APPLIED: [CVE-2012-0038] ACL overflow oops

Tim Gardner rtg.canonical at gmail.com
Wed Jan 18 15:13:19 UTC 2012


On 01/18/2012 04:28 AM, Andy Whitcroft wrote:
> CVE-2012-0038
> 	integer overflow in the ACL handling code, which could further
> 	lead to heap-based buffer overflow via a crafted filesystem.
>
> Fixes for this have hit lucid, oneiric and precise via upstream and stable.
> Hardy did not have this code.  Following this email is a set of patches
> for maverick, maverick/ti-omap4, natty and natty/ti-omap4.  These are
> cherry-picks from mainline (though allowing for renames).
>
> Proposing for maverick, maverick/ti-omap4, natty and natty/ti-omap4.
>
> -apw
>


-- 
Tim Gardner tim.gardner at canonical.com




More information about the kernel-team mailing list