Re: possible proble with skb_pull() in smsc75xx_rx_fixup()

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On 20/11/2023 13:35, Oliver Neukum wrote:
> On 16.11.23 21:09, Szymon Heidrich wrote:
>> Hello Oliver,
>>
>> Could you please give me some hints how this could be practically exploited to cause mischief?
> 
> Hi,
> 
> it seems to me like you can easily feed stuff that is not
> part of a packet into the network layer, but you cannot overflow the buffer.
> In other words, the issue exists, but using it to do harm is hard.
> 
>     Regards
>         Oliver
> 

Hello Olivier,

Perhaps I'm missing something but as far as I can tell I can't do here anything special compared
to crafting the packet itself. Please let me know in case I'm wrong.

Best regards,
Szymon




[Index of Archives]     [Linux Media]     [Linux Input]     [Linux Audio Users]     [Yosemite News]     [Linux Kernel]     [Linux SCSI]     [Old Linux USB Devel Archive]

  Powered by Linux