ACK: [CVE-2016-4486] information leak vulnerability in rtnetlink

Christopher Arges chris.j.arges at canonical.com
Tue May 10 20:56:12 UTC 2016


On Tue, May 10, 2016 at 03:12:37PM +0100, Luis Henriques wrote:
> Following this email I am sending the backports for this CVE fix.  The fix
> is a clean cherry-pick only for xenial, as the code has been restructured
> in 4.4 kernel.  But the backports are fairly trivial.
> 
> Kangjie Lu (1):
>   net: fix infoleak in rtnetlink
> 
>  net/core/rtnetlink.c | 18 ++++++++++--------
>  1 file changed, 10 insertions(+), 8 deletions(-)
> 
> 
> -- 
> kernel-team mailing list
> kernel-team at lists.ubuntu.com
> https://lists.ubuntu.com/mailman/listinfo/kernel-team




More information about the kernel-team mailing list