APPLIED: [CVE-2011-3353] FUSE mount DOS

Andy Whitcroft apw at canonical.com
Tue Jan 3 19:28:30 UTC 2012


On Tue, Jan 03, 2012 at 01:14:38PM +0000, Andy Whitcroft wrote:
> CVE-2011-3353
> 	A buffer overflow flaw was found in the Linux kernel's FUSE
> 	(Filesystem in Userspace) implementation. A local user in the
> 	fuse group who has access to mount a FUSE file system could use
> 	this flaw to cause a denial of service.
> 
> Fixes for this have hit lucid, oneiric and precise via upstream and
> stable, hardy is unaffected.  Following this email is a patch for maverick,
> maverick/ti-omap4, natty, and natty/ti-omap4.  This is a simple cherry-pick
> from the mainline fix.
> 
> Proposing for maverick, maverick/ti-omap4, natty, and natty/ti-omap4.

Applied ...

-apw




More information about the kernel-team mailing list