[PATCH 0/1][CVE-2016-3156][Trusty] ipv4: Don't do expensive useless work during inetdev destroy.

Luis Henriques luis.henriques at canonical.com
Mon Apr 18 14:04:59 UTC 2016


This patch will fix a local denial of service to network identified as
CVE-2016-3156.

The backport was simply a file rename that needed to be adjusted.  All
kernels except Trusty already contain this fix.

David S. Miller (1):
  ipv4: Don't do expensive useless work during inetdev destroy.

 net/ipv4/devinet.c                  |  4 ++++
 net/ipv4/fib_frontend.c             |  4 ++++
 net/ipv4/netfilter/ipt_MASQUERADE.c | 12 ++++++++++--
 3 files changed, 18 insertions(+), 2 deletions(-)





More information about the kernel-team mailing list