Back to bug 2177883

Who When What Removed Added
Rohit Keshri 2023-03-13 18:36:26 UTC CC security-response-team
Rohit Keshri 2023-03-13 18:44:47 UTC CC acaringi, allarkin, bhu, chwhite, ddepaula, debarbos, dfreiber, dhoward, dvlasenk, ezulian, fhrbata, hkrzesin, jarod, jburrell, jfaracco, jferlan, jforbes, jlelli, joe.lawrence, jshortt, jstancek, jwyatt, kcarcia, lgoncalv, lleshchi, lzampier, nmurray, ptalbert, qzhao, rogbas, rvrbovsk, scweaver, swood, tyberry, vkumar, walters, williams
Rohit Keshri 2023-03-13 18:49:52 UTC Depends On 2177886, 2177887, 2177884, 2177885
Rohit Keshri 2023-03-13 18:52:54 UTC Deadline 2023-03-27
Rohit Keshri 2023-03-13 19:07:28 UTC Doc Text A slab-out-of-bound read problem was found in brcmf_get_assoc_ies in drivers/net/wireless/broadcom/brcm80211/brcmfmac/cfg80211.c in the Linux Kernel. The bug could occur when assoc_info->req_len data is bigger than the size of buffer (defined as WL_EXTRA_BUF_MAX), and this may lead to a denial of service problem.
Paige Jung 2023-03-13 20:53:30 UTC Doc Text A slab-out-of-bound read problem was found in brcmf_get_assoc_ies in drivers/net/wireless/broadcom/brcm80211/brcmfmac/cfg80211.c in the Linux Kernel. The bug could occur when assoc_info->req_len data is bigger than the size of buffer (defined as WL_EXTRA_BUF_MAX), and this may lead to a denial of service problem. A slab-out-of-bound read problem was found in brcmf_get_assoc_ies in drivers/net/wireless/broadcom/brcm80211/brcmfmac/cfg80211.c in the Linux Kernel. This issue could occur when assoc_info->req_len data is bigger than the size of the buffer, defined as WL_EXTRA_BUF_MAX, leading to a denial of service.
Pedro Sampaio 2023-03-27 15:55:04 UTC Deadline 2023-03-27
Summary EMBARGOED CVE-2023-1380 Kernel: a USB-accessible slab-out-of-bounds read in brcmfmac CVE-2023-1380 Kernel: a USB-accessible slab-out-of-bounds read in brcmfmac
CC dbohanno, jdenham, kernel-mgr, ldoskova, rrobaina, rysulliv, wcosta, wmealing, ycote
Group qe_staff, security
kkooo 2023-03-28 06:25:11 UTC CC stefficosenza0864
Steve Beattie 2023-04-01 06:41:42 UTC CC steve.beattie
Red Hat Bugzilla 2023-04-01 08:42:44 UTC CC dhoward
Jonathan Wakely 2023-06-07 11:01:43 UTC Comment 5 Tag spam
Red Hat Bugzilla 2023-07-07 08:31:34 UTC Assignee security-response-team nobody
CC security-response-team

Back to bug 2177883