Description
In the Linux kernel, the following vulnerability has been resolved: ACPI: pfr_update: Fix the driver update version check The security-version-number check should be used rather than the runtime version check for driver updates. Otherwise, the firmware update would fail when the update binary had a lower runtime version number than the current one. [ rjw: Changelog edits ]
Product status
0db89fa243e5edc5de38c88b369e4c3755c5fb74 (git) before 79300ff532bccbbf654992c7c0863b49a6c3973c
0db89fa243e5edc5de38c88b369e4c3755c5fb74 (git) before cf0a88124e357bffda487cbf3cb612bb97eb97e4
0db89fa243e5edc5de38c88b369e4c3755c5fb74 (git) before b00219888c11519ef75d988fa8a780da68ff568e
0db89fa243e5edc5de38c88b369e4c3755c5fb74 (git) before 908094681f645d3a78e18ef90561a97029e2df7b
0db89fa243e5edc5de38c88b369e4c3755c5fb74 (git) before 8151320c747efb22d30b035af989fed0d502176e
5.17
Any version before 5.17
6.1.149 (semver)
6.6.103 (semver)
6.12.44 (semver)
6.16.4 (semver)
6.17 (original_commit_for_fix)
References
lists.debian.org/debian-lts-announce/2025/10/msg00008.html
cert-portal.siemens.com/productcert/html/ssa-032379.html
git.kernel.org/...c/79300ff532bccbbf654992c7c0863b49a6c3973c
git.kernel.org/...c/cf0a88124e357bffda487cbf3cb612bb97eb97e4
git.kernel.org/...c/b00219888c11519ef75d988fa8a780da68ff568e
git.kernel.org/...c/908094681f645d3a78e18ef90561a97029e2df7b
git.kernel.org/...c/8151320c747efb22d30b035af989fed0d502176e