Bug#411294: linux-2.6: capi_{cmsg,message}2str not thread-safe; vulnerable to buffer overflow

2007-02-25 Thread Ben Hutchings
tags 411294 patch
thanks

There's a patch upstream:
http://bugzilla.kernel.org/attachment.cgi?id=10526action=view

It applies cleanly to version 2.6.18.dfsg.1-10 with a small offset in
some files, but I haven't checked whether any other changes might be
needed for 2.6.18.

Ben.

-- 
Ben Hutchings
When you say `I wrote a program that crashed Windows', people just stare ...
and say `Hey, I got those with the system, *for free*'. - Linus Torvalds


signature.asc
Description: This is a digitally signed message part


Bug#411294: linux-2.6: capi_{cmsg,message}2str not thread-safe; vulnerable to buffer overflow

2007-02-25 Thread Bastian Blank
user debian-kernel@lists.debian.org
usertags 411294 dkt-waiting-etch-update
thanks

On Sun, Feb 25, 2007 at 10:11:54PM +0100, Ben Hutchings wrote:
 It applies cleanly to version 2.6.18.dfsg.1-10 with a small offset in
 some files, but I haven't checked whether any other changes might be
 needed for 2.6.18.

The current patch includes an abi change. Also we should wait for the
final version to appear in linus tree.

Bastian

-- 
Violence in reality is quite different from theory.
-- Spock, The Cloud Minders, stardate 5818.4


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]