst reg wrt zero" }, + "CVE-2022-32250": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier" + }, "CVE-2020-36158": { "cmt_msg": "mwifiex: Fix possible buffer overflows in mwifiex_cmd_802_11_ad_hoc_start" }, @@ -85880,9 +83017,6 @@ "CVE-2020-35501": { "cmt_msg": "" }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, "CVE-2019-19241": { "cmt_msg": "io_uring: async workers should inherit the user creds" }, @@ -85904,9 +83038,6 @@ "CVE-2021-1048": { "cmt_msg": "fix regression in \"epoll: Keep a reference on files added to the check list\"" }, - "CVE-2022-2078": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, "CVE-2019-12379": { "cmt_msg": "consolemap: Fix a memory leaking bug in drivers/tty/vt/consolemap.c" }, @@ -86003,9 +83134,6 @@ "CVE-2019-19070": { "cmt_msg": "spi: gpio: prevent memory leak in spi_gpio_probe" }, - "CVE-2022-20153": { - "cmt_msg": "io_uring: return back safer resurrect" - }, "CVE-2022-23038": { "cmt_msg": "xen/grant-table: add gnttab_try_end_foreign_access()" }, @@ -86042,9 +83170,6 @@ "CVE-2020-25645": { "cmt_msg": "geneve: add transport ports in route lookup for geneve" }, - "CVE-2022-0998": { - "cmt_msg": "vdpa: clean up get_config_size ret value handling" - }, "CVE-2020-25643": { "cmt_msg": "hdlc_ppp: add range checks in ppp_cp_parse_cr()" }, @@ -86054,9 +83179,6 @@ "CVE-2005-3660": { "cmt_msg": "" }, - "CVE-2021-33135": { - "cmt_msg": "" - }, "CVE-2021-33034": { "cmt_msg": "Bluetooth: verify AMP hci_chan before amp_destroy" }, @@ -86096,9 +83218,6 @@ "CVE-2021-3564": { "cmt_msg": "Bluetooth: fix the erroneous flush_work() order" }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, "CVE-2020-26560": { "cmt_msg": "" }, @@ -86159,6 +83278,12 @@ "CVE-2020-36385": { "cmt_msg": "RDMA/ucma: Rework ucma_migrate_id() to avoid races with destroy" }, + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" + }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, "CVE-2020-0009": { "cmt_msg": "staging: android: ashmem: Disallow ashmem memory from being remapped" }, @@ -86174,9 +83299,6 @@ "CVE-2022-1204": { "cmt_msg": "ax25: Fix refcount leaks caused by ax25_cb_del()" }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers" - }, "CVE-2019-17666": { "cmt_msg": "rtlwifi: Fix potential overflow on P2P code" }, @@ -86241,7 +83363,7 @@ "cmt_msg": "" }, "CVE-2020-26555": { - "cmt_msg": "" + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, "CVE-2019-20794": { "cmt_msg": "" @@ -86306,9 +83428,6 @@ "CVE-2020-29370": { "cmt_msg": "mm: slub: add missing TID bump in kmem_cache_alloc_bulk()" }, - "CVE-2022-1015": { - "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." - }, "CVE-2022-1016": { "cmt_msg": "netfilter: nf_tables: initialize registers in nft_do_chain()" }, @@ -86366,9 +83485,6 @@ "CVE-2021-3178": { "cmt_msg": "nfsd4: readdirplus shouldn't return parent of export" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, "CVE-2019-19252": { "cmt_msg": "vcs: prevent write access to vcsu devices" }, @@ -86510,9 +83626,6 @@ "CVE-2020-12364": { "cmt_msg": "drm/i915/guc: Update to use firmware v49.0.1" }, - "CVE-2022-0500": { - "cmt_msg": "bpf: Introduce MEM_RDONLY flag" - }, "CVE-2020-25639": { "cmt_msg": "drm/nouveau: bail out of nouveau_channel_new if channel init fails" }, @@ -86558,8 +83671,8 @@ "CVE-2022-0617": { "cmt_msg": "udf: Fix NULL ptr deref when converting from inline format" }, - "CVE-2022-26878": { - "cmt_msg": "" + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()" }, "CVE-2018-12930": { "cmt_msg": "" @@ -86621,9 +83734,6 @@ "CVE-2019-17075": { "cmt_msg": "RDMA/cxgb4: Do not dma memory off of the stack" }, - "CVE-2019-0146": { - "cmt_msg": "" - }, "CVE-2020-10942": { "cmt_msg": "vhost: Check docket sk_family instead of call getname" }, @@ -86651,6 +83761,9 @@ "CVE-2021-23133": { "cmt_msg": "net/sctp: fix race condition in sctp_destroy_sock" }, + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default" + }, "CVE-2021-0929": { "cmt_msg": "staging/android/ion: delete dma_buf->kmap/unmap implemenation" }, @@ -86702,14 +83815,8 @@ "CVE-2021-3864": { "cmt_msg": "" }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, "CVE-2022-1652": { - "cmt_msg": "" - }, - "CVE-2022-1651": { - "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" + "cmt_msg": "floppy: use a statically allocated error counter" }, "CVE-2020-29568": { "cmt_msg": "xen/xenbus: Allow watches discard events before queueing" @@ -86825,9 +83932,6 @@ "CVE-2021-4149": { "cmt_msg": "btrfs: unlock newly allocated extent buffer after error" }, - "CVE-2021-4148": { - "cmt_msg": "mm: khugepaged: skip huge page collapse for special files" - }, "CVE-2021-3640": { "cmt_msg": "Bluetooth: sco: Fix lock_sock() blockage by memcpy_from_msg()" }, @@ -86918,12 +84022,6 @@ "CVE-2019-17133": { "cmt_msg": "cfg80211: wext: avoid copying malformed SSIDs" }, - "CVE-2022-0742": { - "cmt_msg": "ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()" - }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"" - }, "CVE-2020-15437": { "cmt_msg": "serial: 8250: fix null-ptr-deref in serial8250_start_tx()" }, @@ -86940,7 +84038,7 @@ "cmt_msg": "f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr()" }, "CVE-2022-1184": { - "cmt_msg": "" + "cmt_msg": "ext4: verify dir block before splitting it" }, "CVE-2019-19526": { "cmt_msg": "NFC: pn533: fix use-after-free and memleaks" @@ -86996,9 +84094,6 @@ "CVE-2022-26490": { "cmt_msg": "nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION" }, - "CVE-2022-1043": { - "cmt_msg": "io_uring: fix xa_alloc_cycle() error return value check" - }, "CVE-2022-1048": { "cmt_msg": "ALSA: pcm: Fix races among concurrent hw_params and hw_free calls" }, @@ -87056,9 +84151,6 @@ "CVE-2022-0400": { "cmt_msg": "" }, - "CVE-2021-0707": { - "cmt_msg": "dmabuf: fix use-after-free of dmabuf's file->f_inode" - }, "CVE-2022-26966": { "cmt_msg": "sr9700: sanity check for packet length" }, @@ -87086,9 +84178,6 @@ "CVE-2020-29374": { "cmt_msg": "gup: document and work around \"COW can break either way\" issue" }, - "CVE-2022-25636": { - "cmt_msg": "netfilter: nf_tables_offload: incorrect flow offload action array size" - }, "CVE-2020-29373": { "cmt_msg": "io_uring: grab ->fs as part of async preparation" }, @@ -87155,12 +84244,6 @@ "CVE-2021-41864": { "cmt_msg": "bpf: Fix integer overflow in prealloc_elems_and_freelist()" }, - "CVE-2022-1998": { - "cmt_msg": "fanotify: Fix stale file descriptor in copy_event_to_user()" - }, - "CVE-2022-1852": { - "cmt_msg": "KVM: x86: avoid calling x86 emulator without a decoded instruction" - }, "CVE-2021-37576": { "cmt_msg": "KVM: PPC: Book3S: Fix H_RTAS rets buffer overflow" }, @@ -87236,9 +84319,6 @@ "CVE-2020-0431": { "cmt_msg": "HID: hid-input: clear unmapped usages" }, - "CVE-2022-0171": { - "cmt_msg": "" - }, "CVE-2010-4563": { "cmt_msg": "" }, @@ -87251,9 +84331,6 @@ "CVE-2021-3483": { "cmt_msg": "firewire: nosy: Fix a use-after-free bug in nosy_ioctl()" }, - "CVE-2022-29156": { - "cmt_msg": "RDMA/rtrs-clt: Fix possible double free in error case" - }, "CVE-2021-20177": { "cmt_msg": "netfilter: add and use nf_hook_slow_list()" }, @@ -87290,21 +84367,12 @@ "CVE-2021-3573": { "cmt_msg": "Bluetooth: use correct lock to prevent UAF of hdev object" }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, "CVE-2022-1974": { "cmt_msg": "nfc: replace improper check device_is_registered() in netlink related functions" }, "CVE-2022-1975": { "cmt_msg": "NFC: netlink: fix sleep in atomic bug when firmware download timeout" }, - "CVE-2022-1972": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" - }, "CVE-2021-20292": { "cmt_msg": "drm/ttm/nouveau: don't call tt destroy callback on alloc failure." }, @@ -87347,9 +84415,6 @@ "CVE-2021-28951": { "cmt_msg": "io_uring: ensure that SQPOLL thread is started for exit" }, - "CVE-2022-1671": { - "cmt_msg": "rxrpc: fix some null-ptr-deref bugs in server_key.c" - }, "CVE-2021-3653": { "cmt_msg": "KVM: nSVM: avoid picking up unsupported bits from L2 in int_ctl (CVE-2021-3653)" }, @@ -87467,18 +84532,12 @@ "CVE-2021-44879": { "cmt_msg": "f2fs: fix to do sanity check on inode type during garbage collection" }, - "CVE-2022-1516": { - "cmt_msg": "net/x25: Fix null-ptr-deref caused by x25_disconnect" - }, "CVE-2015-2877": { "cmt_msg": "" }, "CVE-2020-9383": { "cmt_msg": "floppy: check FDC index for errors before assigning it" }, - "CVE-2022-29582": { - "cmt_msg": "io_uring: fix race between timeout flush and removal" - }, "CVE-2019-16089": { "cmt_msg": "" }, @@ -87592,6 +84651,10 @@ "CVE-2021-0129": { "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical", "cmt_id": "58cca5ec43be72a1af95f11966381e9953b0c9f5" + }, + "CVE-2020-26555": { + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical", + "cmt_id": "58cca5ec43be72a1af95f11966381e9953b0c9f5" } }, "5.12.8": { @@ -87773,9 +84836,6 @@ "CVE-2020-26557": { "cmt_msg": "" }, - "CVE-2020-26555": { - "cmt_msg": "" - }, "CVE-2019-20794": { "cmt_msg": "" }, @@ -87788,9 +84848,6 @@ "CVE-2021-45095": { "cmt_msg": "phonet: refcount leak in pep_sock_accep" }, - "CVE-2022-1998": { - "cmt_msg": "fanotify: Fix stale file descriptor in copy_event_to_user()" - }, "CVE-2022-0001": { "cmt_msg": "x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE" }, @@ -87827,6 +84884,9 @@ "CVE-2021-39698": { "cmt_msg": "wait: add wake_up_pollfree()" }, + "CVE-2022-32250": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier" + }, "CVE-2022-0644": { "cmt_msg": "vfs: check fd has read access in kernel_read_file_from_fd()" }, @@ -87836,8 +84896,8 @@ "CVE-2020-27820": { "cmt_msg": "drm/nouveau: use drm_dev_unplug() during device removal" }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"" + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()" }, "CVE-2020-24503": { "cmt_msg": "" @@ -87872,9 +84932,6 @@ "CVE-2021-35477": { "cmt_msg": "bpf: Introduce BPF nospec instruction for mitigating Spectre v4" }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, "CVE-2021-3864": { "cmt_msg": "" }, @@ -87884,14 +84941,11 @@ "CVE-2019-19814": { "cmt_msg": "" }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, "CVE-2022-1015": { "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." }, "CVE-2022-1652": { - "cmt_msg": "" + "cmt_msg": "floppy: use a statically allocated error counter" }, "CVE-2022-1651": { "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" @@ -87962,9 +85016,6 @@ "CVE-2008-2544": { "cmt_msg": "" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, "CVE-2021-34556": { "cmt_msg": "bpf: Introduce BPF nospec instruction for mitigating Spectre v4" }, @@ -87984,7 +85035,7 @@ "cmt_msg": "" }, "CVE-2022-0171": { - "cmt_msg": "" + "cmt_msg": "KVM: SEV: add cache flush to solve SEV cache incoherency issues" }, "CVE-2010-4563": { "cmt_msg": "" @@ -88112,9 +85163,6 @@ "CVE-2022-20148": { "cmt_msg": "f2fs: fix UAF in f2fs_available_free_memory" }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, "CVE-2022-1974": { "cmt_msg": "nfc: replace improper check device_is_registered() in netlink related functions" }, @@ -88140,7 +85188,7 @@ "cmt_msg": "KVM: s390: Return error on SIDA memop on normal guest" }, "CVE-2021-33135": { - "cmt_msg": "" + "cmt_msg": "x86/sgx: Free backing memory after faulting the enclave page" }, "CVE-2022-1508": { "cmt_msg": "io_uring: reexpand under-reexpanded iters" @@ -88190,6 +85238,9 @@ "CVE-2020-0347": { "cmt_msg": "" }, + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default" + }, "CVE-2021-3714": { "cmt_msg": "" }, @@ -88223,9 +85274,6 @@ "CVE-2021-20321": { "cmt_msg": "ovl: