Re: [meta-freescale] [PATCH 1/1] CVE-2014-5077 Kernel/SCTP: fix a NULL pointer dereference

2014-09-18 Thread Liviu Gheorghisan
Ah, I tested on the wrong branch. Resending... On 09/17/2014 06:32 AM, zhenhua@freescale.com wrote: -Original Message- From: meta-freescale-boun...@yoctoproject.org [mailto:meta-freescale- boun...@yoctoproject.org] On Behalf Of Liviu Gheorghisan Sent: Monday, September 15, 2014 3:14

Re: [meta-freescale] [PATCH 1/1] CVE-2014-5077 Kernel/SCTP: fix a NULL pointer dereference

2014-09-16 Thread zhenhua....@freescale.com
> -Original Message- > From: meta-freescale-boun...@yoctoproject.org [mailto:meta-freescale- > boun...@yoctoproject.org] On Behalf Of Liviu Gheorghisan > Sent: Monday, September 15, 2014 3:14 PM > > diff --git a/recipes-kernel/linux/linux-qoriq-prt_3.12.bb b/recipes- > kernel/linux/linux-q

Re: [meta-freescale] [PATCH 1/1] CVE-2014-5077 Kernel/SCTP: fix a NULL pointer dereference

2014-09-15 Thread Otavio Salvador
On Mon, Sep 15, 2014 at 4:14 AM, Liviu Gheorghisan wrote: > A NULL pointer dereference flaw was found in the way the > Linux kernel's Stream Control Transmission Protocol > (SCTP) implementation handled simultaneous connections > between the same hosts. A remote attacker could use this > flaw to c

[meta-freescale] [PATCH 1/1] CVE-2014-5077 Kernel/SCTP: fix a NULL pointer dereference

2014-09-15 Thread Liviu Gheorghisan
A NULL pointer dereference flaw was found in the way the Linux kernel's Stream Control Transmission Protocol (SCTP) implementation handled simultaneous connections between the same hosts. A remote attacker could use this flaw to crash the system. References: - https://access.redhat.com/securit