|
Bugzilla – Full Text Bug Listing |
| Summary: | VUL-0: CVE-2023-52797: kernel: drivers: perf: Check find_first_bit() return value | ||
|---|---|---|---|
| Product: | [Novell Products] SUSE Security Incidents | Reporter: | SMASH SMASH <smash_bz> |
| Component: | Incidents | Assignee: | Security Team bot <security-team> |
| Status: | RESOLVED INVALID | QA Contact: | Security Team bot <security-team> |
| Severity: | Normal | ||
| Priority: | P3 - Medium | CC: | carlos.lopez, gabriel.bertazi, tiwai |
| Version: | unspecified | ||
| Target Milestone: | --- | ||
| Hardware: | Other | ||
| OS: | Other | ||
| URL: | https://smash.suse.de/issue/407083/ | ||
| Whiteboard: | CVSSv3.1:SUSE:CVE-2023-52797:6.1:(AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:H) | ||
| Found By: | Security Response Team | Services Priority: | |
| Business Priority: | Blocker: | --- | |
| Marketing QA Status: | --- | IT Deployment: | --- |
|
Description
SMASH SMASH
2024-05-23 11:13:14 UTC
This is RISC-V specific, which we don't build, so I consider it a NOP. CC'ing Takashi for awareness and returning to security team.
For the record:
[0:krisman@cartola kernel-source]$ ../scripts/scripts/check-kernel-fix -r -s 6.1 CVE-2023-52797
c6e316ac0553 ("drivers: perf: Check find_first_bit() return value") merged v6.7-rc1~21^2~3
Fixes: 4905ec2fb7e6 ("RISC-V: Add sscofpmf extension support") merged v5.18-rc1~121^2~1^2~2
Security fix for CVE-2023-52797 bsc#1225115 with CVSS 6.1
Experts candidates: tiwai@suse.de
..............................
ACTION NEEDED!
SLE15-SP6: MANUAL: backport c6e316ac05532febb0c966fa9b55f5258ed037be (Fixes 4905ec2fb7e6)
Nothing to do, closing. |