mirror of https://lore.kernel.org/lkml/
 help / color / mirror / Atom feed
* [PATCH 0/2] Fix info leaks on export for udf and isofs
@ 2012-07-12  6:46 Mathias Krause
  2012-07-12  6:46 ` [PATCH 1/2] isofs: avoid info leak on export Mathias Krause
                   ` (2 more replies)
  0 siblings, 3 replies; 4+ messages in thread
From: Mathias Krause @ 2012-07-12  6:46 UTC (permalink / raw)
  To: Al Viro, Jan Kara; +Cc: linux-kernel, Mathias Krause

Al, Jan,

this patch set fixes info leaks in isofs and udf. Both file systems fail to
initialize all bytes of the f_handle byte array when creating a handle for a
path pointing to a directory. This memory gets copied to userland and that for
is a leak of uninitialized heap data to userland that should be fixed.

This info leak can be triggered locally by using the name_to_handle_at()
syscall.


Regards,


Mathias Krause (2):
  isofs: avoid info leak on export
  udf: avoid info leak on export

 fs/isofs/export.c |    1 +
 fs/udf/namei.c    |    1 +
 2 files changed, 2 insertions(+)

-- 
1.7.10.4


^ permalink raw reply	[flat|nested] 4+ messages in thread

end of thread, other threads:[~2012-07-13 12:10 UTC | newest]

Thread overview: 4+ messages (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
2012-07-12  6:46 [PATCH 0/2] Fix info leaks on export for udf and isofs Mathias Krause
2012-07-12  6:46 ` [PATCH 1/2] isofs: avoid info leak on export Mathias Krause
2012-07-12  6:46 ` [PATCH 2/2] udf: " Mathias Krause
2012-07-13 12:10 ` [PATCH 0/2] Fix info leaks on export for udf and isofs Jan Kara

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox

all inboxes | Powered by JetHome®