oss-sec mailing list archives

Re: information about pwn2own Kernel problem


From: Dave Null <noid23 () gmail com>
Date: Wed, 22 Mar 2017 15:19:11 -0700

I was wondering this myself. I'm not sure if ZDI does any variant
investigation when they pick up a bug. Really hoping this doesn't jump from
a distro related problem to a Linux problem.

-noid

Crypto: https://keybase.io/noid
None are more hopelessly enslaved than those who falsely believe they are
free - Goethe
--

On Wed, Mar 22, 2017 at 1:54 PM, Luedtke, Nicholas (HPE Linux Security) <
nicholas.luedtke () hpe com> wrote:


On 3/22/2017 2:21 PM, Tyler Hicks wrote:
ZDI disclosed the information to the Ubuntu Security team a little less
than 48 hours ago.

The Ubuntu Kernel team has triaged the issue and came up with a
potential fix. That fix is undergoing internal review and I'll be
disseminating it via the usual channels once that is complete.

Tyler
Is this an Ubuntu specific issue? Or does it affect the upstream kernels
as well?


--
Nicholas Luedtke
HPE Linux Security, Hewlett-Packard Enterprise





Current thread: