Files
android_kernel_samsung_msm8…/kernel
Kees Cook 80fee3d540 kernel/sys.c: fix stack memory content leak via UNAME26
Calling uname() with the UNAME26 personality set allows a leak of kernel
stack contents.  This fixes it by defensively calculating the length of
copy_to_user() call, making the len argument unsigned, and initializing
the stack buffer to zero (now technically unneeded, but hey, overkill).

CVE-2012-0957

Change-Id: Ib0a6cb461986eae3eebc15156969762f670ffe9b
Reported-by: PaX Team <pageexec@freemail.hu>
Signed-off-by: Kees Cook <keescook@chromium.org>
Cc: Andi Kleen <ak@linux.intel.com>
Cc: PaX Team <pageexec@freemail.hu>
Cc: Brad Spengler <spender@grsecurity.net>
Cc: <stable@vger.kernel.org>
Signed-off-by: Andrew Morton <akpm@linux-foundation.org>
Signed-off-by: Linus Torvalds <torvalds@linux-foundation.org>
Signed-off-by: Devendra Patel <cdevenp@codeaurora.org>
2013-03-06 10:07:28 -08:00
..
…
2012-06-26 10:35:13 -07:00
2012-12-03 11:37:28 -08:00
…
…
2012-04-09 13:57:52 -07:00
2012-03-28 18:30:03 +01:00
…
…
2012-03-26 12:50:53 +10:30
…
2012-03-29 19:52:46 +08:00
2012-03-23 16:58:41 -07:00
…
2012-03-28 18:30:03 +01:00
2011-10-31 17:30:44 -07:00
2011-12-21 12:57:40 -08:00
2012-03-15 18:17:55 -07:00
…