Bugzilla – Bug 1143038
VUL-1: CVE-2018-20854: kernel-source: out-of-bounds read on array ctrl->phys, once variable i reaches the maximum array size
Last modified: 2020-05-12 11:20:52 UTC
CVE-2018-20854 An issue was discovered in the Linux kernel before 4.20. drivers/phy/mscc/phy-ocelot-serdes.c has an off-by-one error with a resultant ctrl->phys out-of-bounds read. References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2018-20854 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-20854 https://github.com/torvalds/linux/commit/6acb47d1a318e5b3b7115354ebc4ea060c59d3a1 https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=6acb47d1a318e5b3b7115354ebc4ea060c59d3a1
Only versions above 4.20 are affected. The fix had already been pushed upstream last year
Right, it was only about TW, and it's done. SLE15-SPx don't contain the driver. Reassigned back to security team.
Done