Description
In the Linux kernel, the following vulnerability has been resolved: net: psp: require admin permission for dev-set and key-rotate The dev-set and key-rotate netlink operations modify shared device state (PSP version configuration and cryptographic key material, respectively) but do not require CAP_NET_ADMIN. The only access control is psp_dev_check_access() which merely verifies netns membership.
Affected products
- Linux / Linux6.18.33 – 6.18.*
- Linux / Linux7.0.10 – 7.0.*
- Linux / Linux7.1 – *
- Linux / Linux00c94ca2b99e6610e483f92e531b319eeaed94aa – aa1a08a4632af5d1117779e7ff0e32e3c69f29bd
- Linux / Linux00c94ca2b99e6610e483f92e531b319eeaed94aa – fb88a8c86109edb15971481e3de816a8bfdfe571
- Linux / Linux00c94ca2b99e6610e483f92e531b319eeaed94aa – b718342a7fbaa2dff5fefc31988c07af8c6cbc21
- Linux / Linux6.18 – 6.18
- Linux / Linux0 – 6.18