跳转到帖子

Ubuntu: (CVE-2020-36782): linux vulnerability

recommended_posts

发布于
  • Members

Ubuntu: (CVE-2020-36782): linux vulnerability

Severity
5
CVSS
(AV:L/AC:L/Au:S/C:N/I:N/A:C)
Published
02/28/2024
Created
11/21/2024
Added
11/19/2024
Modified
02/11/2025

Description

In the Linux kernel, the following vulnerability has been resolved: i2c: imx-lpi2c: fix reference leak when pm_runtime_get_sync fails The PM reference count is not expected to be incremented on return in lpi2c_imx_master_enable. However, pm_runtime_get_sync will increment the PM reference count even failed. Forgetting to putting operation will result in a reference leak here. Replace it with pm_runtime_resume_and_get to keep usage counter balanced.

Solution(s)

  • ubuntu-upgrade-linux
  • ubuntu-upgrade-linux-aws
  • ubuntu-upgrade-linux-aws-5-4
  • ubuntu-upgrade-linux-aws-fips
  • ubuntu-upgrade-linux-azure
  • ubuntu-upgrade-linux-azure-5-4
  • ubuntu-upgrade-linux-azure-fips
  • ubuntu-upgrade-linux-bluefield
  • ubuntu-upgrade-linux-fips
  • ubuntu-upgrade-linux-gcp
  • ubuntu-upgrade-linux-gcp-5-4
  • ubuntu-upgrade-linux-gcp-fips
  • ubuntu-upgrade-linux-gkeop
  • ubuntu-upgrade-linux-hwe-5-4
  • ubuntu-upgrade-linux-kvm
  • ubuntu-upgrade-linux-oracle
  • ubuntu-upgrade-linux-oracle-5-4
  • ubuntu-upgrade-linux-raspi
  • ubuntu-upgrade-linux-raspi-5-4

References

  • https://attackerkb.com/topics/cve-2020-36782
  • CVE - 2020-36782
  • https://git.kernel.org/linus/278e5bbdb9a94fa063c0f9bcde2479d0b8042462
  • https://git.kernel.org/stable/c/278e5bbdb9a94fa063c0f9bcde2479d0b8042462
  • https://git.kernel.org/stable/c/815859cb1d2302e74f11bf6894bceace9ca9eb4a
  • https://git.kernel.org/stable/c/b100650d80cd2292f6c152f5f2943b5944b3e8ce
  • https://git.kernel.org/stable/c/bb300acc867e937edc2a6898e92b21f88e4e4e66
  • https://git.kernel.org/stable/c/cc49d206414240483bb93ffa3d80243e6a776916
  • https://www.cve.org/CVERecord?id=CVE-2020-36782
View more
  • 查看数 705
  • 已创建
  • 最后回复

参与讨论

你可立刻发布并稍后注册。 如果你有帐户,立刻登录发布帖子。
注意:你的帖子需要版主批准后才能看到。

游客
回帖…