)]}'
{
  "commit": "b9f0aee83335db1f3915f4e42a5e21b351740afd",
  "tree": "3328b6503f7852868f642263dfa8a3decc487a1e",
  "parents": [
    "31ce4bfdfd10bf5db9bf85c92bbe0cf2edbdcad8"
  ],
  "author": {
    "name": "Dave Airlie",
    "email": "airlied@redhat.com",
    "time": "Tue Aug 17 14:46:00 2010 +1000"
  },
  "committer": {
    "name": "Dave Airlie",
    "email": "airlied@redhat.com",
    "time": "Tue Aug 17 14:51:45 2010 +1000"
  },
  "message": "drm: stop information leak of old kernel stack.\n\nnon-critical issue, CVE-2010-2803\n\nUserspace controls the amount of memory to be allocate, so it can\nget the ioctl to allocate more memory than the kernel uses, and get\naccess to kernel stack. This can only be done for processes authenticated\nto the X server for DRI access, and if the user has DRI access.\n\nFix is to just memset the data to 0 if the user doesn\u0027t copy into\nit in the first place.\n\nReported-by: Kees Cook \u003ckees@ubuntu.com\u003e\nSigned-off-by: Dave Airlie \u003cairlied@redhat.com\u003e\n",
  "tree_diff": [
    {
      "type": "modify",
      "old_id": "90288ec7c28420133d0deea13e3ba2f1f98d413c",
      "old_mode": 33188,
      "old_path": "drivers/gpu/drm/drm_drv.c",
      "new_id": "3644c94c0a172402224d122316f23175a057e7f9",
      "new_mode": 33188,
      "new_path": "drivers/gpu/drm/drm_drv.c"
    }
  ]
}
