Description
In the Linux kernel, the following vulnerability has been resolved: HID: magicmouse: avoid memory leak in magicmouse_report_fixup() The magicmouse_report_fixup() function was returning a newly kmemdup()-allocated buffer, but never freeing it. The caller of report_fixup() does not take ownership of the returned pointer, but it *is* permitted to return a sub-portion of the input rdesc, whose lifetime is managed by the caller.
Product status
e6ad399596bd234be4722022146e33e15c7e424d (git) before 579c4c9857acdc8380fa99803f355f878bd766cb
0b91b4e4dae63cd43871fc2012370b86ee588f91 (git) before d84c21aabaab517b9aaf9bc1d785922cb9db2f31
0b91b4e4dae63cd43871fc2012370b86ee588f91 (git) before 7edfe4346b052b708645d0acc0f186425766b785
0b91b4e4dae63cd43871fc2012370b86ee588f91 (git) before 79e5dcc95d9abed6f8203cfd529f4ec71f0e505d
0b91b4e4dae63cd43871fc2012370b86ee588f91 (git) before 136f605e246b4bfe7ac2259471d1ff814aed0084
0b91b4e4dae63cd43871fc2012370b86ee588f91 (git) before fa95b0146358b49f9858139b67314591fd5871b0
0b91b4e4dae63cd43871fc2012370b86ee588f91 (git) before 91e8c6e601bdc1ccdf886479b6513c01c7e51c2c
c394bd1bc8537e61593b6b6799e01495c7cf9008 (git)
5.17
Any version before 5.17
5.15.203 (semver)
6.1.168 (semver)
6.6.131 (semver)
6.12.80 (semver)
6.18.21 (semver)
6.19.11 (semver)
7.0 (original_commit_for_fix)
References
git.kernel.org/...c/579c4c9857acdc8380fa99803f355f878bd766cb
git.kernel.org/...c/d84c21aabaab517b9aaf9bc1d785922cb9db2f31
git.kernel.org/...c/7edfe4346b052b708645d0acc0f186425766b785
git.kernel.org/...c/79e5dcc95d9abed6f8203cfd529f4ec71f0e505d
git.kernel.org/...c/136f605e246b4bfe7ac2259471d1ff814aed0084
git.kernel.org/...c/fa95b0146358b49f9858139b67314591fd5871b0
git.kernel.org/...c/91e8c6e601bdc1ccdf886479b6513c01c7e51c2c