[Zesty][SRU][PATCH 0/1] Fix for CVE-2017-14497

Po-Hsu Lin po-hsu.lin at canonical.com
Mon Jan 8 10:57:26 UTC 2018


>From our tracker, only Zesty needs this patch and it can be cherry-picked.

It looks like this issue will be triggered when tp_reserve is too big, causing
mac_off greater than the rx_ring.frame_size.
This will be fixed in this patch.

Benjamin Poirier (1):
  packet: Don't write vnet header beyond end of buffer

 net/packet/af_packet.c | 12 +++++++++---
 1 file changed, 9 insertions(+), 3 deletions(-)

-- 
2.7.4





More information about the kernel-team mailing list