APPLIED: [Trusty][CVE-2015-400{1,2,3}][PATCH 0/4] ozwpan driver CVEs
Kamal Mostafa
kamal at canonical.com
Tue Jun 9 19:43:48 UTC 2015
On Tue, 2015-06-09 at 16:27 +0100, Luis Henriques wrote:
> Following this email I am sending the fixes for trusty for 3 CVEs in
> the ozwpan driver: CVE-2015-4001, CVE-2015-4002 and CVE-2015-4003.
>
> Jason A. Donenfeld (4):
> ozwpan: Use unsigned ints to prevent heap overflow
> ozwpan: divide-by-zero leading to panic
> ozwpan: Use proper check to prevent heap overflow
> ozwpan: unchecked signed subtraction leads to DoS
>
> drivers/staging/ozwpan/ozhcd.c | 8 ++++----
> drivers/staging/ozwpan/ozusbif.h | 4 ++--
> drivers/staging/ozwpan/ozusbsvc1.c | 19 ++++++++++++++-----
> 3 files changed, 20 insertions(+), 11 deletions(-)
>
>
More information about the kernel-team
mailing list