From: Jiri Kosina <[EMAIL PROTECTED]> Date: Wed, 28 Mar 2007 20:49:32 +0200 (CEST)
> From: Jiri Kosina <[EMAIL PROTECTED]> > > DCCP: proper optlen checking in do_dccp_getsockopt() > > Robert Swiecki discovered [1] a signedness bug in checking of > optlen in do_dccp_getsockopt(). This bug can allow user to > read parts of the kernel memory. > > [1] http://www.securityfocus.com/archive/1/463934/30/0/threaded Arnaldo already sent me a more proper fix for this. - To unsubscribe from this list: send the line "unsubscribe linux-kernel" in the body of a message to [EMAIL PROTECTED] More majordomo info at http://vger.kernel.org/majordomo-info.html Please read the FAQ at http://www.tux.org/lkml/