Assigner | Linux |
Reserved | 2024-03-06 |
Published | 2024-05-01 |
Updated | 2024-06-06 |
Description
In the Linux kernel, the following vulnerability has been resolved: SUNRPC: fix a memleak in gss_import_v2_context The ctx->mech_used.data allocated by kmemdup is not freed in neither gss_import_v2_context nor it only caller gss_krb5_import_sec_context, which frees ctx on error. Thus, this patch reform the last call of gss_import_v2_context to the gss_krb5_import_ctx_v2, preventing the memleak while keepping the return formation.
Product status
47d848077629 before 99044c01ed53
47d848077629 before 47ac11db93e7
47d848077629 before d111e30d9cd8
47d848077629 before e67b652d8e85
2.6.35
Any version before 2.6.35
6.6.23
6.7.11
6.8.2
6.9
References
https://git.kernel.org/stable/c/99044c01ed5329e73651c054d8a4baacdbb1a27c
https://git.kernel.org/stable/c/47ac11db93e74ac49cd6c3fc69bcbc5964c4a8b4
https://git.kernel.org/stable/c/d111e30d9cd846bb368faf3637dc0f71fcbcf822
https://git.kernel.org/stable/c/e67b652d8e8591d3b1e569dbcdfcee15993e91fa