[CVE-2012-0038] ACL overflow oops

Andy Whitcroft apw at canonical.com
Wed Jan 18 11:28:28 UTC 2012


CVE-2012-0038
	integer overflow in the ACL handling code, which could further
	lead to heap-based buffer overflow via a crafted filesystem.

Fixes for this have hit lucid, oneiric and precise via upstream and stable.
Hardy did not have this code.  Following this email is a set of patches
for maverick, maverick/ti-omap4, natty and natty/ti-omap4.  These are
cherry-picks from mainline (though allowing for renames).

Proposing for maverick, maverick/ti-omap4, natty and natty/ti-omap4.

-apw




More information about the kernel-team mailing list