[LTP] [PATCH] Add test for CVE-2019-8912

Martin Doucha mdoucha@suse.cz
Thu Aug 6 16:31:07 CEST 2020


On 06. 08. 20 16:23, Martin Doucha wrote:
> Fixes #504
> 
> Signed-off-by: Martin Doucha <mdoucha@suse.cz>
> ---

I forgot to mention here that it'd be great to verify this reproducer
using KASAN. The bug should be present in vanilla kernels up until
4.20.10. If you have one of those with KASAN enabled, please check that
af_alg07 will trigger use-after-free error in sockfs_setattr(). Example
KASAN backtrace:
https://patchwork.ozlabs.org/project/netdev/patch/20190215142415.149153-1-maowenan@huawei.com/

-- 
Martin Doucha   mdoucha@suse.cz
QA Engineer for Software Maintenance
SUSE LINUX, s.r.o.
CORSO IIa
Krizikova 148/34
186 00 Prague 8
Czech Republic


More information about the ltp mailing list