Add security fixes
Bug #2012644 reported by
Heinrich Schuchardt
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
u-boot-nezha (Ubuntu) |
Fix Released
|
Undecided
|
Unassigned | ||
Jammy |
Confirmed
|
Undecided
|
Eduardo Barretto | ||
Kinetic |
Won't Fix
|
Undecided
|
Unassigned | ||
Lunar |
Confirmed
|
Undecided
|
Eduardo Barretto |
Bug Description
[ Impact ]
The following upstream fixes from https:/
fbce985e28ea ("usb: gadget: dfu: Fix the unchecked length field")
1817c3824a08 ("net: (actually/better) deal with CVE-2022-
14dc0ab13898 ("usb: gadget: dfu: Fix check of transfer direction")
[ Test Plan ]
Test that the Nezha and the LicheeRV Dock board can be booted on the target release with the updated u-boot-nezha package installed.
[ Where problems could occur ]
Booting the Nezha or the LicheeRV Dock board might fail.
[ Other Info ]
n/a
CVE References
Changed in u-boot-nezha (Ubuntu): | |
assignee: | nobody → Heinrich Schuchardt (xypron) |
Changed in u-boot-nezha (Ubuntu): | |
assignee: | Heinrich Schuchardt (xypron) → nobody |
Changed in u-boot-nezha (Ubuntu Lunar): | |
status: | New → Fix Released |
information type: | Private Security → Public Security |
Changed in u-boot-nezha (Ubuntu Lunar): | |
status: | Fix Released → New |
Changed in u-boot-nezha (Ubuntu Jammy): | |
status: | New → Confirmed |
Changed in u-boot-nezha (Ubuntu Kinetic): | |
status: | New → Confirmed |
Changed in u-boot-nezha (Ubuntu Lunar): | |
status: | New → Confirmed |
tags: | added: jammy kinetic lunar |
Changed in u-boot-nezha (Ubuntu Kinetic): | |
status: | Confirmed → Won't Fix |
Changed in u-boot-nezha (Ubuntu Jammy): | |
assignee: | nobody → Eduardo Barretto (ebarretto) |
Changed in u-boot-nezha (Ubuntu Lunar): | |
assignee: | nobody → Eduardo Barretto (ebarretto) |
To post a comment you must log in.
Hi Heinrich,
Thanks for contacting us and providing a debdiff. Are you also going to provide a debdiff for jammy and kinetic?