lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Date: Wed, 3 Nov 2010 14:36:30 -0400 From: "Gustavo F. Padovan" <padovan@...fusion.mobi> To: Marcel Holtmann <marcel@...tmann.org> Cc: Vasiliy Kulikov <segooon@...il.com>, kernel-janitors@...r.kernel.org, "David S. Miller" <davem@...emloft.net>, Eric Dumazet <eric.dumazet@...il.com>, linux-bluetooth@...r.kernel.org, netdev@...r.kernel.org, linux-kernel@...r.kernel.org Subject: Re: [PATCH] bluetooth: cmtp: fix information leak to userland * Marcel Holtmann <marcel@...tmann.org> [2010-11-02 16:35:58 +0100]: > Hi Vasiliy, > > > Structure cmtp_conninfo is copied to userland with some padding fields > > unitialized. It leads to leaking of contents of kernel stack memory. > > > > Signed-off-by: Vasiliy Kulikov <segooon@...il.com> > > Acked-by: Marcel Holtmann <marcel@...tmann.org> Applied, thanks. -- Gustavo F. Padovan ProFUSION embedded systems - http://profusion.mobi -- To unsubscribe from this list: send the line "unsubscribe netdev" in the body of a message to majordomo@...r.kernel.org More majordomo info at http://vger.kernel.org/majordomo-info.html
Powered by blists - more mailing lists