CVE-2024-57982

xfrm: state: fix out-of-bounds read during lookup

References

Notes

 carnil> Introduced in c2f672fc9464 ("xfrm: state lookup can be lockless"). Vulnerable
 carnil> versions: 4.9-rc1.

Bugs

Status

Branch Status
upstream released (6.14-rc1) [e952837f3ddb0ff726d5b582aa1aad9aa38d024d]
6.18-upstream-stable N/A "Fixed before branching point"
6.17-upstream-stable N/A "Fixed before branching point"
6.13-upstream-stable released (6.13.2) [dd4c2a174994238d55ab54da2545543d36f4e0d0]
6.12-upstream-stable released (6.12.13) [a16871c7832ea6435abb6e0b58289ae7dcb7e4fc]
6.6-upstream-stable needed
6.1-upstream-stable needed
5.10-upstream-stable needed
sid released (6.12.13-1)
6.12-trixie-security N/A "Fixed before branching point"
6.1-bookworm-security needed
5.10-bullseye-security needed