In the Linux kernel, the following vulnerability has been resolved: net: macb: drop in-flight Tx SKBs on close The MACB driver has since forever leaked the outgoing SKBs that have not yet been mark…
Info
Summary
In the Linux kernel, the following vulnerability has been resolved: net: macb: drop in-flight Tx SKBs on close The MACB driver has since forever leaked the outgoing SKBs that have not yet been marked as completed. They live in queue->tx_skb which gets freed without remorse nor checking. macb_free_consistent() gets called in a few codepaths, but only close will trigger the added expressions. In macb_open() and macb_alloc_consistent() failure cases, queues' tx_skb just got allocated and are em…
In-depth triage
No in-depth report has been generated yet (DR-003 v2 AI pipeline is under construction).
Sources
- NVD DATABASE
Original Links
- https://git.kernel.org/stable/c/0e9797dc4ebdefe1b7f931b1f92d5e98e5dbf655
- https://git.kernel.org/stable/c/109241d9880488aafd8e104832b4d4859ad57244
- https://git.kernel.org/stable/c/2143fdc0ce27adbb1caaa1a97e0bfb9f3750aef4
- https://git.kernel.org/stable/c/26b131b2d5b55a81ef6182769d28105a870c0eb2
- https://git.kernel.org/stable/c/27f575836cfebbf872dec020428742b10650a955
- https://git.kernel.org/stable/c/6124bd785073659c99385094657b77382ebce11b
Timeline
- nvd_ingest NVD