[Glibc-bsd-commits] r1794 - in trunk/kfreebsd-6/debian: . patches

Aurelien Jarno aurel32 at alioth.debian.org
Mon Dec 11 11:51:23 CET 2006


Author: aurel32
Date: 2006-12-11 11:51:22 +0100 (Mon, 11 Dec 2006)
New Revision: 1794

Added:
   trunk/kfreebsd-6/debian/patches/000_kmem.diff
Modified:
   trunk/kfreebsd-6/debian/changelog
Log:
  * Urgency set to high as this fixes a security bug.
  * Fix a memory disclosure in firewire (FreeBSD-SA-06:25.kmem
    / CVE-2006-6013).



Modified: trunk/kfreebsd-6/debian/changelog
===================================================================
--- trunk/kfreebsd-6/debian/changelog	2006-12-11 10:41:01 UTC (rev 1793)
+++ trunk/kfreebsd-6/debian/changelog	2006-12-11 10:51:22 UTC (rev 1794)
@@ -1,3 +1,11 @@
+kfreebsd-6 (6.1-1) unreleased; urgency=low
+
+  * Urgency set to high as this fixes a security bug.
+  * Fix a memory disclosure in firewire (FreeBSD-SA-06:25.kmem
+    / CVE-2006-6013).
+
+ -- Aurelien Jarno <aurel32 at debian.org>  Mon, 11 Dec 2006 11:34:26 +0100
+
 kfreebsd-6 (6.1-0.4) unreleased; urgency=low
 
   * Backport the NVIDIA nForce MCP Ethernet driver from FREEBSD-7.0.

Added: trunk/kfreebsd-6/debian/patches/000_kmem.diff
===================================================================
--- trunk/kfreebsd-6/debian/patches/000_kmem.diff	2006-12-11 10:41:01 UTC (rev 1793)
+++ trunk/kfreebsd-6/debian/patches/000_kmem.diff	2006-12-11 10:51:22 UTC (rev 1794)
@@ -0,0 +1,16 @@
+Index: sys/dev/firewire/fwdev.c
+===================================================================
+RCS file: /home/ncvs/src/sys/dev/firewire/fwdev.c,v
+retrieving revision 1.47
+diff -u -I__FBSDID -r1.47 fwdev.c
+--- sys/dev/firewire/fwdev.c	8 Aug 2005 19:55:30 -0000	1.47
++++ sys/dev/firewire/fwdev.c	30 Nov 2006 22:15:06 -0000
+@@ -712,7 +712,7 @@
+ 			else
+ 				len = fwdev->rommax - CSRROMOFF + 4;
+ 		}
+-		if (crom_buf->len < len)
++		if (crom_buf->len < len && crom_buf->len >= 0)
+ 			len = crom_buf->len;
+ 		else
+ 			crom_buf->len = len;




More information about the Glibc-bsd-commits mailing list