← Back to team overview

group.of.nepali.translators team mailing list archive

[Bug 1685892] [NEW] macsec: avoid heap overflow in skb_to_sgvec

 

*** This bug is a security vulnerability ***

Public security bug reported:

Please apply
https://git.kernel.org/pub/scm/linux/kernel/git/davem/net.git/commit/?id=4d6fa57b4dab0d77f4d8e9d9c73d1e63f6fe8fee

(See also http://www.openwall.com/lists/oss-security/2017/04/24/4 )

** Affects: linux (Ubuntu)
     Importance: Undecided
         Status: New

** Affects: linux-hwe (Ubuntu)
     Importance: Undecided
         Status: New

** Affects: linux (Ubuntu Xenial)
     Importance: Undecided
         Status: Invalid

** Affects: linux-hwe (Ubuntu Xenial)
     Importance: Undecided
         Status: New

** Affects: linux (Ubuntu Yakkety)
     Importance: Undecided
         Status: New

** Affects: linux-hwe (Ubuntu Yakkety)
     Importance: Undecided
         Status: Invalid

** Affects: linux (Ubuntu Zesty)
     Importance: Undecided
         Status: New

** Affects: linux-hwe (Ubuntu Zesty)
     Importance: Undecided
         Status: Invalid


** Tags: kernel-cve-tracker kernel-cve-tracking-bug

** Also affects: linux (Ubuntu Zesty)
   Importance: Undecided
       Status: New

** Also affects: linux (Ubuntu Yakkety)
   Importance: Undecided
       Status: New

** Also affects: linux-hwe (Ubuntu)
   Importance: Undecided
       Status: New

** Changed in: linux-hwe (Ubuntu Yakkety)
       Status: New => Invalid

** Changed in: linux-hwe (Ubuntu Zesty)
       Status: New => Invalid

** Also affects: linux (Ubuntu Xenial)
   Importance: Undecided
       Status: New

** Also affects: linux-hwe (Ubuntu Xenial)
   Importance: Undecided
       Status: New

** Changed in: linux (Ubuntu Xenial)
       Status: New => Invalid

-- 
You received this bug notification because you are a member of नेपाली
भाषा समायोजकहरुको समूह, which is subscribed to Xenial.
Matching subscriptions: Ubuntu 16.04 Bugs
https://bugs.launchpad.net/bugs/1685892

Title:
  macsec: avoid heap overflow in skb_to_sgvec

Status in linux package in Ubuntu:
  New
Status in linux-hwe package in Ubuntu:
  New
Status in linux source package in Xenial:
  Invalid
Status in linux-hwe source package in Xenial:
  New
Status in linux source package in Yakkety:
  New
Status in linux-hwe source package in Yakkety:
  Invalid
Status in linux source package in Zesty:
  New
Status in linux-hwe source package in Zesty:
  Invalid

Bug description:
  Please apply
  https://git.kernel.org/pub/scm/linux/kernel/git/davem/net.git/commit/?id=4d6fa57b4dab0d77f4d8e9d9c73d1e63f6fe8fee

  (See also http://www.openwall.com/lists/oss-security/2017/04/24/4 )

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1685892/+subscriptions


Follow ups