ALT-BU-2025-1770-1
Branch c10f2 update bulletin.
Package kernel-image-un-def updated to version 6.1.126-alt0.c10f.2 for branch c10f2 in task 370524.
Closed vulnerabilities
Modified: 2025-11-03
CVE-2024-56582
In the Linux kernel, the following vulnerability has been resolved:
btrfs: fix use-after-free in btrfs_encoded_read_endio()
Shinichiro reported the following use-after free that sometimes is
happening in our CI system when running fstests' btrfs/284 on a TCMU
runner device:
BUG: KASAN: slab-use-after-free in lock_release+0x708/0x780
Read of size 8 at addr ffff888106a83f18 by task kworker/u80:6/219
CPU: 8 UID: 0 PID: 219 Comm: kworker/u80:6 Not tainted 6.12.0-rc6-kts+ #15
Hardware name: Supermicro Super Server/X11SPi-TF, BIOS 3.3 02/21/2020
Workqueue: btrfs-endio btrfs_end_bio_work [btrfs]
Call Trace:
- https://git.kernel.org/stable/c/05b36b04d74a517d6675bf2f90829ff1ac7e28dc
- https://git.kernel.org/stable/c/6228f13f1996a4feb9b601d6644bf0bfe03671dd
- https://git.kernel.org/stable/c/a40de0330af4fb7bc6b354250c24f294f8b826a0
- https://git.kernel.org/stable/c/f8a5129e4a9fc3f6aa3f137513253b51b31b94d4
- https://lists.debian.org/debian-lts-announce/2025/03/msg00001.html