oss-sec mailing list archives

CVE Request: Linux: ip6_gre: invalid reads in ip6gre_err()


From: Andrey Konovalov <andreyknvl () google com>
Date: Mon, 6 Feb 2017 13:02:34 +0100

Hi,

There's a bug in the Linux kernel ipv6 implementation which allows a
remote attacker to trigger an out-of-bounds access.

Upsteam fix:
https://git.kernel.org/cgit/linux/kernel/git/davem/net.git/commit/?id=7892032cfe67f4bde6fc2ee967e45a8fbaf33756

Could you assign a CVE for this?

Thanks!


Current thread: