Comment 0 for bug 1421864

Revision history for this message
Achim Behrens (k1l) wrote :

someone on irc was raging why ubuntu didnt already fix this issue: http://hmarco.org/bugs/linux-ASLR-integer-overflow.html

so i found out there was just given a cve for that http://seclists.org/oss-sec/2015/q1/550 CVE-2015-1593

the patch is included in the description of this overflow: http://hmarco.org/bugs/patches/fix_randomize_stack_top_properly_linux_3-17.1.patch

i didnt test the patch, but i would like that to be fixed :)