You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Hi,
Our tool have found that this repo has remained some unfixed CVE. Some of there are as follows:
anon_vma_alloc function in the file trunk/linux-3.4.x/mm/rmap.c shares the similarity with the CVE-2022-42703, the fix is torvalds/linux@2555283
sl_tx_timeout function in the file trunk/linux-3.4.x/drivers/net/slip/slip.c shares the similarity with the CVE-2022-41858, the fix is torvalds/linux@ec4eb8a
increment_qlen, decrement_qlen functions in the file trunk/linux-3.4.x/net/sched/sch_sfb.c shares the similarity with the CVE-2022-3586, the fix is torvalds/linux@9efd23297cca
gru_handle_user_call_os functions in the file trunk/linux-3.4.x/drivers/misc/sgi-gru/grufault.c and gru_check_context_placement function in the file trunk/linux-3.4.x/drivers/misc/sgi-gru/grumain.c shares the similarity with the CVE-2022-3424, the fix is torvalds/linux@643a16a.
sink function in the file trunk/user/dropbear/dropbear-201X.XX/scp.c shares the similarity with the CVE-2020-36254, the fix is mkj/dropbear@8f8a3df
sunkbd_interrupt, sunkbd_enable and sunkbd_reinit functions in the file of trunk/linux-3.4.x/drivers/input/keyboard/sunkbd.c, shares the similarity with the CVE-2020-25669, the fix is torvalds/linux@77e70d3,
k_fn functions in the file of trunk/linux-3.4.x/drivers/tty/vt/keyboard.c, shares the similarity with the CVE-2020-25656, the fix is torvalds/linux@82e61c3
mwifiex_cmd_append_vsie_tlv functions in the file of trunk/linux-3.4.x/drivers/net/wireless/mwifiex/scan.c, shares the similarity with the CVE-2020-12653, the fix is torvalds/linux@b70261a
mptctl_readtest function and some other functions in the file of trunk/linux-3.4.x/drivers/message/fusion/mptctl.c, shares the similarity with the CVE-2020-12652, the fix is torvalds/linux@28d76df
cit_get_packet_size function and some other functions in the file of trunk/linux-3.4.x/drivers/media/video/gspca/xirlink_cit.c, shares the similarity with the CVE-2020-11668, the fix is torvalds/linux@a246b4d
stv06xx_isoc_init function and some other functions in the file of trunk/linux-3.4.x/drivers/media/video/gspca/stv06xx/stv06xx.c, shares the similarity with the CVE-2020-11609, the fix is torvalds/linux@485b06a
set_fdc function and some other functions in the file of trunk/linux-3.4.x/drivers/block/floppy.c, shares the similarity with the CVE-2020-9383, the fix is torvalds/linux@2e90ca6
We have preliminarily verified the correctness of the above list through static analysis. Would you can help to check if this bug is true? If it's true, please try to fix it, or I'd like to open a PR for that if necessary. Thank you for your effort and patience!
The text was updated successfully, but these errors were encountered:
Hi,
Our tool have found that this repo has remained some unfixed CVE. Some of there are as follows:
anon_vma_alloc
function in the filetrunk/linux-3.4.x/mm/rmap.c
shares the similarity with the CVE-2022-42703, the fix is torvalds/linux@2555283sl_tx_timeout
function in the filetrunk/linux-3.4.x/drivers/net/slip/slip.c
shares the similarity with the CVE-2022-41858, the fix is torvalds/linux@ec4eb8aincrement_qlen
,decrement_qlen
functions in the filetrunk/linux-3.4.x/net/sched/sch_sfb.c
shares the similarity with the CVE-2022-3586, the fix is torvalds/linux@9efd23297ccagru_handle_user_call_os
functions in the filetrunk/linux-3.4.x/drivers/misc/sgi-gru/grufault.c
andgru_check_context_placement
function in the filetrunk/linux-3.4.x/drivers/misc/sgi-gru/grumain.c
shares the similarity with the CVE-2022-3424, the fix is torvalds/linux@643a16a.sink
function in the filetrunk/user/dropbear/dropbear-201X.XX/scp.c
shares the similarity with the CVE-2020-36254, the fix is mkj/dropbear@8f8a3dfsunkbd_interrupt
,sunkbd_enable
andsunkbd_reinit
functions in the file oftrunk/linux-3.4.x/drivers/input/keyboard/sunkbd.c
, shares the similarity with the CVE-2020-25669, the fix is torvalds/linux@77e70d3,k_fn
functions in the file oftrunk/linux-3.4.x/drivers/tty/vt/keyboard.c
, shares the similarity with the CVE-2020-25656, the fix is torvalds/linux@82e61c3mwifiex_cmd_append_vsie_tlv
functions in the file oftrunk/linux-3.4.x/drivers/net/wireless/mwifiex/scan.c
, shares the similarity with the CVE-2020-12653, the fix is torvalds/linux@b70261amptctl_readtest
function and some other functions in the file oftrunk/linux-3.4.x/drivers/message/fusion/mptctl.c
, shares the similarity with the CVE-2020-12652, the fix is torvalds/linux@28d76dfcit_get_packet_size
function and some other functions in the file oftrunk/linux-3.4.x/drivers/media/video/gspca/xirlink_cit.c
, shares the similarity with the CVE-2020-11668, the fix is torvalds/linux@a246b4dstv06xx_isoc_init
function and some other functions in the file oftrunk/linux-3.4.x/drivers/media/video/gspca/stv06xx/stv06xx.c
, shares the similarity with the CVE-2020-11609, the fix is torvalds/linux@485b06aset_fdc
function and some other functions in the file oftrunk/linux-3.4.x/drivers/block/floppy.c
, shares the similarity with the CVE-2020-9383, the fix is torvalds/linux@2e90ca6We have preliminarily verified the correctness of the above list through static analysis. Would you can help to check if this bug is true? If it's true, please try to fix it, or I'd like to open a PR for that if necessary. Thank you for your effort and patience!
The text was updated successfully, but these errors were encountered: