Hi James, Here are some fixes to go upstream:
(1) Increase root's key quotas so that the DNS resolver doesn't run out of capacity. This is a bit of a stop-gap whilst I try to improve quota recycling, but that's proving to be a bit tricky. (2) Fix the definition of the public_key subtype to give the name length. (3) Set a prefix for printing from signature handling. (4) Fix a use after free in assoc_array_gc(). (5) Relax a check in the PKCS#7 parser to allow for padding inserted after a PKCS#7 message. They can be found here also: http://git.kernel.org/cgit/linux/kernel/git/dhowells/linux-fs.git/log/?h=keys-fixes Tagged with: keys-fixes-20140902 David --- David Howells (4): KEYS: Fix public_key asymmetric key subtype name KEYS: Set pr_fmt() in asymmetric key signature handling KEYS: Fix use-after-free in assoc_array_gc() PEFILE: Relax the check on the length of the PKCS#7 cert Steve Dickson (1): KEYS: Increase root_maxkeys and root_maxbytes sizes crypto/asymmetric_keys/public_key.c | 1 + crypto/asymmetric_keys/signature.c | 1 + crypto/asymmetric_keys/verify_pefile.c | 49 ++++++++++++++++++++++---------- lib/assoc_array.c | 2 + security/keys/key.c | 4 +-- 5 files changed, 38 insertions(+), 19 deletions(-) -- To unsubscribe from this list: send the line "unsubscribe linux-kernel" in the body of a message to majord...@vger.kernel.org More majordomo info at http://vger.kernel.org/majordomo-info.html Please read the FAQ at http://www.tux.org/lkml/