[kernel-sec-discuss] r1510 - active

Michael Gilbert gilbert-guest at alioth.debian.org
Fri Oct 9 19:31:39 UTC 2009


Author: gilbert-guest
Date: 2009-10-09 19:31:39 +0000 (Fri, 09 Oct 2009)
New Revision: 1510

Added:
   active/CVE-2009-2910
Removed:
   active/CVE-2009-64bit-registers-leaked-to-32bit-processes
Log:
cve assigned

Copied: active/CVE-2009-2910 (from rev 1509, active/CVE-2009-64bit-registers-leaked-to-32bit-processes)
===================================================================
--- active/CVE-2009-2910	                        (rev 0)
+++ active/CVE-2009-2910	2009-10-09 19:31:39 UTC (rev 1510)
@@ -0,0 +1,16 @@
+Candidate: CVE-2009-2910 
+Description:
+ 32-bit processes running on an x86_64 machine can see uncleared content in registers
+ R8-R15.
+References:
+ http://www.openwall.com/lists/oss-security/2009/10/01/2
+Notes:
+ can see all content passing thru these registers, so thes may be somewhat urgent
+ since it may be possible to piece the info together to recover passwords or
+ other badness
+Bugs:
+upstream: pending (2.6.32-rc2) [24e35800cdc4350fc34e2bed37b608a9e13ab3b6]
+linux-2.6: needed
+2.6.18-etch-security:
+2.6.24-etch-security:
+2.6.26-lenny-security:

Deleted: active/CVE-2009-64bit-registers-leaked-to-32bit-processes
===================================================================
--- active/CVE-2009-64bit-registers-leaked-to-32bit-processes	2009-10-08 21:12:24 UTC (rev 1509)
+++ active/CVE-2009-64bit-registers-leaked-to-32bit-processes	2009-10-09 19:31:39 UTC (rev 1510)
@@ -1,15 +0,0 @@
-Candidate: requested on oss-sec
-Description:
- 32-bit processes running on an x86_64 machine can see uncleared content in registers
- R8-R15.
-References:
- http://www.openwall.com/lists/oss-security/2009/10/01/2
-Ubuntu-Description:
-Notes:
- info leak, so not too severe or urgent
-Bugs:
-upstream: pending (2.6.32-rc2) [24e35800cdc4350fc34e2bed37b608a9e13ab3b6]
-linux-2.6:
-2.6.18-etch-security:
-2.6.24-etch-security:
-2.6.26-lenny-security:




More information about the kernel-sec-discuss mailing list