[kernel-sec-discuss] r1617 - active

Dann Frazier dannf at alioth.debian.org
Wed Nov 25 19:09:43 UTC 2009


Author: dannf
Date: 2009-11-25 19:09:43 +0000 (Wed, 25 Nov 2009)
New Revision: 1617

Modified:
   active/CVE-2009-3080
   active/CVE-2009-3726
   active/CVE-2009-3888
   active/CVE-2009-3889
   active/CVE-2009-3939
   active/CVE-2009-4004
Log:
status updates

Modified: active/CVE-2009-3080
===================================================================
--- active/CVE-2009-3080	2009-11-25 18:24:03 UTC (rev 1616)
+++ active/CVE-2009-3080	2009-11-25 19:09:43 UTC (rev 1617)
@@ -10,4 +10,4 @@
 linux-2.6:
 2.6.18-etch-security:
 2.6.24-etch-security:
-2.6.26-lenny-security:
+2.6.26-lenny-security: pending (2.6.26-21) [bugfix/all/gdth-prevent-negative-offsets-in-ioctl.patch]

Modified: active/CVE-2009-3726
===================================================================
--- active/CVE-2009-3726	2009-11-25 18:24:03 UTC (rev 1616)
+++ active/CVE-2009-3726	2009-11-25 19:09:43 UTC (rev 1617)
@@ -10,4 +10,4 @@
 linux-2.6: released (2.6.31-1)
 2.6.18-etch-security:
 2.6.24-etch-security:
-2.6.26-lenny-security:
+2.6.26-lenny-security: pending (2.6.26-21) [bugfix/all/nfsv4-buggy-server-oops.patch]

Modified: active/CVE-2009-3888
===================================================================
--- active/CVE-2009-3888	2009-11-25 18:24:03 UTC (rev 1616)
+++ active/CVE-2009-3888	2009-11-25 19:09:43 UTC (rev 1617)
@@ -18,7 +18,8 @@
 Notes:
 Bugs:
 upstream: released (2.6.32-rc6) [89a8640279f8bb78aaf778d1fc5c4a6778f18064]
-linux-2.6: needed
-2.6.18-etch-security:
-2.6.24-etch-security:
-2.6.26-lenny-security:
+2.6.31-upstream-stable: released (2.6.31.6)
+linux-2.6: released (2.6.31-2) [bugfix/all/stable/2.6.31.6.patch]
+2.6.18-etch-security: ignored "needs port, only affects system w/o an mmu"
+2.6.24-etch-security: ignored "needs port, only affects system w/o an mmu"
+2.6.26-lenny-security: ignored "needs port, only affects system w/o an mmu"

Modified: active/CVE-2009-3889
===================================================================
--- active/CVE-2009-3889	2009-11-25 18:24:03 UTC (rev 1616)
+++ active/CVE-2009-3889	2009-11-25 19:09:43 UTC (rev 1617)
@@ -13,4 +13,4 @@
 linux-2.6: released (2.6.27-1)
 2.6.18-etch-security:
 2.6.24-etch-security:
-2.6.26-lenny-security:
+2.6.26-lenny-security: pending (2.6.26-21) [bugfix/all/megaraid_sas-fix-sysfs-dbg_lvl-permissions.patch]

Modified: active/CVE-2009-3939
===================================================================
--- active/CVE-2009-3939	2009-11-25 18:24:03 UTC (rev 1616)
+++ active/CVE-2009-3939	2009-11-25 19:09:43 UTC (rev 1617)
@@ -12,4 +12,4 @@
 linux-2.6:
 2.6.18-etch-security:
 2.6.24-etch-security:
-2.6.26-lenny-security:
+2.6.26-lenny-security: ignored "not committed upstream yet"

Modified: active/CVE-2009-4004
===================================================================
--- active/CVE-2009-4004	2009-11-25 18:24:03 UTC (rev 1616)
+++ active/CVE-2009-4004	2009-11-25 19:09:43 UTC (rev 1617)
@@ -12,4 +12,4 @@
 linux-2.6:
 2.6.18-etch-security: N/A "kvm introduced in 2.6.25"
 2.6.24-etch-security: N/A "kvm introduced in 2.6.25"
-2.6.26-lenny-security:
+2.6.26-lenny-security: N/A "code not present"




More information about the kernel-sec-discuss mailing list