Nixpkgs security tracker

Try the new UI
Login with GitHub
⚠️ You are using a production deployment that is still only suitable for demo purposes. Any work done in this might be wiped later without notice.

Suggestion detail

Dismissed
(max. allowed matches exceeded)
created 1 week, 6 days ago Activity log
  • Created & dismissed (max. allowed matches exceeded) suggestion
ata: pata_sl82c105: fix bridge revision use-after-free

In the Linux kernel, the following vulnerability has been resolved: ata: pata_sl82c105: fix bridge revision use-after-free pci_get_slot() returns a referenced PCI device. Commit 44c10138fd4b ("PCI: Change all drivers to use pci_device->revision") replaced a configuration-space read with direct access to the cached revision field, but left that access after pci_dev_put(). The bridge may therefore be freed before its revision is read. Read the revision before dropping the reference.

Affected products

Linux
  • <2.6.23
  • =<5.15.*
  • <7700a31039cdc6715cb6cce7e7a664ee4e945f67
  • <a837deeaa37cc3f0e8c4e5c096787047f272c956
  • =<*
  • ==2.6.23
  • <5ef87b1b4656d675440ceab32a56e69ad958d3a1
  • <1268ca9418e2217f2b60705cf4a280b689b26678
  • =<6.18.*
  • =<6.12.*
  • =<7.1.*
  • <dc711fb137b33c12e6ca22b6a9c9b9f21d49e4de
  • =<6.6.*
  • =<5.10.*
  • <a626dfca96041842053cf2d1efceb436c4cd8dcf
  • =<6.1.*
  • <fa0dca89b4fb0909ffda7b9ab6051af33270f95e
  • <56fd78c8c820f527f8003e379ab71004b2e79a44