Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Date: Wed, 23 Feb 2011 14:59:59 -0500 (EST)
From: Josh Bressers <bressers@...hat.com>
To: oss-security@...ts.openwall.com
Cc: Timo Warns <warns@...-sense.de>
Subject: Re: CVE request: kernel: fs/partitions: Kernel heap
 overflow via corrupted LDM partition tables

----- Original Message -----
> 
> The kernel automatically evaluates partition tables of storage devices.
> The code for evaluating LDM partitions (in fs/partitions/ldm.c) contains
> a bug that allows to overflow the kernel heap. It may be possible to
> escalate privileges by exploiting this bug.
> 
> (This bug is distinct from the LDM bug reported by Eugene Teo on
> 2011-02-23.)
> 
> This should affect both, 2.4 and 2.6 kernel. As a prerequisite,
> CONFIG_LDM_PARTITION needs to be set.
> 

Can you point to a commit message or something else that is public? It's
not clear how this differs from Eugene's request.

Thanks.

-- 
    JB

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.