In the Linux kernel, the following vulnerability has been resolved: fou: Don't allow 0 for FOU_ATTR_IPPROTO. fou_udp_recv() has the same problem mentioned in the previous patch. If FOU_ATTR_IPPROTO is set to 0, skb is not freed by fou_udp_recv() nor "resubmit"-ted in ip_protocol_deliver_rcu(). Let's forbid 0 for FOU_ATTR_IPPROTO.
| Product | Vendor | Version |
|---|---|---|
| Linux | Linux | 6.3.0 prior to 6.3.0r24 |
| Linux | Linux | n/a |
| Linux | Linux | 10 Version 1809 for 32-bit Systems |
| Linux | Linux | 2019 |