[CVE-2011-1767] remotly triggerable oops in gre tunnel

Andy Whitcroft apw at canonical.com
Tue Oct 25 15:54:00 UTC 2011


CVE-2011-1767
	A denial of service could occur if packets were received while
	the ipip or ip_gre module was being loaded.

The fix for this has hit lucid and later via mainline and stable.
Following this email are two patches one for lucid/fsl-imx51 and one
for hardy.  The patch for lucid/fsl-imx51 is a simple cherry pick of the
existing backport for lucid.  The patch for hardy is a reimplementation
for hardy, note that the existing fini function is already in the correct
order; please review this patch particularly closly.

Proposing for lucid/fsl-imx51 and hardy.

-apw




More information about the kernel-team mailing list