"value":"En el kernel de Linux, se resolvi\u00f3 la siguiente vulnerabilidad: ksmbd: corrige el oob global en ksmbd_nl_policy Similar a un problema reportado (verifique el commit b33fb5b801c6 (\"net: qualcomm: rmnet: corrige el oob global en rmnet_policy\"),mifuzzerlocalencuentraotraLecturaglobalfueradelosl\u00edmitesparalapol\u00edticaksmbd_nl_policy.Consulteelseguimientodelerroracontinuaci\u00f3n:====================================================================ERROR:KASAN:globalfueradelosl\u00edmitesenvalidar_nlalib/nlattr.c:386[enl\u00ednea]ERROR:KASAN:globalfueradelosl\u00edmitesen__nla_validate_parse+0x24af/0x2750lib/nlattr.c:600Lecturadetama\u00f1o1enaddrffffffff8f24b100portareasyz-executor.1/62810CPU:0PID:62810Comm:syz-executor.1Contaminado:GN6.1.0#3Nombredelhardware:PCest\u00e1ndarQEMU(i440FX+PIIX,1996),BIOS1.13.0-1ubuntu1.101/04/2014Seguimientodellamadas:__dump_stacklib/dump_stack.c:88[enl\u00ednea]dump_stack_lvl+0x8b/0xb3lib/dump_stack.c:106print_address_descriptionmm/kasan/report.c:284[enl\u00ednea]print_report+0x172/0x475mm/kasan/report.c:395kasan_report+0xbb/0x1c0mm/kasan/report.c:495validar_nlalib/nlattr.c:386[enl\u00ednea]__nla_validate_parse+0x24af/0x2750lib/nlattr.c:600__nla_parse+0x3e/0x50lib/nlattr.c:697__nlmsg_parseincluir/net/netlink.h:748[enl\u00ednea]genl_family_rcv_msg_attrs_parse.constprop.0+0x1b0/0x290net/netlink/genetlink.c:565genl_family_rcv_msg_doit+0xda/0x330net/netlink/genetlink.c:734genl_family_rcv_msgnet/netlink/genetlink.c:833[enl\u00ednea]genl_rcv_msg+0x441/0x780net/netlink/genetlink.c:850netlink_rcv_skb+0x14f/0x410net/netlink/af_netlink.c:2540genl_rcv+0x24/0x40net/netlink/genetlink.c:861netlink_unicast_kernelnet/netlink/af_netlink.c:1319[enl\u00ednea]netlink_unicast+0x54e/0x800net/netlink/af_netlink.c:1345netlink_sendmsg+0x930/0xe50net/netlink/af_netlink.c:1921sock_sendmsg_nosecnet/socket.c:714[enl\u00ednea]sock_sendmsg+0x154/0x190net/socket.c:734____sys_sendmsg+0x6df/0x840net/socket.c:2482___sys_sendmsg+0x110/0x1b0net/socket.c:2536__sys_sendmsg+0xf3/0x1c0net/socket.c:2565do_syscall_x64arco/x86/entry/common.c:50[enl\u00ednea]do_syscall_64+0x3b/0x90arch/x86/entry/common.c:80Entry_SYSCALL_64_after_hwframe+0x63/0xcdRIP:0033:0x7fdd66a8f359C\u00f3digo:2800000075054883c428c3e8f1190000904889f84889f74889d64889ca4d89c24d89c84c8b4c24080f05<48>3d01f0ffff7301c348c7c1b8ffffff7d864890148RSP:002b:00007fdd65e00168EFLAGS:00000246ORIG_RAX:000000000000002eRAX:ffffffffffffffdaRBX:00007fdd66bbcf80RCX:00007fdd66a8f359RDX:0000000000000000RSI:0000000020000500RDI:0000000000000003RBP:00007fdd66ada493R08:00000000000000000R09:00000000000000000R10:0000000000000000R11:0000000000000246R12:0000000000000000R13:00007ffc84b81affR14:00007fdd65e00300R15:0000000000022000Ladirecci\u00f3ndelerrorpertenecealavariable:ksmbd_nl_policy+0x100/0xa80Ladirecci\u00f3ndelerrorpertenecealap\u00e1ginaf\u00edsica:p\u00e1gina:0000000034f47940refcount:1mapcount:0mapeo:0000000000000000\u00edndice:0x0pfn:0x1ccc4bbanderas:0x200000000001000(reservado|nodo=0|zona=2)sinformato:02000000000001000ffffea00073312c8ffffea00073312c80000000000000000raw:00000000000000000000000000000000000000001ffffffff0000000000000000p\u00e1ginavolcadaporque:kasan:malaccesodetectadoEstadodelamemoriaalrededordeladirecci\u00f3nconerrores:ffffffff8f24b000:00000000000000000000000000000000ffffffff8f24b080:00000000000000000000000000000000>ffffffff8f24b100:f9f9f9f90000f9f9f9f9f9f9000007f9^ffffffff8f24b180:f9f9f9f90005f9f9f9f9f9f900000005ffffffff8f24b200:f9f9f9f9000003f9f9f9f9f9000004f9====================================================================Parasolucionarlo,agregueunmarcadordeposici\u00f3nllamado__KSMBD_EVENT_MAXytruncad