From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on aws-us-west-2-korg-lkml-1.web.codeaurora.org Received: from phobos.denx.de (phobos.denx.de [85.214.62.61]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by smtp.lore.kernel.org (Postfix) with ESMTPS id 77BF1C43219 for ; Mon, 14 Nov 2022 13:04:22 +0000 (UTC) Received: from h2850616.stratoserver.net (localhost [IPv6:::1]) by phobos.denx.de (Postfix) with ESMTP id 144EC82F8C; Mon, 14 Nov 2022 14:04:20 +0100 (CET) Authentication-Results: phobos.denx.de; dmarc=pass (p=none dis=none) header.from=konsulko.com Authentication-Results: phobos.denx.de; spf=pass smtp.mailfrom=u-boot-bounces@lists.denx.de Authentication-Results: phobos.denx.de; dkim=pass (1024-bit key; unprotected) header.d=konsulko.com header.i=@konsulko.com header.b="fDP+NI+p"; dkim-atps=neutral Received: by phobos.denx.de (Postfix, from userid 109) id 669C6830E2; Mon, 14 Nov 2022 14:04:18 +0100 (CET) Received: from mail-qk1-x72e.google.com (mail-qk1-x72e.google.com [IPv6:2607:f8b0:4864:20::72e]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits)) (No client certificate requested) by phobos.denx.de (Postfix) with ESMTPS id EF69B82F8C for ; Mon, 14 Nov 2022 14:04:15 +0100 (CET) Authentication-Results: phobos.denx.de; dmarc=pass (p=none dis=none) header.from=konsulko.com Authentication-Results: phobos.denx.de; spf=pass smtp.mailfrom=trini@konsulko.com Received: by mail-qk1-x72e.google.com with SMTP id d8so4058915qki.13 for ; Mon, 14 Nov 2022 05:04:15 -0800 (PST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=konsulko.com; s=google; h=in-reply-to:content-disposition:mime-version:references:message-id :subject:cc:to:from:date:from:to:cc:subject:date:message-id:reply-to; bh=gxGjDN7YibM4GjupdSSDj40GvB7WSioWUOt2nPc6DcM=; b=fDP+NI+pvdPLOSN+9oAnUFCCHoOlXlcPkjdDtnao6xzkNpRnQWqThAxW+2SB0XPfdc PESqfhlScElBCtHQlmUmL6R6UZFyTHg45cYGIl6AUhhT+GQPFNpKL62CoQCdl1i65mR+ FqScMXGy65ZzRiUzNyXNyRi31cMfu9S7hBhAA= X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20210112; h=in-reply-to:content-disposition:mime-version:references:message-id :subject:cc:to:from:date:x-gm-message-state:from:to:cc:subject:date :message-id:reply-to; bh=gxGjDN7YibM4GjupdSSDj40GvB7WSioWUOt2nPc6DcM=; b=hiGRr/a34iYEY4fHUSUb3pjOtL4QX5vdML0xenSoUJbUdNfRS5a0VNUztDD3Sz/vEE G9R6OeVtHNdO7YVOQ+O+R4V77fQHkVnBmJpLEsKIcDJYRLcJY31oL814W2qzHP9/2Bal F8otax4n96TfQIISEQYW4av+rXeVt64/ASnvvCDcXBC9/o5gdanMn66M0dbh6jPBdXDo AWOoV4fcbYoYzAmm2q5Q/frmy5+t9jzdPLRCeWENpPrqaHiUvDAJajzjB4g908pcVrph i6OSHWe/6yIm9CfhBIDtQ4949cVCXeUcHchYKi1PGkfCFPcXfseqV//fu3+YuXiokCBW +CAA== X-Gm-Message-State: ANoB5pklRhMQOg0cmE7ETjoBrofbxJ8yWlkX+ZCeoMJdciPYZgH49JI3 9r5Ajsf+kVJI+H22+a5a73CooA== X-Google-Smtp-Source: AA0mqf54UDpekaHKkicp6HATmwy9FOx9FQejxHP9sdsk/gR+9D3qVDqWYKZJDKCH9lROP6k1lL000w== X-Received: by 2002:a37:411:0:b0:6fa:262a:76b3 