On Wed, May 5, 2021 at 4:34 PM Pavel Machek <pavel@...> wrote:
Hi!
- CVE-2021-31916 [md: dm_ioctl: out-of-bounds array access] - fixed Likely needs backport to 4.9 and earlier.
Backport is trivial in this case.
Additionally, one old CVE is now fixed: - CVE-2020-26541
This is UEFI secure boot, and it is more of "implement missing blacklist functionality" than a bugfix.
If someone uses secure boot on UEFI, we may need to do this, but perhaps noone is doing that.
No idea. All the servers I touched at work were still booting via legacy BIOS. Mind you that these were old servers. The latest machine we have, an AMD EPYC 7002, is UEFI only. I never looked at the settings though.