Merge pull request #230947 from NixOS/cve-2023-32233

linux_*, except testing, 4.14: apply patch for CVE-2023-32233

authored by Ryan Lahfa and committed by GitHub 1e8ab5db 4b36fe99

+19
+9
pkgs/os-specific/linux/kernel/patches.nix
··· 62 62 name = "fix-em-ice-bonding"; 63 63 patch = ./fix-em-ice-bonding.patch; 64 64 }; 65 + 66 + CVE-2023-32233 = rec { 67 + name = "CVE-2023-32233"; 68 + patch = fetchpatch { 69 + name = name + ".patch"; 70 + url = "https://git.kernel.org/pub/scm/linux/kernel/git/torvalds/linux.git/patch/?id=c1592a89942e9678f7d9c8030efa777c0d57edab"; 71 + hash = "sha256-DYPWgraXPNeFkjtuDYkFXHnCJ4yDewrukM2CCAqC2BE="; 72 + }; 73 + }; 65 74 }
+10
pkgs/top-level/linux-kernels.nix
··· 115 115 [ kernelPatches.bridge_stp_helper 116 116 kernelPatches.request_key_helper 117 117 kernelPatches.modinst_arg_list_too_long 118 + kernelPatches.CVE-2023-32233 118 119 ]; 119 120 }; 120 121 ··· 123 124 kernelPatches.bridge_stp_helper 124 125 kernelPatches.request_key_helper 125 126 kernelPatches.rtl8761b_support 127 + kernelPatches.CVE-2023-32233 126 128 ]; 127 129 }; 128 130 ··· 130 132 kernelPatches = [ 131 133 kernelPatches.bridge_stp_helper 132 134 kernelPatches.request_key_helper 135 + kernelPatches.CVE-2023-32233 133 136 ]; 134 137 }; 135 138 ··· 137 140 kernelPatches = [ 138 141 kernelPatches.bridge_stp_helper 139 142 kernelPatches.request_key_helper 143 + kernelPatches.CVE-2023-32233 140 144 ]; 141 145 }; 142 146 ··· 145 149 kernelPatches.bridge_stp_helper 146 150 kernelPatches.request_key_helper 147 151 kernelPatches.export-rt-sched-migrate 152 + kernelPatches.CVE-2023-32233 148 153 ]; 149 154 }; 150 155 ··· 153 158 kernelPatches.bridge_stp_helper 154 159 kernelPatches.request_key_helper 155 160 kernelPatches.fix-em-ice-bonding 161 + kernelPatches.CVE-2023-32233 156 162 ]; 157 163 }; 158 164 ··· 169 175 kernelPatches.bridge_stp_helper 170 176 kernelPatches.request_key_helper 171 177 kernelPatches.fix-em-ice-bonding 178 + kernelPatches.CVE-2023-32233 172 179 ]; 173 180 }; 174 181 ··· 178 185 kernelPatches.request_key_helper 179 186 kernelPatches.fix-em-ice-bonding 180 187 kernelPatches.export-rt-sched-migrate 188 + kernelPatches.CVE-2023-32233 181 189 ]; 182 190 }; 183 191 ··· 186 194 kernelPatches.bridge_stp_helper 187 195 kernelPatches.request_key_helper 188 196 kernelPatches.fix-em-ice-bonding 197 + kernelPatches.CVE-2023-32233 189 198 ]; 190 199 }; 191 200 ··· 194 203 kernelPatches.bridge_stp_helper 195 204 kernelPatches.request_key_helper 196 205 kernelPatches.fix-em-ice-bonding 206 + kernelPatches.CVE-2023-32233 197 207 ]; 198 208 }; 199 209