[Acked] [lts-backport-raring] CVEs fixes for Raring

Andy Whitcroft apw at canonical.com
Thu Feb 20 15:55:00 UTC 2014


On Thu, Feb 20, 2014 at 01:28:41PM +0000, Luis Henriques wrote:
> Following this email I'm sending fixes for the following CVEs:
> 
> CVE-2014-1690
> Backport of:
> 2690d97 netfilter: nf_nat: fix access to uninitialized buffer in IRC NAT helper
> 
> CVE-2013-4345
> Clean cherry-pick of:
> 714b33d crypto: ansi_cprng - Fix off by one error in non-block size request
> 
> CVE-2013-6382
> Clean cherry-pick of:
> 31978b5 xfs: underflow bug in xfs_attrlist_by_handle()
> 
> Dan Carpenter (1):
>   xfs: underflow bug in xfs_attrlist_by_handle()
> 
> Daniel Borkmann (1):
>   netfilter: nf_nat: fix access to uninitialized buffer in IRC NAT
>     helper
> 
> Neil Horman (1):
>   crypto: ansi_cprng - Fix off by one error in non-block size request
> 
>  crypto/ansi_cprng.c        |  4 ++--
>  fs/xfs/xfs_ioctl.c         |  3 ++-
>  fs/xfs/xfs_ioctl32.c       |  3 ++-
>  net/netfilter/nf_nat_irc.c | 28 +++++++++++++++++++++++++---
>  4 files changed, 31 insertions(+), 7 deletions(-)

The first looks like a resonable backport and the others valid
cherry-picks.  Therefore:

Acked-by: Andy Whitcroft <apw at canonical.com>

-apw




More information about the kernel-team mailing list