[kernel-sec-discuss] r742 - active

Dann Frazier dannf at alioth.debian.org
Mon Apr 9 23:06:44 UTC 2007


Author: dannf
Date: 2007-04-09 23:06:43 +0000 (Mon, 09 Apr 2007)
New Revision: 742

Modified:
   active/CVE-2007-1357
Log:
update sarge status

Modified: active/CVE-2007-1357
===================================================================
--- active/CVE-2007-1357	2007-04-09 18:19:03 UTC (rev 741)
+++ active/CVE-2007-1357	2007-04-09 23:06:43 UTC (rev 742)
@@ -4,12 +4,16 @@
 Description: 
 Ubuntu-Description: 
 Notes: 
+ dannf> commit msg says that the vulnerable code was added in 2.6.0-test5:
+          http://git.kernel.org/?p=linux/kernel/git/tglx/history.git;a=commitdiff;h=7ab442d7e0a76402c12553ee256f756097cae2d2
+        This code was never backported to 2.4, so I'm assuming its not
+        vulnerable
 Bugs: 
 upstream: released (2.6.21-rc6)
 linux-2.6: pending (2.6.20-1) [bugfix/2.6.20.5]
 2.6.18-etch-security: pending (2.6.18.dfsg.1-12etch1) [bugfix/appletalk-length-mismatch.patch, bugfix/appletalk-endianness-annotations.patch]
-2.6.8-sarge-security: 
-2.4.27-sarge-security: 
+2.6.8-sarge-security: pending (2.6.8-16sarge7) [appletalk-length-mismatch.dpatch, appletalk-endianness-annotations.dpatch]
+2.4.27-sarge-security: N/A
 2.6.12-breezy-security: 
 2.6.15-dapper-security: 
 2.6.17-edgy-security: 




More information about the kernel-sec-discuss mailing list