In the Linux kernel, the following vulnerability has been resolved: firmware_loader: Block path traversal Most firmware names are hardcoded strings, or are constructed from fairly constrained forma…
High CVSS 7.8
Summary
In the Linux kernel, the following vulnerability has been resolved: firmware_loader: Block path traversal Most firmware names are hardcoded strings, or are constructed from fairly constrained format strings where the dynamic parts are just some hex numbers or such. However, there are a couple codepaths in the kernel where firmware file names contain string components that are passed through from a device or semi-privileged userspace; the ones I could find (not counting interfaces that requir…
In-depth triage · Auto channel
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Affected products
- :
- :
Sources
- NVD DATABASE
Original Links
- https://git.kernel.org/stable/c/28f1cd94d3f1092728fb775a0fe26c5f1ac2ebeb Patch
- https://git.kernel.org/stable/c/3d2411f4edcb649eaf232160db459bb4770b5251 Patch
- https://git.kernel.org/stable/c/6c4e13fdfcab34811c3143a0a03c05fec4e870ec Patch
- https://git.kernel.org/stable/c/7420c1bf7fc784e587b87329cc6dfa3dca537aa4 Patch
- https://git.kernel.org/stable/c/9b1ca33ebd05b3acef5b976c04e5e791af93ce1b Patch
- https://git.kernel.org/stable/c/a77fc4acfd49fc6076e565445b2bc5fdc3244da4 Patch
- https://git.kernel.org/stable/c/c30558e6c5c9ad6c86459d9acce1520ceeab9ea6 Patch
- https://git.kernel.org/stable/c/d1768e5535d3ded59f888637016e6f821f4e069f Patch
- https://git.kernel.org/stable/c/f0e5311aa8022107d63c54e2f03684ec097d1394 Patch
- https://lists.debian.org/debian-lts-announce/2025/01/msg00001.html Mailing List
- https://lists.debian.org/debian-lts-announce/2025/03/msg00002.html Mailing List
Timeline
- nvd_ingest NVD