Re: [PATCH net] net/ipv4: defensive cipso option parsing

2018-09-17 Thread Nuernberger, Stefan
On Mon, 2018-09-17 at 12:35 -0400, Paul Moore wrote: > On Mon, Sep 17, 2018 at 11:12 AM Stefan Nuernberger > wrote: > > > > commit 40413955ee26 ("Cipso: cipso_v4_optptr enter infinite loop") > > fixed > > a possible infinite loop in the IP option parsing of CIPSO. The fix > > assumes that ip_opti

Re: [PATCH] net/packet: fix overflow in tpacket_rcv

2020-09-04 Thread Nuernberger, Stefan
On Fri, 2020-09-04 at 16:16 +0200, Greg Kroah-Hartman wrote: > On Fri, Sep 04, 2020 at 03:30:52PM +0200, Stefan Nuernberger wrote: > > > > From: Or Cohen > > > > Using tp_reserve to calculate netoff can overflow as > > tp_reserve is unsigned int and netoff is unsigned short. > > > > This may le

Re: [PATCH net v2 0/2] Revert the 'socket_alloc' life cycle change

2020-05-05 Thread Nuernberger, Stefan
On Tue, 2020-05-05 at 13:54 +0200, SeongJae Park wrote: > CC-ing sta...@vger.kernel.org and adding some more explanations. > > On Tue, 5 May 2020 10:10:33 +0200 SeongJae Park > wrote: > > > > > From: SeongJae Park > > > > The commit 6d7855c54e1e ("sockfs: switch to ->free_inode()") made > > t