APPLIED: [CVE-2011-0716] bridge IGMP DOS

Tim Gardner rtg.canonical at gmail.com
Wed Feb 1 12:52:40 UTC 2012


On 02/01/2012 03:28 AM, Andy Whitcroft wrote:
> CVE-2011-0716
> 	A flaw was found in the way the Linux Ethernet bridge
> 	implementation handled certain IGMP (Internet Group Management
> 	Protocol) packets. A local, unprivileged user on a system that
> 	has a network interface in an Ethernet bridge could use this flaw
> 	to crash that system.
>
> This issue was introduced in maverick.  Fixes have hit natty and later
> via mainline and stable.  Following this email is a patch for maverick
> and maverick/ti-omap4, this is a simple cherry-pick from the mainline fix.
>
> Proposing for maverick and maverick/ti-omap4.
>
> -apw
>


-- 
Tim Gardner tim.gardner at canonical.com




More information about the kernel-team mailing list