[kernel-sec-discuss] r1467 - active

Dann Frazier dannf at alioth.debian.org
Mon Aug 17 20:41:14 UTC 2009


Author: dannf
Date: 2009-08-17 20:41:14 +0000 (Mon, 17 Aug 2009)
New Revision: 1467

Modified:
   active/CVE-2009-2406
   active/CVE-2009-2407
   active/CVE-2009-2692
   active/CVE-2009-XXXX
   active/CVE-2009-ZZZZ
   active/CVE-2009-load_flat_shared_library-null-ptr-dereference
Log:
update status

Modified: active/CVE-2009-2406
===================================================================
--- active/CVE-2009-2406	2009-08-17 19:59:49 UTC (rev 1466)
+++ active/CVE-2009-2406	2009-08-17 20:41:14 UTC (rev 1467)
@@ -8,8 +8,8 @@
 Ubuntu-Description:
 Notes:
 Bugs:
-upstream: pending [6352a29305373ae6196491e6d4669f301e26492e]
-linux-2.6: pending (2.6.30-5) [bugfix/all/ecryptfs-check-tag-11-literal-data-buffer-size.patch]
+upstream: released (2.6.31-rc5) [6352a29305373ae6196491e6d4669f301e26492e]
+linux-2.6: released (2.6.30-5) [bugfix/all/ecryptfs-check-tag-11-literal-data-buffer-size.patch]
 2.6.18-etch-security: N/A "no ecryptfs"
 2.6.24-etch-security: released (2.6.24-6~etchnhalf.8etch2) [bugfix/all/ecryptfs-check-tag-11-literal-data-buffer-size.patch]
 2.6.26-lenny-security: released (2.6.26-17lenny1) [bugfix/all/ecryptfs-check-tag-11-literal-data-buffer-size.patch]

Modified: active/CVE-2009-2407
===================================================================
--- active/CVE-2009-2407	2009-08-17 19:59:49 UTC (rev 1466)
+++ active/CVE-2009-2407	2009-08-17 20:41:14 UTC (rev 1467)
@@ -8,8 +8,8 @@
 Ubuntu-Description:
 Notes:
 Bugs:
-upstream: pending [f151cd2c54ddc7714e2f740681350476cda03a28]
-linux-2.6: pending (2.6.30-5) [bugfix/all/ecryptfs-parse_tag_3_packet-check-tag-3-package-encrypted-key-size.patch]
+upstream: released (2.6.31-rc5) [f151cd2c54ddc7714e2f740681350476cda03a28]
+linux-2.6: released (2.6.30-5) [bugfix/all/ecryptfs-parse_tag_3_packet-check-tag-3-package-encrypted-key-size.patch]
 2.6.18-etch-security: N/A "no ecryptfs"
 2.6.24-etch-security: released (2.6.24-6~etchnhalf.8etch2) [bugfix/all/ecryptfs-parse_tag_3_packet-check-tag-3-package-encrypted-key-size.patch]
 2.6.26-lenny-security: released (2.6.26-17lenny1) [bugfix/all/ecryptfs-parse_tag_3_packet-check-tag-3-package-encrypted-key-size.patch]

Modified: active/CVE-2009-2692
===================================================================
--- active/CVE-2009-2692	2009-08-17 19:59:49 UTC (rev 1466)
+++ active/CVE-2009-2692	2009-08-17 20:41:14 UTC (rev 1467)
@@ -4,10 +4,10 @@
 Ubuntu-Description:
 Notes:
 Bugs:
-upstream: pending (2.6.30.5, 2.6.31-rc6) [e694958]
-linux-2.6: pending (2.6.30-6) [bugfix/all/make-sock_sendpage-use-kernel_sendpage.patch]
+upstream: released (2.6.30.5, 2.6.31-rc6) [e694958]
+linux-2.6: released (2.6.30-6) [bugfix/all/make-sock_sendpage-use-kernel_sendpage.patch]
 2.6.18-etch-security: needed
-2.6.24-etch-security: pending (2.6.24-6~etchnhalf.8etch3) [bugfix/all/make-sock_sendpage-use-kernel_sendpage.patch]
+2.6.24-etch-security: released (2.6.24-6~etchnhalf.8etch3) [bugfix/all/make-sock_sendpage-use-kernel_sendpage.patch]
 2.6.26-lenny-security: released (2.6.26-17lenny2) [bugfix/all/make-sock_sendpage-use-kernel_sendpage.patch]
 2.6.15-dapper-security:
 2.6.22-gutsy-security:

