Thread (20 messages) flat view 20 messages, 12 authors, 2016-08-25

Re: CVE-2014-9900 fix is not upstream

From: David Miller <davem@davemloft.net>
Date: 2016-08-23 18:24:13
Also in: lkml

From: Ben Hutchings <redacted>
Date: Tue, 23 Aug 2016 18:35:27 +0100
On Tue, 2016-08-23 at 09:40 -0700, David Miller wrote:
quoted
From: Luis Henriques <redacted>
Date: Tue, 23 Aug 2016 14:41:07 +0100
quoted
Digging through some old CVEs I came across this one that doesn't
seem be
quoted
in mainline.  Was there a good reason for not being sent upstream? 
Maybe it was
quoted
rejected for some reason and I failed to find the discussion.
Because the patch is completely bogus, and thus so is the CVE.

The variable initializer clears out the entire structure.

Until you can show compiler output from gcc that shows it not
initializing the structure I will not apply this patch because I know
that it faithfully does.
On some versions and architectures.  Can you guarantee that you will
notice when an exception appears?
Again, show me the assembler output exhibiting the lack of
initialization, for this specific structure and situation.

That's all that I'm asking.
Keyboard shortcuts
hback out one level
jnext message in thread
kprevious message in thread
ldrill in
Escclose help / fold thread tree
?toggle this help