CVE-2024-41048

skmsg: Skip zero length skb in sk_msg_recvmsg

References

Notes

 carnil> Introduced in 604326b41a6f ("bpf, sockmap: convert to generic sk_msg
 carnil> interface"). Vulnerable versions: 4.20-rc1.

Bugs

Status

Branch Status
upstream released (6.10) [f0c18025693707ec344a70b6887f7450bf4c826b]
6.18-upstream-stable N/A "Fixed before branching point"
6.17-upstream-stable N/A "Fixed before branching point"
6.12-upstream-stable N/A "Fixed before branching point"
6.10-upstream-stable released (6.10) [f0c18025693707ec344a70b6887f7450bf4c826b]
6.9-upstream-stable released (6.9.10) [f8bd689f37f4198a4c61c4684f591ba639595b97]
6.6-upstream-stable released (6.6.41) [b180739b45a38b4caa88fe16bb5273072e6613dc]
6.1-upstream-stable released (6.1.100) [fb61d7b9fb6ef0032de469499a54dab4c7260d0d]
5.10-upstream-stable needed
4.19-upstream-stable N/A "Vulnerable code not present"
sid released (6.9.10-1)
6.12-trixie-security N/A "Fixed before branching point"
6.1-bookworm-security released (6.1.106-1)
5.10-bullseye-security needed