[kernel-sec-discuss] r1275 - active

dannf at alioth.debian.org dannf at alioth.debian.org
Wed Dec 10 17:12:39 UTC 2008


Author: dannf
Date: 2008-12-10 17:12:39 +0000 (Wed, 10 Dec 2008)
New Revision: 1275

Modified:
   active/CVE-2008-3528
   active/CVE-2008-4554
   active/CVE-2008-4576
   active/CVE-2008-4618
   active/CVE-2008-4933
   active/CVE-2008-4934
   active/CVE-2008-5025
   active/CVE-2008-5029
   active/CVE-2008-5134
   active/CVE-2008-5182
   active/CVE-2008-5300
Log:
2.6.24-6~etchnhalf.7 is released

Modified: active/CVE-2008-3528
===================================================================
--- active/CVE-2008-3528	2008-12-10 16:03:22 UTC (rev 1274)
+++ active/CVE-2008-3528	2008-12-10 17:12:39 UTC (rev 1275)
@@ -15,7 +15,7 @@
 upstream:
 linux-2.6: pending (2.6.26-11) [bugfix/all/stable/2.6.26.8.patch]
 2.6.18-etch-security: pending (2.6.18.dfsg.1-23etch1) [bugfix/ext2-avoid-corrupted-directory-printk-floods.patch, bugfix/ext3-avoid-corrupted-directory-printk-floods.patch]
-2.6.24-etch-security: pending (2.6.24-6~etchnhalf.7) [bugfix/ext2-avoid-corrupted-directory-printk-floods.patch, bugfix/ext3-avoid-corrupted-directory-printk-floods.patch]
+2.6.24-etch-security: released (2.6.24-6~etchnhalf.7) [bugfix/ext2-avoid-corrupted-directory-printk-floods.patch, bugfix/ext3-avoid-corrupted-directory-printk-floods.patch]
 2.6.26-lenny-security: pending (2.6.26-11) [bugfix/all/stable/2.6.26.8.patch]
 2.6.15-dapper-security: ignored (negligible)
 2.6.20-feisty-security: ignored (EOL)

Modified: active/CVE-2008-4554
===================================================================
--- active/CVE-2008-4554	2008-12-10 16:03:22 UTC (rev 1274)
+++ active/CVE-2008-4554	2008-12-10 17:12:39 UTC (rev 1275)
@@ -9,7 +9,7 @@
 upstream:
 linux-2.6: released (2.6.26-9) [bugfix/all/dont-allow-splice-to-files-opened-with-O_APPEND.patch]
 2.6.18-etch-security: pending (2.6.18.dfsg.1-23etch1) [bugfix/dont-allow-splice-to-files-opened-with-O_APPEND.patch]
-2.6.24-etch-security: pending (2.6.24-6~etchnhalf.7) [bugfix/all/dont-allow-splice-to-files-opened-with-O_APPEND.patch]
+2.6.24-etch-security: released (2.6.24-6~etchnhalf.7) [bugfix/all/dont-allow-splice-to-files-opened-with-O_APPEND.patch]
 2.6.26-lenny-security: released (2.6.26-9) [bugfix/all/dont-allow-splice-to-files-opened-with-O_APPEND.patch]
 2.6.15-dapper-security: N/A
 2.6.20-feisty-security: ignored (EOL)

Modified: active/CVE-2008-4576
===================================================================
--- active/CVE-2008-4576	2008-12-10 16:03:22 UTC (rev 1274)
+++ active/CVE-2008-4576	2008-12-10 17:12:39 UTC (rev 1275)
@@ -9,7 +9,7 @@
 upstream:
 linux-2.6: released (2.6.26-9) [bugfix/all/stable/2.6.26.6.patch]
 2.6.18-etch-security: pending (2.6.18.dfsg.1-23etch1) [bugfix/sctp-fix-oops-when-INIT-ACK-indicates-that-peer-doesnt-support-AUTH.patch]
-2.6.24-etch-security: pending (2.6.24-6~etchnhalf.7) [bugfix/sctp-fix-oops-when-INIT-ACK-indicates-that-peer-doesnt-support-AUTH.patch]
+2.6.24-etch-security: released (2.6.24-6~etchnhalf.7) [bugfix/sctp-fix-oops-when-INIT-ACK-indicates-that-peer-doesnt-support-AUTH.patch]
 2.6.26-lenny-security: released (2.6.26-9) [bugfix/all/stable/2.6.26.6.patch]
 2.6.15-dapper-security: needed
 2.6.20-feisty-security: ignored (EOL)