fix missing negative dentry check in ovl_rename()" }, - "CVE-2022-0742": { - "cmt_msg": "ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()" - }, "CVE-2022-27223": { "cmt_msg": "USB: gadget: validate endpoint index for xilinx udc" }, @@ -88263,7 +85311,7 @@ "cmt_msg": "f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr()" }, "CVE-2022-1184": { - "cmt_msg": "" + "cmt_msg": "ext4: verify dir block before splitting it" }, "CVE-2022-20008": { "cmt_msg": "mmc: block: fix read single on recovery logic" @@ -88310,9 +85358,6 @@ "CVE-2018-17977": { "cmt_msg": "" }, - "CVE-2022-26878": { - "cmt_msg": "" - }, "CVE-2022-29582": { "cmt_msg": "io_uring: fix race between timeout flush and removal" }, @@ -88361,15 +85406,18 @@ "CVE-2022-1195": { "cmt_msg": "hamradio: improve the incomplete fix to avoid NPD" }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, "CVE-2021-4202": { "cmt_msg": "NFC: reorganize the functions in nci_request" }, "CVE-2021-4203": { "cmt_msg": "af_unix: fix races in sk_peer_pid and sk_peer_cred accesses" }, + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" + }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, "CVE-2022-22942": { "cmt_msg": "drm/vmwgfx: Fix stale file descriptors on failed usercopy" }, @@ -88424,12 +85472,6 @@ "CVE-2021-45402": { "cmt_msg": "bpf: Fix signed bounds propagation after mov32" }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers" - }, - "CVE-2019-0146": { - "cmt_msg": "" - }, "CVE-2019-16089": { "cmt_msg": "" }, @@ -88475,9 +85517,6 @@ "CVE-2022-30594": { "cmt_msg": "ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE" }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" - }, "CVE-2021-38204": { "cmt_msg": "usb: max-3421: Prevent corruption of freed memory" }, @@ -88687,9 +85726,6 @@ "CVE-2020-26557": { "cmt_msg": "" }, - "CVE-2020-26555": { - "cmt_msg": "" - }, "CVE-2019-20794": { "cmt_msg": "" }, @@ -88732,6 +85768,9 @@ "CVE-2021-39698": { "cmt_msg": "wait: add wake_up_pollfree()" }, + "CVE-2022-32250": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier" + }, "CVE-2022-0644": { "cmt_msg": "vfs: check fd has read access in kernel_read_file_from_fd()" }, @@ -88741,8 +85780,8 @@ "CVE-2020-27820": { "cmt_msg": "drm/nouveau: use drm_dev_unplug() during device removal" }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"" + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()" }, "CVE-2020-24503": { "cmt_msg": "" @@ -88774,9 +85813,6 @@ "CVE-2021-43267": { "cmt_msg": "tipc: fix size validations for the MSG_CRYPTO type" }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, "CVE-2021-3864": { "cmt_msg": "" }, @@ -88786,14 +85822,11 @@ "CVE-2019-19814": { "cmt_msg": "" }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, "CVE-2022-1015": { "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." }, "CVE-2022-1652": { - "cmt_msg": "" + "cmt_msg": "floppy: use a statically allocated error counter" }, "CVE-2022-1651": { "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" @@ -88858,9 +85891,6 @@ "CVE-2008-2544": { "cmt_msg": "" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, "CVE-2022-0435": { "cmt_msg": "tipc: improve size validations for received domain records" }, @@ -88880,7 +85910,7 @@ "cmt_msg": "" }, "CVE-2022-0171": { - "cmt_msg": "" + "cmt_msg": "KVM: SEV: add cache flush to solve SEV cache incoherency issues" }, "CVE-2010-4563": { "cmt_msg": "" @@ -89005,9 +86035,6 @@ "CVE-2022-20148": { "cmt_msg": "f2fs: fix UAF in f2fs_available_free_memory" }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, "CVE-2022-1974": { "cmt_msg": "nfc: replace improper check device_is_registered() in netlink related functions" }, @@ -89030,7 +86057,7 @@ "cmt_msg": "KVM: s390: Return error on SIDA memop on normal guest" }, "CVE-2021-33135": { - "cmt_msg": "" + "cmt_msg": "x86/sgx: Free backing memory after faulting the enclave page" }, "CVE-2022-1508": { "cmt_msg": "io_uring: reexpand under-reexpanded iters" @@ -89080,6 +86107,9 @@ "CVE-2020-0347": { "cmt_msg": "" }, + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default" + }, "CVE-2021-3714": { "cmt_msg": "" }, @@ -89147,7 +86177,7 @@ "cmt_msg": "f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr()" }, "CVE-2022-1184": { - "cmt_msg": "" + "cmt_msg": "ext4: verify dir block before splitting it" }, "CVE-2022-20008": { "cmt_msg": "mmc: block: fix read single on recovery logic" @@ -89236,15 +86266,18 @@ "CVE-2022-1195": { "cmt_msg": "hamradio: improve the incomplete fix to avoid NPD" }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, "CVE-2021-4202": { "cmt_msg": "NFC: reorganize the functions in nci_request" }, "CVE-2021-4203": { "cmt_msg": "af_unix: fix races in sk_peer_pid and sk_peer_cred accesses" }, + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" + }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, "CVE-2022-22942": { "cmt_msg": "drm/vmwgfx: Fix stale file descriptors on failed usercopy" }, @@ -89287,12 +86320,6 @@ "CVE-2021-45402": { "cmt_msg": "bpf: Fix signed bounds propagation after mov32" }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers" - }, - "CVE-2019-0146": { - "cmt_msg": "" - }, "CVE-2019-16089": { "cmt_msg": "" }, @@ -89332,9 +86359,6 @@ "CVE-2022-30594": { "cmt_msg": "ptrace: Check PTRACE_O_SUSPEND_SECCOMP permission on PTRACE_SEIZE" }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" - }, "CVE-2022-21499": { "cmt_msg": "lockdown: also lock down previous kgdb use" }, @@ -89720,6 +86744,10 @@ "CVE-2021-0129": { "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical", "cmt_id": "d8d261c7cfb3a5dd921b4aeeb944718afc3f3961" + }, + "CVE-2020-26555": { + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical", + "cmt_id": "d8d261c7cfb3a5dd921b4aeeb944718afc3f3961" } }, "5.10.42": { @@ -89925,10 +86953,6 @@ } }, "5.10.61": { - "CVE-2022-1043": { - "cmt_msg": "io_uring: fix xa_alloc_cycle() error return value check", - "cmt_id": "695ab28a7fa107d0350ab19eba8ec89fac45a95d" - }, "CVE-2021-42008": { "cmt_msg": "net: 6pack: fix slab-out-of-bounds in decode_data", "cmt_id": "85e0518f181a0ff060f5543d2655fb841a83d653" @@ -90257,10 +87281,6 @@ "cmt_msg": "cgroup-v1: Require capabilities to set release_agent", "cmt_id": "1fc3444cda9a78c65b769e3fa93455e09ff7a0d3" }, - "CVE-2022-1998": { - "cmt_msg": "fanotify: Fix stale file descriptor in copy_event_to_user()", - "cmt_id": "7b4741644cf718c422187e74fb07661ef1d68e85" - }, "CVE-2022-1055": { "cmt_msg": "net: sched: fix use-after-free in tc_new_tfilter()", "cmt_id": "e7be56926397cf9d992be8913f74a76152f8f08d" @@ -90305,10 +87325,6 @@ "cmt_msg": "netfilter: nf_tables_offload: incorrect flow offload action array size", "cmt_id": "68f19845f580a1d3ac1ef40e95b0250804e046bb" }, - "CVE-2022-29156": { - "cmt_msg": "RDMA/rtrs-clt: Fix possible double free in error case", - "cmt_id": "8260f1800f83e667f26c80baa7f0b9d92ae271d7" - }, "CVE-2022-27223": { "cmt_msg": "USB: gadget: validate endpoint index for xilinx udc", "cmt_id": "bfa8ffbaaaaf9752f66bc7cabcef2de715e7621f" @@ -90384,12 +87400,6 @@ "cmt_id": "648895da69ced90ca770fd941c3d9479a9d72c16" } }, - "5.10.107": { - "CVE-2022-20153": { - "cmt_msg": "io_uring: return back safer resurrect", - "cmt_id": "dc1163203ae6e24b86168390fe5b4a3295fcba7f" - } - }, "5.10.108": { "CVE-2022-27666": { "cmt_msg": "esp: Fix possible buffer overflow in ESP transformation", @@ -90466,10 +87476,6 @@ "CVE-2022-1204": { "cmt_msg": "ax25: Fix refcount leaks caused by ax25_cb_del()", "cmt_id": "b20a5ab0f5fb175750c6bafd4cf12daccf00c738" - }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers", - "cmt_id": "f934fa478dd17411bc6884153dc824ff9e7505d8" } }, "5.10.113": { @@ -90479,6 +87485,10 @@ } }, "5.10.114": { + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default", + "cmt_id": "54c028cfc49624bfc27a571b94edecc79bbaaab4" + }, "CVE-2022-1836": { "cmt_msg": "floppy: disable FDRAWCMD by default", "cmt_id": "54c028cfc49624bfc27a571b94edecc79bbaaab4" @@ -90513,13 +87523,13 @@ } }, "5.10.118": { + "CVE-2022-1652": { + "cmt_msg": "floppy: use a statically allocated error counter", + "cmt_id": "911b36267855501f7f80a75927c128c0ac03fe58" + }, "CVE-2022-1729": { "cmt_msg": "perf: Fix sys_perf_event_open() race against self", "cmt_id": "3ee8e109c3c316073a3e0f83ec0769c7ee8a7375" - }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"", - "cmt_id": "f3f2247ac31cb71d1f05f56536df5946c6652f4a" } }, "5.10.119": { @@ -90541,25 +87551,37 @@ "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()", "cmt_id": "c0aff1faf66b6b7a19103f83e6a5d0fdc64b9048" }, - "CVE-2022-1852": { - "cmt_msg": "KVM: x86: avoid calling x86 emulator without a decoded instruction", - "cmt_id": "3d8fc6e28f321d753ab727e3c3e740daf36a8fa3" + "CVE-2022-1966": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier", + "cmt_id": "ea62d169b6e731e0b54abda1d692406f6bc6a696" }, "CVE-2022-1972": { "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()", "cmt_id": "c0aff1faf66b6b7a19103f83e6a5d0fdc64b9048" }, - "CVE-2022-1966": { + "CVE-2022-32250": { "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier", "cmt_id": "ea62d169b6e731e0b54abda1d692406f6bc6a696" } }, + "5.10.121": { + "CVE-2022-1184": { + "cmt_msg": "ext4: verify dir block before splitting it", + "cmt_id": "da2f05919238c7bdc6e28c79539f55c8355408bb" + } + }, "5.10.122": { "CVE-2022-32981": { "cmt_msg": "powerpc/32: Fix overread/overwrite of thread_struct via ptrace", "cmt_id": "3be74fc0afbeadc2aff8dc69f3bf9716fbe66486" } }, + "5.10.125": { + "CVE-2022-32296": { + "cmt_msg": "tcp: increase source port perturb table to 2^16", + "cmt_id": "9429b75bc271b6f29e50dbb0ee0751800ff87dd9" + } + }, "outstanding": { "CVE-2020-26556": { "cmt_msg": "" @@ -90567,9 +87589,6 @@ "CVE-2020-26557": { "cmt_msg": "" }, - "CVE-2020-26555": { - "cmt_msg": "" - }, "CVE-2019-20794": { "cmt_msg": "" }, @@ -90621,18 +87640,6 @@ "CVE-2019-19814": { "cmt_msg": "" }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, - "CVE-2022-1015": { - "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." - }, - "CVE-2022-1652": { - "cmt_msg": "" - }, - "CVE-2022-1651": { - "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" - }, "CVE-2021-26934": { "cmt_msg": "" }, @@ -90651,9 +87658,6 @@ "CVE-2008-2544": { "cmt_msg": "" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, "CVE-2019-15239": { "cmt_msg": "unknown" }, @@ -90699,27 +87703,15 @@ "CVE-2012-4542": { "cmt_msg": "" }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, "CVE-2013-7445": { "cmt_msg": "" }, "CVE-2005-3660": { "cmt_msg": "" }, - "CVE-2021-33135": { - "cmt_msg": "" - }, "CVE-2022-1508": { "cmt_msg": "io_uring: reexpand under-reexpanded iters" }, - "CVE-2022-32296": { - "cmt_msg": "tcp: increase source port perturb table to 2^16" - }, "CVE-2021-0695": { "cmt_msg": "" }, @@ -90741,9 +87733,6 @@ "CVE-2021-3714": { "cmt_msg": "" }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, "CVE-2019-12456": { "cmt_msg": "" }, @@ -90759,9 +87748,6 @@ "CVE-2020-12363": { "cmt_msg": "drm/i915/guc: Update to use firmware v49.0.1" }, - "CVE-2022-0742": { - "cmt_msg": "ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()" - }, "CVE-2020-12364": { "cmt_msg": "drm/i915/guc: Update to use firmware v49.0.1" }, @@ -90771,9 +87757,6 @@ "CVE-2022-0480": { "cmt_msg": "memcg: enable accounting for file lock caches" }, - "CVE-2022-1184": { - "cmt_msg": "" - }, "CVE-2022-25265": { "cmt_msg": "" }, @@ -90789,11 +87772,8 @@ "CVE-2018-17977": { "cmt_msg": "" }, - "CVE-2022-26878": { - "cmt_msg": "" - }, - "CVE-2022-1116": { - "cmt_msg": "" + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()" }, "CVE-2010-5321": { "cmt_msg": "" @@ -90813,9 +87793,18 @@ "CVE-2021-39802": { "cmt_msg": "" }, + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" + }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, "CVE-2021-4204": { "cmt_msg": "bpf: Generalize check_ctx_reg for reuse with other types" }, + "CVE-2022-1116": { + "cmt_msg": "" + }, "CVE-2021-3542": { "cmt_msg": "" }, @@ -90838,10 +87827,7 @@ "cmt_msg": "" }, "CVE-2022-0171": { - "cmt_msg": "" - }, - "CVE-2019-0146": { - "cmt_msg": "" + "cmt_msg": "KVM: SEV: add cache flush to solve SEV cache incoherency issues" }, "CVE-2019-16089": { "cmt_msg": "" @@ -90852,9 +87838,6 @@ "CVE-2022-1679": { "cmt_msg": "" }, - "CVE-2022-1671": { - "cmt_msg": "rxrpc: fix some null-ptr-deref bugs in server_key.c" - }, "CVE-2021-3847": { "cmt_msg": "" }, @@ -90866,9 +87849,6 @@ }, "CVE-2021-32078": { "cmt_msg": "ARM: footbridge: remove personal server platform" - }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" } } }, @@ -91174,7 +88154,7 @@ "cmt_msg": "" }, "CVE-2020-26555": { - "cmt_msg": "" + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, "CVE-2019-20794": { "cmt_msg": "" @@ -91185,15 +88165,9 @@ "CVE-2020-35501": { "cmt_msg": "" }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, "CVE-2021-45095": { "cmt_msg": "phonet: refcount leak in pep_sock_accep" }, - "CVE-2022-1998": { - "cmt_msg": "fanotify: Fix stale file descriptor in copy_event_to_user()" - }, "CVE-2022-0001": { "cmt_msg": "x86/speculation: Rename RETPOLINE_AMD to RETPOLINE_LFENCE" }, @@ -91212,9 +88186,6 @@ "CVE-2022-25265": { "cmt_msg": "" }, - "CVE-2022-1852": { - "cmt_msg": "KVM: x86: avoid calling x86 emulator without a decoded instruction" - }, "CVE-2020-24587": { "cmt_msg": "mac80211: prevent mixed key and fragment cache attacks" }, @@ -91248,8 +88219,8 @@ "CVE-2020-27820": { "cmt_msg": "drm/nouveau: use drm_dev_unplug() during device removal" }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"" + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()" }, "CVE-2020-24503": { "cmt_msg": "" @@ -91293,9 +88264,6 @@ "CVE-2021-35477": { "cmt_msg": "bpf: Introduce BPF nospec instruction for mitigating Spectre v4" }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, "CVE-2022-0998": { "cmt_msg": "vdpa: clean up get_config_size ret value handling" }, @@ -91311,17 +88279,8 @@ "CVE-2022-25636": { "cmt_msg": "netfilter: nf_tables_offload: incorrect flow offload action array size" }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, - "CVE-2022-1015": { - "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." - }, "CVE-2022-1652": { - "cmt_msg": "" - }, - "CVE-2022-1651": { - "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" + "cmt_msg": "floppy: use a statically allocated error counter" }, "CVE-2022-1016": { "cmt_msg": "netfilter: nf_tables: initialize registers in nft_do_chain()" @@ -91401,18 +88360,12 @@ "CVE-2008-2544": { "cmt_msg": "" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, "CVE-2021-34556": { "cmt_msg": "bpf: Introduce BPF nospec instruction for mitigating Spectre v4" }, "CVE-2021-46283": { "cmt_msg": "netfilter: nf_tables: initialize set before expression setup" }, - "CVE-2022-29156": { - "cmt_msg": "RDMA/rtrs-clt: Fix possible double free in error case" - }, "CVE-2021-4135": { "cmt_msg": "netdevsim: Zero-initialize memory for new map's value in function nsim_bpf_map_alloc" }, @@ -91435,7 +88388,7 @@ "cmt_msg": "ath10k: drop fragments with multicast DA for PCIe" }, "CVE-2022-0171": { - "cmt_msg": "" + "cmt_msg": "KVM: SEV: add cache flush to solve SEV cache incoherency issues" }, "CVE-2020-26147": { "cmt_msg": "mac80211: assure all fragments are encrypted" @@ -91606,7 +88559,7 @@ "cmt_msg": "KVM: s390: Return error on SIDA memop on normal guest" }, "CVE-2021-33135": { - "cmt_msg": "" + "cmt_msg": "x86/sgx: Free backing memory after faulting the enclave page" }, "CVE-2022-1508": { "cmt_msg": "io_uring: reexpand under-reexpanded iters" @@ -91662,6 +88615,9 @@ "CVE-2020-0347": { "cmt_msg": "" }, + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default" + }, "CVE-2021-3564": { "cmt_msg": "Bluetooth: fix the erroneous flush_work() order" }, @@ -91698,17 +88654,14 @@ "CVE-2021-20321": { "cmt_msg": "ovl: fix missing negative dentry check in ovl_rename()" }, - "CVE-2022-0742": { - "cmt_msg": "ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()" - }, "CVE-2022-27223": { "cmt_msg": "USB: gadget: validate endpoint index for xilinx udc" }, "CVE-2022-24958": { "cmt_msg": "usb: gadget: don't release an existing dev->buf" }, - "CVE-2022-20153": { - "cmt_msg": "io_uring: return back safer resurrect" + "CVE-2022-24959": { + "cmt_msg": "yam: fix a memory leak in yam_siocdevprivate()" }, "CVE-2022-0500": { "cmt_msg": "bpf: Introduce MEM_RDONLY flag" @@ -91747,7 +88700,7 @@ "cmt_msg": "tipc: fix size validations for the MSG_CRYPTO type" }, "CVE-2022-1184": { - "cmt_msg": "" + "cmt_msg": "ext4: verify dir block before splitting it" }, "CVE-2022-20008": { "cmt_msg": "mmc: block: fix read single on recovery logic" @@ -91767,12 +88720,12 @@ "CVE-2022-20154": { "cmt_msg": "sctp: use call_rcu to free endpoint" }, - "CVE-2022-1199": { - "cmt_msg": "ax25: Fix NULL pointer dereference in ax25_kill_by_device" - }, "CVE-2022-1204": { "cmt_msg": "ax25: Fix refcount leaks caused by ax25_cb_del()" }, + "CVE-2022-32250": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier" + }, "CVE-2021-4083": { "cmt_msg": "fget: check that the fd still exists after getting a ref to it" }, @@ -91809,9 +88762,6 @@ "CVE-2018-17977": { "cmt_msg": "" }, - "CVE-2022-26878": { - "cmt_msg": "" - }, "CVE-2022-29582": { "cmt_msg": "io_uring: fix race between timeout flush and removal" }, @@ -91842,8 +88792,8 @@ "CVE-2022-1198": { "cmt_msg": "drivers: hamradio: 6pack: fix UAF bug caused by mod_timer()" }, - "CVE-2022-1043": { - "cmt_msg": "io_uring: fix xa_alloc_cycle() error return value check" + "CVE-2022-1199": { + "cmt_msg": "ax25: Fix NULL pointer dereference in ax25_kill_by_device" }, "CVE-2021-39801": { "cmt_msg": "" @@ -91860,15 +88810,18 @@ "CVE-2022-1195": { "cmt_msg": "hamradio: improve the incomplete fix to avoid NPD" }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, "CVE-2021-33098": { "cmt_msg": "ixgbe: fix large MTU request from VF" }, "CVE-2021-4203": { "cmt_msg": "af_unix: fix races in sk_peer_pid and sk_peer_cred accesses" }, + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" + }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, "CVE-2022-22942": { "cmt_msg": "drm/vmwgfx: Fix stale file descriptors on failed usercopy" }, @@ -91878,9 +88831,6 @@ "CVE-2022-21499": { "cmt_msg": "lockdown: also lock down previous kgdb use" }, - "CVE-2022-24959": { - "cmt_msg": "yam: fix a memory leak in yam_siocdevprivate()" - }, "CVE-2021-3732": { "cmt_msg": "ovl: prevent private clone if bind mount is not allowed" }, @@ -91926,12 +88876,6 @@ "CVE-2021-45402": { "cmt_msg": "bpf: Fix signed bounds propagation after mov32" }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers" - }, - "CVE-2019-0146": { - "cmt_msg": "" - }, "CVE-2019-16089": { "cmt_msg": "" }, @@ -91986,9 +88930,6 @@ "CVE-2020-26139": { "cmt_msg": "mac80211: do not accept/forward invalid EAPOL frames" }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" - }, "CVE-2021-38204": { "cmt_msg": "usb: max-3421: Prevent corruption of freed memory" }, @@ -92227,6 +89168,10 @@ "cmt_msg": "watch_queue: Fix filter limit check", "cmt_id": "b36588ebbcef74583824c08352e75838d6fb4ff2" }, + "CVE-2021-33135": { + "cmt_msg": "x86/sgx: Free backing memory after faulting the enclave page", + "cmt_id": "248c6347720200b9e5f79a4339ddbe4ef0074d36" + }, "CVE-2022-1198": { "cmt_msg": "drivers: hamradio: 6pack: fix UAF bug caused by mod_timer()", "cmt_id": "4356343fb70c899901bce33acedf4fede797d21f" @@ -92235,10 +89180,6 @@ "cmt_msg": "ax25: Fix NULL pointer dereference in ax25_kill_by_device", "cmt_id": "1d83a95214bc516bd8778fa423cb8383d925f8c8" }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"", - "cmt_id": "62b27d925655999350d0ea775a025919fd88d27f" - }, "CVE-2022-27666": { "cmt_msg": "esp: Fix possible buffer overflow in ESP transformation", "cmt_id": "9afe83f62aac348db1facb28bfc106109a06e44d" @@ -92283,6 +89224,10 @@ "cmt_msg": "KVM: x86/mmu: do compare-and-exchange of gPTE via the user address", "cmt_id": "9a611c57530050dc359a83177c2f97678b1f961e" }, + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()", + "cmt_id": "9e38128f8bd1d4f2244d8a393bc5dc204a99a541" + }, "CVE-2022-1353": { "cmt_msg": "af_key: add __GFP_ZERO flag for compose_sadb_supported in function pfkey_register", "cmt_id": "16d974fa4ddda389bf58bb5e4fc8cad8910ba66d" @@ -92333,9 +89278,6 @@ "CVE-2020-26557": { "cmt_msg": "" }, - "CVE-2020-26555": { - "cmt_msg": "" - }, "CVE-2019-20794": { "cmt_msg": "" }, @@ -92354,6 +89296,9 @@ "CVE-2022-0998": { "cmt_msg": "vdpa: clean up get_config_size ret value handling" }, + "CVE-2022-32250": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier" + }, "CVE-2020-24503": { "cmt_msg": "" }, @@ -92373,7 +89318,7 @@ "cmt_msg": "" }, "CVE-2022-1652": { - "cmt_msg": "" + "cmt_msg": "floppy: use a statically allocated error counter" }, "CVE-2022-1852": { "cmt_msg": "KVM: x86: avoid calling x86 emulator without a decoded instruction" @@ -92402,9 +89347,6 @@ "CVE-2008-2544": { "cmt_msg": "" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, "CVE-2019-15239": { "cmt_msg": "unknown" }, @@ -92412,7 +89354,7 @@ "cmt_msg": "" }, "CVE-2022-0171": { - "cmt_msg": "" + "cmt_msg": "KVM: SEV: add cache flush to solve SEV cache incoherency issues" }, "CVE-2010-4563": { "cmt_msg": "" @@ -92462,9 +89404,6 @@ "CVE-2022-29968": { "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, "CVE-2022-1974": { "cmt_msg": "nfc: replace improper check device_is_registered() in netlink related functions" }, @@ -92480,9 +89419,6 @@ "CVE-2005-3660": { "cmt_msg": "" }, - "CVE-2021-33135": { - "cmt_msg": "" - }, "CVE-2022-24122": { "cmt_msg": "ucount: Make get_ucount a safe get_user replacement" }, @@ -92504,6 +89440,9 @@ "CVE-2020-0347": { "cmt_msg": "" }, + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default" + }, "CVE-2021-3714": { "cmt_msg": "" }, @@ -92520,9 +89459,9 @@ "cmt_msg": "" }, "CVE-2022-1184": { - "cmt_msg": "" + "cmt_msg": "ext4: verify dir block before splitting it" }, - "CVE-2022-25265": { + "CVE-2011-4917": { "cmt_msg": "" }, "CVE-2019-15902": { @@ -92561,6 +89500,12 @@ "CVE-2021-39802": { "cmt_msg": "" }, + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" + }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, "CVE-2021-4204": { "cmt_msg": "bpf: Generalize check_ctx_reg for reuse with other types" }, @@ -92585,12 +89530,6 @@ "CVE-2022-1204": { "cmt_msg": "ax25: Fix refcount leaks caused by ax25_cb_del()" }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers" - }, - "CVE-2019-0146": { - "cmt_msg": "" - }, "CVE-2019-16089": { "cmt_msg": "" }, @@ -92606,7 +89545,7 @@ "CVE-2022-1836": { "cmt_msg": "floppy: disable FDRAWCMD by default" }, - "CVE-2011-4917": { + "CVE-2022-25265": { "cmt_msg": "" }, "CVE-2013-7445": { @@ -92659,6 +89598,10 @@ "cmt_msg": "KVM: x86/mmu: do compare-and-exchange of gPTE via the user address", "cmt_id": "5051c04d70c6e035c2c923c04fbe015a4468b08d" }, + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()", + "cmt_id": "9fa2b94443ff41cdecdff6f4d4324d83af01089a" + }, "CVE-2022-1204": { "cmt_msg": "ax25: Fix refcount leaks caused by