with SMTP id 17-20020a370411000000b006fa262a76b3mr10973943qke.784.1668431054630; Mon, 14 Nov 2022 05:04:14 -0800 (PST) Received: from bill-the-cat (2603-6081-7b00-6400-9472-6a92-d4f0-df47.res6.spectrum.com. [2603:6081:7b00:6400:9472:6a92:d4f0:df47]) by smtp.gmail.com with ESMTPSA id x1-20020a05620a448100b006cec8001bf4sm6565515qkp.26.2022.11.14.05.04.13 (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Mon, 14 Nov 2022 05:04:14 -0800 (PST) Date: Mon, 14 Nov 2022 08:04:12 -0500 From: Tom Rini To: Rasmus Villemoes , Ramon Fried Cc: u-boot@lists.denx.de, Fabio Estevam , Nicolas Bidron , Joe Hershberger Subject: Re: [PATCH 0/6] broken CVE fix (b85d130ea0ca) Message-ID: <20221114130412.GL7282@bill-the-cat> References: <20221014174342.3216982-1-rasmus.villemoes@prevas.dk> <4476ff8a-dbe3-df53-c98c-955e6cdad547@prevas.dk> MIME-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha512; protocol="application/pgp-signature"; boundary="4eRLI4hEmsdu6Npr" Content-Disposition: inline In-Reply-To: <4476ff8a-dbe3-df53-c98c-955e6cdad547@prevas.dk> X-Clacks-Overhead: GNU Terry Pratchett X-BeenThere: u-boot@lists.denx.de X-Mailman-Version: 2.1.39 Precedence: list List-Id: U-Boot discussion List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: u-boot-bounces@lists.denx.de Sender: "U-Boot" X-Virus-Scanned: clamav-milter 0.103.6 at phobos.denx.de X-Virus-Status: Clean --4eRLI4hEmsdu6Npr Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On Mon, Nov 14, 2022 at 10:35:51AM +0100, Rasmus Villemoes wrote: > On 14/10/2022 19.43, Rasmus Villemoes wrote: > > tl;dr: b85d130ea0ca didn't fix the CVE(s), but did break tftp of > > certain file sizes - which is somewhat lucky, since that's how I > > noticed in the first place. > >=20 >=20 > At this point it seems unlikely that any more comments or reviews will > come, so perhaps its time to get these (all 7) merged to master, so that > they will get some wider testing before the January release? Yes, I'd like to see a net PR with this and perhaps a few other mature things? --=20 Tom --4eRLI4hEmsdu6Npr Content-Type: application/pgp-signature; name="signature.asc" -----BEGIN PGP SIGNATURE----- iQGzBAABCgAdFiEEGjx/cOCPqxcHgJu/FHw5/5Y0tywFAmNyPMkACgkQFHw5/5Y0 tyxxuwv9G1cTiIQ/oYAiPsEUSJG6FmGayKkG2ZkHDVStfrKckTKPw9dFwkHZc/R4 ObPns5hI6dNR6AGar4Klvbd/TvagU4LjNEhK42Q2djE3ua0isF+KxRE4i82UbzZ0 KDIVqZ8D3YmvhflqvcOU9qyxhAzOSt3ju+XdOpaDvSs9WNJP2PpUFz0QCMVx9C8/ TZpWjsQZ3ugjFTpzK16dG8OLbB0I+jmXuZtMOWUw8eZKbB8JljoaUJxXu15HFpVV dLg7W3xIrVv/dGe6xGsD6k/SYr389m6VGwmP3iiiGXQ/g/mj6gLi45/JLBKWxdMx tr+9+tiSa5C4R5ChOuTZEI3xdD8k/A4B7AzBAkIEm7Uedzm+uZ3qCNoUqWd7ujkG 5q+uBRkste/mLPmQL+DJIjT1L476xYWTwJz0E6/0I4EYENqc2j1lIOqG/I6xCj2O /ByrWSSrM2fAt8ry22QWF1UWHZErAqM2GXNX5bmAkE4YlbDTFwFGd8vWLZve6ZUb p7NZlcoz =6ANE -----END PGP SIGNATURE----- --4eRLI4hEmsdu6Npr--