Modified: active/CVE-2008-4618
===================================================================
--- active/CVE-2008-4618	2008-12-10 16:03:22 UTC (rev 1274)
+++ active/CVE-2008-4618	2008-12-10 17:12:39 UTC (rev 1275)
@@ -8,7 +8,7 @@
 upstream:
 linux-2.6: pending (2.6.26-10) [bugfix/all/sctp-fix-kernel-panic-while-process-protocol-violation-parameter.patch]
 2.6.18-etch-security: N/A "vulnerable code not present"
-2.6.24-etch-security: pending (2.6.24-6~etchnhalf.7) [bugfix/all/sctp-fix-kernel-panic-while-process-protocol-violation-parameter.patch]
+2.6.24-etch-security: released (2.6.24-6~etchnhalf.7) [bugfix/all/sctp-fix-kernel-panic-while-process-protocol-violation-parameter.patch]
 2.6.26-lenny-security: pending (2.6.26-10) [bugfix/all/sctp-fix-kernel-panic-while-process-protocol-violation-parameter.patch]
 2.6.15-dapper-security: needed
 2.6.20-feisty-security: ignored (EOL)

Modified: active/CVE-2008-4933
===================================================================
--- active/CVE-2008-4933	2008-12-10 16:03:22 UTC (rev 1274)
+++ active/CVE-2008-4933	2008-12-10 17:12:39 UTC (rev 1275)
@@ -9,7 +9,7 @@
 upstream:
 linux-2.6: pending (2.6.26-11) [bugfix/all/hfsplus-fix-Buffer-overflow-with-a-corrupted-image.patch]
 2.6.18-etch-security: pending (2.6.18.dfsg.1-23etch1) [bugfix/hfsplus-fix-Buffer-overflow-with-a-corrupted-image.patch]
-2.6.24-etch-security: pending (2.6.24-6~etchnhalf.7) [bugfix/hfsplus-fix-Buffer-overflow-with-a-corrupted-image.patch]
+2.6.24-etch-security: released (2.6.24-6~etchnhalf.7) [bugfix/hfsplus-fix-Buffer-overflow-with-a-corrupted-image.patch]
 2.6.26-lenny-security: pending (2.6.26-11) [bugfix/all/hfsplus-fix-Buffer-overflow-with-a-corrupted-image.patch]
 2.6.15-dapper-security: needed
 2.6.20-feisty-security: ignored (EOL)

Modified: active/CVE-2008-4934
===================================================================
--- active/CVE-2008-4934	2008-12-10 16:03:22 UTC (rev 1274)
+++ active/CVE-2008-4934	2008-12-10 17:12:39 UTC (rev 1275)
@@ -9,7 +9,7 @@
 upstream:
 linux-2.6: pending (2.6.26-11) [bugfix/all/hfsplus-check_read_mapping_page-return-value.patch]
 2.6.18-etch-security: pending (2.6.18.dfsg.1-23etch1) [bugfix/hfsplus-check_read_mapping_page-return-value.patch]
-2.6.24-etch-security: pending (2.6.24-6~etchnhalf.7) [bugfix/hfsplus-check_read_mapping_page-return-value.patch]
+2.6.24-etch-security: released (2.6.24-6~etchnhalf.7) [bugfix/hfsplus-check_read_mapping_page-return-value.patch]
 2.6.26-lenny-security: pending (2.6.26-11) [bugfix/all/hfsplus-check_read_mapping_page-return-value.patch]
 2.6.15-dapper-security: needed
 2.6.20-feisty-security: ignored (EOL)

Modified: active/CVE-2008-5025
===================================================================
--- active/CVE-2008-5025	2008-12-10 16:03:22 UTC (rev 1274)
+++ active/CVE-2008-5025	2008-12-10 17:12:39 UTC (rev 1275)
@@ -9,7 +9,7 @@
 upstream:
 linux-2.6: pending (2.6.26-11) [bugfix/all/hfs-fix-namelength-memory-corruption.patch]
 2.6.18-etch-security: pending (2.6.18.dfsg.1-23etch1) [bugfix/hfs-fix-namelength-memory-corruption.patch]
-2.6.24-etch-security: pending (2.6.24-6~etchnhalf.7) [bugfix/hfs-fix-namelength-memory-corruption.patch]
+2.6.24-etch-security: released (2.6.24-6~etchnhalf.7) [bugfix/hfs-fix-namelength-memory-corruption.patch]
 2.6.26-lenny-security: pending (2.6.26-11) [bugfix/all/hfs-fix-namelength-memory-corruption.patch]
 2.6.15-dapper-security: needed
 2.6.22-gutsy-security: needed

