[12945] in bugtraq
Re: Big problem on linux 2.0
daemon@ATHENA.MIT.EDU (visi0n)
Mon Dec 13 17:00:24 1999
Mime-Version: 1.0
Content-Type: TEXT/PLAIN; charset=US-ASCII
Message-Id: <Pine.LNX.3.96.991211225239.339B-100000@variola.chinatown.org>
Date: Sat, 11 Dec 1999 22:57:51 +0000
Reply-To: visi0n <visi0n@AUX-TECH.ORG>
From: visi0n <visi0n@AUX-TECH.ORG>
X-To: BUGTRAQ@SECURITYFOCUS.COM
To: BUGTRAQ@SECURITYFOCUS.COM
In-Reply-To: <Pine.LNX.3.96.991211203707.252B-100000@variola.chinatown.org>
In my last mail I'd posted a patch for kernel 2.0.38, that was
made against a modified socket.c you need this one for the original kernel
(2.0.38). Sorry...
@@ -966,8 +966,9 @@
struct msghdr msg;
struct iovec iov;
- if(len<0)
+ if(len < 0 || len >= 65468)
return -EINVAL;
+
err=verify_area(VERIFY_READ,buff,len);
if(err)
return err;
===============================================================================
visi0n
AUX Technologies
[www.aux-tech.org]