lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [thread-next>] [day] [month] [year] [list]
Message-ID: <20260119092602.1414468-1-keerthana.kalyanasundaram@broadcom.com>
Date: Mon, 19 Jan 2026 09:25:57 +0000
From: Keerthana K <keerthana.kalyanasundaram@...adcom.com>
To: stable@...r.kernel.org,
	gregkh@...uxfoundation.org
Cc: j.vosburgh@...il.com,
	vfalico@...il.com,
	andy@...yhouse.net,
	davem@...emloft.net,
	kuba@...nel.org,
	kuznet@....inr.ac.ru,
	yoshfuji@...ux-ipv6.org,
	borisp@...dia.com,
	aviadye@...dia.com,
	john.fastabend@...il.com,
	daniel@...earbox.net,
	ast@...nel.org,
	andrii@...nel.org,
	kafai@...com,
	songliubraving@...com,
	yhs@...com,
	kpsingh@...nel.org,
	carlos.soto@...adcom.com,
	simon.horman@...igine.com,
	luca.czesla@...l.schwarzv,
	felix.huettner@...l.schwarz,
	ilyal@...lanox.com,
	netdev@...r.kernel.org,
	bpf@...r.kernel.org,
	ajay.kaher@...adcom.com,
	alexey.makhalov@...adcom.com,
	vamsi-krishna.brahmajosyula@...adcom.com,
	yin.ding@...adcom.com,
	tapas.kundu@...adcom.com,
	Keerthana K <keerthana.kalyanasundaram@...adcom.com>
Subject: [PATCH v2 v5.10.y 0/5] Backport fixes for CVE-2025-40149

Following commits are pre-requisite for the commit c65f27b9c
- 1dbf1d590 (net: Add locking to protect skb->dev access in ip_output)
- 5b9985454 (net/bonding: Take IP hash logic into a helper)
- 007feb87f (net/bonding: Implement ndo_sk_get_lower_dev)
- 719a402cf (net: netdevice: Add operation ndo_sk_get_lower_dev)

Kuniyuki Iwashima (1):
  tls: Use __sk_dst_get() and dst_dev_rcu() in get_netdev_for_sock().

Sharath Chandra Vurukala (1):
  net: Add locking to protect skb->dev access in ip_output

Tariq Toukan (3):
  net/bonding: Take IP hash logic into a helper
  net/bonding: Implement ndo_sk_get_lower_dev
  net: netdevice: Add operation ndo_sk_get_lower_dev

 drivers/net/bonding/bond_main.c | 109 ++++++++++++++++++++++++++++++--
 include/linux/netdevice.h       |   4 ++
 include/net/bonding.h           |   2 +
 include/net/dst.h               |  12 ++++
 net/core/dev.c                  |  33 ++++++++++
 net/ipv4/ip_output.c            |  16 +++--
 net/tls/tls_device.c            |  18 +++---
 7 files changed, 176 insertions(+), 18 deletions(-)

-- 
2.43.7


Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