Public bug reported:

Description:  qeth: fix L3 next-hop im xmit qeth hdr

Symptom:      wrong destination address in qdio header

Problem:      The current code accesses rtable->rt_gateway without checking
              that rtable is a valid address. The accidental access to a
              lowcore area results in a random next-hop address in the
              qeth_hdr.
              rtable (or more precisely, skb_dst(skb)) can be NULL in rare
              cases (for instance together with AF_PACKET sockets).

Solution:     Add the missing NULL-ptr checks.
Reproduction: AF_PACKET program sending raw data


Upstream Commit:
ec2c6726322f0d270bab477e4904bf9496f70ee5
kernel 4.13

** Affects: linux (Ubuntu)
     Importance: Undecided
     Assignee: Skipper Bug Screeners (skipper-screen-team)
         Status: New


** Tags: architecture-s39064 bugnameltc-164873 severity-high 
targetmilestone-inin1804

** Tags added: architecture-s39064 bugnameltc-164873 severity-high
targetmilestone-inin1804

** Changed in: ubuntu
     Assignee: (unassigned) => Skipper Bug Screeners (skipper-screen-team)

** Package changed: ubuntu => linux (Ubuntu)

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1750813

Title:
  qeth: fix L3 next-hop im xmit qeth hdr

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/linux/+bug/1750813/+subscriptions

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to