[kernel-sec-discuss] r5221 - active

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Apr 25 04:31:16 UTC 2017


Author: carnil
Date: 2017-04-25 04:31:16 +0000 (Tue, 25 Apr 2017)
New Revision: 5221

Added:
   active/CVE-2017-macsec-avoid-heap-overflow-in-skb_to_sgvec
Log:
Add one temporary entry for linux issue (macsec: avoid heap overflow in skb_to_sgvec)

Added: active/CVE-2017-macsec-avoid-heap-overflow-in-skb_to_sgvec
===================================================================
--- active/CVE-2017-macsec-avoid-heap-overflow-in-skb_to_sgvec	                        (rev 0)
+++ active/CVE-2017-macsec-avoid-heap-overflow-in-skb_to_sgvec	2017-04-25 04:31:16 UTC (rev 5221)
@@ -0,0 +1,14 @@
+Description: macsec: avoid heap overflow in skb_to_sgvec
+References:
+ http://www.openwall.com/lists/oss-security/2017/04/24/5
+Notes:
+ carnil> Fixed in https://git.kernel.org/pub/scm/linux/kernel/git/davem/net.git/commit/?id=4d6fa57b4dab0d77f4d8e9d9c73d1e63f6fe8fee
+ carnil> but not yet in Linus' tree.
+Bugs:
+upstream:
+4.9-upstream-stable:
+3.16-upstream-stable:
+3.2-upstream-stable:
+sid:
+3.16-jessie-security:
+3.2-wheezy-security:




More information about the kernel-sec-discuss mailing list