oss-sec mailing list archives
Re: Re: CVE-2016-8655 Linux af_packet.c race condition (local root)
From: Hanno Böck <hanno () hboeck de>
Date: Wed, 7 Dec 2016 14:15:15 +0100
Hi, I'm running kernel 4.8.12, which has the fix you pointed out included, however:
You can also run it with "crash" as the first argument to force a panic.
running your code with the "crash" parameter reliably panics this kernel. This doesn't seem right. Is this an incomplete or nonworking fix? -- Hanno Böck https://hboeck.de/ mail/jabber: hanno () hboeck de GPG: FE73757FA60E4E21B937579FA5880072BBB51E42
Current thread:
- CVE-2016-8655 Linux af_packet.c race condition (local root) Philip Pettersson (Dec 05)
- Re: CVE-2016-8655 Linux af_packet.c race condition (local root) Philip Pettersson (Dec 06)
- Re: Re: CVE-2016-8655 Linux af_packet.c race condition (local root) Hanno Böck (Dec 07)
- Re: Re: CVE-2016-8655 Linux af_packet.c race condition (local root) Salvatore Bonaccorso (Dec 07)
- Re: Re: CVE-2016-8655 Linux af_packet.c race condition (local root) Brad Spengler (Dec 07)
- Re: Re: CVE-2016-8655 Linux af_packet.c race condition (local root) Hanno Böck (Dec 07)
- Re: CVE-2016-8655 Linux af_packet.c race condition (local root) Philip Pettersson (Dec 06)