CVE-2024-53068

firmware: arm_scmi: Fix slab-use-after-free in scmi_bus_notifier()

References

Notes

 carnil> Introduced in ee7a9c9f67c5 ("firmware: arm_scmi: Add support for multiple
 carnil> device per protocol"). Vulnerable versions: 5.6-rc1.

Bugs

Status

Branch Status
upstream released (6.12-rc7) [295416091e44806760ccf753aeafdafc0ae268f3]
6.18-upstream-stable N/A "Fixed before branching point"
6.17-upstream-stable N/A "Fixed before branching point"
6.12-upstream-stable N/A "Fixed before branching point"
6.11-upstream-stable released (6.11.8) [1e1f523b185a8ccdcba625b31ff0312d052900e2]
6.6-upstream-stable released (6.6.61) [15b17bbcea07d49c43d21aa700485cbd9f9d00d8]
6.1-upstream-stable needed
5.10-upstream-stable needed
4.19-upstream-stable N/A "Vulnerable code not present"
sid released (6.11.9-1)
6.12-trixie-security N/A "Fixed before branching point"
6.1-bookworm-security needed
5.10-bullseye-security needed