oss-sec mailing list archives

Re: CVE Request: kernel information leak in fs/compat_ioctl.c VIDEO_SET_SPU_PALETTE


From: P J P <ppandit () redhat com>
Date: Tue, 9 Apr 2013 12:01:04 +0530 (IST)

+-- On Mon, 8 Apr 2013, Dan Carpenter wrote --+
| Oh, you're saying that access_ok() can't fail.  That's true on some arches, 
| and not on others.

Also, many on arch's `get_user' initialises `x' to 0.
--
Prasad J Pandit / Red Hat Security Response Team
DB7A 84C5 D3F9 7CD1 B5EB  C939 D048 7860 3655 602B


Current thread: