{"id":"GSD-2023-1001941","summary":"bpf: Fix pointer-leak due to insufficient speculative store bypass mitigation","details":"bpf: Fix pointer-leak due to insufficient speculative store bypass mitigation\n\nThis is an automated ID intended to aid in discovery of potential security vulnerabilities. The actual impact and attack plausibility have not yet been proven.\nThis ID is fixed in Linux Kernel version v6.1.9 by commit b0c89ef025562161242a7c19b213bd6b272e93df, it was introduced in version v5.14 by commit 2039f26f3aca5b0e419b98f65dd36481337b86ee. For more details please see the references link.","modified":"2023-02-22T08:50:40.195526Z","published":"2023-02-13T17:28:05.736690Z","affected":[{"package":{"name":"Kernel","ecosystem":"Linux"},"ranges":[{"type":"GIT","repo":"https://git.kernel.org/pub/scm/linux/kernel/git/stable/linux.git/","events":[{"introduced":"2039f26f3aca5b0e419b98f65dd36481337b86ee"},{"limit":"b0c89ef025562161242a7c19b213bd6b272e93df"}]}],"versions":["v5.14","v5.14-rc2","v5.14-rc3","v5.14-rc4","v5.14-rc5","v5.14-rc6","v5.14-rc7","v5.15","v5.15-rc1","v5.15-rc2","v5.15-rc3","v5.15-rc4","v5.15-rc5","v5.15-rc6","v5.15-rc7","v5.16","v5.16-rc1","v5.16-rc2","v5.16-rc3","v5.16-rc4","v5.16-rc5","v5.16-rc6","v5.16-rc7","v5.16-rc8","v5.17","v5.17-rc1","v5.17-rc2","v5.17-rc3","v5.17-rc4","v5.17-rc5","v5.17-rc6","v5.17-rc7","v5.17-rc8","v5.18","v5.18-rc1","v5.18-rc2","v5.18-rc3","v5.18-rc4","v5.18-rc5","v5.18-rc6","v5.18-rc7","v5.19","v5.19-rc1","v5.19-rc2","v5.19-rc3","v5.19-rc4","v5.19-rc5","v5.19-rc6","v5.19-rc7","v5.19-rc8","v6.0","v6.0-rc1","v6.0-rc2","v6.0-rc3","v6.0-rc4","v6.0-rc5","v6.0-rc6","v6.0-rc7","v6.1","v6.1-rc1","v6.1-rc2","v6.1-rc3","v6.1-rc4","v6.1-rc5","v6.1-rc6","v6.1-rc7","v6.1-rc8","v6.1.1","v6.1.2","v6.1.3","v6.1.4","v6.1.5","v6.1.6","v6.1.7","v6.1.8"],"database_specific":{"source":"https://github.com/cloudsecurityalliance/gsd-database/blob/main/2023/1001xxx/GSD-2023-1001941.json"}}],"schema_version":"1.7.3"}