oss-sec mailing list archives

Re: Malicious devices & vulnerabilties


From: Xi Wang <xi.wang () gmail com>
Date: Sun, 8 Jan 2012 15:21:57 -0500

On Jan 8, 2012, at 12:07 PM, Greg KH wrote:
They should be considered buggy, yes, and as such, the kernel developers
will fix any reported problems (or we should, if not, please let me
know.)

Thanks for the clarification.  CVE-2011-0712 (long product name)
was fixed like a year ago.

http://git.kernel.org/linus/eaae55da

The usb audio format parser was just fixed upstream.

http://git.kernel.org/?p=linux/kernel/git/tiwai/sound.git;a=commit;h=4fa0e81b

- xi


Current thread: