Bug 82341
Summary: | Potential vulnerabilities in LINUX KERNEL 3.16 /arch/um | ||
---|---|---|---|
Product: | Memory Management | Reporter: | kaiwaiata (romerox.adrian) |
Component: | Other | Assignee: | Andrew Morton (akpm) |
Status: | RESOLVED CODE_FIX | ||
Severity: | high | CC: | akpm, alan, atomlin, bugsfx, bugsfx, dmonakhov, linuxdev, on2014nm, romerox.adrian |
Priority: | P1 | ||
Hardware: | All | ||
OS: | Linux | ||
Kernel Version: | 3.16 | Subsystem: | |
Regression: | No | Bisected commit-id: |
Description
kaiwaiata
2014-08-13 13:47:08 UTC
Don't see the etap problem ? 108: I don't think ethertap_user.c is exploitable because all the inputs that matter check. That said I can't prove it's so - so yes it would be a sensible change (um is very old code and probably ought to just go away, it's not a secure kernel in that form anyway but no excuses) 47: doesn't matter. The types will be co-erced for the comparison and only one matching bit pattern exists. With > or < tests more care can be needed however. |