Home Home > GIT Browse > SLE12-SP4
summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorTakashi Iwai <tiwai@suse.de>2019-05-20 11:46:12 +0200
committerTakashi Iwai <tiwai@suse.de>2019-05-20 11:49:17 +0200
commitfe4b52d4bab09e1cbe8c5b56e0d57f543de7a500 (patch)
treef61fbf14c14afb1093eec5f605ac2e4bd219ff3d
parentf377034b5c1abdf0fc7924af69d319fd41162131 (diff)
Update reference tag for tun security fix (CVE-2018-7191, bsc#1135603)
-rw-r--r--patches.suse/tun-allow-positive-return-values-on-dev_get_valid_na.patch2
-rw-r--r--patches.suse/tun-call-dev_get_valid_name-before-register_netdevic.patch2
2 files changed, 2 insertions, 2 deletions
diff --git a/patches.suse/tun-allow-positive-return-values-on-dev_get_valid_na.patch b/patches.suse/tun-allow-positive-return-values-on-dev_get_valid_na.patch
index f5a9202739..1213f3350c 100644
--- a/patches.suse/tun-allow-positive-return-values-on-dev_get_valid_na.patch
+++ b/patches.suse/tun-allow-positive-return-values-on-dev_get_valid_na.patch
@@ -3,7 +3,7 @@ Date: Wed, 25 Oct 2017 11:50:50 -0700
Subject: tun: allow positive return values on dev_get_valid_name() call
Git-commit: 5c25f65fd1e42685f7ccd80e0621829c105785d9
Patch-mainline: v4.14-rc7
-References: networking-stable-17_11_14
+References: networking-stable-17_11_14, CVE-2018-7191, bsc#1135603
If the name argument of dev_get_valid_name() contains "%d", it will try
to assign it a unit number in __dev__alloc_name() and return either the
diff --git a/patches.suse/tun-call-dev_get_valid_name-before-register_netdevic.patch b/patches.suse/tun-call-dev_get_valid_name-before-register_netdevic.patch
index 776b56d4d7..a92f442870 100644
--- a/patches.suse/tun-call-dev_get_valid_name-before-register_netdevic.patch
+++ b/patches.suse/tun-call-dev_get_valid_name-before-register_netdevic.patch
@@ -3,7 +3,7 @@ Date: Fri, 13 Oct 2017 11:58:53 -0700
Subject: tun: call dev_get_valid_name() before register_netdevice()
Git-commit: 0ad646c81b2182f7fa67ec0c8c825e0ee165696d
Patch-mainline: v4.14-rc6
-References: networking-stable-17_11_14
+References: networking-stable-17_11_14, CVE-2018-7191, bsc#1135603
register_netdevice() could fail early when we have an invalid
dev name, in which case ->ndo_uninit() is not called. For tun