All of lore.kernel.org
 help / color / mirror / Atom feed
From: Greg KH <gregkh@suse.de>
To: Florian Weimer <fw@deneb.enyo.de>
Cc: Matthew Keenan <matt@opcode-solutions.com>,
	linux-kernel@vger.kernel.org,
	Andrew Morton <akpm@linux-foundation.org>,
	torvalds@linux-foundation.org, stable@kernel.org
Subject: Re: Linux 2.6.22.18
Date: Tue, 12 Feb 2008 09:50:15 -0800	[thread overview]
Message-ID: <20080212175015.GA2001@suse.de> (raw)
In-Reply-To: <878x1q6p6t.fsf@mid.deneb.enyo.de>

On Tue, Feb 12, 2008 at 06:48:42PM +0100, Florian Weimer wrote:
> * Greg KH:
> 
> > the logic is a little different in 2.6.22 and earlier in regards to this
> > area of code.  This way we are safer.
> 
> Your patch doesn't include the CVE-2006-0010 hunk.  Is this because
> get_user() implies an access_ok() check (while __copy_from_user()
> obviously does not)?

Yes, that is exactly why.  CVE-2006-0010 and -0009 are not applicable to
kernels prior to 2.6.23.

thanks,

greg k-h

  reply	other threads:[~2008-02-12 17:52 UTC|newest]

Thread overview: 7+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2008-02-11  7:43 Linux 2.6.22.18 Greg Kroah-Hartman
2008-02-11  7:43 ` Greg Kroah-Hartman
2008-02-11 11:31   ` Matthew Keenan
2008-02-11 15:45     ` Greg KH
2008-02-12 17:48       ` Florian Weimer
2008-02-12 17:50         ` Greg KH [this message]
2008-02-11 16:32     ` Linus Torvalds

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=20080212175015.GA2001@suse.de \
    --to=gregkh@suse.de \
    --cc=akpm@linux-foundation.org \
    --cc=fw@deneb.enyo.de \
    --cc=linux-kernel@vger.kernel.org \
    --cc=matt@opcode-solutions.com \
    --cc=stable@kernel.org \
    --cc=torvalds@linux-foundation.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.