Description
In the Linux kernel, the following vulnerability has been resolved: RDMA/ocrdma: Don't NULL deref uctx on errors in ocrdma_copy_pd_uresp() Sashiko points out that pd->uctx isn't initialized until late in the function so all these error flow references are NULL and will crash. Use the uctx that isn't NULL.
Product status
fe2caefcdf5869f308c102e3d64d40683bfad711 (git) before b610f33c5523fe26f6dd897667fff9c7a1de5905
fe2caefcdf5869f308c102e3d64d40683bfad711 (git) before 443c991fbc954cc9363e963c09f404b9f281f3a2
fe2caefcdf5869f308c102e3d64d40683bfad711 (git) before 27b6eb1f27fda9bdd5cae028e396758cdf525845
fe2caefcdf5869f308c102e3d64d40683bfad711 (git) before e01a957561f663d3b68d2fd233a4502e3367efcd
fe2caefcdf5869f308c102e3d64d40683bfad711 (git) before 75fc130664ae324e7b2f9ad3630e0f175e9ca6c8
fe2caefcdf5869f308c102e3d64d40683bfad711 (git) before 8832626a483439e207734e027afff322ccdf726e
fe2caefcdf5869f308c102e3d64d40683bfad711 (git) before ec44c00a4fe1327efa35083f98b39c01cb535a51
fe2caefcdf5869f308c102e3d64d40683bfad711 (git) before 34fbf48cf3b410d2a6e8c586fa952a36331ca5ba
3.5
Any version before 3.5
5.10.258 (semver)
5.15.209 (semver)
6.1.175 (semver)
6.6.140 (semver)
6.12.88 (semver)
6.18.30 (semver)
7.0.7 (semver)
7.1-rc3 (original_commit_for_fix)
References
git.kernel.org/...c/b610f33c5523fe26f6dd897667fff9c7a1de5905
git.kernel.org/...c/443c991fbc954cc9363e963c09f404b9f281f3a2
git.kernel.org/...c/27b6eb1f27fda9bdd5cae028e396758cdf525845
git.kernel.org/...c/e01a957561f663d3b68d2fd233a4502e3367efcd
git.kernel.org/...c/75fc130664ae324e7b2f9ad3630e0f175e9ca6c8
git.kernel.org/...c/8832626a483439e207734e027afff322ccdf726e
git.kernel.org/...c/ec44c00a4fe1327efa35083f98b39c01cb535a51
git.kernel.org/...c/34fbf48cf3b410d2a6e8c586fa952a36331ca5ba