oss-sec mailing list archives

Re: [test case][kunit] CVE-2020-10711 Kernel netLabel


From: "Singh, Balbir" <sblbir () amazon com>
Date: Fri, 15 May 2020 12:54:12 +0000

On Fri, 2020-05-15 at 11:27 +0530, P J P wrote:

  Hello Balbir,

+-- On Fri, 15 May 2020, Singh, Balbir wrote --+
I've spent some time writing a kunit test case for CVE-2020-10711 using the
KUNIT framework. I am attaching the patch below for reference. The patch is
against the latest linux-next. The details are in the test case, there
are some TODOs:

1. Add test cases for the ipv6 variant
2. Add a test case for cipso_v4_parsetag_rpm variant

Please feel to suggest improvements or better ways to test this, this is
a rough patch, but I still wanted to share it and see if it helps others/
get comments on the approach to testing it.

Thank you so much for working on this. At first glance it looks okay, you need
to send this to an upstream -netdev list for better reviews/inputs.

  -> http://vger.kernel.org/vger-lists.html#netdev


Thanks Prasad!

I was reaching out the security list to check if the patches were correct
from a security verification view point. I will get feedback from netdev 
as well in a while

Balbir Singh.


Current thread: