In the Linux kernel, the following vulnerability has been resolved:ipv6: Fix KASAN: slab-out-of-bounds Read in fib6_nh_flush_exceptionsReported by syzbot:HEAD commit: 90c911ad Merge tag 'fixes' of git://git.kernel.org/pub/scm..git tree: git://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git masterdashboard link: https://syzkaller.appspot.com/bug?extid=123aa35098fd3c000eb7compiler: Debian clang version 11.0.1-2==================================================================BUG: KASAN: slab-out-of-bounds in fib6_nh_get_excptn_bucket net/ipv6/route.c:1604 [inline]BUG: KASAN: slab-out-of-bounds in fib6_nh_flush_exceptions+0xbd/0x360 net/ipv6/route.c:1732Read of size 8 at addr ffff8880145c78f8 by task syz-executor.4/17760CPU: 0 PID: 17760 Comm: syz-executor.4 Not tainted 5.12.0-rc8-syzkaller #0Call Trace:
No PoCs from references.
- https://github.com/NaInSec/CVE-LIST