[CVE-2012-2372] RDS local ping DOS

Andy Whitcroft apw at canonical.com
Thu Jul 26 10:25:50 UTC 2012


CVE-2012-2372
	A flaw was found in the Linux kernel's Reliable Datagram Sockets
	(RDS) protocol implementation. A local, unprivileged user could
	use this flaw to cause a denial of service.

This fix was comes from analysis of the fixes applied by other distros
and has not yet hit upstream.  Hardy does not have the network protocol
in question.  Following this email are two patches one for lucid and one
for natty, natty/ti-omap4, oneiric, precise and quantal.  They only differ
in context.

Proposing for lucid, natty, natty/ti-omap4, oneiric, precise and
quantal.

-apw




More information about the kernel-team mailing list