Description
In the Linux kernel, the following vulnerability has been resolved: net/sched: fix use-after-free in taprio_dev_notifier Since taprio’s taprio_dev_notifier() isn’t protected by an RCU read-side critical section, a race with advance_sched() can lead to a use-after-free. Adding rcu_read_lock() inside taprio_dev_notifier() prevents this.
Product status
fed87cc6718ad5f80aa739fee3c5979a8b09d3a6 (git) before 8c5713ce1ced75f9e9ed5c642ea3d2ba06ead69c
fed87cc6718ad5f80aa739fee3c5979a8b09d3a6 (git) before 8a008c89e5e5c5332e4c0a33d707db9ddd529f8a
fed87cc6718ad5f80aa739fee3c5979a8b09d3a6 (git) before b1547d28ba468bc3b88764efd13e4319bab63be8
fed87cc6718ad5f80aa739fee3c5979a8b09d3a6 (git) before b160766e26d4e2e2d6fe2294e0b02f92baefcec5
6.3
Any version before 6.3
6.6.95 (semver)
6.12.35 (semver)
6.15.4 (semver)
6.16 (original_commit_for_fix)
References
git.kernel.org/...c/8c5713ce1ced75f9e9ed5c642ea3d2ba06ead69c
git.kernel.org/...c/8a008c89e5e5c5332e4c0a33d707db9ddd529f8a
git.kernel.org/...c/b1547d28ba468bc3b88764efd13e4319bab63be8
git.kernel.org/...c/b160766e26d4e2e2d6fe2294e0b02f92baefcec5