[kernel-sec-discuss] r1613 - active

Michael Gilbert gilbert-guest at alioth.debian.org
Tue Nov 24 01:56:37 UTC 2009


Author: gilbert-guest
Date: 2009-11-24 01:56:36 +0000 (Tue, 24 Nov 2009)
New Revision: 1613

Added:
   active/CVE-2009-3080
   active/CVE-2009-4004
   active/CVE-2009-4005
Removed:
   active/CVE-2009-kvm-memory-corruption
Log:
new issues

Added: active/CVE-2009-3080
===================================================================
--- active/CVE-2009-3080	                        (rev 0)
+++ active/CVE-2009-3080	2009-11-24 01:56:36 UTC (rev 1613)
@@ -0,0 +1,13 @@
+Candidate: CVE-2009-3080
+Description:
+ index error in gdth_read_event
+References:
+ http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3080
+Notes:
+Bugs:
+upstream: released (2.6.32-rc8) [690e7448]
+2.6.31-upstream-stable:
+linux-2.6:
+2.6.18-etch-security:
+2.6.24-etch-security:
+2.6.26-lenny-security:

Copied: active/CVE-2009-4004 (from rev 1612, active/CVE-2009-kvm-memory-corruption)
===================================================================
--- active/CVE-2009-4004	                        (rev 0)
+++ active/CVE-2009-4004	2009-11-24 01:56:36 UTC (rev 1613)
@@ -0,0 +1,15 @@
+Candidate: CVE-2009-4004
+Description:
+ kernel memory corruption in kvm_vcpu_ioctl_x86_setup_mce
+References:
+ http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4004
+ http://www.securityfocus.com/bid/37035/info
+ http://xorl.wordpress.com/2009/11/17/linux-kernel-kvm-memory-corruption-on-mce-setup/
+Notes:
+Bugs:
+upstream: released (2.6.32-rc7) [a9e38c3e]
+2.6.31-upstream-stable:
+linux-2.6:
+2.6.18-etch-security: N/A "kvm introduced in 2.6.25"
+2.6.24-etch-security: N/A "kvm introduced in 2.6.25"
+2.6.26-lenny-security:

Added: active/CVE-2009-4005
===================================================================
--- active/CVE-2009-4005	                        (rev 0)
+++ active/CVE-2009-4005	2009-11-24 01:56:36 UTC (rev 1613)
@@ -0,0 +1,13 @@
+Candidate: CVE-2009-4005
+Description:
+ buffer overflow in hfc_usb
+References:
+ http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4005
+Notes:
+Bugs:
+upstream: released (2.6.32-rc7) [286e633e]
+2.6.31-upstream-stable:
+linux-2.6:
+2.6.18-etch-security:
+2.6.24-etch-security:
+2.6.26-lenny-security:

Deleted: active/CVE-2009-kvm-memory-corruption
===================================================================
--- active/CVE-2009-kvm-memory-corruption	2009-11-18 21:55:17 UTC (rev 1612)
+++ active/CVE-2009-kvm-memory-corruption	2009-11-24 01:56:36 UTC (rev 1613)
@@ -1,14 +0,0 @@
-Candidate:
-Description:
- kernel memory corruption in kvm_vcpu_ioctl_x86_setup_mce
-References:
- http://www.securityfocus.com/bid/37035/info
- http://xorl.wordpress.com/2009/11/17/linux-kernel-kvm-memory-corruption-on-mce-setup/
-Notes:
-Bugs:
-upstream: released (2.6.32-rc7) [a9e38c3e]
-2.6.31-upstream-stable:
-linux-2.6:
-2.6.18-etch-security: N/A "kvm introduced in 2.6.25"
-2.6.24-etch-security: N/A "kvm introduced in 2.6.25"
-2.6.26-lenny-security:




More information about the kernel-sec-discuss mailing list