Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [thread-next>] [day] [month] [year] [list]
Message-ID: <4F7B7A8C.2070507@mvista.com>
Date: Tue, 03 Apr 2012 12:32:44 -1000
From: akuster <akuster@...sta.com>
To: oss-security@...ts.openwall.com
Subject: fix to CVE-2009-4307

Hello,

Was there a CVE assigned to commit d50f2ab6f050311dbf7b8f5501b25f0bf64a439b?

Commit 503358ae01b70ce6909d19dd01287093f6b6271c ("ext4: avoid divide by
zero when trying to mount a corrupted file system") fixes CVE-2009-4307
by performing a sanity check on s_log_groups_per_flex, since it can be
set to a bogus value by an attacker.

- Armin

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.