Description
In the Linux kernel, the following vulnerability has been resolved: crypto: essiv - Handle EBUSY correctly As it is essiv only handles the special return value of EINPROGERSS, which means that in all other cases it will free data related to the request. However, as the caller of essiv may specify MAY_BACKLOG, we also need to expect EBUSY and treat it in the same way. Otherwise backlogged requests will trigger a use-after-free.
Product status
be1eb7f78aa8fbe34779c56c266ccd0364604e71 (git) before c61e7d182ee3f3f5ecf18a2964e303d49c539b52
be1eb7f78aa8fbe34779c56c266ccd0364604e71 (git) before 796e02cca30a67322161f0745e5ce994bbe75605
be1eb7f78aa8fbe34779c56c266ccd0364604e71 (git) before 840a1d3b77c1b062bd62b4733969a5b1efc274ce
be1eb7f78aa8fbe34779c56c266ccd0364604e71 (git) before a006aa3eedb8bfd6fe317c3cfe9c86ffe76b2385
be1eb7f78aa8fbe34779c56c266ccd0364604e71 (git) before 69c67d451fc19d88e54f7d97e8e7c093e08357e1
be1eb7f78aa8fbe34779c56c266ccd0364604e71 (git) before b5a772adf45a32c68bef28e60621f12617161556
5.4
Any version before 5.4
5.4.235 (semver)
5.10.173 (semver)
5.15.99 (semver)
6.1.16 (semver)
6.2.3 (semver)
6.3 (original_commit_for_fix)
References
git.kernel.org/...c/c61e7d182ee3f3f5ecf18a2964e303d49c539b52
git.kernel.org/...c/796e02cca30a67322161f0745e5ce994bbe75605
git.kernel.org/...c/840a1d3b77c1b062bd62b4733969a5b1efc274ce
git.kernel.org/...c/a006aa3eedb8bfd6fe317c3cfe9c86ffe76b2385
git.kernel.org/...c/69c67d451fc19d88e54f7d97e8e7c093e08357e1
git.kernel.org/...c/b5a772adf45a32c68bef28e60621f12617161556
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.