|
Bugzilla – Full Text Bug Listing |
| Summary: | VUL-0: CVE-2022-48673: kernel: net/smc: Fix possible access to freed memory in link clear | ||
|---|---|---|---|
| Product: | [Novell Products] SUSE Security Incidents | Reporter: | SMASH SMASH <smash_bz> |
| Component: | Incidents | Assignee: | Hannes Reinecke <hare> |
| Status: | NEW --- | QA Contact: | Security Team bot <security-team> |
| Severity: | Normal | ||
| Priority: | P2 - High | CC: | andrea.mattiazzo, denis.kirjanov, gabriel.bertazi, ihno, marcela.maslanova, marcus.kraft1, mhocko, nicolas.morey, rfrohl, tstaudt |
| Version: | unspecified | Flags: | marcela.maslanova:
needinfo?
(tstaudt) hare: needinfo? (marcela.maslanova) |
| Target Milestone: | --- | ||
| Hardware: | Other | ||
| OS: | Other | ||
| URL: | https://smash.suse.de/issue/404292/ | ||
| See Also: | https://bugzilla.linux.ibm.com/show_bug.cgi?id=207409 | ||
| Whiteboard: | CVSSv3.1:SUSE:CVE-2022-48673:7.0:(AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H) | ||
| Found By: | Security Response Team | Services Priority: | |
| Business Priority: | Blocker: | --- | |
| Marketing QA Status: | --- | IT Deployment: | --- |
| Bug Depends on: | |||
| Bug Blocks: | 1223940 | ||
|
Description
SMASH SMASH
2024-05-06 09:54:40 UTC
I'll push it shorlty Hi Thomas, can you sync this bug and help us fix it? Also it is a little unclear whether SMC is fully supported or not. Thank you, Marcela Please punt it over to IBM. SMC is the guest-to-guest communication between zSeries guests (and the _only_ user of that), so IBM needs at least to be made aware. And actually we are rely on IBM to provide us backports for 'normal' fixes, so this might as well handled by them, too. Marcela, can you please contact IBM? ------- Comment From tstaudt@de.ibm.com 2024-07-15 06:34 EDT------- (In reply to comment #7) > Please punt it over to IBM. SMC is the guest-to-guest communication between > zSeries guests (and the _only_ user of that), so IBM needs at least to be > made aware. And actually we are rely on IBM to provide us backports for > 'normal' fixes, so this might as well handled by them, too. > Marcela, can you please contact IBM? Hello Hannes, we are aware - the bug has been mirrored, see the "See also:" link in the SUSE bug. Apologies for not replying externally - we are working on this. |