CVE-2021-39685 : Linux Kernel USB Gadget buffer overflow - Mitigation in pmaports kernels
All kernels in community and main need to be patched for CVE-2021-396885.
- This means either rebasing on a current LTS kernel branch that has received the fix, or backporting the following two patches:
-
When a MR is submitted, paste the link as a comment in this issue, or tick the check box and paste a link to it in the list below if you have access to edit issues.
-
Important, regarding v21.12 release: If your device is supported in the v21.12 release, please tag the MR to upgrade the kernel with the
backport-to-v21.12
label so I know to include it in the release! Talk to @craftyguy if you are unsure if your device needs to be retested for the release... -
To test whether the patching is successful, this script can be used: gadget.py
- Note: It requires patching libusb on the host, see the top comment block in the script for instructions. If you are running Alpine Linux on your host, then this patch to aports will do it as well (build and install): http://0x0.st/-Coo.patch
main/community kernel roundup from aports:
-
linux-asus-me176c @Minecrell -
linux-nokia-n900 @sicelo - !2814
-
linux-odroid-hc2 @dylanvanassche -
linux-postmarketos-allwinner @PureTryOut @craftyguy @MartijnBraam @z3ntu @ollieparanoid -
linux-postmarketos-exynos4 @Newbyte @thiagoplusplus -
linux-postmarketos-qcom-msm8916 @TravMurav @Minecrell -
linux-postmarketos-qcom-msm8939 @Newbyte -
linux-postmarketos-qcom-msm8953 @Ultracoolguy -
linux-postmarketos-qcom-msm8974 @minlexx -
linux-postmarketos-qcom-msm8994@pevik- exception: #1346 (comment 781893571)
-
linux-postmarketos-qcom-msm8996 @Tooniis -
linux-postmarketos-qcom-msm8998 @deathmist -
linux-postmarketos-qcom-sdm660@minlexx- exception: #1346 (comment 781893571)
-
linux-postmarketos-qcom-sdm845 @joelselvaraj @calebccff -
linux-postmarketos-qcom-sm6350@z3ntu- exception: #1346 (comment 781893571)
-
linux-postmarketos-qcom-sm8150@Uclydde @calebccff- exception: #1346 (comment 781893571)
-
linux-postmarketos-rockchip @MartijnBraam @minlexx @craftyguy -
linux-postmarketos-stericsson @Newbyte -
linux-purism-librem5 @craftyguy -
linux-samsung-espresso3g @antoni.aloytorrens @MightyM17
Edited by Administrator