oss-sec mailing list archives

Re: [Security] CVE request: kernel: taskstats/procfs io infoleak (was: taskstats authorized_keys presence infoleak PoC)


From: Linus Torvalds <torvalds () linux-foundation org>
Date: Wed, 29 Jun 2011 10:32:40 -0700

On Wed, Jun 29, 2011 at 10:21 AM, Vasiliy Kulikov <segoon () openwall com> wrote:

So, with rounded read_characters value it's possible to learn privkey
length.

Umm. You can trivially figure that out from the public key lenth
already, can't you?

So that's not very special, afaik.

                    Linus


Current thread: