Re: [Coverity] Untrusted user data in kernel

From: David S. Miller
Date: Fri Dec 17 2004 - 14:41:07 EST


On Fri, 17 Dec 2004 20:34:55 +0100
Tomas Carnecky <tom@xxxxxxxxxxxxx> wrote:

> > It is already checked in do_ip6t_set_ctl(). Otherwise anyone could
> > replace iptables rules :)
> For me it seems that only CAP_NET_ADMIN is checked and not the data.

If that's the case then I agree with you Tomas.
-
To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at http://vger.kernel.org/majordomo-info.html
Please read the FAQ at http://www.tux.org/lkml/