oss-sec mailing list archives

Re: CVE request: kernel: perf_counter: Fix buffer overflow in perf_copy_attr()


From: "Steven M. Christey" <coley () linus mitre org>
Date: Wed, 16 Sep 2009 21:32:26 -0400 (EDT)


======================================================
Name: CVE-2009-3234
Status: Candidate
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3234
Reference: MLIST:[linux-kernel] 20090916 [patch 15/45] perf_counter: Fix buffer overflow in perf_copy_attr()
Reference: URL:http://article.gmane.org/gmane.linux.kernel/890654
Reference: MLIST:[oss-security] 20090916 CVE request: kernel: perf_counter: Fix buffer overflow in perf_copy_attr()
Reference: URL:http://www.openwall.com/lists/oss-security/2009/09/16/1
Reference: BID:36423
Reference: URL:http://www.securityfocus.com/bid/36423

Buffer overflow in the perf_copy_attr function in
kernel/perf_counter.c in the Linux kernel 2.6.31-rc1 allows local
users to cause a denial of service (crash) via a "big size data" to
the perf_counter_open system call.



Current thread: