lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Date: Sat, 04 Feb 2017 19:45:12 -0500 (EST) From: David Miller <davem@...emloft.net> To: eric.dumazet@...il.com Cc: netdev@...r.kernel.org, paul@...l-moore.com, dvyukov@...gle.com Subject: Re: [PATCH net] netlabel: out of bound access in cipso_v4_validate() From: Eric Dumazet <eric.dumazet@...il.com> Date: Fri, 03 Feb 2017 00:03:26 -0800 > From: Eric Dumazet <edumazet@...gle.com> > > syzkaller found another out of bound access in ip_options_compile(), > or more exactly in cipso_v4_validate() > > Fixes: 20e2a8648596 ("cipso: handle CIPSO options correctly when NetLabel is disabled") > Fixes: 446fda4f2682 ("[NetLabel]: CIPSOv4 engine") > Signed-off-by: Eric Dumazet <edumazet@...gle.com> > Reported-by: Dmitry Vyukov <dvyukov@...gle.com> Applied and queued up for -stable.
Powered by blists - more mailing lists