]> git.ipfire.org Git - thirdparty/kernel/stable.git/commit
CVE-2012-4508 kernel: ext4: AIO vs fallocate stale data exposure
authorJamie Iles <jamie.iles@oracle.com>
Thu, 21 Feb 2013 10:18:51 +0000 (10:18 +0000)
committerWilly Tarreau <w@1wt.eu>
Mon, 10 Jun 2013 09:43:16 +0000 (11:43 +0200)
commit82c1ce5414718cfee2653c28fe7b9aa268fa0e48
tree36218690a052689a79433fd9b96b226e6ade36e5
parent83c866120f3ae54640dd1fb37efb92c49cf5476d
CVE-2012-4508 kernel: ext4: AIO vs fallocate stale data exposure

CVE-2012-4508 kernel: ext4: AIO vs fallocate stale data exposure
[dannf: backported to Debian's 2.6.32]

According to Ben :
> The original upstream commits were c278531d39f3158bfee93dc67da0b77e09776de2,
60d4616f3dc63371b3dc367e5e88fd4b4f037f65 and (most importantly)
dee1f973ca341c266229faa5a1a5bb268bed3531 by Dmitry Monakhov
> <dmonakhov@openvz.org>.  They were backported into the RHEL 6 kernel by
> Lukas Czerner, according to its changelog.  Dann got this version from
> Oracle's redpatch repository, where, if I understand rightly, Jamie Iles
> attempted to regenerate Lukas's patch(es).

Cc: Ben Hutchings <ben@decadent.org.uk>
Signed-off-by: Jamie Iles <jamie@jamieiles.com>
Signed-off-by: Willy Tarreau <w@1wt.eu>
fs/ext4/extents.c