[kernel-sec-discuss] r2075 - active retired

Moritz Muehlenhoff jmm at alioth.debian.org
Fri Dec 10 15:36:24 UTC 2010


Author: jmm
Date: 2010-12-10 15:36:18 +0000 (Fri, 10 Dec 2010)
New Revision: 2075

Added:
   retired/CVE-2010-3873
   retired/CVE-2010-4079
   retired/CVE-2010-4169
Removed:
   active/CVE-2010-3873
   active/CVE-2010-4079
   active/CVE-2010-4169
Log:
retire three issues


Deleted: active/CVE-2010-3873
===================================================================
--- active/CVE-2010-3873	2010-12-10 15:35:41 UTC (rev 2074)
+++ active/CVE-2010-3873	2010-12-10 15:36:18 UTC (rev 2075)
@@ -1,13 +0,0 @@
-Candidate: CVE-2010-3873
-Description: x25 DoS
-References:
- http://marc.info/?l=linux-netdev&m=128871017529408&w=2
- http://marc.info/?l=linux-netdev&m=128882490708019&w=2
-Notes:
- jmm> a6331d6f9a4298173b413cf99a40cc86a9d92c37
-Bugs:
-upstream: released (2.6.37-rc2)
-2.6.32-upstream-stable: released (2.6.32.27)
-linux-2.6: released (2.6.32-28) [bugfix/all/x25-Patch-to-fix-bug-15678-x25-accesses-fields-beyon.patch, bugfix/all/x25-memory-corruption-in-X.25-facilities-parsing.patch]
-2.6.26-lenny-security: released (2.6.26-26lenny1) [bugfix/all/x25-fix-field-accesses-beyond-end-of-packet.patch, bugfix/all/x25-fix-memory-corruption-in-facilities-parsing.patch]
-2.6.32-squeeze-security: released (2.6.32-28) [bugfix/all/x25-Patch-to-fix-bug-15678-x25-accesses-fields-beyon.patch, bugfix/all/x25-memory-corruption-in-X.25-facilities-parsing.patch]

Deleted: active/CVE-2010-4079
===================================================================
--- active/CVE-2010-4079	2010-12-10 15:35:41 UTC (rev 2074)
+++ active/CVE-2010-4079	2010-12-10 15:36:18 UTC (rev 2075)
@@ -1,10 +0,0 @@
-Candidate: CVE-2010-4079
-Description: ivtvfb stack disclosure
-References:
-Notes:
-Bugs:
-upstream: released (2.6.36) [405707985594169cfd0b1d97d29fcb4b4c6f2ac9]
-2.6.32-upstream-stable: released (2.6.32.27)
-linux-2.6: released (2.6.32-29) [bugfix/all/stable/2.6.32.27-rc1.patch]
-2.6.26-lenny-security: released (2.6.26-26lenny1) [bugfix/all/ivtvfb-prevent-reading-uninitialized-stack-memory.patch]
-2.6.32-squeeze-security: released (2.6.32-29) [bugfix/all/stable/2.6.32.27-rc1.patch]

Deleted: active/CVE-2010-4169
===================================================================
--- active/CVE-2010-4169	2010-12-10 15:35:41 UTC (rev 2074)
+++ active/CVE-2010-4169	2010-12-10 15:36:18 UTC (rev 2075)
@@ -1,11 +0,0 @@
-Candidate: CVE-2010-4169
-Description: perf bug
-References:
-Notes:
- jmm> perf counters were merged post Lenny
-Bugs:
-upstream: released (2.6.37-rc2) [63bfd7384b119409685a17d5c58f0b56e5dc03da]
-2.6.32-upstream-stable: released (2.6.32.27)
-linux-2.6: released (2.6.32-29) [bugfix/all/stable/2.6.32.27-rc1.patch]
-2.6.26-lenny-security: N/A
-2.6.32-squeeze-security: released (2.6.32-29) [bugfix/all/stable/2.6.32.27-rc1.patch]