ax25_cb_del()", "cmt_id": "534156dd4ed768e30a43de0036f45dca7c54818f" @@ -92717,6 +89660,10 @@ "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb", "cmt_id": "77089e6ff273f43c42e99a690ae45ee39a6a62de" }, + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default", + "cmt_id": "d91ca05d52fabf68c0376bcfeed1a52be68a8e1b" + }, "CVE-2022-1836": { "cmt_msg": "floppy: disable FDRAWCMD by default", "cmt_id": "d91ca05d52fabf68c0376bcfeed1a52be68a8e1b" @@ -92753,13 +89700,17 @@ } }, "5.17.10": { - "CVE-2022-21499": { - "cmt_msg": "lockdown: also lock down previous kgdb use", - "cmt_id": "281d356a035132f2603724ee0f04767d70e2e98e" + "CVE-2022-1652": { + "cmt_msg": "floppy: use a statically allocated error counter", + "cmt_id": "88887ced7803132ed357a42d050560a2fb5c7ce6" }, "CVE-2022-1729": { "cmt_msg": "perf: Fix sys_perf_event_open() race against self", "cmt_id": "22fb2974224c9836eeaf0d24fdd481fcdaa0aea8" + }, + "CVE-2022-21499": { + "cmt_msg": "lockdown: also lock down previous kgdb use", + "cmt_id": "281d356a035132f2603724ee0f04767d70e2e98e" } }, "5.17.12": { @@ -92769,6 +89720,10 @@ } }, "5.17.13": { + "CVE-2022-32250": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier", + "cmt_id": "d8db0465bcc4d4b54ecfb67b820ed26eb1440da7" + }, "CVE-2022-2078": { "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()", "cmt_id": "c88f3e3d243d701586239c5b69356ec2b1fd05f1" @@ -92787,12 +89742,24 @@ } }, "5.17.14": { + "CVE-2022-1184": { + "cmt_msg": "ext4: verify dir block before splitting it", + "cmt_id": "4b1cd51256e9267140153f04f4e62148adb2908c" + }, "CVE-2022-1973": { "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay", "cmt_id": "2088cc00491e8d25a99d0f247df843e9c3df2040" } }, "5.17.15": { + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()", + "cmt_id": "900373f8f7ee128cbbd3968722182b8d26c1e54e" + }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()", + "cmt_id": "c49fb74e050d01ea09703b7c0d5fe8b9c3855b60" + }, "CVE-2022-32981": { "cmt_msg": "powerpc/32: Fix overread/overwrite of thread_struct via ptrace", "cmt_id": "638556430658eca42501271edb38154264767ff5" @@ -92875,7 +89842,7 @@ "cmt_msg": "" }, "CVE-2022-0171": { - "cmt_msg": "" + "cmt_msg": "KVM: SEV: add cache flush to solve SEV cache incoherency issues" }, "CVE-2010-4563": { "cmt_msg": "" @@ -92934,9 +89901,6 @@ "CVE-2021-33061": { "cmt_msg": "ixgbe: add improvement for MDD response functionality" }, - "CVE-2019-0146": { - "cmt_msg": "" - }, "CVE-2019-16089": { "cmt_msg": "" }, @@ -92955,12 +89919,6 @@ "CVE-2020-10708": { "cmt_msg": "" }, - "CVE-2022-1652": { - "cmt_msg": "" - }, - "CVE-2022-1184": { - "cmt_msg": "" - }, "CVE-2022-1247": { "cmt_msg": "" }, @@ -92982,9 +89940,6 @@ "CVE-2017-13694": { "cmt_msg": "" }, - "CVE-2020-26555": { - "cmt_msg": "" - }, "CVE-2020-36516": { "cmt_msg": "" }, @@ -93000,12 +89955,6 @@ "CVE-2021-26934": { "cmt_msg": "" }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, - "CVE-2021-33135": { - "cmt_msg": "" - }, "CVE-2013-7445": { "cmt_msg": "" }, @@ -93213,9 +90162,6 @@ "CVE-2020-26557": { "cmt_msg": "" }, - "CVE-2020-26555": { - "cmt_msg": "" - }, "CVE-2019-20794": { "cmt_msg": "" }, @@ -93255,15 +90201,15 @@ "CVE-2021-39698": { "cmt_msg": "wait: add wake_up_pollfree()" }, + "CVE-2022-32250": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier" + }, "CVE-2021-3759": { "cmt_msg": "memcg: enable accounting of ipc resources" }, "CVE-2021-4197": { "cmt_msg": "cgroup: Use open-time credentials for process migraton perm checks" }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"" - }, "CVE-2020-24503": { "cmt_msg": "" }, @@ -93291,14 +90237,11 @@ "CVE-2019-19814": { "cmt_msg": "" }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, "CVE-2022-1015": { "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." }, "CVE-2022-1652": { - "cmt_msg": "" + "cmt_msg": "floppy: use a statically allocated error counter" }, "CVE-2022-1651": { "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" @@ -93357,9 +90300,6 @@ "CVE-2008-2544": { "cmt_msg": "" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, "CVE-2022-0435": { "cmt_msg": "tipc: improve size validations for received domain records" }, @@ -93378,11 +90318,8 @@ "CVE-2007-3719": { "cmt_msg": "" }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" - }, "CVE-2022-0171": { - "cmt_msg": "" + "cmt_msg": "KVM: SEV: add cache flush to solve SEV cache incoherency issues" }, "CVE-2010-4563": { "cmt_msg": "" @@ -93441,6 +90378,9 @@ "CVE-2020-10708": { "cmt_msg": "" }, + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()" + }, "CVE-2021-4023": { "cmt_msg": "io-wq: fix cancellation on create-worker failure" }, @@ -93477,15 +90417,9 @@ "CVE-2022-1729": { "cmt_msg": "perf: Fix sys_perf_event_open() race against self" }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, "CVE-2022-1462": { "cmt_msg": "" }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, "CVE-2022-1974": { "cmt_msg": "nfc: replace improper check device_is_registered() in netlink related functions" }, @@ -93505,7 +90439,7 @@ "cmt_msg": "KVM: s390: Return error on SIDA memop on normal guest" }, "CVE-2021-33135": { - "cmt_msg": "" + "cmt_msg": "x86/sgx: Free backing memory after faulting the enclave page" }, "CVE-2022-1508": { "cmt_msg": "io_uring: reexpand under-reexpanded iters" @@ -93549,6 +90483,9 @@ "CVE-2021-4090": { "cmt_msg": "NFSD: Fix exposure in nfsd4_decode_bitmap()" }, + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default" + }, "CVE-2021-3714": { "cmt_msg": "" }, @@ -93558,9 +90495,6 @@ "CVE-2022-28388": { "cmt_msg": "can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path" }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, "CVE-2019-12456": { "cmt_msg": "" }, @@ -93607,7 +90541,7 @@ "cmt_msg": "f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr()" }, "CVE-2022-1184": { - "cmt_msg": "" + "cmt_msg": "ext4: verify dir block before splitting it" }, "CVE-2022-20008": { "cmt_msg": "mmc: block: fix read single on recovery logic" @@ -93687,6 +90621,12 @@ "CVE-2022-0185": { "cmt_msg": "vfs: fs_context: fix up param length parsing in legacy_parse_param" }, + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" + }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, "CVE-2022-22942": { "cmt_msg": "drm/vmwgfx: Fix stale file descriptors on failed usercopy" }, @@ -93729,12 +90669,6 @@ "CVE-2021-45402": { "cmt_msg": "bpf: Fix signed bounds propagation after mov32" }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers" - }, - "CVE-2019-0146": { - "cmt_msg": "" - }, "CVE-2019-16089": { "cmt_msg": "" }, @@ -94142,6 +91076,10 @@ "cmt_msg": "ax25: Fix NULL pointer dereference in ax25_kill_by_device", "cmt_id": "46ad629e58ce3a88c924ff3c5a7e9129b0df5659" }, + "CVE-2021-33135": { + "cmt_msg": "x86/sgx: Free backing memory after faulting the enclave page", + "cmt_id": "ce91f0f023adfc239b44261f6dccb4a883d44d92" + }, "CVE-2022-27666": { "cmt_msg": "esp: Fix possible buffer overflow in ESP transformation", "cmt_id": "4aaabbffc3b0658ce80eebdde9bafa20a3f932e0" @@ -94153,10 +91091,6 @@ "CVE-2022-0995": { "cmt_msg": "watch_queue: Fix filter limit check", "cmt_id": "1b09f28f70a5046acd64138075ae3f095238b045" - }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"", - "cmt_id": "2c1f97af38be151527380796d31d3c9adb054bf9" } }, "5.15.32": { @@ -94194,6 +91128,10 @@ "cmt_msg": "KVM: x86/mmu: do compare-and-exchange of gPTE via the user address", "cmt_id": "8771d9673e0bdb7148299f3c074667124bde6dff" }, + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()", + "cmt_id": "0e5dbc0540baa89faf4c04ccc7e9c4fe6b1d7bf4" + }, "CVE-2022-1353": { "cmt_msg": "af_key: add __GFP_ZERO flag for compose_sadb_supported in function pfkey_register", "cmt_id": "d06ee4572fd916fbb34d16dc81eb37d1dff83446" @@ -94241,10 +91179,6 @@ "CVE-2022-1204": { "cmt_msg": "ax25: Fix refcount leaks caused by ax25_cb_del()", "cmt_id": "452ae92b99062d2f6a34324eaf705a3b7eac9f8b" - }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers", - "cmt_id": "43c107021d9160f6a1610bafba6dadc0323ae548" } }, "5.15.36": { @@ -94258,6 +91192,10 @@ "cmt_msg": "bpf: Introduce MEM_RDONLY flag", "cmt_id": "b453361384c2db1c703dacb806d5fd36aec4ceca" }, + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default", + "cmt_id": "e52da8e4632f9c8fe78bf1c5881ce6871c7e08f3" + }, "CVE-2022-23222": { "cmt_msg": "bpf: Replace PTR_TO_XXX_OR_NULL with PTR_TO_XXX | PTR_MAYBE_NULL", "cmt_id": "8d38cde47a7e17b646401fa92d916503caa5375e" @@ -94302,13 +91240,17 @@ } }, "5.15.42": { - "CVE-2022-21499": { - "cmt_msg": "lockdown: also lock down previous kgdb use", - "cmt_id": "69c5d307dce1560fafcb852f39d7a1bf5e266641" + "CVE-2022-1652": { + "cmt_msg": "floppy: use a statically allocated error counter", + "cmt_id": "fc2bee93e31bbba920e9eeba76af72264ced066f" }, "CVE-2022-1729": { "cmt_msg": "perf: Fix sys_perf_event_open() race against self", "cmt_id": "e085354dde254bc6c83ee604ea66c2b36f9f9067" + }, + "CVE-2022-21499": { + "cmt_msg": "lockdown: also lock down previous kgdb use", + "cmt_id": "69c5d307dce1560fafcb852f39d7a1bf5e266641" } }, "5.15.44": { @@ -94318,6 +91260,10 @@ } }, "5.15.45": { + "CVE-2022-32250": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier", + "cmt_id": "f692bcffd1f2ce5488d24fbcb8eab5f351abf79d" + }, "CVE-2022-2078": { "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()", "cmt_id": "89ef50fe03a55feccf5681c237673a2f98161161" @@ -94336,12 +91282,24 @@ } }, "5.15.46": { + "CVE-2022-1184": { + "cmt_msg": "ext4: verify dir block before splitting it", + "cmt_id": "ca17db384762be0ec38373a12460081d22a8b42d" + }, "CVE-2022-1973": { "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay", "cmt_id": "61decb58486d7c0cbded25fe4d301ab4fa148cd8" } }, "5.15.47": { + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()", + "cmt_id": "b94d40c792de7f0ceda6a2fd8a8dc0597eca6d22" + }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()", + "cmt_id": "eaf37bb6b4f7c48a5adaf1be4879107daf4d6024" + }, "CVE-2022-32981": { "cmt_msg": "powerpc/32: Fix overread/overwrite of thread_struct via ptrace", "cmt_id": "2a0165d278973e30f2282c15c52d91788749d2d4" @@ -94433,7 +91391,7 @@ "cmt_msg": "" }, "CVE-2022-0171": { - "cmt_msg": "" + "cmt_msg": "KVM: SEV: add cache flush to solve SEV cache incoherency issues" }, "CVE-2010-4563": { "cmt_msg": "" @@ -94492,9 +91450,6 @@ "CVE-2021-33061": { "cmt_msg": "ixgbe: add improvement for MDD response functionality" }, - "CVE-2019-0146": { - "cmt_msg": "" - }, "CVE-2019-16089": { "cmt_msg": "" }, @@ -94513,12 +91468,6 @@ "CVE-2020-10708": { "cmt_msg": "" }, - "CVE-2022-1652": { - "cmt_msg": "" - }, - "CVE-2022-1184": { - "cmt_msg": "" - }, "CVE-2022-1247": { "cmt_msg": "" }, @@ -94540,21 +91489,12 @@ "CVE-2017-13694": { "cmt_msg": "" }, - "CVE-2020-26555": { - "cmt_msg": "" - }, "CVE-2020-36516": { "cmt_msg": "" }, "CVE-2012-4542": { "cmt_msg": "" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, "CVE-2021-4095": { "cmt_msg": "KVM: x86: Fix wall clock writes in Xen shared_info not to mark page dirty" }, @@ -94567,12 +91507,6 @@ "CVE-2021-26934": { "cmt_msg": "" }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, - "CVE-2021-33135": { - "cmt_msg": "" - }, "CVE-2013-7445": { "cmt_msg": "" }, @@ -94780,9 +91714,6 @@ "CVE-2020-24586": { "cmt_msg": "mac80211: prevent mixed key and fragment cache attacks" }, - "CVE-2022-0995": { - "cmt_msg": "watch_queue: Fix filter limit check" - }, "CVE-2021-0129": { "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, @@ -94792,6 +91723,9 @@ "CVE-2021-3444": { "cmt_msg": "bpf: Fix truncation handling for mod32 dst