Modified: active/CVE-2009-XXXX
===================================================================
--- active/CVE-2009-XXXX	2009-08-17 19:59:49 UTC (rev 1466)
+++ active/CVE-2009-XXXX	2009-08-17 20:41:14 UTC (rev 1467)
@@ -18,8 +18,8 @@
 Ubuntu-Description:
 Notes:
 Bugs:
-upstream: pending (2.6.31) [0083fc2]
-linux-2.6: pending (2.6.30-6) [bugfix/all/do_sigaltstack-avoid-copying-stack_t-as-a-structure-to-userspace.patch]
+upstream: released (2.6.31-rc6) [0083fc2]
+linux-2.6: released (2.6.30-6) [bugfix/all/do_sigaltstack-avoid-copying-stack_t-as-a-structure-to-userspace.patch]
 2.6.18-etch-security:
 2.6.24-etch-security:
 2.6.26-lenny-security:

Modified: active/CVE-2009-ZZZZ
===================================================================
--- active/CVE-2009-ZZZZ	2009-08-17 19:59:49 UTC (rev 1466)
+++ active/CVE-2009-ZZZZ	2009-08-17 20:41:14 UTC (rev 1467)
@@ -12,8 +12,8 @@
 Ubuntu-Description:
 Notes:
 Bugs:
-upstream: pending (2.6.31) [70d715f]
-linux-2.6: pending (2.6.30-6) [bugfix/all/posix-timers-fix-oops-in-clock-nanosleep-with-CLOCK_MONOTONIC_RAW.patch]
+upstream: released (2.6.31-rc6) [70d715f]
+linux-2.6: released (2.6.30-6) [bugfix/all/posix-timers-fix-oops-in-clock-nanosleep-with-CLOCK_MONOTONIC_RAW.patch]
 2.6.18-etch-security: N/A "Appears to be introduced after commit 2d42244a (v2.6.28-rc1)"
 2.6.24-etch-security: N/A "Appears to be introduced after commit 2d42244a (v2.6.28-rc1)"
 2.6.26-lenny-security: N/A "Appears to be introduced after commit 2d42244a (v2.6.28-rc1)"

Modified: active/CVE-2009-load_flat_shared_library-null-ptr-dereference
===================================================================
--- active/CVE-2009-load_flat_shared_library-null-ptr-dereference	2009-08-17 19:59:49 UTC (rev 1466)
+++ active/CVE-2009-load_flat_shared_library-null-ptr-dereference	2009-08-17 20:41:14 UTC (rev 1467)
@@ -8,8 +8,8 @@
 Ubuntu-Description:
 Notes:
 Bugs:
-upstream: pending (2.6.31) [3440625d78711bee41a84cf29c3d8c579b522666]
-linux-2.6: pending (2.6.30-6) [bugfix/all/flat-fix-uninitialized-ptr-with-shared-libs.patch]
+upstream: released (2.6.31-rc6) [3440625d78711bee41a84cf29c3d8c579b522666]
+linux-2.6: released (2.6.30-6) [bugfix/all/flat-fix-uninitialized-ptr-with-shared-libs.patch]
 2.6.18-etch-security: N/A "kernel/cred.c introduced in 2.6.29"
 2.6.24-etch-security: N/A "kernel/cred.c introduced in 2.6.29"
 2.6.26-lenny-security: N/A "kernel/cred.c introduced in 2.6.29"




More information about the kernel-sec-discuss mailing list