[kernel-sec-discuss] r834 - active

jmm at alioth.debian.org jmm at alioth.debian.org
Thu May 24 22:01:59 UTC 2007


Author: jmm
Date: 2007-05-24 22:01:59 +0000 (Thu, 24 May 2007)
New Revision: 834

Modified:
   active/CVE-2006-2275
Log:
ignore old SCTP issue


Modified: active/CVE-2006-2275
===================================================================
--- active/CVE-2006-2275	2007-05-24 16:02:27 UTC (rev 833)
+++ active/CVE-2006-2275	2007-05-24 22:01:59 UTC (rev 834)
@@ -10,10 +10,12 @@
  jmm> Seems like an ABI-breaker, the sctp_chunk struct is changed in the
  jmm> upstream fix, this issue alone is not worth an ABI bump, a fix will
  jmm> be postponed for now
+ jmm> For Sarge we'll ignore it, as it was only available under CONFIG_EXPERIMENTAL
+ jmm> and not suitable for production use anyway
 Bugs: 
 upstream: released (2.6.16.15)
 linux-2.6: released (2.6.16-13)
-2.6.8-sarge-security: ignored (2.6.8-16sarge4) 
-2.4.27-sarge-security: ignored (2.4.27-10sarge4)
+2.6.8-sarge-security: ignored
+2.4.27-sarge-security: ignored
 2.6.18-etch-security: N/A
 




More information about the kernel-sec-discuss mailing list