CVE-2023-52653

SUNRPC: fix a memleak in gss_import_v2_context

References

Notes

 carnil> Introduced in 47d848077629 ("gss_krb5: handle new context format from gssd").
 carnil> Vulnerable versions: 2.6.35-rc1.

Bugs

Status

Branch Status
upstream released (6.9-rc1) [e67b652d8e8591d3b1e569dbcdfcee15993e91fa]
6.18-upstream-stable N/A "Fixed before branching point"
6.17-upstream-stable N/A "Fixed before branching point"
6.12-upstream-stable N/A "Fixed before branching point"
6.8-upstream-stable released (6.8.2) [d111e30d9cd846bb368faf3637dc0f71fcbcf822]
6.6-upstream-stable released (6.6.23) [99044c01ed5329e73651c054d8a4baacdbb1a27c]
6.1-upstream-stable needed
5.10-upstream-stable needed
sid released (6.7.12-1)
6.12-trixie-security N/A "Fixed before branching point"
6.1-bookworm-security needed
5.10-bullseye-security needed