CVE applicability

Arul Anand MM <[email protected]> Wed, 19 Jun 2024 00:04:45 +0530
Newsgroups gmane.linux.debian.devel.security
Message-ID <CAJsJ3Ey2B41So7J739-qQEzHKk2tMJLX7S5WSZqT1oP-fkJYQg@mail.gmail.com>
Hello Debian Security Team,

This is regarding Debian advisory
https://security-tracker.debian.org/tracker/CVE-2023-3390.

I would like to confirm whether version 5.10.191-1 is impacted by the UAF
and LPE.

Advisory page on September 14
https://web.archive.org/web/20230924174231/https://security-tracker.debian.org/tracker/CVE-2023-3390
states the issue is fixed in 5.10.191-1 but the current version of advisory
states "5.10.209-2" as the fixed version. Is there any information on the
impacted version changes for CVE-2023-3390?

Thanks.