[azure][PATCH 0/2] Fixes for CVE-2017-16939 and CVE-2017-1000405

Marcelo Henrique Cerri marcelo.cerri at canonical.com
Tue Dec 5 14:03:45 UTC 2017


Both CVEs affect linux-azure 4.11.0-1015.15 and were tested with the
reproducers found at:

- CVE-2017-16939: https://bugzilla.suse.com/show_bug.cgi?id=1069702
- CVE-2017-1000405: https://github.com/bindecy/HugeDirtyCowPOC

The fixes are clean cherry picks from upstream.

Herbert Xu (1):
  ipsec: Fix aborted xfrm policy dump crash

Kirill A. Shutemov (1):
  mm, thp: Do not make page table dirty unconditionally in
    touch_p[mu]d()

 mm/huge_memory.c     | 36 +++++++++++++-----------------------
 net/xfrm/xfrm_user.c | 25 +++++++++++++++----------
 2 files changed, 28 insertions(+), 33 deletions(-)

-- 
2.7.4





More information about the kernel-team mailing list