ACK: [SRU][Focal][PATCH 0/1] CVE-2020-36691

Tim Gardner tim.gardner at canonical.com
Tue May 30 13:07:18 UTC 2023


On 5/28/23 1:00 PM, Yuxuan Luo wrote:
> [Impact]
> nlattr.c does not bound the recursion depth, therefore, in theory, attackers
> can issue a policy referring to its upper level, causing a infinite loop.
> 
> [Backport]
> There is a conflict in cherry picking which requires backporting a
> refactoring commit; it could be ignored by keeping the data structure before
> refactoring.
> 
> [Test]
> Compile and boot tested.
> 
> [Potential Regression]
> Expecting low regression potential limited to lib/nlattr.c.
> 
> Yuxuan Luo (1):
>    netlink: limit recursion depth in policy validation
> 
>   lib/nlattr.c | 46 ++++++++++++++++++++++++++++++++++------------
>   1 file changed, 34 insertions(+), 12 deletions(-)
> 
Acked-by: Tim Gardner <tim.gardner at canonical.com>
-- 
-----------
Tim Gardner
Canonical, Inc




More information about the kernel-team mailing list