Kernel Update to 6.1.37? (see CVE-2023-3269, StackRot)

Open
#5,533 2 comments 0 reactions 0 assignees View on GitHub

Nobody has claimed this yet.

Assessment

Difficulty
4/5
Estimated time
3-5 days
Newbie friendliness
35/100
Issue type
Bug
Clarity
Mostly clear
Activity status
Stale
Tech stack
c, linux, raspberry-pi

Research direction

Start by checking the Raspberry Pi kernel build and release process for Bookworm and the availability of a kernel version fixing CVE-2023-3269. Confirm whether Raspberry Pi 3 builds can use 6.1.37 or a later fixed version; done means the update is available and the issue's reported vulnerability is addressed.

Written by the indexing model from the issue text.

Description

Describe the bug

There is a kernel security issue with all kernels 6.* called StackRot (CVE-2023-3269).

Steps to reproduce the behaviour

Yet, there is no update available to a version that fixes the problem (like 6.1.37) on bookworm

Device (s)

Raspberry Pi 3 Mod. B+

System

$ cat /etc/rpi-issue
Raspberry Pi reference 2018-06-27
Generated using pi-gen, https://github.com/RPi-Distro/pi-gen, 0d34fb94398a4bd79711f21d6a0b5d35fe5f4a76, stage2
$ vcgencmd version
Mar 17 2023 10:53:00
Copyright (c) 2012 Broadcom
version 82f3750a65fadae9a38077e3c2e217ad158c8d54 (clean) (release) (start_cd)
$ uname -a
Linux raspi 6.1.21-v7+ #1642 SMP Mon Apr 3 17:20:52 BST 2023 armv7l GNU/Linux

Logs

No response

Additional context

No response

Dominant language
C
Stars
13.2k
Forks
5.5k
Avg merge
2d 21h
Merged PRs (30d)
21

Contributor guide

No contributing guide indexed for this repository

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

More from raspberrypi/linux

All issues in raspberrypi/linux

Similar issues

More C issues

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.