Nixpkgs security tracker

Login with GitHub
⚠️ You are using a production deployment that is still only suitable for demo purposes. Any work done in this might be wiped later without notice.

Suggestion detail

Dismissed
(max. allowed matches exceeded)
created 3 weeks, 4 days ago Activity log
  • Created & dismissed (max. allowed matches exceeded) suggestion
i2c: mlxbf: Fix use-after-free in mlxbf_i2c_init_resource()

In the Linux kernel, the following vulnerability has been resolved: i2c: mlxbf: Fix use-after-free in mlxbf_i2c_init_resource() If devm_platform_get_and_ioremap_resource() returns an error, mlxbf_i2c_init_resource() frees tmp_res before reading tmp_res->io to get the error code. This results in a use-after-free. Save the error code before freeing tmp_res.

Affected products

Linux
  • <6a108c9f5a81bb7b29dbb1398be0089655b6bfd2
  • <c4d9b6a0c9645366d9e4af8a6ac8347bd4c841aa
  • <71356737a7a55c76fee847563e3d33f8e6dc6b6d
  • <5290a52533e09c38374963f4bb0b35121fe555c7
  • <5.10
  • <ce960a1b2caa4ad08291f28d8bcf17ad5a864e54
  • <e6a395a71f4652261d09b572a03c96052662a056
  • =<5.10.*
  • =<6.6.*
  • =<*
  • <fb267770bf822064f510c9b46743f533d8fa8a5f
  • =<6.18.*
  • =<6.12.*
  • <b398cbbbb9dd76210682a8c9aabd34c5168800b9
  • =<5.15.*
  • ==5.10
  • =<7.1.*
  • =<6.1.*