Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Date: Thu, 27 Aug 2009 12:49:26 +0800
From: Eugene Teo <>
CC: "Steven M. Christey" <>
Subject: Re: CVE request: kernel: AF_LLC getsockname 5-Byte
 Stack Disclosure

Eugene Teo wrote:
> sllc_arphrd member of sockaddr_llc might not be changed. Zero sllc 
> before copying to the above layer's structure.
> Note that LLC sockets are restricted to root since v2.6.25-rc9 (see 
> commit 3480c63b).
> Upstream commit:
> Reproducer:
> Reference:

There are some more fixes that addressed similar infoleaks:

     can: Fix raw_getname() leak
     irda: Fix irda_getname() leak
     appletalk: fix atalk_getname() leak
     netrom: Fix nr_getname() leak
     econet: Fix econet_getname() leak
     rose: Fix rose_getname() leak

It would make sense to address these with the same CVE name as this one.

Thanks, Eugene

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.