[kernel-sec-discuss] r4929 - active

Ben Hutchings benh at moszumanska.debian.org
Wed Feb 15 15:47:02 UTC 2017


Author: benh
Date: 2017-02-15 15:47:02 +0000 (Wed, 15 Feb 2017)
New Revision: 4929

Modified:
   active/CVE-2016-6786
Log:
Note incomplete fix for CVE-2016-6786

Modified: active/CVE-2016-6786
===================================================================
--- active/CVE-2016-6786	2017-02-15 15:00:39 UTC (rev 4928)
+++ active/CVE-2016-6786	2017-02-15 15:47:02 UTC (rev 4929)
@@ -1,6 +1,8 @@
 Description: Possible privilege escalation due to lack of locking around changing event->ctx
 References:
 Notes:
+ bwh> The upstream fix was not complete; see commit 321027c1fe77 "perf/core:
+ bwh> Fix concurrent sys_perf_event_open() vs. 'move_group' race"
 Bugs:
  https://bugzilla.redhat.com/show_bug.cgi?id=1403842
 upstream: released (4.0-rc1) [f63a8daa5812afef4f06c962351687e1ff9ccb2b]




More information about the kernel-sec-discuss mailing list