reg wrt zero" }, + "CVE-2022-32250": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier" + }, "CVE-2019-9506": { "cmt_msg": "Bluetooth: Fix faulty expression for minimum encryption key size check" }, @@ -94852,9 +91786,6 @@ "CVE-2019-14835": { "cmt_msg": "vhost: make sure log_num < in_num" }, - "CVE-2022-2078": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, "CVE-2019-12379": { "cmt_msg": "consolemap: Fix a memory leaking bug in drivers/tty/vt/consolemap.c" }, @@ -94885,9 +91816,6 @@ "CVE-2019-15902": { "cmt_msg": "unknown" }, - "CVE-2022-0998": { - "cmt_msg": "vdpa: clean up get_config_size ret value handling" - }, "CVE-2019-11477": { "cmt_msg": "tcp: limit payload size of sacked skbs" }, @@ -94975,9 +91903,6 @@ "CVE-2019-19070": { "cmt_msg": "spi: gpio: prevent memory leak in spi_gpio_probe" }, - "CVE-2022-20153": { - "cmt_msg": "io_uring: return back safer resurrect" - }, "CVE-2022-23038": { "cmt_msg": "xen/grant-table: add gnttab_try_end_foreign_access()" }, @@ -95116,9 +92041,6 @@ "CVE-2019-19081": { "cmt_msg": "nfp: flower: fix memory leak in nfp_flower_spawn_vnic_reprs" }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, "CVE-2020-26560": { "cmt_msg": "" }, @@ -95194,6 +92116,12 @@ "CVE-2020-36385": { "cmt_msg": "RDMA/ucma: Rework ucma_migrate_id() to avoid races with destroy" }, + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" + }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, "CVE-2020-0009": { "cmt_msg": "staging: android: ashmem: Disallow ashmem memory from being remapped" }, @@ -95218,9 +92146,6 @@ "CVE-2022-1204": { "cmt_msg": "ax25: Fix refcount leaks caused by ax25_cb_del()" }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers" - }, "CVE-2019-17666": { "cmt_msg": "rtlwifi: Fix potential overflow on P2P code" }, @@ -95291,7 +92216,7 @@ "cmt_msg": "" }, "CVE-2020-26555": { - "cmt_msg": "" + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, "CVE-2019-20794": { "cmt_msg": "" @@ -95308,9 +92233,6 @@ "CVE-2019-19045": { "cmt_msg": "net/mlx5: prevent memory leak in mlx5_fpga_conn_create_cq" }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, "CVE-2019-9466": { "cmt_msg": "brcmfmac: add subtype check for event handling in data path" }, @@ -95380,9 +92302,6 @@ "CVE-2019-19816": { "cmt_msg": "btrfs: inode: Verify inode mode to avoid NULL pointer dereference" }, - "CVE-2022-1015": { - "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." - }, "CVE-2022-1016": { "cmt_msg": "netfilter: nf_tables: initialize registers in nft_do_chain()" }, @@ -95446,9 +92365,6 @@ "CVE-2021-3178": { "cmt_msg": "nfsd4: readdirplus shouldn't return parent of export" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, "CVE-2019-15031": { "cmt_msg": "powerpc/tm: Fix restoring FP/VMX facility incorrectly on interrupts" }, @@ -95473,9 +92389,6 @@ "CVE-2022-24958": { "cmt_msg": "usb: gadget: don't release an existing dev->buf" }, - "CVE-2022-28893": { - "cmt_msg": "SUNRPC: Ensure we flush any closed sockets before xs_xprt_free()" - }, "CVE-2021-3772": { "cmt_msg": "sctp: use init_tag from inithdr for ABORT chunk" }, @@ -95566,9 +92479,6 @@ "CVE-2020-14381": { "cmt_msg": "futex: Fix inode life-time issue" }, - "CVE-2022-1158": { - "cmt_msg": "KVM: x86/mmu: do compare-and-exchange of gPTE via the user address" - }, "CVE-2019-19768": { "cmt_msg": "blktrace: Protect q->blk_trace with RCU" }, @@ -95617,9 +92527,6 @@ "CVE-2019-10639": { "cmt_msg": "netns: provide pure entropy for net_hash_mix()" }, - "CVE-2022-0500": { - "cmt_msg": "bpf: Introduce MEM_RDONLY flag" - }, "CVE-2022-28388": { "cmt_msg": "can: usb_8dev: usb_8dev_start_xmit(): fix double dev_kfree_skb() in error path" }, @@ -95632,9 +92539,6 @@ "CVE-2021-4002": { "cmt_msg": "hugetlbfs: flush TLBs correctly after huge_pmd_unshare" }, - "CVE-2022-1055": { - "cmt_msg": "net: sched: fix use-after-free in tc_new_tfilter()" - }, "CVE-2021-38204": { "cmt_msg": "usb: max-3421: Prevent corruption of freed memory" }, @@ -95668,8 +92572,8 @@ "CVE-2022-0617": { "cmt_msg": "udf: Fix NULL ptr deref when converting from inline format" }, - "CVE-2022-26878": { - "cmt_msg": "" + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()" }, "CVE-2018-12930": { "cmt_msg": "" @@ -95738,7 +92642,7 @@ "cmt_msg": "RDMA/cxgb4: Do not dma memory off of the stack" }, "CVE-2019-0146": { - "cmt_msg": "" + "cmt_msg": "i40e: add num_vectors checker in iwarp handler" }, "CVE-2019-0147": { "cmt_msg": "i40e: add num_vectors checker in iwarp handler" @@ -95788,6 +92692,9 @@ "CVE-2019-19531": { "cmt_msg": "usb: yurex: Fix use-after-free in yurex_delete" }, + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default" + }, "CVE-2021-0929": { "cmt_msg": "staging/android/ion: delete dma_buf->kmap/unmap implemenation" }, @@ -95848,14 +92755,8 @@ "CVE-2021-3864": { "cmt_msg": "" }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, "CVE-2022-1652": { - "cmt_msg": "" - }, - "CVE-2022-1651": { - "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" + "cmt_msg": "floppy: use a statically allocated error counter" }, "CVE-2020-29568": { "cmt_msg": "xen/xenbus: Allow watches discard events before queueing" @@ -95995,9 +92896,6 @@ "CVE-2021-4149": { "cmt_msg": "btrfs: unlock newly allocated extent buffer after error" }, - "CVE-2021-4148": { - "cmt_msg": "mm: khugepaged: skip huge page collapse for special files" - }, "CVE-2021-3640": { "cmt_msg": "Bluetooth: sco: Fix lock_sock() blockage by memcpy_from_msg()" }, @@ -96082,12 +92980,6 @@ "CVE-2019-17133": { "cmt_msg": "cfg80211: wext: avoid copying malformed SSIDs" }, - "CVE-2022-0742": { - "cmt_msg": "ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()" - }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"" - }, "CVE-2019-19525": { "cmt_msg": "ieee802154: atusb: fix use-after-free at disconnect" }, @@ -96101,7 +92993,7 @@ "cmt_msg": "f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr()" }, "CVE-2022-1184": { - "cmt_msg": "" + "cmt_msg": "ext4: verify dir block before splitting it" }, "CVE-2019-19448": { "cmt_msg": "btrfs: only search for left_info if there is no right_info in try_merge_free_space" @@ -96166,9 +93058,6 @@ "CVE-2022-26490": { "cmt_msg": "nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION" }, - "CVE-2022-1043": { - "cmt_msg": "io_uring: fix xa_alloc_cycle() error return value check" - }, "CVE-2022-1048": { "cmt_msg": "ALSA: pcm: Fix races among concurrent hw_params and hw_free calls" }, @@ -96232,9 +93121,6 @@ "CVE-2022-0400": { "cmt_msg": "" }, - "CVE-2021-0707": { - "cmt_msg": "dmabuf: fix use-after-free of dmabuf's file->f_inode" - }, "CVE-2022-26966": { "cmt_msg": "sr9700: sanity check for packet length" }, @@ -96268,9 +93154,6 @@ "CVE-2020-25284": { "cmt_msg": "rbd: require global CAP_SYS_ADMIN for mapping and unmapping" }, - "CVE-2022-25636": { - "cmt_msg": "netfilter: nf_tables_offload: incorrect flow offload action array size" - }, "CVE-2020-29370": { "cmt_msg": "mm: slub: add missing TID bump in kmem_cache_alloc_bulk()" }, @@ -96319,9 +93202,6 @@ "CVE-2019-19526": { "cmt_msg": "NFC: pn533: fix use-after-free and memleaks" }, - "CVE-2021-33135": { - "cmt_msg": "" - }, "CVE-2019-19523": { "cmt_msg": "USB: adutux: fix use-after-free on disconnect" }, @@ -96352,12 +93232,6 @@ "CVE-2021-41864": { "cmt_msg": "bpf: Fix integer overflow in prealloc_elems_and_freelist()" }, - "CVE-2022-1998": { - "cmt_msg": "fanotify: Fix stale file descriptor in copy_event_to_user()" - }, - "CVE-2022-1852": { - "cmt_msg": "KVM: x86: avoid calling x86 emulator without a decoded instruction" - }, "CVE-2021-37576": { "cmt_msg": "KVM: PPC: Book3S: Fix H_RTAS rets buffer overflow" }, @@ -96433,9 +93307,6 @@ "CVE-2019-3874": { "cmt_msg": "sctp: implement memory accounting on tx path" }, - "CVE-2022-0171": { - "cmt_msg": "" - }, "CVE-2010-4563": { "cmt_msg": "" }, @@ -96448,9 +93319,6 @@ "CVE-2021-3483": { "cmt_msg": "firewire: nosy: Fix a use-after-free bug in nosy_ioctl()" }, - "CVE-2022-29156": { - "cmt_msg": "RDMA/rtrs-clt: Fix possible double free in error case" - }, "CVE-2021-20177": { "cmt_msg": "netfilter: add and use nf_hook_slow_list()" }, @@ -96493,21 +93361,12 @@ "CVE-2021-3573": { "cmt_msg": "Bluetooth: use correct lock to prevent UAF of hdev object" }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, "CVE-2022-1974": { "cmt_msg": "nfc: replace improper check device_is_registered() in netlink related functions" }, "CVE-2022-1975": { "cmt_msg": "NFC: netlink: fix sleep in atomic bug when firmware download timeout" }, - "CVE-2022-1972": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" - }, "CVE-2021-28972": { "cmt_msg": "PCI: rpadlpar: Fix potential drc_name corruption in store functions" }, @@ -96571,9 +93430,6 @@ "CVE-2021-28951": { "cmt_msg": "io_uring: ensure that SQPOLL thread is started for exit" }, - "CVE-2022-1671": { - "cmt_msg": "rxrpc: fix some null-ptr-deref bugs in server_key.c" - }, "CVE-2021-3653": { "cmt_msg": "KVM: nSVM: avoid picking up unsupported bits from L2 in int_ctl (CVE-2021-3653)" }, @@ -96712,18 +93568,12 @@ "CVE-2019-15504": { "cmt_msg": "rsi: fix a double free bug in rsi_91x_deinit()" }, - "CVE-2022-1516": { - "cmt_msg": "net/x25: Fix null-ptr-deref caused by x25_disconnect" - }, "CVE-2015-2877": { "cmt_msg": "" }, "CVE-2020-9383": { "cmt_msg": "floppy: check FDC index for errors before assigning it" }, - "CVE-2022-29582": { - "cmt_msg": "io_uring: fix race between timeout flush and removal" - }, "CVE-2019-16089": { "cmt_msg": "" }, @@ -97660,10 +94510,6 @@ } }, "5.4.89": { - "CVE-2021-0707": { - "cmt_msg": "dmabuf: fix use-after-free of dmabuf's file->f_inode", - "cmt_id": "ef8133b1b47ed67873c291e9248fafd428d1767d" - }, "CVE-2020-28374": { "cmt_msg": "scsi: target: Fix XCOPY NAA identifier lookup", "cmt_id": "485e21729b1e1235e6075318225c09e76b376e81" @@ -97921,6 +94767,10 @@ "CVE-2021-0129": { "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical", "cmt_id": "f97257cde764ad6979a7dbeb460b9fb69276342e" + }, + "CVE-2020-26555": { + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical", + "cmt_id": "f97257cde764ad6979a7dbeb460b9fb69276342e" } }, "5.4.124": { @@ -98545,20 +95395,12 @@ "CVE-2022-28389": { "cmt_msg": "can: mcba_usb: mcba_usb_start_xmit(): fix double dev_kfree_skb in error path", "cmt_id": "2dfe9422d528630e2ce0d454147230cce113f814" - }, - "CVE-2022-1516": { - "cmt_msg": "net/x25: Fix null-ptr-deref caused by x25_disconnect", - "cmt_id": "9acf05b4e7b55fdb712ef7b331dbce5bcd391d0f" } }, "5.4.190": { "CVE-2022-1204": { "cmt_msg": "ax25: Fix refcount leaks caused by ax25_cb_del()", "cmt_id": "9e1e088a57c23251f1cfe9601bbd90ade2ea73b9" - }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers", - "cmt_id": "40cb8b3b19c087a4e20f6740701e53fefbe19a7b" } }, "5.4.191": { @@ -98572,6 +95414,10 @@ } }, "5.4.192": { + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default", + "cmt_id": "7dea5913000c6a2974a00d9af8e7ffb54e47eac1" + }, "CVE-2022-1836": { "cmt_msg": "floppy: disable FDRAWCMD by default", "cmt_id": "7dea5913000c6a2974a00d9af8e7ffb54e47eac1" @@ -98604,13 +95450,13 @@ "cmt_msg": "SUNRPC: Ensure we flush any closed sockets before xs_xprt_free()", "cmt_id": "2f8f6c393b11b5da059b1fc10a69fc2f2b6c446a" }, + "CVE-2022-1652": { + "cmt_msg": "floppy: use a statically allocated error counter", + "cmt_id": "67e2b62461b5d02a1e63103e8a02c0bca75e26c7" + }, "CVE-2022-1729": { "cmt_msg": "perf: Fix sys_perf_event_open() race against self", "cmt_id": "dd0ea88b0a0f913f82500e988ef38158a9ad9885" - }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"", - "cmt_id": "b2f140a9f980806f572d672e1780acea66b9a25c" } }, "5.4.197": { @@ -98624,6 +95470,14 @@ } }, "5.4.198": { + "CVE-2022-32250": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier", + "cmt_id": "f36736fbd48491a8d85cd22f4740d542c5a1546e" + }, + "CVE-2022-1184": { + "cmt_msg": "ext4: verify dir block before splitting it", + "cmt_id": "17034d45ec443fb0e3c0e7297f9cd10f70446064" + }, "CVE-2022-1966": { "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier", "cmt_id": "f36736fbd48491a8d85cd22f4740d542c5a1546e" @@ -98633,6 +95487,12 @@ "cmt_id": "0c4bc0a2f8257f79a70fe02b9a698eb14695a64b" } }, + "5.4.201": { + "CVE-2022-32296": { + "cmt_msg": "tcp: increase source port perturb table to 2^16", + "cmt_id": "c26e1addf15763ae404f4bbf131719a724e768ab" + } + }, "outstanding": { "CVE-2021-0929": { "cmt_msg": "staging/android/ion: delete dma_buf->kmap/unmap implemenation" @@ -98643,9 +95503,6 @@ "CVE-2020-26557": { "cmt_msg": "" }, - "CVE-2020-26555": { - "cmt_msg": "" - }, "CVE-2019-20794": { "cmt_msg": "" }, @@ -98658,21 +95515,12 @@ "CVE-2022-0168": { "cmt_msg": "cifs: fix NULL ptr dereference in smb2_ioctl_query_info()" }, - "CVE-2022-1998": { - "cmt_msg": "fanotify: Fix stale file descriptor in copy_event_to_user()" - }, "CVE-2018-1121": { "cmt_msg": "" }, "CVE-2019-19378": { "cmt_msg": "" }, - "CVE-2022-0995": { - "cmt_msg": "watch_queue: Fix filter limit check" - }, - "CVE-2022-0998": { - "cmt_msg": "vdpa: clean up get_config_size ret value handling" - }, "CVE-2019-15794": { "cmt_msg": "ovl: fix reference counting in ovl_mmap error path" }, @@ -98712,30 +95560,12 @@ "CVE-2019-19814": { "cmt_msg": "" }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, - "CVE-2022-1015": { - "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." - }, - "CVE-2022-1652": { - "cmt_msg": "" - }, - "CVE-2022-1651": { - "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" - }, - "CVE-2022-1852": { - "cmt_msg": "KVM: x86: avoid calling x86 emulator without a decoded instruction" - }, "CVE-2021-26934": { "cmt_msg": "" }, "CVE-2022-1789": { "cmt_msg": "KVM: x86/mmu: fix NULL pointer dereference on guest INVPCID" }, - "CVE-2022-2078": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, "CVE-2016-8660": { "cmt_msg": "" }, @@ -98757,9 +95587,6 @@ "CVE-2008-2544": { "cmt_msg": "" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, "CVE-2019-15239": { "cmt_msg": "unknown" }, @@ -98781,9 +95608,6 @@ "CVE-2020-26142": { "cmt_msg": "" }, - "CVE-2022-29156": { - "cmt_msg": "RDMA/rtrs-clt: Fix possible double free in error case" - }, "CVE-2021-20177": { "cmt_msg": "netfilter: add and use nf_hook_slow_list()" }, @@ -98793,6 +95617,9 @@ "CVE-2020-10708": { "cmt_msg": "" }, + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()" + }, "CVE-2021-4023": { "cmt_msg": "io-wq: fix cancellation on create-worker failure" }, @@ -98811,33 +95638,18 @@ "CVE-2021-4148": { "cmt_msg": "mm: khugepaged: skip huge page collapse for special files" }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, - "CVE-2022-1972": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, "CVE-2013-7445": { "cmt_msg": "" }, "CVE-2005-3660": { "cmt_msg": "" }, - "CVE-2021-33135": { - "cmt_msg": "" - }, "CVE-2022-1508": { "cmt_msg": "io_uring: reexpand under-reexpanded iters" }, "CVE-2021-4159": { "cmt_msg": "bpf: Verifer, adjust_scalar_min_max_vals to always call update_reg_bounds()" }, - "CVE-2022-32296": { - "cmt_msg": "tcp: increase source port perturb table to 2^16" - }, "CVE-2021-0695": { "cmt_msg": "" }, @@ -98865,9 +95677,6 @@ "CVE-2021-3714": { "cmt_msg": "" }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, "CVE-2019-12456": { "cmt_msg": "" }, @@ -98883,30 +95692,15 @@ "CVE-2020-12363": { "cmt_msg": "drm/i915/guc: Update to use firmware v49.0.1" }, - "CVE-2022-0742": { - "cmt_msg": "ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()" - }, "CVE-2020-12364": { "cmt_msg": "drm/i915/guc: Update to use firmware v49.0.1" }, - "CVE-2022-20153": { - "cmt_msg": "io_uring: return back safer resurrect" - }, - "CVE-2022-0500": { - "cmt_msg": "bpf: Introduce MEM_RDONLY flag" - }, "CVE-2022-0480": { "cmt_msg": "memcg: enable accounting for file lock caches" }, - "CVE-2022-1184": { - "cmt_msg": "" - }, "CVE-2022-25265": { "cmt_msg": "" }, - "CVE-2022-1043": { - "cmt_msg": "io_uring: fix xa_alloc_cycle() error return value check" - }, "CVE-2021-4218": { "cmt_msg": "sysctl: pass kernel pointers to ->proc_handler" }, @@ -98922,12 +95716,6 @@ "CVE-2018-17977": { "cmt_msg": "" }, - "CVE-2022-26878": { - "cmt_msg": "" - }, - "CVE-2022-29582": { - "cmt_msg": "io_uring: fix race between timeout flush and removal" - }, "CVE-2022-1116": { "cmt_msg": "" }, @@ -98964,6 +95752,12 @@ "CVE-2022-20166": { "cmt_msg": "drivers core: Use sysfs_emit and sysfs_emit_at for show(device *...) functions" }, + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" + }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, "CVE-2021-3542": { "cmt_msg": "" }, @@ -98988,12 +95782,6 @@ "CVE-2015-2877": { "cmt_msg": "" }, - "CVE-2022-0171": { - "cmt_msg": "" - }, - "CVE-2019-0146": { - "cmt_msg": "" - }, "CVE-2019-16089": { "cmt_msg": "" }, @@ -99003,9 +95791,6 @@ "CVE-2022-1679": { "cmt_msg": "" }, - "CVE-2022-1671": { - "cmt_msg": "rxrpc: fix some null-ptr-deref bugs in server_key.c" - }, "CVE-2021-3847": { "cmt_msg": "" }, @@ -99018,9 +95803,6 @@ "CVE-2021-32078": { "cmt_msg": "ARM: footbridge: remove personal server platform" }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" - }, "CVE-2020-27835": { "cmt_msg": "IB/hfi1: Ensure correct mm is used at all times" } @@ -99044,6 +95826,10 @@ } }, "5.18.2": { + "CVE-2022-32250": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier", + "cmt_id": "8f44c83e51b4ca49c815f8dd0d9c38f497cdbcb0" + }, "CVE-2022-2078": { "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()", "cmt_id": "c9a46a3d549286861259c19af4747e12cfaeece9" @@ -99062,17 +95848,35 @@ } }, "5.18.3": { + "CVE-2022-1184": { + "cmt_msg": "ext4: verify dir block before splitting it", + "cmt_id": "298659c0e7074f774a794fc293df4014617b87be" + }, "CVE-2022-1973": { "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay", "cmt_id": "2aafbe9fb210a355d6e0e92a91f294dee80e5d44" } }, "5.18.4": { + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()", + "cmt_id": "d51720ac069d465101d937273acecde1f71ea411" + }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()", + "cmt_id": "b7e88e4bb41dea89b1dadf7a985d7aff53720629" + }, "CVE-2022-32981": { "cmt_msg": "powerpc/32: Fix overread/overwrite of thread_struct via ptrace", "cmt_id": "7764a258356c454fe56b9f56fc07c0e146a3bccb" } }, + "5.18.6": { + "CVE-2022-1976": { + "cmt_msg": "io_uring: reinstate the inflight tracking", + "cmt_id": "bba36a27c38650eefc79d18c33a0acd0dcbeabb8" + } + }, "outstanding": { "CVE-2018-17977": { "cmt_msg": "" @@ -99203,12 +96007,6 @@ "CVE-2015-2877": { "cmt_msg": "" }, - "CVE-2022-0171": { - "cmt_msg": "" - }, - "CVE-2019-0146": { - "cmt_msg": "" - }, "CVE-2019-16089": { "cmt_msg": "" }, @@ -99227,12 +96025,6 @@ "CVE-2020-10708": { "cmt_msg": "" }, - "CVE-2022-1652": { - "cmt_msg": "" - }, - "CVE-2022-1184": { - "cmt_msg": "" - }, "CVE-2022-1247": { "cmt_msg": "" }, @@ -99254,9 +96046,6 @@ "CVE-2017-13694": { "cmt_msg": "" }, - "CVE-2020-26555": { - "cmt_msg": "" - }, "CVE-2020-36516": { "cmt_msg": "" }, @@ -99272,12 +96061,6 @@ "CVE-2021-26934": { "cmt_msg": "" }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, - "CVE-2021-33135": { - "cmt_msg": "" - }, "CVE-2013-7445": { "cmt_msg": "" }, @@ -99668,18 +96451,12 @@ "CVE-2019-19965": { "cmt_msg": "scsi: libsas: stop discovering if oob mode is disconnected" }, - "CVE-2021-3752": { - "cmt_msg": "Bluetooth: fix use-after-free error in lock_sock_nested()" - }, "CVE-2020-24587": { "cmt_msg": "mac80211: prevent mixed key and fragment cache attacks" }, "CVE-2020-24586": { "cmt_msg": "mac80211: prevent mixed key and fragment cache attacks" }, - "CVE-2022-0995": { - "cmt_msg": "watch_queue: Fix filter limit check" - }, "CVE-2021-0129": { "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, @@ -99689,6 +96466,9 @@ "CVE-2021-3444": { "cmt_msg": "bpf: Fix truncation handling for mod32 dst reg wrt zero" }, + "CVE-2022-32250": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier" + }, "CVE-2020-36158": { "cmt_msg": "mwifiex: Fix possible buffer overflows in mwifiex_cmd_802_11_ad_hoc_start" }, @@ -99704,9 +96484,6 @@ "CVE-2021-42252": { "cmt_msg": "soc: aspeed: lpc-ctrl: Fix boundary check for mmap" }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, "CVE-2021-28688": { "cmt_msg": "xen-blkback: don't leak persistent grants from xen_blkbk_map()" }, @@ -99725,9 +96502,6 @@ "CVE-2020-0466": { "cmt_msg": "do_epoll_ctl(): clean the failure exits up a bit" }, - "CVE-2022-2078": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, "CVE-2021-3669": { "cmt_msg": "ipc: replace costly bailout check in sysvipc_find_ipc()" }, @@ -99806,8 +96580,8 @@ "CVE-2019-19070": { "cmt_msg": "spi: gpio: prevent memory leak in spi_gpio_probe" }, - "CVE-2022-20153": { - "cmt_msg": "io_uring: return back safer resurrect" + "CVE-2021-27364": { + "cmt_msg": "scsi: iscsi: Restrict sessions and handles to admin capabilities" }, "CVE-2022-23038": { "cmt_msg": "xen/grant-table: add gnttab_try_end_foreign_access()" @@ -99845,9 +96619,6 @@ "CVE-2020-25645": { "cmt_msg": "geneve: add transport ports in route lookup for geneve" }, - "CVE-2022-0998": { - "cmt_msg": "vdpa: clean up get_config_size ret value handling" - }, "CVE-2020-25643": { "cmt_msg": "hdlc_ppp: add range checks in ppp_cp_parse_cr()" }, @@ -99857,9 +96628,6 @@ "CVE-2005-3660": { "cmt_msg": "" }, - "CVE-2021-33135": { - "cmt_msg": "" - }, "CVE-2021-33034": { "cmt_msg": "Bluetooth: verify AMP hci_chan before amp_destroy" }, @@ -99896,9 +96664,6 @@ "CVE-2021-3564": { "cmt_msg": "Bluetooth: fix the erroneous flush_work() order" }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, "CVE-2020-26560": { "cmt_msg": "" }, @@ -99953,6 +96718,12 @@ "CVE-2020-36385": { "cmt_msg": "RDMA/ucma: Rework ucma_migrate_id() to avoid races with destroy" }, + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" + }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, "CVE-2020-0009": { "cmt_msg": "staging: android: ashmem: Disallow ashmem memory from being remapped" }, @@ -99968,9 +96739,6 @@ "CVE-2022-1204": { "cmt_msg": "ax25: Fix refcount leaks caused by ax25_cb_del()" }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers" - }, "CVE-2019-19037": { "cmt_msg": "ext4: fix ext4_empty_dir() for directories with holes" }, @@ -100035,7 +96803,7 @@ "cmt_msg": "" }, "CVE-2020-26555": { - "cmt_msg": "" + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, "CVE-2019-20794": { "cmt_msg": "" @@ -100097,9 +96865,6 @@ "CVE-2020-29370": { "cmt_msg": "mm: slub: add missing TID bump in kmem_cache_alloc_bulk()" }, - "CVE-2022-1015": { - "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." - }, "CVE-2022-1016": { "cmt_msg": "netfilter: nf_tables: initialize registers in nft_do_chain()" }, @@ -100148,9 +96913,6 @@ "CVE-2021-3178": { "cmt_msg": "nfsd4: readdirplus shouldn't return parent of export" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, "CVE-2022-0330": { "cmt_msg": "drm/i915: Flush TLBs before releasing backing store" }, @@ -100277,9 +97039,6 @@ "CVE-2020-12364": { "cmt_msg": "drm/i915/guc: Update to use firmware v49.0.1" }, - "CVE-2022-0500": { - "cmt_msg": "bpf: Introduce MEM_RDONLY flag" - }, "CVE-2020-25639": { "cmt_msg": "drm/nouveau: bail out of