lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [day] [month] [year] [list]
Message-ID: <s5hd0aw891x.wl-tiwai@suse.de>
Date:   Mon, 03 Feb 2020 07:43:54 +0100
From:   Takashi Iwai <tiwai@...e.de>
To:     Hillf Danton <hdanton@...a.com>
Cc:     syzbot <syzbot+2b2ef983f973e5c40943@...kaller.appspotmail.com>,
        alsa-devel-owner@...a-project.org, alsa-devel@...a-project.org,
        arnd@...db.de, baolin.wang@...aro.org, gregkh@...uxfoundation.org,
        linux-kernel@...r.kernel.org, perex@...ex.cz,
        stable-commits@...r.kernel.org, stable@...r.kernel.org,
        syzkaller-bugs@...glegroups.com, tiwai@...e.com
Subject: Re: KASAN: use-after-free Read in snd_timer_resolution

On Mon, 03 Feb 2020 06:51:22 +0100,
Hillf Danton wrote:
> 
> 
> Sun, 02 Feb 2020 04:56:10 -0800 (PST)
> > syzbot has found a reproducer for the following crash on:
> > 
> > HEAD commit:    2747d5fd Add linux-next specific files for 20200116

This looks like a fairly old head, and missing the fix that is already
included in 5.5 release:
60adcfde92fa40fcb2dbf7cc52f9b096e0cd109a
    ALSA: seq: Fix racy access for queue timer in proc read
    

thanks,

Takashi

Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