Modified: active/CVE-2008-5029
===================================================================
--- active/CVE-2008-5029	2008-12-10 16:03:22 UTC (rev 1274)
+++ active/CVE-2008-5029	2008-12-10 17:12:39 UTC (rev 1275)
@@ -16,7 +16,7 @@
 upstream: released (2.6.26.8)
 linux-2.6: released (2.6.26-11) [bugfix/all/stable/2.6.26.8.patch]
 2.6.18-etch-security: pending (2.6.18.dfsg.1-23etch1) [bugfix/af_unix-fix-garbage-collector-races.patch, bugfix/af_unix-convert-socks-to-unix_socks.patch, bugfix/net-unix-fix-inflight-counting-bug-in-garbage-collector.patch, bugfix/net-fix-recursive-descent-in-__scm_destroy.patch]
-2.6.24-etch-security: pending (2.6.24-6~etchnhalf.7) [bugfix/unix-domain-counting-gc.patch, bugfix/unix-domain-recursive-descent.patch, bugfix/unix-domain-recursive-descent-abi-ignore.patch]
+2.6.24-etch-security: released (2.6.24-6~etchnhalf.7) [bugfix/unix-domain-counting-gc.patch, bugfix/unix-domain-recursive-descent.patch, bugfix/unix-domain-recursive-descent-abi-ignore.patch]
 2.6.26-lenny-security: released (2.6.26-11) [bugfix/all/stable/2.6.26.8.patch]
 2.6.15-dapper-security: needed
 2.6.22-gutsy-security: needed

Modified: active/CVE-2008-5134
===================================================================
--- active/CVE-2008-5134	2008-12-10 16:03:22 UTC (rev 1274)
+++ active/CVE-2008-5134	2008-12-10 17:12:39 UTC (rev 1275)
@@ -7,7 +7,7 @@
 upstream:
 linux-2.6: released (2.6.26-11) [bugfix/all/stable/2.6.26.8.patch]
 2.6.18-etch-security: N/A
-2.6.24-etch-security: pending (2.6.24-6~etchnhalf.7) [bugfix/all/libertas-fix-buffer-overrun.patch]
+2.6.24-etch-security: released (2.6.24-6~etchnhalf.7) [bugfix/all/libertas-fix-buffer-overrun.patch]
 2.6.26-lenny-security: released (2.6.26-11) [bugfix/all/stable/2.6.26.8.patch]
 2.6.15-dapper-security:
 2.6.22-gutsy-security:

Modified: active/CVE-2008-5182
===================================================================
--- active/CVE-2008-5182	2008-12-10 16:03:22 UTC (rev 1274)
+++ active/CVE-2008-5182	2008-12-10 17:12:39 UTC (rev 1275)
@@ -7,7 +7,7 @@
 upstream:
 linux-2.6: pending (2.6.26-12) [bugfix/all/inotify-watch-removal-umount-races.patch]
 2.6.18-etch-security: pending (2.6.18.dfsg.1-23etch1) [bugfix/inotify-watch-removal-umount-races.patch]
-2.6.24-etch-security: pending (2.6.24-6~etchnhalf.7) [bugfix/all/inotify-watch-removal-umount-races.patch]
+2.6.24-etch-security: released (2.6.24-6~etchnhalf.7) [bugfix/all/inotify-watch-removal-umount-races.patch]
 2.6.26-lenny-security: pending (2.6.26-12) [bugfix/all/inotify-watch-removal-umount-races.patch]
 2.6.15-dapper-security:
 2.6.22-gutsy-security:

Modified: active/CVE-2008-5300
===================================================================
--- active/CVE-2008-5300	2008-12-10 16:03:22 UTC (rev 1274)
+++ active/CVE-2008-5300	2008-12-10 17:12:39 UTC (rev 1275)
@@ -10,7 +10,7 @@
 upstream:
 linux-2.6: pending (2.6.26-12) [bugfix/all/net-unix-gc-fix-soft-lockups-oom-issues.patch]
 2.6.18-etch-security: pending (2.6.18.dfsg.1-23etch1) [bugfix/net-unix-gc-fix-soft-lockups-oom-issues.patch]
-2.6.24-etch-security: pending (2.6.24-6~etchnhalf.7) [bugfix/net-unix-gc-fix-soft-lockups-oom-issues.patch]
+2.6.24-etch-security: released (2.6.24-6~etchnhalf.7) [bugfix/net-unix-gc-fix-soft-lockups-oom-issues.patch]
 2.6.26-lenny-security: pending (2.6.26-12) [bugfix/all/net-unix-gc-fix-soft-lockups-oom-issues.patch]
 2.6.15-dapper-security:
 2.6.22-gutsy-security:




More information about the kernel-sec-discuss mailing list