In the Linux kernel, the following vulnerability has been resolved: staging: greybus: uart: fix tty use after free User space can hold a tty open indefinitely and tty drivers must not release the underlying structures until the last user is gone. Switch to using the tty-port reference counter to manage the life time of the greybus tty state to avoid use after free after a disconnect.
In the Linux kernel, the following vulnerability has been resolved: staging: greybus: uart: fix tty use after free User space can hold a tty open indefinitely and tty drivers must not release the underlying structures until the last user is gone. Switch to using the tty-port reference counter to manage the life time of the greybus tty state to avoid use after free after a disconnect.
Linux Linux, linux kernel의 현재 전체 버전이 공식 영향 범위(Linux Linux, linux kernel >= a18e15175708d39abbe9746ddc3479466b7800c3 < 92b67aaafb7c449db9f0c3dcabc0ff967cb3a42d, >= a18e15175708d39abbe9746ddc3479466b7800c3 < 64062fcaca8872f063ec9da011e7bf30470be33f, >= a18e15175708d39abbe9746ddc3479466b7800c3 < a5cfd51f6348e8fd7531461366946039c29c7e69, >= a18e15175708d39abbe9746ddc3479466b7800c3 < 4dc56951a8d9d61d364d346c61a5f1d70b4f5e14, >= a18e15175708d39abbe9746ddc3479466b7800c3 < b9e697e60ce9890e9258a73eb061288e7d68e5e6, >= a18e15175708d39abbe9746ddc3479466b7800c3 < 9872ff6fdce8b229f01993b611b5d1719cb70ff1, >= a18e15175708d39abbe9746ddc3479466b7800c3 < 92dc0b1f46e12cfabd28d709bb34f7a39431b44f, >= 4.9, >= 4.9 < 4.9.285, >= 4.10 < 4.14.249, >= 4.15 < 4.19.209, >= 4.20 < 5.4.150, >= 5.5 < 5.10.70, >= 5.11 < 5.14.9, 5.15)에 포함되는지 확인합니다. OS를 선택하면 해당 OS의 제품·패키지·KB·APAR 확인 명령만 표시됩니다.
조치방안
구조화된 수정 버전 값(4.9.285, 4.14.249, 4.19.209, 5.4.150, 5.10.70, 5.14.9)은 참고용입니다. 공급사 공식 보안 권고에서 제품·에디션·설치 방식별 수정 기준을 확인한 뒤 적용합니다.
조치 후 확인사항
패치 후 같은 명령으로 전체 버전을 다시 확인해 Linux Linux, linux kernel 4.9.285, 4.14.249, 4.19.209, 5.4.150, 5.10.70, 5.14.9 기준을 충족하는지 확인합니다. 이어서 메모리 손상 관련 오류·공격 흔적이 새로 발생하지 않는지 확인합니다.