CVE-2024-44986

ipv6: fix possible UAF in ip6_finish_output2()

References

Notes

 carnil> Introduced in 5796015fa968 ("ipv6: allocate enough headroom in
 carnil> ip6_finish_output2()"). Vulnerable versions: 5.4.137 5.10.55 5.13.7 5.14-rc2.

Bugs

Status

Branch Status
upstream released (6.11-rc5) [da273b377ae0d9bd255281ed3c2adb228321687b]
6.18-upstream-stable N/A "Fixed before branching point"
6.17-upstream-stable N/A "Fixed before branching point"
6.12-upstream-stable N/A "Fixed before branching point"
6.10-upstream-stable released (6.10.7) [56efc253196751ece1fc535a5b582be127b0578a]
6.6-upstream-stable released (6.6.48) [6ab6bf731354a6fdbaa617d1ec194960db61cf3b]
6.1-upstream-stable released (6.1.107) [3574d28caf9a09756ae87ad1ea096c6f47b6101e]
5.10-upstream-stable needed
4.19-upstream-stable N/A "Vulnerable code not present"
sid released (6.10.7-1)
6.12-trixie-security N/A "Fixed before branching point"
6.1-bookworm-security released (6.1.112-1)
5.10-bullseye-security needed