|
Message-ID: <CANTw=MOcG67T82Eqy3gAiXG58oxzsu0VoSkdLA=ATh46OGMwUg@mail.gmail.com> Date: Wed, 15 May 2013 00:02:38 -0400 From: Michael Gilbert <mgilbert@...ian.org> To: oss-security@...ts.openwall.com Subject: Re: CVE Request: linux kernel perf out-of-bounds access On Tue, May 14, 2013 at 9:26 PM, Eugene Teo wrote: > On Tue, May 14, 2013 at 8:25 PM, Marc Deslauriers < > marc.deslauriers@...onical.com> wrote: > >> Hello, >> >> Is there a CVE for this? If not, could one be assigned, please? >> >> https://patchwork.kernel.org/patch/2441281/ >> >> 8176cced706b5e5d15887584150764894e94e02f >> >> (BTW, there is currently an exploit for this going around...) >> > > Nowhere did it say it is a security fix. Fix available since April 13. > s@...s not aware too. Awesome. > > Seriously, surely by now we should all know that silent fixes are not the > wisest thing to do. An iceberg of evidence is clearly not enough to change this ship's course. Best wishes, Mike
Powered by blists - more mailing lists
Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.
Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.