Re: KASAN: stack-out-of-bounds Write in mpol_to_str

From: Randy Dunlap
Date: Mon Mar 16 2020 - 14:46:12 EST


On 3/15/20 12:57 PM, Entropy Moe wrote:
> Hello team,
> how are you ?
> I wanted to report a bug on mempolicy.c. I found the bug on the latest version of the kernel.
>
> which is stack out of bound vulnerability.
>
> I am attaching report.Â
>
> If you need the POC crash code, I can provide.

Hi Moe,

Please post the POC code and your kernel .config file.

thanks.
--
~Randy