Bug 1450028 (CVE-2017-0605) - CVE-2017-0605 kernel: Stack corruption due to string copy
Summary: CVE-2017-0605 kernel: Stack corruption due to string copy
Keywords:
Status: CLOSED WONTFIX
Alias: CVE-2017-0605
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
low
low
Target Milestone: ---
Assignee: Red Hat Product Security
QA Contact:
URL:
Whiteboard:
Depends On:
Blocks:
TreeView+ depends on / blocked
 
Reported: 2017-05-11 12:13 UTC by Adam Mariš
Modified: 2019-09-29 14:12 UTC (History)
32 users (show)

Fixed In Version:
Doc Type: If docs needed, set a value
Doc Text:
Clone Of:
Environment:
Last Closed: 2017-05-11 12:21:56 UTC
Embargoed:


Attachments (Terms of Use)

Description Adam Mariš 2017-05-11 12:13:02 UTC
Potential buffer overflow vulnerability in kernel trace subsystem in __trace_find_cmdline function was found that could cause stack corruption leading to kernel panic.

Patch:

https://source.codeaurora.org/quic/la//kernel/msm-3.10/commit/?id=2161ae9a70b12cf18ac8e5952a20161ffbccb477

Later analysis showed this is not a security issue, see:

https://marc.info/?l=linux-kernel&m=149382004318095&w=2


Note You need to log in before you can comment on or make changes to this bug.