ACK/Cmnt: [PATCH 0/2] [SRU][Trusty] Fix for CVE-2017-16644

Stefan Bader stefan.bader at canonical.com
Mon Jul 23 13:10:39 UTC 2018


On 20.07.2018 17:31, Paolo Pisati wrote:
> https://people.canonical.com/~ubuntu-security/cve/2017/CVE-2017-16644.html
> 
> The first patch is a prerequisite, that turns the second patch (the real fix)
> into a clean cherry pick.
> 
> Arvind Yadav (1):
>   media: hdpvr: Fix an error handling path in hdpvr_probe()
> 
> Bhaktipriya Shridhar (1):
>   [media] hdpvr: Remove deprecated create_singlethread_workqueue
> 
>  drivers/media/usb/hdpvr/hdpvr-core.c  | 34 ++++++++++++++++------------------
>  drivers/media/usb/hdpvr/hdpvr-video.c |  6 +++---
>  drivers/media/usb/hdpvr/hdpvr.h       |  2 --
>  3 files changed, 19 insertions(+), 23 deletions(-)
> 
Acked-by: Stefan Bader <stefan.bader at canonical.com>

Both patches need the CVE number added. While probably the second patch could
have worked around the missing first one, it looks like it may have some benefit
in general.

-Stefan

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 819 bytes
Desc: OpenPGP digital signature
URL: <https://lists.ubuntu.com/archives/kernel-team/attachments/20180723/fb420260/attachment.sig>


More information about the kernel-team mailing list