From owner-freebsd-security@freebsd.org Wed Jul 5 01:32:59 2017 Return-Path: Delivered-To: freebsd-security@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id C0CACD9EFE6 for ; Wed, 5 Jul 2017 01:32:59 +0000 (UTC) (envelope-from carpeddiem@gmail.com) Received: from mail-io0-x22d.google.com (mail-io0-x22d.google.com [IPv6:2607:f8b0:4001:c06::22d]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "Google Internet Authority G2" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 80D696A4F8 for ; Wed, 5 Jul 2017 01:32:59 +0000 (UTC) (envelope-from carpeddiem@gmail.com) Received: by mail-io0-x22d.google.com with SMTP id z62so78241436ioi.3 for ; Tue, 04 Jul 2017 18:32:59 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=mime-version:sender:in-reply-to:references:from:date:message-id :subject:to:cc; bh=Egp1IIa1kZrXEABYaHMKHvwoc1efrrbwY3L5iyY/0GQ=; b=tSdbkkz+0OoEBQioAIAFg8ggZglQHYby5BDuNhyBC5lTc15NkYf+3JFWBIDasEad4u JsAgLJTE5EE/foNFa4T9+5XpfiXKWe2VH9TBxb8MhzLAqbuQVg42Wav8bYzoLL8GpOBf 1pozJft7L1ab+2D90h3+Zhf2CVn94PSDLhebiuyK0QT5h++h1oEmpZNsOReJW5ulqiUe 8YA9FOwTT/yzPJsD2HD8fgw59jz4es5+LdzvPJ2dgBXLooKTUrvskSj6KDTOMEMO5JRe 6hOJkSzBMVFStCpi30xgbHJYq9GAEShXhFyaiW73bizHjzZuqiFpKLiGctPVgLqRMjr0 YpRw== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:sender:in-reply-to:references:from :date:message-id:subject:to:cc; bh=Egp1IIa1kZrXEABYaHMKHvwoc1efrrbwY3L5iyY/0GQ=; b=q00CuDR3xicngGFCvIF3LJmT7H177agX3DnPa3+351MUhXWIhYvsvt9HsgPounk4HD I9bsLbPeNPgih1TWqJ9Ghjp15Y20vLbbDh+DngGN6CrAz5EwrAnBf8T3FUnX4SqGVcn3 8TAsN+2Gavmqj2JBCW3tKgibnGPPQGb+SEYdqLATOTbPTbuRR1sputtY05RhwNKNHytI rOs1ntmiDmQ3zCbg03CrzuPpz1WwpodO/VAwXe8EU9SkZ6W6em57iArHQo1LLJXPxr2K EDxJyV6Ial4r/HpJDB/72s5k9EWYE0bFcuU52cBaDehYgkaZkbJv7IfLM02GpM3jxHV7 CL2g== X-Gm-Message-State: AKS2vOx2VuuLq6ZxLseV6gGBqp0YhWEPOv9ZhVXR4ybfeoayP6f1TQe7 atqJj6LJedTde7u58lFJzefSvAlZHg== X-Received: by 10.107.8.23 with SMTP id 23mr40315949ioi.159.1499218378512; Tue, 04 Jul 2017 18:32:58 -0700 (PDT) MIME-Version: 1.0 Sender: carpeddiem@gmail.com Received: by 10.107.10.85 with HTTP; Tue, 4 Jul 2017 18:32:37 -0700 (PDT) In-Reply-To: <3bca2dbd-dc2f-ca7a-e0ce-eb7d6cf0b3e5@sorbs.net> References: <3bca2dbd-dc2f-ca7a-e0ce-eb7d6cf0b3e5@sorbs.net> From: Ed Maste Date: Tue, 4 Jul 2017 21:32:37 -0400 X-Google-Sender-Auth: zsaij2e_OFPNEzlQ4MulFFjp9c8 Message-ID: Subject: Re: The Stack Clash vulnerability To: Michelle Sullivan Cc: "freebsd-security@freebsd.org" Content-Type: text/plain; charset="UTF-8" X-BeenThere: freebsd-security@freebsd.org X-Mailman-Version: 2.1.23 Precedence: list List-Id: "Security issues \[members-only posting\]" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Wed, 05 Jul 2017 01:32:59 -0000 On 3 July 2017 at 12:29, Michelle Sullivan wrote: > > Been watching for it in 10-STABLE... didn't see it go in... did I miss it? It hasn't yet been merged -- there were a couple of issues with the initial commit which were fixed shortly after in HEAD. We are now waiting on the MFC timer for the followup fixes (to provide time to find any other potential issue). > Know of any other tests... I'm not aware of any.