** Also affects: linux-5.4 (Ubuntu)
   Importance: Undecided
       Status: New

** No longer affects: linux-5.4 (Ubuntu Focal)

** No longer affects: linux-5.4 (Ubuntu Groovy)

** No longer affects: linux-5.4 (Ubuntu Hirsute)

** Changed in: linux-5.4 (Ubuntu Bionic)
       Status: New => Fix Released

** No longer affects: linux (Ubuntu Bionic)

** Changed in: linux (Ubuntu Focal)
       Status: Fix Committed => Fix Released

-- 
You received this bug notification because you are a member of Kernel
Packages, which is subscribed to linux-5.4 in Ubuntu.
https://bugs.launchpad.net/bugs/1927682

Title:
   netfilter: x_tables: fix compat match/target pad out-of-bound write

Status in linux package in Ubuntu:
  Incomplete
Status in linux-5.4 package in Ubuntu:
  New
Status in linux-5.4 source package in Bionic:
  Fix Released
Status in linux source package in Focal:
  Fix Released
Status in linux source package in Groovy:
  Fix Released
Status in linux source package in Hirsute:
  Invalid

Bug description:
  This issue:

  
https://github.com/torvalds/linux/commit/b29c457a6511435960115c0f548c4360d5f4801d

  
  [Impact]
  Data corruption and/or leak.

  [Fix]
  Zero out entire data structure beforehand

  
  [Test]
  Boot-test only so far.

  [Regression Potential]
  Possible effect on iptables/nftables. Though considered minimal risk as the 
patch has only a very localized effect and is accepted upstream in v5.12

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1927682/+subscriptions

-- 
Mailing list: https://launchpad.net/~kernel-packages
Post to     : kernel-packages@lists.launchpad.net
Unsubscribe : https://launchpad.net/~kernel-packages
More help   : https://help.launchpad.net/ListHelp

Reply via email to