Copied: retired/CVE-2010-3873 (from rev 2072, active/CVE-2010-3873)
===================================================================
--- retired/CVE-2010-3873	                        (rev 0)
+++ retired/CVE-2010-3873	2010-12-10 15:36:18 UTC (rev 2075)
@@ -0,0 +1,13 @@
+Candidate: CVE-2010-3873
+Description: x25 DoS
+References:
+ http://marc.info/?l=linux-netdev&m=128871017529408&w=2
+ http://marc.info/?l=linux-netdev&m=128882490708019&w=2
+Notes:
+ jmm> a6331d6f9a4298173b413cf99a40cc86a9d92c37
+Bugs:
+upstream: released (2.6.37-rc2)
+2.6.32-upstream-stable: released (2.6.32.27)
+linux-2.6: released (2.6.32-28) [bugfix/all/x25-Patch-to-fix-bug-15678-x25-accesses-fields-beyon.patch, bugfix/all/x25-memory-corruption-in-X.25-facilities-parsing.patch]
+2.6.26-lenny-security: released (2.6.26-26lenny1) [bugfix/all/x25-fix-field-accesses-beyond-end-of-packet.patch, bugfix/all/x25-fix-memory-corruption-in-facilities-parsing.patch]
+2.6.32-squeeze-security: released (2.6.32-28) [bugfix/all/x25-Patch-to-fix-bug-15678-x25-accesses-fields-beyon.patch, bugfix/all/x25-memory-corruption-in-X.25-facilities-parsing.patch]


Property changes on: retired/CVE-2010-3873
___________________________________________________________________
Added: svn:mergeinfo
   + 

Copied: retired/CVE-2010-4079 (from rev 2074, active/CVE-2010-4079)
===================================================================
--- retired/CVE-2010-4079	                        (rev 0)
+++ retired/CVE-2010-4079	2010-12-10 15:36:18 UTC (rev 2075)
@@ -0,0 +1,10 @@
+Candidate: CVE-2010-4079
+Description: ivtvfb stack disclosure
+References:
+Notes:
+Bugs:
+upstream: released (2.6.36) [405707985594169cfd0b1d97d29fcb4b4c6f2ac9]
+2.6.32-upstream-stable: released (2.6.32.27)
+linux-2.6: released (2.6.32-29) [bugfix/all/stable/2.6.32.27-rc1.patch]
+2.6.26-lenny-security: released (2.6.26-26lenny1) [bugfix/all/ivtvfb-prevent-reading-uninitialized-stack-memory.patch]
+2.6.32-squeeze-security: released (2.6.32-29) [bugfix/all/stable/2.6.32.27-rc1.patch]


Property changes on: retired/CVE-2010-4079
___________________________________________________________________
Added: svn:mergeinfo
   + 

Copied: retired/CVE-2010-4169 (from rev 2073, active/CVE-2010-4169)
===================================================================
--- retired/CVE-2010-4169	                        (rev 0)
+++ retired/CVE-2010-4169	2010-12-10 15:36:18 UTC (rev 2075)
@@ -0,0 +1,11 @@
+Candidate: CVE-2010-4169
+Description: perf bug
+References:
+Notes:
+ jmm> perf counters were merged post Lenny
+Bugs:
+upstream: released (2.6.37-rc2) [63bfd7384b119409685a17d5c58f0b56e5dc03da]
+2.6.32-upstream-stable: released (2.6.32.27)
+linux-2.6: released (2.6.32-29) [bugfix/all/stable/2.6.32.27-rc1.patch]
+2.6.26-lenny-security: N/A
+2.6.32-squeeze-security: released (2.6.32-29) [bugfix/all/stable/2.6.32.27-rc1.patch]


Property changes on: retired/CVE-2010-4169
___________________________________________________________________
Added: svn:mergeinfo
   + 




More information about the kernel-sec-discuss mailing list