[CVE-2014-9900] [Trusty/Xenial/Yakkety/Zesty/Artful] [PATCH 0/1] net: Zeroing the structure ethtool_wolinfo in ethtool_get_wol()

Brad Figg brad.figg at canonical.com
Thu Jun 8 13:41:14 UTC 2017


CVE-2014-9900

memset() the structure ethtool_wolinfo that has padded bytes
but the padded bytes have not been zeroed out.

Avijit Kanti Das (1):
  net: Zeroing the structure ethtool_wolinfo in ethtool_get_wol()

 net/core/ethtool.c | 4 +++-
 1 file changed, 3 insertions(+), 1 deletion(-)

-- 
2.7.4





More information about the kernel-team mailing list