[kernel-sec-discuss] r1611 - active

Michael Gilbert gilbert-guest at alioth.debian.org
Tue Nov 17 22:00:51 UTC 2009


Author: gilbert-guest
Date: 2009-11-17 22:00:44 +0000 (Tue, 17 Nov 2009)
New Revision: 1611

Added:
   active/CVE-2009-kvm-memory-corruption
Modified:
   active/00boilerplate
Log:
new boilerplate; new issue

Modified: active/00boilerplate
===================================================================
--- active/00boilerplate	2009-11-16 23:49:55 UTC (rev 1610)
+++ active/00boilerplate	2009-11-17 22:00:44 UTC (rev 1611)
@@ -4,6 +4,7 @@
 Notes:
 Bugs:
 upstream:
+2.6.31-upstream-stable:
 linux-2.6:
 2.6.18-etch-security:
 2.6.24-etch-security:

Added: active/CVE-2009-kvm-memory-corruption
===================================================================
--- active/CVE-2009-kvm-memory-corruption	                        (rev 0)
+++ active/CVE-2009-kvm-memory-corruption	2009-11-17 22:00:44 UTC (rev 1611)
@@ -0,0 +1,14 @@
+Candidate:
+Description:
+ kernel memory corruption in kvm_vcpu_ioctl_x86_setup_mce
+References:
+ http://www.securityfocus.com/bid/37035/info
+ http://xorl.wordpress.com/2009/11/17/linux-kernel-kvm-memory-corruption-on-mce-setup/
+Notes:
+Bugs:
+upstream: released (2.6.32-rc7) [a9e38c3e]
+2.6.31-upstream-stable:
+linux-2.6:
+2.6.18-etch-security: N/A "kvm introduced in 2.6.25"
+2.6.24-etch-security: N/A "kvm introduced in 2.6.25"
+2.6.26-lenny-security:




More information about the kernel-sec-discuss mailing list