NACK: [Zesty][SRU][PATCH 0/1] Fix for CVE-2017-14497

Kleber Souza kleber.souza at canonical.com
Tue Jan 23 16:11:12 UTC 2018


On 01/08/18 11:57, Po-Hsu Lin wrote:
> From our tracker, only Zesty needs this patch and it can be cherry-picked.
> 
> It looks like this issue will be triggered when tp_reserve is too big, causing
> mac_off greater than the rx_ring.frame_size.
> This will be fixed in this patch.
> 
> Benjamin Poirier (1):
>   packet: Don't write vnet header beyond end of buffer
> 
>  net/packet/af_packet.c | 12 +++++++++---
>  1 file changed, 9 insertions(+), 3 deletions(-)
> 

Zesty is EOL.




More information about the kernel-team mailing list