APPLIED: [CVE-2011-3353] FUSE mount DOS

Tim Gardner rtg.canonical at gmail.com
Tue Jan 3 18:05:20 UTC 2012



On 01/03/2012 06:14 AM, Andy Whitcroft wrote:
> CVE-2011-3353
> 	A buffer overflow flaw was found in the Linux kernel's FUSE
> 	(Filesystem in Userspace) implementation. A local user in the
> 	fuse group who has access to mount a FUSE file system could use
> 	this flaw to cause a denial of service.
>
> Fixes for this have hit lucid, oneiric and precise via upstream and
> stable, hardy is unaffected.  Following this email is a patch for maverick,
> maverick/ti-omap4, natty, and natty/ti-omap4.  This is a simple cherry-pick
> from the mainline fix.
>
> Proposing for maverick, maverick/ti-omap4, natty, and natty/ti-omap4.
>
> -apw
>




More information about the kernel-team mailing list