In the Linux kernel, the following vulnerability has been resolved: mtd: inftlcore: Add error check for inftl_read_oob() In INFTL_findwriteunit(), the return value of inftl_read_oob() need to be checked. A proper implementation can be found in INFTL_deleteblock(). The status will be set as SECTOR_IGNORE to break from the while-loop correctly if the inftl_read_oob() fails.
| Product | Vendor | Version |
|---|---|---|
| Linux | Linux | firmware version 1.18 and earlier |
| Linux | Linux | < 7.6.7 |
| Linux | Linux | 10 Version 1809 for x64-based Systems |
| Linux | Linux | 2012 (Core installation) |