From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from smtp.kernel.org (aws-us-west-2-korg-mail-1.web.codeaurora.org [10.30.226.201]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by smtp.subspace.kernel.org (Postfix) with ESMTPS id 095BB196 for ; Wed, 21 Aug 2024 00:08:11 +0000 (UTC) Authentication-Results: smtp.subspace.kernel.org; arc=none smtp.client-ip=10.30.226.201 ARC-Seal:i=1; a=rsa-sha256; d=subspace.kernel.org; s=arc-20240116; t=1724198891; cv=none; b=nwVdisoRZ3WyWGDoqB91SR03bUbzY95Lqgrk8wrqgxkcTNTPBQZKHQ20z72TjMXV7kLj0JiirZk+El7W3CyzQDbNUfDiUFz2ki+bxyK1hoojIR0o90Wkyjn0SNSMp2t+KbVfv3lveQ38jQSAL28xs4ucZ//Hc5as6egN+wInPmA= ARC-Message-Signature:i=1; a=rsa-sha256; d=subspace.kernel.org; s=arc-20240116; t=1724198891; c=relaxed/simple; bh=b2sno8u7zd9fFgYZ2yCRtVJWlfU+Mv0wVpcpJ+08mEs=; h=From:To:Cc:Subject:Date:Message-ID:MIME-Version; b=WUic739/NyawxyxG1b7wcWKlooElBbFu+cMHIRL7LSM/L2HAOzUvYDf5e7BrUxVxdgs4zgVNU59s2/cofDp11krvbSqDfbIyvnBsYuFvUA3ZJV1uv7XiahzZ4COv+rPTs6WRW1kAHij0vLCr+wYUwvnAz2METs4KYSNIFLteKjA= ARC-Authentication-Results:i=1; smtp.subspace.kernel.org; dkim=pass (1024-bit key) header.d=linuxfoundation.org header.i=@linuxfoundation.org header.b=GtbZSxz1; arc=none smtp.client-ip=10.30.226.201 Authentication-Results: smtp.subspace.kernel.org; dkim=pass (1024-bit key) header.d=linuxfoundation.org header.i=@linuxfoundation.org header.b="GtbZSxz1" Received: by smtp.kernel.org (Postfix) with ESMTPSA id 4FA6CC4AF09; Wed, 21 Aug 2024 00:08:10 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=linuxfoundation.org; s=korg; t=1724198890; bh=b2sno8u7zd9fFgYZ2yCRtVJWlfU+Mv0wVpcpJ+08mEs=; h=From:To:Cc:Subject:Date:Reply-to:From; b=GtbZSxz1wEIoCAVAdP8k0ZjagiZVSOPNaZ/VuuW1h/HnYqilDGJOeiR5DD3TJthNa MiW4GiV12B2G+KVjuvSgkoxI0pB1/UVsRcYAZk3g6XOejiGYEfD9dlC2lLxv3ppdyy 4u+GadUP3G/Uz9AEkzVr8QRsrSeEm4PfxzqaPNbE= From: Greg Kroah-Hartman To: linux-cve-announce@vger.kernel.org Cc: Greg Kroah-Hartman Subject: CVE-2024-43875: PCI: endpoint: Clean up error handling in vpci_scan_bus() Date: Wed, 21 Aug 2024 08:07:39 +0800 Message-ID: <2024082136-CVE-2024-43875-1257@gregkh> X-Mailer: git-send-email 2.46.0 Precedence: bulk X-Mailing-List: linux-cve-announce@vger.kernel.org List-Id: List-Subscribe: List-Unsubscribe: MIME-Version: 1.0 Reply-to: , X-Developer-Signature: v=1; a=openpgp-sha256; l=2604; i=gregkh@linuxfoundation.org; h=from:subject:message-id; bh=b2sno8u7zd9fFgYZ2yCRtVJWlfU+Mv0wVpcpJ+08mEs=; b=owGbwMvMwCRo6H6F97bub03G02pJDGlH9U/U7J10YILOxxmbZf7/N12aWrK5WFZZT6XMeHJCy qPH93rKOmJZGASZGGTFFFm+bOM5ur/ikKKXoe1pmDmsTCBDGLg4BWAi6mkM80OKZM99Orugoffn gW/Vf1fohGzlamSYX3rT+KfdOb0bXkJSpem7Xa8IvTg8EQA= X-Developer-Key: i=gregkh@linuxfoundation.org; a=openpgp; fpr=F4B60CC5BF78C2214A313DCB3147D40DDB2DFB29 Content-Transfer-Encoding: 8bit Description =========== In the Linux kernel, the following vulnerability has been resolved: PCI: endpoint: Clean up error handling in vpci_scan_bus() Smatch complains about inconsistent NULL checking in vpci_scan_bus(): drivers/pci/endpoint/functions/pci-epf-vntb.c:1024 vpci_scan_bus() error: we previously assumed 'vpci_bus' could be null (see line 1021) Instead of printing an error message and then crashing we should return an error code and clean up. Also the NULL check is reversed so it prints an error for success instead of failure. The Linux kernel CVE team has assigned CVE-2024-43875 to this issue. Affected and fixed versions =========================== Issue introduced in 5.15.153 with commit e2b6ef72b7ae and fixed in 5.15.165 with commit 24414c842a24 Issue introduced in 6.0 with commit e35f56bb0330 and fixed in 6.1.103 with commit 7d368de78b60 Issue introduced in 6.0 with commit e35f56bb0330 and fixed in 6.6.44 with commit 0e27e2e8697b Issue introduced in 6.0 with commit e35f56bb0330 and fixed in 6.10.3 with commit b9e8695246bc Issue introduced in 6.0 with commit e35f56bb0330 and fixed in 6.11-rc1 with commit 8e0f5a96c534 Please see https://www.kernel.org for a full list of currently supported kernel versions by the kernel community. Unaffected versions might change over time as fixes are backported to older supported kernel versions. The official CVE entry at https://cve.org/CVERecord/?id=CVE-2024-43875 will be updated if fixes are backported, please check that for the most up to date information about this issue. Affected files ============== The file(s) affected by this issue are: drivers/pci/endpoint/functions/pci-epf-vntb.c Mitigation ========== The Linux kernel CVE team recommends that you update to the latest stable kernel version for this, and many other bugfixes. Individual changes are never tested alone, but rather are part of a larger kernel release. Cherry-picking individual commits is not recommended or supported by the Linux kernel community at all. If however, updating to the latest release is impossible, the individual changes to resolve this issue can be found at these commits: https://git.kernel.org/stable/c/24414c842a24d0fd498f9db6d2a762a8dddf1832 https://git.kernel.org/stable/c/7d368de78b60088ec9031c60c88976c0063ea4c0 https://git.kernel.org/stable/c/0e27e2e8697b8ce96cdef43f135426525d9d1f8f https://git.kernel.org/stable/c/b9e8695246bcfc028341470cbf92630cdc1ba36b https://git.kernel.org/stable/c/8e0f5a96c534f781e8c57ca30459448b3bfe5429