[kernel-sec-discuss] r4929 - active
Ben Hutchings
benh at moszumanska.debian.org
Wed Feb 15 15:47:02 UTC 2017
Author: benh
Date: 2017-02-15 15:47:02 +0000 (Wed, 15 Feb 2017)
New Revision: 4929
Modified:
active/CVE-2016-6786
Log:
Note incomplete fix for CVE-2016-6786
Modified: active/CVE-2016-6786
===================================================================
--- active/CVE-2016-6786 2017-02-15 15:00:39 UTC (rev 4928)
+++ active/CVE-2016-6786 2017-02-15 15:47:02 UTC (rev 4929)
@@ -1,6 +1,8 @@
Description: Possible privilege escalation due to lack of locking around changing event->ctx
References:
Notes:
+ bwh> The upstream fix was not complete; see commit 321027c1fe77 "perf/core:
+ bwh> Fix concurrent sys_perf_event_open() vs. 'move_group' race"
Bugs:
https://bugzilla.redhat.com/show_bug.cgi?id=1403842
upstream: released (4.0-rc1) [f63a8daa5812afef4f06c962351687e1ff9ccb2b]
More information about the kernel-sec-discuss
mailing list