lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [<thread-prev] [day] [month] [year] [list]
Message-ID: <2025073001-hypertext-robotics-046f@gregkh>
Date: Wed, 30 Jul 2025 07:58:08 +0200
From: Greg Kroah-Hartman <gregkh@...uxfoundation.org>
To: Shung-Hsi Yu <shung-hsi.yu@...e.com>
Cc: cve@...nel.org, LKML <linux-kernel@...r.kernel.org>,
	Michal Hocko <mhocko@...e.com>,
	João Póvoas <joao.povoas@...e.com>
Subject: Re: [PATCH vulns 1/3] add a .vulnerable id for CVE-2024-53099

On Tue, Jul 29, 2025 at 04:18:22PM +0800, Shung-Hsi Yu wrote:
> The issue is present since the inroduction of BPF link abstraction with
> commit 70ed506c3bbc "bpf: Introduce pinnable bpf_link abstraction".
> 
> Signed-off-by: Shung-Hsi Yu <shung-hsi.yu@...e.com>
> ---
>  cve/published/2024/CVE-2024-53099.vulnerable | 1 +
>  1 file changed, 1 insertion(+)
>  create mode 100644 cve/published/2024/CVE-2024-53099.vulnerable
> 
> diff --git a/cve/published/2024/CVE-2024-53099.vulnerable b/cve/published/2024/CVE-2024-53099.vulnerable
> new file mode 100644
> index 000000000..3a7ce7976
> --- /dev/null
> +++ b/cve/published/2024/CVE-2024-53099.vulnerable
> @@ -0,0 +1 @@
> +70ed506c3bbcfa846d4636b23051ca79fa4781f7
> -- 
> 2.50.1
> 
> 

All now applied, thanks!

greg k-h

Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