ACK: [PATCH 0/2][X] CVE-2017-18174 - Denial of service in AMD GPIO pin control

Stefan Bader stefan.bader at canonical.com
Tue Nov 20 10:59:51 UTC 2018


On 20.11.18 02:47, Tyler Hicks wrote:
> https://people.canonical.com/~ubuntu-security/cve/?cve=CVE-2017-18174
> 
>  In the Linux kernel before 4.7, the amd_gpio_remove function in
>  drivers/pinctrl/pinctrl-amd.c calls the pinctrl_unregister function,
>  leading to a double free.
> 
> Clean cherry pick to Xenial. I had to incorporate a stray build failure fix
> from a related patch. I'm unable to test these changes since it requires
> specific AMD hardware. The build logs are clean and the changes are fairly
> straightforward.
> 
> Tyler
> 
> 
Acked-by: Stefan Bader <stefan.bader at canonical.com>

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 819 bytes
Desc: OpenPGP digital signature
URL: <https://lists.ubuntu.com/archives/kernel-team/attachments/20181120/ad45a992/attachment.sig>


More information about the kernel-team mailing list