Bad Binder: Android In-The-Wild Exploit (Project Zero)
Bad Binder: Android In-The-Wild Exploit (Project Zero)
Posted Nov 26, 2019 13:52 UTC (Tue) by cyphar (subscriber, #110703)In reply to: Bad Binder: Android In-The-Wild Exploit (Project Zero) by error27
Parent article: Bad Binder: Android In-The-Wild Exploit (Project Zero)
A lot of the discussion about this bug is around classifying certain types of patches as security fixes, but GregKH has consistently said that stable considers all bugs to be security bugs. In fact the patch *was* backported to stable (just not to all the trees that needed it).
Posted Dec 5, 2019 14:17 UTC (Thu)
by hmh (subscriber, #3838)
[Link]
I'd propose using "Canary:" [insert bikeshedding here] instead of "Fixes" in that case, though :-) As in "if the commit listed in Canary is present, or a backport thereof, you very very likely also want this commit for the whole thing to work better, no specific reason implied".
Bad Binder: Android In-The-Wild Exploit (Project Zero)
