Re: [PATCH] media: usb/cpia2: fix start_offset+size Integer Overflow in, cpia2_remap_buffer

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On Thu, Dec 12, 2019 at 05:40:54PM +0800, Zhiqiang Liu wrote:
> 
> 
> On 2019/12/12 15:47, Greg KH wrote:
> > On Thu, Dec 12, 2019 at 09:48:44AM +0800, Zhiqiang Liu wrote:
> >> Omer Shalev have given a example which can trigger the CVE.
> >> Example link: https://deshal3v.github.io/blog/kernel-research/mmap_exploitation
> > 
> > That "example" was run on a kernel without the above mentioned commit to
> > fix all of this.
> > 
> > Have you tried this on the latest kernel release and succeeded?
> > 
> > thanks,
> > 
> > greg k-h
> > 
> 
> Thanks for patiently answering my question.
> Actually, I have missed the Omer's commit.

As pennance, you can go revoke that CVE so this doesn't come up again in
a few months from someone else :)

thanks,

greg k-h



[Index of Archives]     [Linux Input]     [Video for Linux]     [Gstreamer Embedded]     [Mplayer Users]     [Linux USB Devel]     [Linux Audio Users]     [Linux Kernel]     [Linux SCSI]     [Yosemite Backpacking]

  Powered by Linux