Re: CVE-2023-2884[0-2]: impact for debian user

2023-06-23 Thread Bastien Roucariès
Le vendredi 23 juin 2023, 12:44:59 UTC Bastien Roucariès a écrit : > Le jeudi 22 juin 2023, 13:51:54 UTC Ben Hutchings a écrit : > > On Thu, 2023-06-22 at 10:37 +, Bastien Roucariès wrote: > > > Hi, > > > > > > I want to discuss about CVE-2023-2884[0-2]. > > > > > > In order to be vulnerable

Re: CVE-2023-2884[0-2]: impact for debian user

2023-06-23 Thread Bastien Roucariès
Le jeudi 22 juin 2023, 13:51:54 UTC Ben Hutchings a écrit : > On Thu, 2023-06-22 at 10:37 +, Bastien Roucariès wrote: > > Hi, > > > > I want to discuss about CVE-2023-2884[0-2]. > > > > In order to be vulnerable host kernel need to disable the xt_u32 module. > > > > Moreover upstream drop f

Re: CVE-2023-2884[0-2]: impact for debian user

2023-06-22 Thread Ben Hutchings
On Thu, 2023-06-22 at 10:37 +, Bastien Roucariès wrote: > Hi, > > I want to discuss about CVE-2023-2884[0-2]. > > In order to be vulnerable host kernel need to disable the xt_u32 module. > > Moreover upstream drop for newer version support of xt_u32 see > https://github.com/moby/moby/commi