[CVE-2011-4110] fix panic replacing user keys

Andy Whitcroft apw at canonical.com
Tue Dec 6 16:32:04 UTC 2011


CVE-2011-4110
	There is a NULL pointer deref in the user-defined key type whereby
	updating a negative key into a fully instantiated key will cause
	an oops to occur when the code attempts to free the non-existent
	old payload.

Fixes for this have hit oneiric and later via mainline and stable.
Following this email is a patch for hardy, lucid, lucid/fsl-imx51,
maverick, maverick/ti-omap4, natty, and natty/ti-omap4.  This is a simple
backport from the mainline commit.

Proposing for hardy, lucid, lucid/fsl-imx51, maverick, maverick/ti-omap4,
natty, and natty/ti-omap4.

-apw




More information about the kernel-team mailing list