On Tue, Feb 25, 2020 at 12:50 PM Paul Moore <paul(a)paul-moore.com> wrote:
This patch ensures that we always check the netlink payload length
in audit_receive_msg() before we take any action on the payload
itself.
Cc: stable(a)vger.kernel.org
Reported-by: syzbot+399c44bf1f43b8747403(a)syzkaller.appspotmail.com
Reported-by: syzbot+e4b12d8d202701f08b6d(a)syzkaller.appspotmail.com
Signed-off-by: Paul Moore <paul(a)paul-moore.com>
---
kernel/audit.c | 40 +++++++++++++++++++++-------------------
1 file changed, 21 insertions(+), 19 deletions(-)
Merged into audit/stable-5.6, assuming there are no problems I'll send
it up to Linus later this week.
--
paul moore
www.paul-moore.com