nouveau_channel_new if channel init fails" }, @@ -100319,8 +97078,8 @@ "CVE-2022-0617": { "cmt_msg": "udf: Fix NULL ptr deref when converting from inline format" }, - "CVE-2022-26878": { - "cmt_msg": "" + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()" }, "CVE-2018-12930": { "cmt_msg": "" @@ -100373,9 +97132,6 @@ "CVE-2021-35039": { "cmt_msg": "module: limit enabling module.sig_enforce" }, - "CVE-2019-0146": { - "cmt_msg": "" - }, "CVE-2020-10942": { "cmt_msg": "vhost: Check docket sk_family instead of call getname" }, @@ -100400,6 +97156,9 @@ "CVE-2021-23133": { "cmt_msg": "net/sctp: fix race condition in sctp_destroy_sock" }, + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default" + }, "CVE-2021-0929": { "cmt_msg": "staging/android/ion: delete dma_buf->kmap/unmap implemenation" }, @@ -100451,14 +97210,8 @@ "CVE-2021-3864": { "cmt_msg": "" }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, "CVE-2022-1652": { - "cmt_msg": "" - }, - "CVE-2022-1651": { - "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" + "cmt_msg": "floppy: use a statically allocated error counter" }, "CVE-2020-29568": { "cmt_msg": "xen/xenbus: Allow watches discard events before queueing" @@ -100571,9 +97324,6 @@ "CVE-2021-4149": { "cmt_msg": "btrfs: unlock newly allocated extent buffer after error" }, - "CVE-2021-4148": { - "cmt_msg": "mm: khugepaged: skip huge page collapse for special files" - }, "CVE-2021-3640": { "cmt_msg": "Bluetooth: sco: Fix lock_sock() blockage by memcpy_from_msg()" }, @@ -100643,12 +97393,6 @@ "CVE-2021-29647": { "cmt_msg": "net: qrtr: fix a kernel-infoleak in qrtr_recvmsg()" }, - "CVE-2022-0742": { - "cmt_msg": "ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()" - }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"" - }, "CVE-2020-15437": { "cmt_msg": "serial: 8250: fix null-ptr-deref in serial8250_start_tx()" }, @@ -100659,7 +97403,7 @@ "cmt_msg": "f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr()" }, "CVE-2022-1184": { - "cmt_msg": "" + "cmt_msg": "ext4: verify dir block before splitting it" }, "CVE-2020-0465": { "cmt_msg": "HID: core: Sanitize event code and type when mapping input" @@ -100685,8 +97429,8 @@ "CVE-2021-27365": { "cmt_msg": "scsi: iscsi: Ensure sysfs attributes are limited to PAGE_SIZE" }, - "CVE-2021-27364": { - "cmt_msg": "scsi: iscsi: Restrict sessions and handles to admin capabilities" + "CVE-2021-3752": { + "cmt_msg": "Bluetooth: fix use-after-free error in lock_sock_nested()" }, "CVE-2021-27363": { "cmt_msg": "scsi: iscsi: Restrict sessions and handles to admin capabilities" @@ -100709,9 +97453,6 @@ "CVE-2022-26490": { "cmt_msg": "nfc: st21nfca: Fix potential buffer overflows in EVT_TRANSACTION" }, - "CVE-2022-1043": { - "cmt_msg": "io_uring: fix xa_alloc_cycle() error return value check" - }, "CVE-2022-1048": { "cmt_msg": "ALSA: pcm: Fix races among concurrent hw_params and hw_free calls" }, @@ -100769,9 +97510,6 @@ "CVE-2022-0400": { "cmt_msg": "" }, - "CVE-2021-0707": { - "cmt_msg": "dmabuf: fix use-after-free of dmabuf's file->f_inode" - }, "CVE-2022-26966": { "cmt_msg": "sr9700: sanity check for packet length" }, @@ -100796,9 +97534,6 @@ "CVE-2020-29374": { "cmt_msg": "gup: document and work around \"COW can break either way\" issue" }, - "CVE-2022-25636": { - "cmt_msg": "netfilter: nf_tables_offload: incorrect flow offload action array size" - }, "CVE-2019-19378": { "cmt_msg": "" }, @@ -100859,12 +97594,6 @@ "CVE-2021-41864": { "cmt_msg": "bpf: Fix integer overflow in prealloc_elems_and_freelist()" }, - "CVE-2022-1998": { - "cmt_msg": "fanotify: Fix stale file descriptor in copy_event_to_user()" - }, - "CVE-2022-1852": { - "cmt_msg": "KVM: x86: avoid calling x86 emulator without a decoded instruction" - }, "CVE-2021-37576": { "cmt_msg": "KVM: PPC: Book3S: Fix H_RTAS rets buffer overflow" }, @@ -100922,9 +97651,6 @@ "CVE-2020-0431": { "cmt_msg": "HID: hid-input: clear unmapped usages" }, - "CVE-2022-0171": { - "cmt_msg": "" - }, "CVE-2010-4563": { "cmt_msg": "" }, @@ -100934,9 +97660,6 @@ "CVE-2021-3483": { "cmt_msg": "firewire: nosy: Fix a use-after-free bug in nosy_ioctl()" }, - "CVE-2022-29156": { - "cmt_msg": "RDMA/rtrs-clt: Fix possible double free in error case" - }, "CVE-2021-20177": { "cmt_msg": "netfilter: add and use nf_hook_slow_list()" }, @@ -100970,21 +97693,12 @@ "CVE-2021-3573": { "cmt_msg": "Bluetooth: use correct lock to prevent UAF of hdev object" }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, "CVE-2022-1974": { "cmt_msg": "nfc: replace improper check device_is_registered() in netlink related functions" }, "CVE-2022-1975": { "cmt_msg": "NFC: netlink: fix sleep in atomic bug when firmware download timeout" }, - "CVE-2022-1972": { - "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" - }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" - }, "CVE-2021-20292": { "cmt_msg": "drm/ttm/nouveau: don't call tt destroy callback on alloc failure." }, @@ -101024,9 +97738,6 @@ "CVE-2021-28951": { "cmt_msg": "io_uring: ensure that SQPOLL thread is started for exit" }, - "CVE-2022-1671": { - "cmt_msg": "rxrpc: fix some null-ptr-deref bugs in server_key.c" - }, "CVE-2021-3653": { "cmt_msg": "KVM: nSVM: avoid picking up unsupported bits from L2 in int_ctl (CVE-2021-3653)" }, @@ -101138,18 +97849,12 @@ "CVE-2021-44879": { "cmt_msg": "f2fs: fix to do sanity check on inode type during garbage collection" }, - "CVE-2022-1516": { - "cmt_msg": "net/x25: Fix null-ptr-deref caused by x25_disconnect" - }, "CVE-2015-2877": { "cmt_msg": "" }, "CVE-2020-9383": { "cmt_msg": "floppy: check FDC index for errors before assigning it" }, - "CVE-2022-29582": { - "cmt_msg": "io_uring: fix race between timeout flush and removal" - }, "CVE-2019-16089": { "cmt_msg": "" }, @@ -101373,9 +98078,6 @@ "CVE-2020-24586": { "cmt_msg": "mac80211: prevent mixed key and fragment cache attacks" }, - "CVE-2022-0995": { - "cmt_msg": "watch_queue: Fix filter limit check" - }, "CVE-2021-0129": { "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, @@ -101385,6 +98087,9 @@ "CVE-2021-3444": { "cmt_msg": "bpf: Fix truncation handling for mod32 dst reg wrt zero" }, + "CVE-2022-32250": { + "cmt_msg": "netfilter: nf_tables: disallow non-stateful expression in sets earlier" + }, "CVE-2020-36158": { "cmt_msg": "mwifiex: Fix possible buffer overflows in mwifiex_cmd_802_11_ad_hoc_start" }, @@ -101478,9 +98183,6 @@ "CVE-2021-32399": { "cmt_msg": "bluetooth: eliminate the potential race condition when removing the HCI controller" }, - "CVE-2022-20153": { - "cmt_msg": "io_uring: return back safer resurrect" - }, "CVE-2021-27364": { "cmt_msg": "scsi: iscsi: Restrict sessions and handles to admin capabilities" }, @@ -101514,9 +98216,6 @@ "CVE-2020-25645": { "cmt_msg": "geneve: add transport ports in route lookup for geneve" }, - "CVE-2022-0998": { - "cmt_msg": "vdpa: clean up get_config_size ret value handling" - }, "CVE-2020-25643": { "cmt_msg": "hdlc_ppp: add range checks in ppp_cp_parse_cr()" }, @@ -101526,9 +98225,6 @@ "CVE-2005-3660": { "cmt_msg": "" }, - "CVE-2021-33135": { - "cmt_msg": "" - }, "CVE-2021-33034": { "cmt_msg": "Bluetooth: verify AMP hci_chan before amp_destroy" }, @@ -101553,12 +98249,12 @@ "CVE-2020-15393": { "cmt_msg": "usb: usbtest: fix missing kfree(dev->buf) in usbtest_disconnect" }, + "CVE-2022-33981": { + "cmt_msg": "floppy: disable FDRAWCMD by default" + }, "CVE-2021-3564": { "cmt_msg": "Bluetooth: fix the erroneous flush_work() order" }, - "CVE-2022-1943": { - "cmt_msg": "udf: Avoid using stale lengthOfImpUse" - }, "CVE-2020-26560": { "cmt_msg": "" }, @@ -101589,6 +98285,12 @@ "CVE-2020-36385": { "cmt_msg": "RDMA/ucma: Rework ucma_migrate_id() to avoid races with destroy" }, + "CVE-2022-34494": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_virtio_add_ctrl_dev()" + }, + "CVE-2022-34495": { + "cmt_msg": "rpmsg: virtio: Fix possible double free in rpmsg_probe()" + }, "CVE-2022-1882": { "cmt_msg": "" }, @@ -101598,9 +98300,6 @@ "CVE-2022-1204": { "cmt_msg": "ax25: Fix refcount leaks caused by ax25_cb_del()" }, - "CVE-2022-1205": { - "cmt_msg": "ax25: Fix NULL pointer dereferences in ax25 timers" - }, "CVE-2021-34693": { "cmt_msg": "can: bcm: fix infoleak in struct bcm_msg_head" }, @@ -101647,7 +98346,7 @@ "cmt_msg": "" }, "CVE-2020-26555": { - "cmt_msg": "" + "cmt_msg": "Bluetooth: SMP: Fail if remote and local public keys are identical" }, "CVE-2019-20794": { "cmt_msg": "" @@ -101694,9 +98393,6 @@ "CVE-2020-29371": { "cmt_msg": "romfs: fix uninitialized memory leak in romfs_dev_read()" }, - "CVE-2022-1015": { - "cmt_msg": "netfilter: nf_tables: validate registers coming from userspace." - }, "CVE-2022-1016": { "cmt_msg": "netfilter: nf_tables: initialize registers in nft_do_chain()" }, @@ -101745,9 +98441,6 @@ "CVE-2021-3178": { "cmt_msg": "nfsd4: readdirplus shouldn't return parent of export" }, - "CVE-2022-28796": { - "cmt_msg": "jbd2: fix use-after-free of transaction_t race" - }, "CVE-2022-0330": { "cmt_msg": "drm/i915: Flush TLBs before releasing backing store" }, @@ -101853,9 +98546,6 @@ "CVE-2020-12364": { "cmt_msg": "drm/i915/guc: Update to use firmware v49.0.1" }, - "CVE-2022-0500": { - "cmt_msg": "bpf: Introduce MEM_RDONLY flag" - }, "CVE-2020-25639": { "cmt_msg": "drm/nouveau: bail out of nouveau_channel_new if channel init fails" }, @@ -101886,8 +98576,8 @@ "CVE-2022-0617": { "cmt_msg": "udf: Fix NULL ptr deref when converting from inline format" }, - "CVE-2022-26878": { - "cmt_msg": "" + "CVE-2022-2153": { + "cmt_msg": "KVM: x86: Avoid theoretical NULL pointer dereference in kvm_irq_delivery_to_apic_fast()" }, "CVE-2018-12930": { "cmt_msg": "" @@ -101922,9 +98612,6 @@ "CVE-2021-35039": { "cmt_msg": "module: limit enabling module.sig_enforce" }, - "CVE-2019-0146": { - "cmt_msg": "" - }, "CVE-2021-20226": { "cmt_msg": "io_uring: don't rely on weak ->files references" }, @@ -101976,14 +98663,8 @@ "CVE-2021-3864": { "cmt_msg": "" }, - "CVE-2022-27950": { - "cmt_msg": "HID: elo: fix memory leak in elo_probe" - }, "CVE-2022-1652": { - "cmt_msg": "" - }, - "CVE-2022-1651": { - "cmt_msg": "virt: acrn: fix a memory leak in acrn_dev_ioctl()" + "cmt_msg": "floppy: use a statically allocated error counter" }, "CVE-2020-29568": { "cmt_msg": "xen/xenbus: Allow watches discard events before queueing" @@ -102129,12 +98810,6 @@ "CVE-2021-29647": { "cmt_msg": "net: qrtr: fix a kernel-infoleak in qrtr_recvmsg()" }, - "CVE-2022-0742": { - "cmt_msg": "ipv6: fix skb drops in igmp6_event_query() and igmp6_event_report()" - }, - "CVE-2022-0854": { - "cmt_msg": "swiotlb: rework \"fix info leak with DMA_FROM_DEVICE\"" - }, "CVE-2020-14390": { "cmt_msg": "fbcon: remove soft scrollback code" }, @@ -102142,7 +98817,7 @@ "cmt_msg": "f2fs: fix to do sanity check on last xattr entry in __f2fs_setxattr()" }, "CVE-2022-1184": { - "cmt_msg": "" + "cmt_msg": "ext4: verify dir block before splitting it" }, "CVE-2020-0465": { "cmt_msg": "HID: core: Sanitize event code and type when mapping input" @@ -102186,15 +98861,9 @@ "CVE-2021-20321": { "cmt_msg": "ovl: fix missing negative dentry check in ovl_rename()" }, - "CVE-2022-1043": { - "cmt_msg": "io_uring: fix xa_alloc_cycle() error return value check" - }, "CVE-2022-1048": { "cmt_msg": "ALSA: pcm: Fix races among concurrent hw_params and hw_free calls" }, - "CVE-2022-29968": { - "cmt_msg": "io_uring: fix uninitialized field in rw io_kiocb" - }, "CVE-2021-3542": { "cmt_msg": "" }, @@ -102234,9 +98903,6 @@ "CVE-2022-0400": { "cmt_msg": "" }, - "CVE-2021-0707": { - "cmt_msg": "dmabuf: fix use-after-free of dmabuf's