Re: [PATCH] kernel_read result fixes

From: Andres Salomon
Date: Thu Dec 30 2004 - 02:48:15 EST


On Wed, 2004-12-29 at 23:25 -0800, Andrew Morton wrote:
> Andres Salomon <dilinger@xxxxxxxxx> wrote:
> >
> > A few potential vulnerabilities were pointed out by Katrina Tsipenyuk in
> > <http://seclists.org/lists/linux-kernel/2004/Dec/1878.html>. I haven't
> > seen any discussion or fixes of the issue yet, so here's a patch
> > (against 2.6.9). The fixes are along the same lines as the previous
> > binfmt_elf fixes. There's one additional place (inside fs/binfmt_som.c)
> > that a fix could be applied, but since that doesn't compile anyways, I
> > didn't see a point in patching it.
>
> This patch is very wrong.
>

Yep, I already followed up saying that. I assume you're just going
through your inbox after vacation now; it should be there. :)


--
Andres Salomon <dilinger@xxxxxxxxx>

Attachment: signature.asc
Description: This is a digitally signed message part