4 ms·
For the record, would you mind supplying a reference to those flags?
by stargrazer 5y ago
For the record, would you mind supplying a reference to those flags?
- stonogo 5y agoThe relevant flag is listed in the CVE report this whole discussion is about. CONFIG_FORTIFY_SRC=y turns the stack overflow into a panic, preventing the out-of-bounds write attack. You're probably just better off not loading the TIPC module, though, so that you don't have a crash condition either.