rpms/kernel/F-10 netlink-fix-typo-in-initialization.patch, NONE, 1.1.2.1 kernel.spec, 1.1206.2.104, 1.1206.2.105

Chuck Ebbert cebbert at fedoraproject.org
Sat Oct 17 11:37:46 UTC 2009


Author: cebbert

Update of /cvs/pkgs/rpms/kernel/F-10
In directory cvs1.fedora.phx.redhat.com:/tmp/cvs-serv32290

Modified Files:
      Tag: private-fedora-10-2_6_27
	kernel.spec 
Added Files:
      Tag: private-fedora-10-2_6_27
	netlink-fix-typo-in-initialization.patch 
Log Message:
Fix uninitialized data leak in netlink (CVE-2009-3612)

netlink-fix-typo-in-initialization.patch:
 cls_api.c |    2 +-
 1 file changed, 1 insertion(+), 1 deletion(-)

--- NEW FILE netlink-fix-typo-in-initialization.patch ---
From: Jiri Pirko <jpirko at redhat.com>
Date: Thu, 8 Oct 2009 08:21:46 +0000 (-0700)
Subject: netlink: fix typo in initialization
X-Git-Tag: v2.6.32-rc5~13^2~33
X-Git-Url: http://git.kernel.org/?p=linux%2Fkernel%2Fgit%2Ftorvalds%2Flinux-2.6.git;a=commitdiff_plain;h=ad61df918c44316940404891d5082c63e79c256a

netlink: fix typo in initialization

Commit 9ef1d4c7c7aca1cd436612b6ca785b726ffb8ed8 ("[NETLINK]: Missing
initializations in dumped data") introduced a typo in
initialization. This patch fixes this.

Signed-off-by: Jiri Pirko <jpirko at redhat.com>
Signed-off-by: David S. Miller <davem at davemloft.net>
---

diff --git a/net/sched/cls_api.c b/net/sched/cls_api.c
index 6a53694..7cf6c0f 100644
--- a/net/sched/cls_api.c
+++ b/net/sched/cls_api.c
@@ -350,7 +350,7 @@ static int tcf_fill_node(struct sk_buff *skb, struct tcf_proto *tp,
 	tcm = NLMSG_DATA(nlh);
 	tcm->tcm_family = AF_UNSPEC;
 	tcm->tcm__pad1 = 0;
-	tcm->tcm__pad1 = 0;
+	tcm->tcm__pad2 = 0;
 	tcm->tcm_ifindex = qdisc_dev(tp->q)->ifindex;
 	tcm->tcm_parent = tp->classid;
 	tcm->tcm_info = TC_H_MAKE(tp->prio, tp->protocol);


Index: kernel.spec
===================================================================
RCS file: /cvs/pkgs/rpms/kernel/F-10/kernel.spec,v
retrieving revision 1.1206.2.104
retrieving revision 1.1206.2.105
diff -u -p -r1.1206.2.104 -r1.1206.2.105
--- kernel.spec	13 Oct 2009 01:19:20 -0000	1.1206.2.104
+++ kernel.spec	17 Oct 2009 11:37:44 -0000	1.1206.2.105
@@ -800,6 +800,9 @@ Patch15300: irda-add-irda-skb-cb-qdisc-r
 # Fix ext3 file corruption in some cases
 Patch15400: jbd-fix-return-value-of-journal-start-commit.patch
 
+# netlink security fix (CVE-2009-3612)
+Patch16000: netlink-fix-typo-in-initialization.patch
+
 %endif
 
 BuildRoot: %{_tmppath}/kernel-%{KVERREL}-root
@@ -1449,6 +1452,9 @@ ApplyPatch irda-add-irda-skb-cb-qdisc-re
 # Fix ext3 file corruption in some cases
 ApplyPatch jbd-fix-return-value-of-journal-start-commit.patch
 
+# netlink security fix (CVE-2009-3612)
+ApplyPatch netlink-fix-typo-in-initialization.patch
+
 # END OF PATCH APPLICATIONS
 
 %endif
@@ -2024,6 +2030,9 @@ fi
 %kernel_variant_files -k vmlinux %{with_kdump} kdump
 
 %changelog
+* Sat Oct 17 2009 Chuck Ebbert <cebbert at redhat.com>  2.6.27.37-170.2.105
+- Fix uninitialized data leak in netlink (CVE-2009-3612)
+
 * Mon Oct 12 2009  Chuck Ebbert <cebbert at redhat.com>  2.6.27.37-170.2.104
 - Add jbd fix for file corruption (the jbd2 version is already in.)
 




More information about the scm-commits mailing list