[CVE-2016-4486] information leak vulnerability in rtnetlink

Luis Henriques luis.henriques at canonical.com
Tue May 10 14:12:37 UTC 2016


Following this email I am sending the backports for this CVE fix.  The fix
is a clean cherry-pick only for xenial, as the code has been restructured
in 4.4 kernel.  But the backports are fairly trivial.

Kangjie Lu (1):
  net: fix infoleak in rtnetlink

 net/core/rtnetlink.c | 18 ++++++++++--------
 1 file changed, 10 insertions(+), 8 deletions(-)





More information about the kernel-team mailing list