[Trusty][Zesty][SRU][PATCH 0/1] Fix for CVE-2017-18017

Po-Hsu Lin po-hsu.lin at canonical.com
Tue Jan 9 03:30:18 UTC 2018


>From our CVE tracker, only Trusty and Zesty need this patch
and it can be cherry-picked for both of them.

This patch fixes an use after free issue in xt_TCPMSS.

Eric Dumazet (1):
  netfilter: xt_TCPMSS: add more sanity tests on tcph->doff

 net/netfilter/xt_TCPMSS.c | 6 +++++-
 1 file changed, 5 insertions(+), 1 deletion(-)

-- 
2.7.4





More information about the kernel-team mailing list