file->f_inode" - }, "CVE-2022-26966": { "cmt_msg": "sr9700: sanity check for packet length" }, @@ -102321,12 +98987,6 @@ "CVE-2021-41864": { "cmt_msg": "bpf: Fix integer overflow in prealloc_elems_and_freelist()" }, - "CVE-2022-1998": { - "cmt_msg": "fanotify: Fix stale file descriptor in copy_event_to_user()" - }, - "CVE-2022-1852": { - "cmt_msg": "KVM: x86: avoid calling x86 emulator without a decoded instruction" - }, "CVE-2021-37576": { "cmt_msg": "KVM: PPC: Book3S: Fix H_RTAS rets buffer overflow" }, @@ -102366,9 +99026,6 @@ "CVE-2021-3483": { "cmt_msg": "firewire: nosy: Fix a use-after-free bug in nosy_ioctl()" }, - "CVE-2022-29156": { - "cmt_msg": "RDMA/rtrs-clt: Fix possible double free in error case" - }, "CVE-2021-38300": { "cmt_msg": "bpf, mips: Validate conditional branch offsets" }, @@ -102396,9 +99053,6 @@ "CVE-2021-3573": { "cmt_msg": "Bluetooth: use correct lock to prevent UAF of hdev object" }, - "CVE-2022-1976": { - "cmt_msg": "io_uring: reinstate the inflight tracking" - }, "CVE-2022-1974": { "cmt_msg": "nfc: replace improper check device_is_registered() in netlink related functions" }, @@ -102408,9 +99062,6 @@ "CVE-2022-1972": { "cmt_msg": "netfilter: nf_tables: sanitize nft_set_desc_concat_parse()" }, - "CVE-2022-1973": { - "cmt_msg": "fs/ntfs3: Fix invalid free in log_replay" - }, "CVE-2021-28972": { "cmt_msg": "PCI: rpadlpar: Fix potential drc_name corruption in store functions" }, @@ -102447,9 +99098,6 @@ "CVE-2021-28951": { "cmt_msg": "io_uring: ensure that SQPOLL thread is started for exit" }, - "CVE-2022-1671": { - "cmt_msg": "rxrpc: fix some null-ptr-deref bugs in server_key.c" - }, "CVE-2021-3653": { "cmt_msg": "KVM: nSVM: avoid picking up unsupported bits from L2 in int_ctl (CVE-2021-3653)" }, @@ -102495,8 +99143,8 @@ "CVE-2022-25375": { "cmt_msg": "usb: gadget: rndis: check size of RNDIS_MSG_SET command" }, - "CVE-2022-1280": { - "cmt_msg": "drm: avoid circular locks in drm_mode_getconnector" + "CVE-2021-45486": { + "cmt_msg": "inet: use bigger hash table for IP ID generation" }, "CVE-2020-12888": { "cmt_msg": "vfio-pci: Invalidate mmaps and block MMIO access on disabled memory" @@ -102561,15 +99209,9 @@ "CVE-2021-44879": { "cmt_msg": "f2fs: fix to do sanity check on inode type during garbage collection" }, - "CVE-2022-1516": { - "cmt_msg": "net/x25: Fix null-ptr-deref caused by x25_disconnect" - }, "CVE-2015-2877": { "cmt_msg": "" }, - "CVE-2022-0171": { - "cmt_msg": "" - }, "CVE-2019-16089": { "cmt_msg": "" }, @@ -102588,8 +99230,8 @@ "CVE-2020-28941": { "cmt_msg": "speakup: Do not let the line discipline be used several times" }, - "CVE-2021-45486": { - "cmt_msg": "inet: use bigger hash table for IP ID generation" + "CVE-2022-1280": { + "cmt_msg": "drm: avoid circular locks in drm_mode_getconnector" }, "CVE-2011-4917": { "cmt_msg": ""
diff --git a/data/stream_fixes.json b/data/stream_fixes.json index 614e5f6..4442455 100644 --- a/data/stream_fixes.json +++ b/data/stream_fixes.json
@@ -16413,6 +16413,20 @@ "fixed_version": "4.9.244" } }, + "CVE-2019-0146": { + "4.14": { + "cmt_id": "978c31f09d59cdd52cadc462f12862376e72f618", + "fixed_version": "4.14.205" + }, + "4.19": { + "cmt_id": "43a7e1cf606e96ee43f8897129972f0b79390367", + "fixed_version": "4.19.139" + }, + "4.9": { + "cmt_id": "f4a3ff4df40053000d56554f0d34aa98d4d917d6", + "fixed_version": "4.9.244" + } + }, "CVE-2019-0147": { "4.14": { "cmt_id": "978c31f09d59cdd52cadc462f12862376e72f618", @@ -24607,6 +24621,36 @@ "fixed_version": "5.4.129" } }, + "CVE-2020-26555": { + "4.14": { + "cmt_id": "4555cee33f7d75c1ee69902c872c9d1e9568ebd5", + "fixed_version": "4.14.234" + }, + "4.19": { + "cmt_id": "30126d4ba73119565f1748b116b9869ac6bbda6b", + "fixed_version": "4.19.192" + }, + "4.4": { + "cmt_id": "75523bbfb0eaead670c97fbcf096ca2ab556f0c0", + "fixed_version": "4.4.270" + }, + "4.9": { + "cmt_id": "6555a006b21ab49090b9a7b36e92d0421db19328", + "fixed_version": "4.9.270" + }, + "5.10": { + "cmt_id": "d8d261c7cfb3a5dd921b4aeeb944718afc3f3961", + "fixed_version": "5.10.40" + }, + "5.12": { + "cmt_id": "58cca5ec43be72a1af95f11966381e9953b0c9f5", + "fixed_version": "5.12.7" + }, + "5.4": { + "cmt_id": "f97257cde764ad6979a7dbeb460b9fb69276342e", + "fixed_version": "5.4.122" + } + }, "CVE-2020-26558": { "4.14": { "cmt_id": "4555cee33f7d75c1ee69902c872c9d1e9568ebd5", @@ -27445,6 +27489,16 @@ "fixed_version": "5.4.124" } }, + "CVE-2021-33135": { + "5.15": { + "cmt_id": "ce91f0f023adfc239b44261f6dccb4a883d44d92", + "fixed_version": "5.15.29" + }, + "5.16": { + "cmt_id": "248c6347720200b9e5f79a4339ddbe4ef0074d36", + "fixed_version": "5.16.15" + } + }, "CVE-2021-33200": { "5.12": { "cmt_id": "9accd53bd479974c434554e3446149884890623a", @@ -30356,6 +30410,18 @@ } }, "CVE-2022-0812": { + "4.14": { + "cmt_id": "4779af1ec4a6c88a7005c8aabe69f409cf926d58", + "fixed_version": "4.14.285" + }, + "4.19": { + "cmt_id": "4103bc54d8684a099615ae1fbab0590cf2167024", + "fixed_version": "4.19.249" + }, + "4.9": { + "cmt_id": "ca6226b5c5b4cf8c41ab7c759686c9aab43a2a33", + "fixed_version": "4.9.320" + }, "5.4": { "cmt_id": "c8a4452da9f4b09c28d904f70247b097d4c14932", "fixed_version": "5.4.53" @@ -30462,6 +30528,10 @@ "cmt_id": "99db28212be68030c1db3a525f6bbdce39b039e9", "fixed_version": "4.19.238" }, + "4.9": { + "cmt_id": "b79d4d0da659a3c7bd1d5913e62188ceb9be9c49", + "fixed_version": "4.9.320" + }, "5.10": { "cmt_id": "ab5595b45f732212b3b1974041b43a257153edb7", "fixed_version": "5.10.106" @@ -30488,6 +30558,10 @@ "cmt_id": "695309c5c71526d32f5539f008bbf20ed2218528", "fixed_version": "4.19.246" }, + "4.9": { + "cmt_id": "576696ed0dee677ec868960c39d96ae3b8c95a3f", + "fixed_version": "4.9.320" + }, "5.10": { "cmt_id": "a5c68f457fbf52c5564ca4eea03f84776ef14e41", "fixed_version": "5.10.119" @@ -30633,6 +30707,40 @@ "fixed_version": "5.4.189" } }, + "CVE-2022-1184": { + "4.14": { + "cmt_id": "d27d3caddbeff10871982d5e25e6557be0fdc29a", + "fixed_version": "4.14.283" + }, + "4.19": { + "cmt_id": "78398c2b2cc14f9a9c8592cf6d334c5a479ed611", + "fixed_version": "4.19.247" + }, + "4.9": { + "cmt_id": "93bbf0498ba20eadcd7132bd3cfdaff54eb72751", + "fixed_version": "4.9.318" + }, + "5.10": { + "cmt_id": "da2f05919238c7bdc6e28c79539f55c8355408bb", + "fixed_version": "5.10.121" + }, + "5.15": { + "cmt_id": "ca17db384762be0ec38373a12460081d22a8b42d", + "fixed_version": "5.15.46" + }, + "5.17": { + "cmt_id": "4b1cd51256e9267140153f04f4e62148adb2908c", + "fixed_version": "5.17.14" + }, + "5.18": { + "cmt_id": "298659c0e7074f774a794fc293df4014617b87be", + "fixed_version": "5.18.3" + }, + "5.4": { + "cmt_id": "17034d45ec443fb0e3c0e7297f9cd10f70446064", + "fixed_version": "5.4.198" + } + }, "CVE-2022-1195": { "4.14": { "cmt_id": "a7b0ae2cc486fcb601f9f9d87d98138cc7b7f7f9", @@ -30889,6 +30997,36 @@ "fixed_version": "5.17.2" } }, + "CVE-2022-1652": { + "4.14": { + "cmt_id": "dc650d53bad770f169e498f1231671c51b0b321d", + "fixed_version": "4.14.281" + }, + "4.19": { + "cmt_id": "3392d8711ad9e5b688999c948fd36d798c0d075d", + "fixed_version": "4.19.245" + }, + "4.9": { + "cmt_id": "2adafe1c646b462c755e99216f966927eec96059", + "fixed_version": "4.9.316" + }, + "5.10": { + "cmt_id": "911b36267855501f7f80a75927c128c0ac03fe58", + "fixed_version": "5.10.118" + }, + "5.15": { + "cmt_id": "fc2bee93e31bbba920e9eeba76af72264ced066f", + "fixed_version": "5.15.42" + }, + "5.17": { + "cmt_id": "88887ced7803132ed357a42d050560a2fb5c7ce6", + "fixed_version": "5.17.10" + }, + "5.4": { + "cmt_id": "67e2b62461b5d02a1e63103e8a02c0bca75e26c7", + "fixed_version": "5.4.196" + } + }, "CVE-2022-1671": { "5.15": { "cmt_id": "432297011caf71dbc95c3365a65adf365e79aff3", @@ -31181,6 +31319,12 @@ "fixed_version": "5.4.193" } }, + "CVE-2022-1976": { + "5.18": { + "cmt_id": "bba36a27c38650eefc79d18c33a0acd0dcbeabb8", + "fixed_version": "5.18.6" + } + }, "CVE-2022-1998": { "5.10": { "cmt_id": "7b4741644cf718c422187e74fb07661ef1d68e85", @@ -31359,6 +31503,20 @@ "fixed_version": "5.4.197" } }, + "CVE-2022-2153": { + "5.15": { + "cmt_id": "0e5dbc0540baa89faf4c04ccc7e9c4fe6b1d7bf4", + "fixed_version": "5.15.33" + }, + "5.16": { + "cmt_id": "9e38128f8bd1d4f2244d8a393bc5dc204a99a541", + "fixed_version": "5.16.19" + }, + "5.17": { + "cmt_id": "9fa2b94443ff41cdecdff6f4d4324d83af01089a", + "fixed_version": "5.17.2" + } + }, "CVE-2022-22942": { "4.14": { "cmt_id": "e8d092a62449dcfc73517ca43963d2b8f44d0516", @@ -32171,7 +32329,57 @@ "fixed_version": "5.4.189" } }, + "CVE-2022-32250": { + "4.14": { + "cmt_id": "5b732a9e8e22395d911b3e6c343cbed0e1cec275", + "fixed_version": "4.14.283" + }, + "4.19": { + "cmt_id": "ed44398b45add3d9be56b7457cc9e05282e518b4", + "fixed_version": "4.19.247" + }, + "4.9": { + "cmt_id": "94e9b75919619ba8c4072abc4917011a7a888a79", + "fixed_version": "4.9.318" + }, + "5.10": { + "cmt_id": "ea62d169b6e731e0b54abda1d692406f6bc6a696", + "fixed_version": "5.10.120" + }, + "5.15": { + "cmt_id": "f692bcffd1f2ce5488d24fbcb8eab5f351abf79d", + "fixed_version": "5.15.45" + }, + "5.17": { + "cmt_id": "d8db0465bcc4d4b54ecfb67b820ed26eb1440da7", + "fixed_version": "5.17.13" + }, + "5.18": { + "cmt_id": "8f44c83e51b4ca49c815f8dd0d9c38f497cdbcb0", + "fixed_version": "5.18.2" + }, + "5.4": { + "cmt_id": "f36736fbd48491a8d85cd22f4740d542c5a1546e", + "fixed_version": "5.4.198" + } + }, "CVE-2022-32296": { + "4.14": { + "cmt_id": "9044e70fadec49482c3cb3c2f49e81825796ea6d", + "fixed_version": "4.14.285" + }, + "4.19": { + "cmt_id": "514cd2859c5017fdc487165b093b328e24afe954", + "fixed_version": "4.19.249" + }, + "4.9": { + "cmt_id": "3c78eea640f69e2198b69128173e6d65a0bcdc02", + "fixed_version": "4.9.320" + }, + "5.10": { + "cmt_id": "9429b75bc271b6f29e50dbb0ee0751800ff87dd9", + "fixed_version": "5.10.125" + }, "5.15": { "cmt_id": "952a238d779eea4ecb2f8deb5004c8f56be79bc9", "fixed_version": "5.15.41" @@ -32179,6 +32387,10 @@ "5.17": { "cmt_id": "e3ee7bb47d6509c3e8a3e96e5d8e3bf21549b6e8", "fixed_version": "5.17.9" + }, + "5.4": { + "cmt_id": "c26e1addf15763ae404f4bbf131719a724e768ab", + "fixed_version": "5.4.201" } }, "CVE-2022-32981": { @@ -32214,5 +32426,63 @@ "cmt_id": "0c4bc0a2f8257f79a70fe02b9a698eb14695a64b", "fixed_version": "5.4.198" } + }, + "CVE-2022-33981": { + "4.14": { + "cmt_id": "b7fa84ae1171a3c5ea5d710899080a6e63cfe084", + "fixed_version": "4.14.278" + }, + "4.19": { + "cmt_id": "0e535976774504af36fab1dfb54f3d4d6cc577a9", + "fixed_version": "4.19.241" + }, + "4.9": { + "cmt_id": "0dd02ff72c6daf4e7800fb5dd1109fbacdde97dc", + "fixed_version": "4.9.313" + }, + "5.10": { + "cmt_id": "54c028cfc49624bfc27a571b94edecc79bbaaab4", + "fixed_version": "5.10.114" + }, + "5.15": { + "cmt_id": "e52da8e4632f9c8fe78bf1c5881ce6871c7e08f3", + "fixed_version": "5.15.37" + }, + "5.17": { + "cmt_id": "d91ca05d52fabf68c0376bcfeed1a52be68a8e1b", + "fixed_version": "5.17.6" + }, + "5.4": { + "cmt_id": "7dea5913000c6a2974a00d9af8e7ffb54e47eac1", + "fixed_version": "5.4.192" + } + }, + "CVE-2022-34494": { + "5.15": { + "cmt_id": "b94d40c792de7f0ceda6a2fd8a8dc0597eca6d22", + "fixed_version": "5.15.47" + }, + "5.17": { + "cmt_id": "900373f8f7ee128cbbd3968722182b8d26c1e54e", + "fixed_version": "5.17.15" + }, + "5.18": { + "cmt_id": "d51720ac069d465101d937273acecde1f71ea411", + "fixed_version": "5.18.4" + } + }, + "CVE-2022-34495": { + "5.15": { + "cmt_id": "eaf37bb6b4f7c48a5adaf1be4879107daf4d6024", + "fixed_version": "5.15.47" + }, + "5.17": { + "cmt_id": "c49fb74e050d01ea09703b7c0d5fe8b9c3855b60", + "fixed_version": "5.17.15" + }, + "5.18": { + "cmt_id": "b7e88e4bb41dea89b1dadf7a985d7aff53720629", + "fixed_version": "5.18.4" + } } } \ No newline at end of file