This is a note to let you know that I've just added the patch titled net: ieee802154: fix nl802154 del llsec devkey to the 5.11-stable tree which can be found at: http://www.kernel.org/git/?p=linux/kernel/git/stable/stable-queue.git;a=summary The filename of the patch is: net-ieee802154-fix-nl802154-del-llsec-devkey.patch and it can be found in the queue-5.11 subdirectory. If you, or anyone else, feels it should not be added to the stable tree, please let <stable@xxxxxxxxxxxxxxx> know about it. >From 27c746869e1a135dffc2f2a80715bb7aa00445b4 Mon Sep 17 00:00:00 2001 From: Alexander Aring <aahringo@xxxxxxxxxx> Date: Sun, 21 Feb 2021 12:43:21 -0500 Subject: net: ieee802154: fix nl802154 del llsec devkey From: Alexander Aring <aahringo@xxxxxxxxxx> commit 27c746869e1a135dffc2f2a80715bb7aa00445b4 upstream. This patch fixes a nullpointer dereference if NL802154_ATTR_SEC_DEVKEY is not set by the user. If this is the case nl802154 will return -EINVAL. Reported-by: syzbot+368672e0da240db53b5f@xxxxxxxxxxxxxxxxxxxxxxxxx Signed-off-by: Alexander Aring <aahringo@xxxxxxxxxx> Link: https://lore.kernel.org/r/20210221174321.14210-4-aahringo@xxxxxxxxxx Signed-off-by: Stefan Schmidt <stefan@xxxxxxxxxxxxxxxxxx> Signed-off-by: Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx> --- net/ieee802154/nl802154.c | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) --- a/net/ieee802154/nl802154.c +++ b/net/ieee802154/nl802154.c @@ -1916,7 +1916,8 @@ static int nl802154_del_llsec_devkey(str struct ieee802154_llsec_device_key key; __le64 extended_addr; - if (nla_parse_nested_deprecated(attrs, NL802154_DEVKEY_ATTR_MAX, info->attrs[NL802154_ATTR_SEC_DEVKEY], nl802154_devkey_policy, info->extack)) + if (!info->attrs[NL802154_ATTR_SEC_DEVKEY] || + nla_parse_nested_deprecated(attrs, NL802154_DEVKEY_ATTR_MAX, info->attrs[NL802154_ATTR_SEC_DEVKEY], nl802154_devkey_policy, info->extack)) return -EINVAL; if (!attrs[NL802154_DEVKEY_ATTR_EXTENDED_ADDR]) Patches currently in stable-queue which might be from aahringo@xxxxxxxxxx are queue-5.11/net-ieee802154-fix-nl802154-del-llsec-devkey.patch queue-5.11/net-ieee802154-fix-nl802154-del-llsec-key.patch queue-5.11/net-ieee802154-forbid-monitor-for-del-llsec-seclevel.patch queue-5.11/net-ieee802154-fix-nl802154-add-llsec-key.patch queue-5.11/net-ieee802154-forbid-monitor-for-set-llsec-params.patch queue-5.11/net-ieee802154-nl-mac-fix-check-on-panid.patch queue-5.11/net-mac802154-fix-general-protection-fault.patch queue-5.11/net-ieee802154-fix-nl802154-del-llsec-dev.patch queue-5.11/net-ieee802154-stop-dump-llsec-params-for-monitors.patch