[kernel-sec-discuss] r568 - active retired

Dann Frazier dannf at costa.debian.org
Sun Aug 27 03:36:58 UTC 2006


Author: dannf
Date: 2006-08-27 03:36:57 +0000 (Sun, 27 Aug 2006)
New Revision: 568

Added:
   retired/CVE-2006-2071
Removed:
   active/CVE-2006-2071
Log:
retire 2006-2071

Deleted: active/CVE-2006-2071
===================================================================
--- active/CVE-2006-2071	2006-08-27 03:36:38 UTC (rev 567)
+++ active/CVE-2006-2071	2006-08-27 03:36:57 UTC (rev 568)
@@ -1,17 +0,0 @@
-Candidate: CVE-2006-2071
-References: 
- http://kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.16.6 
- http://www.kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=b78b6af66a5fbaf17d7e6bfc32384df5e34408c8 
- https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=190073
-Description: 
- Linux kernel 2.4.x and 2.6.x up to 2.6.16 allows local users to bypass IPC
- permissions and modify a readonly attachment of shared memory by using
- mprotect to give write permission to the attachment. NOTE: some original raw
- sources combined this issue with CVE-2006-1524, but they are different bugs.
-Notes: 
-Bugs: 
-upstream: released (2.6.16.6)
-linux-2.6.16: released (2.6.16-8)
-linux-2.6: released (2.6.16-8)
-2.6.8-sarge-security: released (2.6.8-16sarge3)
-2.4.27-sarge-security: released (2.4.27-10sarge3)

Copied: retired/CVE-2006-2071 (from rev 566, active/CVE-2006-2071)




More information about the kernel-sec-discuss mailing list