Received: by 2002:a05:6358:9144:b0:117:f937:c515 with SMTP id r4csp7157355rwr; Wed, 10 May 2023 04:52:38 -0700 (PDT) X-Google-Smtp-Source: ACHHUZ7AlAuEDPdbyFietYY82U2z/SSkfQzGOHlWzNPso3rFSpi1UD1oyKsofZAzwuxTquydy92q X-Received: by 2002:a05:6a00:1907:b0:645:4ec1:f09 with SMTP id y7-20020a056a00190700b006454ec10f09mr15499292pfi.22.1683719557718; Wed, 10 May 2023 04:52:37 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1683719557; cv=none; d=google.com; s=arc-20160816; b=M7MtmH4XQOmX1x2Ml8BmoMaLA+v38bublTKGi4uNeIoyIezbCn5pp8/yE58JzcE8h2 kN/eu+WjjDLsfwz7SMqbr6hKgI8wsfO3QqjB8tp/MNoh+nBySBiK6g//FMAEuZ5fXiEO qAPQ+SBIuqXv0V53WwRfkQxKkxEy070E66S06XftIpPw3BQMTejRsDUn54x4jD/GouQt 7CXIbVia1ddWiyAekTLsUK5cY/GWVaoLCwMDnwI9yDNuVSRruyEHBe28DtPN0DAYT3dI 8TFvqiJ84uMoe6IQaBtp7qn/fuSriBoezLfpnbRNvBukQ/OXEKGKCZVDJP/M8xod8iT7 2/UA== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:in-reply-to:content-disposition:mime-version :references:message-id:subject:cc:to:from:date:dkim-signature; bh=AdN8t02fmRh9vkqJqVA59w45T3a05/sMi3HibvKFFa8=; b=tr+lq96T3XmmOD3lIpu9N56i/xWN3wpL5taWm169Tm0bQHMWOvaVPiyMqrhcIgSvX6 Y+69If+YMxu1L2qUd6e8xVzKSaNB/v6tFxTmiN4JcUQA1ae/b3JTefgFLzwSX8p0aPeE CGQiAS0FgIvIUgHek7a5FhYoo7sBhh8Ma/H/l6XlBtmtMNLHtn8DXsg45m40yrxXIF9E /5TuZpvJNxZgj4wnt3bgJfNPODcUoR5ple2ZfYpX6Kv2tSV8px3+jdLUgb6Zz5svlP07 q4yH1nHCX2ug2iFC6yXSfo3qD9iPn2PbliJU/pEK2wm7AYFqJ0xyTjsjN2fP0iafSvQQ 7uQw== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@ucw.cz header.s=gen1 header.b=kIpZKNAk; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 2620:137:e000::1:20 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=ucw.cz Return-Path: Received: from out1.vger.email (out1.vger.email. [2620:137:e000::1:20]) by mx.google.com with ESMTP id c3-20020aa79523000000b00640f04eb323si4789739pfp.62.2023.05.10.04.52.25; Wed, 10 May 2023 04:52:37 -0700 (PDT) Received-SPF: pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 2620:137:e000::1:20 as permitted sender) client-ip=2620:137:e000::1:20; Authentication-Results: mx.google.com; dkim=pass header.i=@ucw.cz header.s=gen1 header.b=kIpZKNAk; spf=pass (google.com: domain of linux-kernel-owner@vger.kernel.org designates 2620:137:e000::1:20 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=ucw.cz Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S236086AbjEJLma (ORCPT + 99 others); Wed, 10 May 2023 07:42:30 -0400 Received: from lindbergh.monkeyblade.net ([23.128.96.19]:35810 "EHLO lindbergh.monkeyblade.net" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S236623AbjEJLm2 (ORCPT ); Wed, 10 May 2023 07:42:28 -0400 Received: from jabberwock.ucw.cz (jabberwock.ucw.cz [46.255.230.98]) by lindbergh.monkeyblade.net (Postfix) with ESMTPS id 11A5D2D68; Wed, 10 May 2023 04:41:54 -0700 (PDT) Received: by jabberwock.ucw.cz (Postfix, from userid 1017) id 0ECEE1C0E50; Wed, 10 May 2023 13:41:34 +0200 (CEST) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ucw.cz; s=gen1; t=1683718894; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:cc:mime-version:mime-version:content-type:content-type: in-reply-to:in-reply-to:references:references; bh=AdN8t02fmRh9vkqJqVA59w45T3a05/sMi3HibvKFFa8=; b=kIpZKNAk2P1inmFqA6lGpH23mXEVzcB+NIABIWn2Yh4ZiuVvzWt2DnIMp1i7EpHTklsCow l0GWi18+Ukv9KO9ApmbLUCpi7xywua/pDTwzThClQwK0EPcydKWY0TUupfGnppGiFMUeh4 HJwgySBwmbUJYV1z9ck8NwGRxSrYRbU= Date: Wed, 10 May 2023 13:41:33 +0200 From: Pavel Machek To: Donald Buczek Cc: Pietro Borrello , Jiri Kosina , Benjamin Tissoires , Hanno Zulla , Carlo Caione , Lee Jones , Roderick Colenbrander , Sven Eckelmann , linux-leds@vger.kernel.org, Cristiano Giuffrida , "Bos, H.J." , Jakob Koschel , linux-input@vger.kernel.org, linux-kernel@vger.kernel.org, Jiri Kosina , Roderick Colenbrander Subject: Re: [PATCH 0/5] HID: manually unregister leds on device removal to prevent UAFs Message-ID: References: <20230125-hid-unregister-leds-v1-0-9a5192dcef16@diag.uniroma1.it> <288ed0da-8903-7dda-eb4e-f17037031e68@molgen.mpg.de> MIME-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="oLZX/WVIO2dMMT7L" Content-Disposition: inline In-Reply-To: <288ed0da-8903-7dda-eb4e-f17037031e68@molgen.mpg.de> X-Spam-Status: No, score=-2.1 required=5.0 tests=BAYES_00,DKIM_SIGNED, DKIM_VALID,DKIM_VALID_AU,DKIM_VALID_EF,SPF_HELO_NONE,SPF_NONE, T_SCC_BODY_TEXT_LINE,URIBL_BLOCKED autolearn=ham autolearn_force=no version=3.4.6 X-Spam-Checker-Version: SpamAssassin 3.4.6 (2021-04-09) on lindbergh.monkeyblade.net Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org --oLZX/WVIO2dMMT7L Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On Wed 2023-05-10 12:12:50, Donald Buczek wrote: > Is this series in a queue somewhere? Seems rather important and I don't f= ind progress. >=20 > Also, should be cc: stable@vger.kernel.org , right? >=20 > CVE-2023-25012 It has Fixes, stable will pick it up. And yes, "crafted USB device" can do a bad stuff. Severity is not too high. BR, Pavel --=20 People of Russia, stop Putin before his war on Ukraine escalates. --oLZX/WVIO2dMMT7L Content-Type: application/pgp-signature; name="signature.asc" -----BEGIN PGP SIGNATURE----- iF0EABECAB0WIQRPfPO7r0eAhk010v0w5/Bqldv68gUCZFuC7QAKCRAw5/Bqldv6 8o4SAJ0XWyKFkKk54eQqqwQ/pknUOC9fgwCghvzorskvXsprzjSdqwvvm/Zr/B4= =RYtg -----END PGP SIGNATURE----- --oLZX/WVIO2dMMT7L--