boundarydevices / linux

Kernel tree for Boundary Devices platforms
194 stars 290 forks source link

Vulnerability CVE-2017-6074 #32

Closed bmx666 closed 7 years ago

bmx666 commented 7 years ago

Patch - https://git.kernel.org/linus/5edabca9d4cff7f1f2b68f0bac55ef99d9798ba4

gibsson commented 7 years ago

Hi,

IP_DCCP isn't set in our defconfig, are you using this configuration in your project?

Regards, Gary

bmx666 commented 7 years ago

For our company this kernel fork is major, I recommend using it for all our clients in their projects. I can't say who exactly using this feature, but this vulnerability has PoC for get root access, and maybe some other company are develop projects based on your board with security protection. One of these company using your kernel in militaty area. P.S. Maybe better post about this issue on Freescale?

gibsson commented 7 years ago

CVE has been integrated. Regards