CVE-2024-35904
selinux: avoid dereference of garbage after mount failure
In the Linux kernel, the following vulnerability has been resolved:
selinux: avoid dereference of garbage after mount failure
In case kern_mount() fails and returns an error pointer return in the
error branch instead of continuing and dereferencing the error pointer.
While on it drop the never read static variable selinuxfs_mount.
Produtos afetados
Linux · LinuxQuer saber se a sua infraestrutura está exposta a isto?
Falar com a TrueHacking →Referências
https://git.kernel.org/stable/c/37801a36b4d68892ce807264f784d818f8d0d39bhttps://git.kernel.org/stable/c/477ed6789eb9f3f4d3568bb977f90c863c12724ehttps://git.kernel.org/stable/c/68784a5d01b8868ff85a7926676b6729715fff3chttp://www.openwall.com/lists/oss-security/2024/05/30/1http://www.openwall.com/lists/oss-security/2024/05/30/2