On Thu, Dec 04, 2014 at 03:56:30PM +0000, David Laight wrote: > > "This CRC algorithm used by this hash is 'linear', ie hash(a xor b) == > hash(a) xor hash(b). This means that it is relatively easy for a remote > attacker to generate multiple items with the same hash."
The attacker could be local too, e.g., opening a netlink socket can be done by any user and gets hashed in net/netlink/af_netlink.c. Cheers, -- Email: Herbert Xu <herb...@gondor.apana.org.au> Home Page: http://gondor.apana.org.au/~herbert/ PGP Key: http://gondor.apana.org.au/~herbert/pubkey.txt -- To unsubscribe from this list: send the line "unsubscribe linux-kernel" in the body of a message to majord...@vger.kernel.org More majordomo info at http://vger.kernel.org/majordomo-info.html Please read the FAQ at http://www.tux.org/lkml/