[Acked 1-2] [All series][CVE-2013-2147 0/2] cpqarray/cciss: fix info leak

Andy Whitcroft apw at canonical.com
Tue Oct 1 16:23:02 UTC 2013


On Tue, Oct 01, 2013 at 05:05:02PM +0100, Luis Henriques wrote:
> Following this email there are 2 patches that fix CVE-2013-2147.
> 
> These patches are trivial fixes and should apply cleanly to all the
> series.  Although Lucid is the main target for these patches (because
> most of the stable kernels should bring these fixes soon) they can be
> applied from Lucid to Saucy.
> 
> Dan Carpenter (2):
>   cciss: fix info leak in cciss_ioctl32_passthru()
>   cpqarray: fix info leak in ida_locked_ioctl()
> 
>  drivers/block/cciss.c    | 1 +
>  drivers/block/cpqarray.c | 1 +
>  2 files changed, 2 insertions(+)

Both look to be direct cherry-picks from mainline.  They seem to do what
is implied.

Acked-by: Andy Whitcroft <apw at canonical.com>

-apw




More information about the kernel-team mailing list