Re: CVE-2022-48936: gso: do not skip outer ip header in case of ipip and net_failover

From: Michal Koutný
Date: Thu Aug 29 2024 - 12:20:46 EST


On Wed, Aug 28, 2024 at 09:30:08AM GMT, Greg Kroah-Hartman <gregkh@xxxxxxxxxxxxxxxxxxx> wrote:
> > What is the security issue here?
>
> This was assigned as part of the import of the Linux kernel GSD entries
> into CVEs as required by the CVE board of directors (hence the 2022
> date). If you don't feel this should be assigned a CVE, just let me
> know and I will be glad to reject it.

The address of original author bounces back. Willem, could you please
help explaining context of the change? (~the questions in my previous
message).

Thanks,
Michal

Attachment: signature.asc
Description: PGP signature