Openwall GNU/*/Linux - a small security-enhanced Linux distro for servers
[<prev] [next>] [<thread-prev] [day] [month] [year] [list]
Date: Fri, 24 Nov 2017 10:29:20 +0100
From: Marcus Meissner <meissner@...e.de>
To: oss-security@...ts.openwall.com
Subject: Re: New Linux kernel XFRM privilege escalation

On Fri, Nov 24, 2017 at 10:08:23AM +0100, Greg KH wrote:
> On Fri, Nov 24, 2017 at 09:48:00AM +0100, Marcus Meissner wrote:
> > Hi,
> > 
> > posted to bugtraq:
> > 
> > http://seclists.org/fulldisclosure/2017/Nov/40
> > https://blogs.securiteam.com/index.php/archives/3535
> > https://github.com/torvalds/linux/commit/1137b5e2529a8f5ca8ee709288ecba3e68044df2
> > 
> > affects 2.6.28 up to 4.14 I would say.
> 
> Looks like this was fixed in 4.14-rc7, so 4.14 should be ok.

CVE-2017-16939 was assigned by Mitre.

Ciao, Marcus

Powered by blists - more mailing lists

Your e-mail address:

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Powered by Openwall GNU/*/Linux - Powered by OpenVZ