Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [thread-next>] [day] [month] [year] [list]
Message-ID: <4EE38547.8000001@gmail.com>
Date: Sat, 10 Dec 2011 17:13:59 +0100
From: Paul <pawlkt@...il.com>
To: oss-security@...ts.openwall.com
Subject: cve request: bat_socket_read memory corruption

Hi

can I get a CVE for this:
https://lists.open-mesh.org/pipermail/b.a.t.m.a.n/2011-December/005904.html
?

If root does read() on a specific socket, it's possible to corrupt
(kernel) memory over network, with an ICMP packet, if B.A.T.M.A.N. mesh
protocol is used.

-- 
Regards,             twitter.com/pa_kt
Paul


Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.