Bug 1226834 (CVE-2024-36288) - VUL-0: CVE-2024-36288: kernel: SUNRPC: Fix loop termination condition in gss_free_in_token_pages()
Summary: VUL-0: CVE-2024-36288: kernel: SUNRPC: Fix loop termination condition in gss_...
Status: RESOLVED FIXED
Alias: CVE-2024-36288
Product: SUSE Security Incidents
Classification: Novell Products
Component: Incidents (show other bugs)
Version: unspecified
Hardware: Other Other
: P3 - Medium : Normal
Target Milestone: ---
Assignee: Security Team bot
QA Contact: Security Team bot
URL: https://smash.suse.de/issue/411778/
Whiteboard: CVSSv3.1:SUSE:CVE-2024-36288:5.5:(AV:...
Keywords:
Depends on:
Blocks:
 
Reported: 2024-06-24 06:13 UTC by SMASH SMASH
Modified: 2024-07-01 13:37 UTC (History)
2 users (show)

See Also:
Found By: Security Response Team
Services Priority:
Business Priority:
Blocker: ---
Marketing QA Status: ---
IT Deployment: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Comment 1 Alexander Bergmann 2024-06-24 06:42:09 UTC
Affected and fixed versions
===========================
Issue introduced in 6.9.3 with commit 8ca148915670 and fixed in 6.9.4 with commit 0a1cb0c6102b
Issue introduced in 6.10-rc1 with commit bafa6b4d95d9 and fixed in 6.10-rc3 with commit 4a77c3dead97
Issue introduced in 6.8.12 with commit a3c1afd5d7ad


None of SLE kernels are affected.
Comment 3 Andrea Mattiazzo 2024-07-01 13:37:40 UTC
All done, closing.