Thread (2 messages) 2 messages, 2 authors, 2018-07-09

Re: [PATCH] HID: hiddev: fix potential Spectre v1

From: Jiri Kosina <jikos@kernel.org>
Date: 2018-07-09 12:31:47
Also in: linux-usb, lkml

On Fri, 29 Jun 2018, Gustavo A. R. Silva wrote:
uref->field_index, uref->usage_index, finfo.field_index and
cinfo.index can be indirectly controlled by user-space, hence
leading to a potential exploitation of the Spectre variant 1
vulnerability.

This issue was detected with the help of Smatch:
Applied, thanks Gustavo.

-- 
Jiri Kosina
SUSE Labs
Keyboard shortcuts
hback out one level
jnext message in thread
kprevious message in thread
ldrill in
Escclose help / fold thread tree
?toggle this help