From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S936526AbcIGKuU (ORCPT ); Wed, 7 Sep 2016 06:50:20 -0400 Received: from g4t3427.houston.hpe.com ([15.241.140.73]:30337 "EHLO g4t3427.houston.hpe.com" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S936251AbcIGKuR (ORCPT ); Wed, 7 Sep 2016 06:50:17 -0400 X-Greylist: delayed 168925 seconds by postgrey-1.27 at vger.kernel.org; Wed, 07 Sep 2016 06:50:17 EDT Subject: Re: [PATCH 4.4 0/4] CVE fixes for 4.4 To: gregkh@linuxfoundation.org References: <20160829133900.28300-1-juerg.haefliger@hpe.com> Cc: stable@vger.kernel.org, linux-kernel@vger.kernel.org, grant.likely@secretlab.ca From: Juerg Haefliger Message-ID: Date: Wed, 7 Sep 2016 12:50:13 +0200 User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:45.0) Gecko/20100101 Thunderbird/45.2.0 MIME-Version: 1.0 In-Reply-To: <20160829133900.28300-1-juerg.haefliger@hpe.com> Content-Type: multipart/signed; micalg=pgp-sha256; protocol="application/pgp-signature"; boundary="NrcJCcQsd5VRiVeVsGUBmiT6VeMVv59Sx" Sender: linux-kernel-owner@vger.kernel.org List-ID: X-Mailing-List: linux-kernel@vger.kernel.org This is an OpenPGP/MIME signed message (RFC 4880 and 3156) --NrcJCcQsd5VRiVeVsGUBmiT6VeMVv59Sx Content-Type: multipart/mixed; boundary="Q7fHuSAtM0GcBC6iN4wAhAOu8tKSPn304"; protected-headers="v1" From: Juerg Haefliger To: gregkh@linuxfoundation.org Cc: stable@vger.kernel.org, linux-kernel@vger.kernel.org, grant.likely@secretlab.ca Message-ID: Subject: Re: [PATCH 4.4 0/4] CVE fixes for 4.4 References: <20160829133900.28300-1-juerg.haefliger@hpe.com> In-Reply-To: <20160829133900.28300-1-juerg.haefliger@hpe.com> --Q7fHuSAtM0GcBC6iN4wAhAOu8tKSPn304 Content-Type: text/plain; charset=windows-1252 Content-Transfer-Encoding: quoted-printable Hi Greg, Did you have a chance to look at the below 4 patches? Did I do something wrong when submitting them or are there other reasons = not to include them in the 4.4 kernel? Btw, they still apply on top of 4.4.20. Thanks =2E..Juerg On 08/29/2016 03:38 PM, Juerg Haefliger wrote: > This patch series fixes the following CVEs in the 4.4 kernel: > - CVE-2016-0758 > - CVE-2016-5243 > - CVE-2016-5244 > - CVE-2016-6130 >=20 > David Howells (1): > KEYS: Fix ASN.1 indefinite length object parsing >=20 > Kangjie Lu (2): > tipc: fix an infoleak in tipc_nl_compat_link_dump > rds: fix an infoleak in rds_inc_info_copy >=20 > Martin Schwidefsky (1): > s390/sclp_ctl: fix potential information leak with /dev/sclp >=20 > drivers/s390/char/sclp_ctl.c | 12 +++++++----- > lib/asn1_decoder.c | 16 +++++++++------- > net/rds/recv.c | 2 ++ > net/tipc/netlink_compat.c | 3 ++- > 4 files changed, 20 insertions(+), 13 deletions(-) >=20 --=20 Juerg Haefliger Hewlett Packard Enterprise --Q7fHuSAtM0GcBC6iN4wAhAOu8tKSPn304-- --NrcJCcQsd5VRiVeVsGUBmiT6VeMVv59Sx Content-Type: application/pgp-signature; name="signature.asc" Content-Description: OpenPGP digital signature Content-Disposition: attachment; filename="signature.asc" -----BEGIN PGP SIGNATURE----- Version: GnuPG v2 iQIcBAEBCAAGBQJXz/DlAAoJEHVMOpb5+LSMPlsQAJK7wCaG/fO7kxYdUDasDJV9 iTzHcoxNpkAXInBRMl3wSRtKitPL6cGyEyQhFVmTdtUUWbkBgvhTWbTR1D/FIStY nUFcL+A9hZN1PAeWTUvo8rH84y29zsirgLV/0WGjm14+pWSf8BVspA7Xqr1qJuqv 2MSuBwzlYkBRBp7iNKpjv2Z4pSSyXhMitDminAePZ+yEqr/yWlaj+T//nXShkBlV SJdfUc4gj16PfHxoku8Io0Fch//EW++WiO9/v3eMpalG5++t6VVioXAu17JILNlq obzAzhRayAMj3q6ckkYLaEuUydKftNAUFTdoA3KJmxLf7IpfokWivHjGM9WGy0LA Vi2tXD3jwUWDVNB61uUOFn9+n9yHnc0AHDmkri90IIpXM+FnhdbcVrF1Lls4s+J/ 4Gwpt/T901XqEIJfZJzrER2Yr84hL68t5MyFSTo8OOpP06Sd1AHgM4suhRdBqsrw W64XoIzgIjxUJ4Pu2c37+XWfm8K/Z9OVSUfAKIxT77r8jtxJcqw2PdHK12A2Qvtq YY6OW6nkiugRbYTsFH2zyzqSsk475Xt841/y1AbztYRo8jOdW5fExkEOokBkVzS2 /5m9cpWDrn3DacDJ9t/FXfEy7fNmwgtbrhWjTCPjoB+P1rboZKjE3Z7k4b5FLrCE 6Atej8bQXlRpD1tIjSWt =B+Xg -----END PGP SIGNATURE----- --NrcJCcQsd5VRiVeVsGUBmiT6VeMVv59Sx--