ACK: [CVE-2011-3209] oops in time handling on x86

Stefan Bader stefan.bader at canonical.com
Tue Oct 25 17:21:30 UTC 2011


On 25.10.2011 17:59, Andy Whitcroft wrote:
> CVE-2011-3209
> 	A flaw in the kernel's clock implementation could allow a local,
> 	unprivileged user to cause a denial of service.
> 
> The fix for this has hit lucid and later via mainline and stable.
> Following this email is a pair of patches for hardy.  One is a cherrypick
> the other is a simple backport.
> 
> Proposing for hardy.
> 
> -apw
> 

Those look worryingly large and meddling around with time functions is scary. At
least it seems to me to be consistent with the upstream change and that has been
done for quite a while now.

Acked-by: Stefan Bader <smb at canonical.com>




More information about the kernel-team mailing list