ipvs: info leak in __ip_vs_get_dest_entries()
authorDan Carpenter <dan.carpenter@oracle.com>
Mon, 3 Jun 2013 09:00:49 +0000 (12:00 +0300)
committerPablo Neira Ayuso <pablo@netfilter.org>
Mon, 10 Jun 2013 12:53:00 +0000 (14:53 +0200)
commita8241c63517ec0b900695daa9003cddc41c536a1
tree0d33d8f4a0f586d71a641828a558b89ff45efeea
parent7b8dfe289fdde0066be343a3e0271ad6d7b6dbcf
ipvs: info leak in __ip_vs_get_dest_entries()

The entry struct has a 2 byte hole after ->port and another 4 byte
hole after ->stats.outpkts.  You must have CAP_NET_ADMIN in your
namespace to hit this information leak.

Signed-off-by: Dan Carpenter <dan.carpenter@oracle.com>
Acked-by: Julian Anastasov <ja@ssi.bg>
Signed-off-by: Simon Horman <horms@verge.net.au>
Signed-off-by: Pablo Neira Ayuso <pablo@netfilter.org>
net/netfilter/ipvs/ip_vs_ctl.c