net: can: j1939: enhanced error handling for tightly received RTS messages in xtp_rx_rts_session_new
Published Jul 29, 2024
7.5
HIGHCVSS 3.1
EPSS 0.67%
Description
This patch enhances error handling in scenarios with RTS (Request to Send) messages arriving closely. It replaces the less informative WARN_ON_ONCE backtraces with a new error handling method. This provides clearer error messages and allows for the early termination of problematic sessions. Previously, sessions were only released at the end of j1939_xtp_rx_rts().
Potentially this could be reproduced with something like: testj1939 -r vcan0:0x80 & while true; do # send first RTS cansend vcan0 18EC8090#1014000303002301; # send second RTS cansend vcan0 18EC8090#1014000303002301; # send abort cansend vcan0 18EC8090#ff00000000002301; done
Affected products
-
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version StatusaffectedConstraints
- Version
-
- Version 5.4StatusaffectedConstraints-
- Version 0StatusunaffectedConstraints<5.4
- Version 5.10.221StatusunaffectedConstraints<=5.10.*
- Version 5.15.162StatusunaffectedConstraints<=5.15.*
- Version 5.4.279StatusunaffectedConstraints<=5.4.*
- Version 6.1.97StatusunaffectedConstraints<=6.1.*
- Version 6.10StatusunaffectedConstraints<=*
- Version 6.6.37StatusunaffectedConstraints<=6.6.*
- Version 6.9.8StatusunaffectedConstraints<=6.9.*
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Linux | Linux | unaffected |
| ||||||||||||||||||||||||||||||
| Linux | Linux | affected |
|
- ≥ 5.4 · < 5.4.279
- ≥ 5.5 · < 5.10.221
- ≥ 5.11 · < 5.15.162
- ≥ 5.16 · < 6.1.97
- ≥ 6.2 · < 6.6.37
- ≥ 6.7 · < 6.9.8
- 6.10
- 6.10
- 6.10
- 6.10
- 6.10
No data.
Red Hat Enterprise Linux 6
kernel
Not affected
Red Hat Enterprise Linux 7
kernel
Not affected
Red Hat Enterprise Linux 7
kernel-rt
Not affected
Red Hat Enterprise Linux 8
kernel
Not affected
Red Hat Enterprise Linux 8
kernel-rt
Not affected
Red Hat Enterprise Linux 9
kernel
Fix deferred
Red Hat Enterprise Linux 9
kernel-rt
Fix deferred
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 6 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 7 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 7 | kernel-rt | Not affected | n/a |
| Red Hat Enterprise Linux 8 | kernel | Not affected | n/a |
| Red Hat Enterprise Linux 8 | kernel-rt | Not affected | n/a |
| Red Hat Enterprise Linux 9 | kernel | Fix deferred | n/a |
| Red Hat Enterprise Linux 9 | kernel-rt | Fix deferred | n/a |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (14)
- https://access.redhat.com/security/cve/CVE-2023-52887 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2300477 Issue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2023-59600 Advisory
- https://git.kernel.org/stable/c/0bc0a7416ea73f79f915c9a05ac0858dff65cfed Patch
- https://git.kernel.org/stable/c/1762ca80c2b72dd1b5821c5e347713ae696276ea Patch
- https://git.kernel.org/stable/c/177e33b655d35d72866b50aec84307119dc5f3d4 Patch
- https://git.kernel.org/stable/c/26b18dd30e63d4fd777be429148e8e4ed66f60b2 Patch
- https://git.kernel.org/stable/c/d3e2904f71ea0fe7eaff1d68a2b0363c888ea0fb Patch
- https://git.kernel.org/stable/c/ed581989d7ea9df6f8646beba2341e32cd49a1f9 Patch
- https://git.kernel.org/stable/c/f6c839e717901dbd6b1c1ca807b6210222eb70f6 Patch
- https://lists.debian.org/debian-lts-announce/2025/01/msg00001.html
- https://lore.kernel.org/linux-cve-announce/2024072950-CVE-2023-52887-b839@gregkh/T
- https://nvd.nist.gov/vuln/detail/CVE-2023-52887
- https://www.cve.org/CVERecord?id=CVE-2023-52887
Change history (0)
No recorded changes yet.