oss-sec mailing list archives

Re: CVE Request: kernel information leak in fs/compat_ioctl.c VIDEO_SET_SPU_PALETTE


From: Dan Carpenter <dan.carpenter () oracle com>
Date: Mon, 8 Apr 2013 21:49:05 +0300

On Mon, Apr 08, 2013 at 09:44:33PM +0300, Dan Carpenter wrote:
On Mon, Apr 08, 2013 at 10:18:30PM +0530, P J P wrote:

Unless `access_ok()' in `__get_user' returns 0, which it does not, OR 
sizeof(*ptr) is > 8 bytes.


Oh, you're saying that access_ok() can't fail.  That's true on some
arches, and not on others.

regards,
dan carpenter


Current thread: