In the Linux kernel, the following vulnerability has been resolved:
mips: bmips: BCM6358: make sure CBR is correctly set
It was discovered that some device have CBR address set to 0 causing
kernel panic when arch_sync_dma_for_cpu_all is called.
This was notice in situation where the system is booted from TP1 and
BMIPS_GET_CBR() returns 0 instead of a valid address and
!!(read_c0_brcm_cmt_local() & (1 << 31)); not failing.
The current check whether RAC flush should be disabled or not are not
enough hence lets check if CBR is a valid address or not.
Vendor | Product | Version | CPE |
---|---|---|---|
linux | linux_kernel | * | cpe:2.3:o:linux:linux_kernel:*:*:*:*:*:*:*:* |
[
{
"product": "Linux",
"vendor": "Linux",
"defaultStatus": "unaffected",
"repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
"programFiles": [
"arch/mips/bmips/setup.c"
],
"versions": [
{
"version": "d65de5ee8b72",
"lessThan": "10afe5f7d30f",
"status": "affected",
"versionType": "git"
},
{
"version": "47a449ec09b4",
"lessThan": "36d771ce6028",
"status": "affected",
"versionType": "git"
},
{
"version": "65b723644294",
"lessThan": "89167072fd24",
"status": "affected",
"versionType": "git"
},
{
"version": "2cdbcff99f15",
"lessThan": "6c0f6ccd9391",
"status": "affected",
"versionType": "git"
},
{
"version": "ab327f8acdf8",
"lessThan": "2cd4854ef14a",
"status": "affected",
"versionType": "git"
},
{
"version": "ab327f8acdf8",
"lessThan": "da895fd6da43",
"status": "affected",
"versionType": "git"
},
{
"version": "ab327f8acdf8",
"lessThan": "ce5cdd3b0521",
"status": "affected",
"versionType": "git"
}
]
},
{
"product": "Linux",
"vendor": "Linux",
"defaultStatus": "affected",
"repo": "https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git",
"programFiles": [
"arch/mips/bmips/setup.c"
],
"versions": [
{
"version": "6.3",
"status": "affected"
},
{
"version": "0",
"lessThan": "6.3",
"status": "unaffected",
"versionType": "custom"
},
{
"version": "5.4.279",
"lessThanOrEqual": "5.4.*",
"status": "unaffected",
"versionType": "custom"
},
{
"version": "5.10.221",
"lessThanOrEqual": "5.10.*",
"status": "unaffected",
"versionType": "custom"
},
{
"version": "5.15.162",
"lessThanOrEqual": "5.15.*",
"status": "unaffected",
"versionType": "custom"
},
{
"version": "6.1.96",
"lessThanOrEqual": "6.1.*",
"status": "unaffected",
"versionType": "custom"
},
{
"version": "6.6.36",
"lessThanOrEqual": "6.6.*",
"status": "unaffected",
"versionType": "custom"
},
{
"version": "6.9.7",
"lessThanOrEqual": "6.9.*",
"status": "unaffected",
"versionType": "custom"
},
{
"version": "6.10",
"lessThanOrEqual": "*",
"status": "unaffected",
"versionType": "original_commit_for_fix"
}
]
}
]
git.kernel.org/stable/c/10afe5f7d30f6fe50c2b1177549d0e04921fc373
git.kernel.org/stable/c/2cd4854ef14a487bcfb76c7980675980cad27b52
git.kernel.org/stable/c/36d771ce6028b886e18a4a8956a5d23688e4e13d
git.kernel.org/stable/c/6c0f6ccd939166f56a904c792d7fcadae43b9085
git.kernel.org/stable/c/89167072fd249e5f23ae2f8093f87da5925cef27
git.kernel.org/stable/c/ce5cdd3b05216b704a704f466fb4c2dff3778caf
git.kernel.org/stable/c/da895fd6da438af8d9326b8f02d715a9c76c3b5b