Re: possible proble with skb_pull() in smsc75xx_rx_fixup()

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On 16.11.23 21:09, Szymon Heidrich wrote:
Hello Oliver,

Could you please give me some hints how this could be practically exploited to cause mischief?

Hi,

it seems to me like you can easily feed stuff that is not
part of a packet into the network layer, but you cannot overflow the buffer.
In other words, the issue exists, but using it to do harm is hard.

	Regards
		Oliver





[Index of Archives]     [Linux Media]     [Linux Input]     [Linux Audio Users]     [Yosemite News]     [Linux Kernel]     [Linux SCSI]     [Old Linux USB Devel Archive]

  Powered by Linux