[stable] isofs: avoid info leak on export (CVE-2012-6549)

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



This fix is needed on stable branches 3.0.y, 3.2.y, 3.4.y and 3.5.7.z:

commit fe685aabf7c8c9f138e5ea900954d295bf229175
Author: Mathias Krause <minipli@xxxxxxxxxxxxxx>
Date:   Thu Jul 12 08:46:54 2012 +0200

    isofs: avoid info leak on export
    
    For type 1 the parent_offset member in struct isofs_fid gets copied
    uninitialized to userland. Fix this by initializing it to 0.
    
    Signed-off-by: Mathias Krause <minipli@xxxxxxxxxxxxxx>
    Signed-off-by: Jan Kara <jack@xxxxxxx>

Only 1 line of context matches in branches older than 3.5, but it still
seems to be valid.

Ben.

-- 
Ben Hutchings
It is easier to write an incorrect program than to understand a correct one.

Attachment: signature.asc
Description: This is a digitally signed message part


[Index of Archives]     [Linux Kernel]     [Kernel Development Newbies]     [Linux USB Devel]     [Video for Linux]     [Linux Audio Users]     [Yosemite Hiking]     [Linux Kernel]     [Linux SCSI]