]> code.ossystems Code Review - meta-freescale.git/commit
kernel: CVE-2014-7825, CVE-2014-7826
authorSona Sarmadi <sona.sarmadi@enea.com>
Mon, 2 Mar 2015 10:43:59 +0000 (11:43 +0100)
committerZhenhua Luo <zhenhua.luo@freescale.com>
Fri, 6 Mar 2015 08:28:49 +0000 (16:28 +0800)
commitd8309b272f69eae18c73c1eab3b96e094826b58b
tree582635f817263285f6bfe1aee91c9f56e5677931
parentc5d969db855c3d238cd68d978cf83c1846116080
kernel: CVE-2014-7825, CVE-2014-7826

Insufficient syscall number validation in perf and ftrace subsystems

CVE-2014-7825
Fixes an out-of-bounds memory access flaw, in the syscall tracing
functionality of the Linux kernel's perf subsystem.

CVE-2014-7826
Fixes an out-of-bounds memory access flaw, in the syscall
tracing functionality of the Linux kernel's ftrace subsystem.

References:
http://www.openwall.com/lists/oss-security/2014/11/06/11
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-7825
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-7826

Signed-off-by: Sona Sarmadi <sona.sarmadi@enea.com>
meta-fsl-ppc/recipes-kernel/linux/files/tracing-CVE-2014-7825_CVE-2014-7826.patch [new file with mode: 0644]
meta-fsl-ppc/recipes-kernel/linux/linux-qoriq_3.12.bb