On Tue, Feb 25, 2020 at 12:50 PM Paul Moore <paul(a)paul-moore.com> wrote:
 This patch ensures that we always check the netlink payload length
 in audit_receive_msg() before we take any action on the payload
 itself.
 Cc: stable(a)vger.kernel.org
 Reported-by: syzbot+399c44bf1f43b8747403(a)syzkaller.appspotmail.com
 Reported-by: syzbot+e4b12d8d202701f08b6d(a)syzkaller.appspotmail.com
 Signed-off-by: Paul Moore <paul(a)paul-moore.com>
 ---
  kernel/audit.c |   40 +++++++++++++++++++++-------------------
  1 file changed, 21 insertions(+), 19 deletions(-) 
Merged into audit/stable-5.6, assuming there are no problems I'll send
it up to Linus later this week.
-- 
paul moore
www.paul-moore.com