CVE-2024-43817

net: missing check virtio

References

Notes

 carnil> Introduced in 0f6925b3e8da ("virtio_net: Do not pull payload in skb->head").
 carnil> Vulnerable versions: 4.14.242 4.19.201 5.4.121 5.10.39 5.12-rc7.

Bugs

Status

Branch Status
upstream released (6.11-rc1) [e269d79c7d35aa3808b1f3c1737d63dab504ddc8]
6.18-upstream-stable N/A "Fixed before branching point"
6.17-upstream-stable N/A "Fixed before branching point"
6.12-upstream-stable N/A "Fixed before branching point"
6.10-upstream-stable released (6.10.3) [e9164903b8b303c34723177b02fe91e49e3c4cd7]
6.6-upstream-stable released (6.6.44) [90d41ebe0cd4635f6410471efc1dd71b33e894cf]
6.1-upstream-stable released (6.1.103) [5b1997487a3f3373b0f580c8a20b56c1b64b0775]
5.10-upstream-stable needed
sid released (6.10.3-1)
6.12-trixie-security N/A "Fixed before branching point"
6.1-bookworm-security released (6.1.106-1)
5.10-bullseye-security needed