Description
In the Linux kernel, the following vulnerability has been resolved: eth: fbnic: avoid double free when failing to DMA-map FW msg The semantics are that caller of fbnic_mbx_map_msg() retains the ownership of the message on error. All existing callers dutifully free the page.
Product status
da3cde08209ec1c915195c2331c275397f34a731 (git) before 670179265ad787b9dd8e701601914618b8927755
da3cde08209ec1c915195c2331c275397f34a731 (git) before 0a211e23852019ef55c70094524e87a944accbb5
da3cde08209ec1c915195c2331c275397f34a731 (git) before 5bd1bafd4474ee26f504b41aba11f3e2a1175b88
6.11
Any version before 6.11
6.12.35 (semver)
6.15.4 (semver)
6.16 (original_commit_for_fix)
References
git.kernel.org/...c/670179265ad787b9dd8e701601914618b8927755
git.kernel.org/...c/0a211e23852019ef55c70094524e87a944accbb5
git.kernel.org/...c/5bd1bafd4474ee26f504b41aba11f3e2a1175b88