[kernel-sec-discuss] r2015 - active

Moritz Muehlenhoff jmm at alioth.debian.org
Sat Nov 6 08:20:19 UTC 2010


Author: jmm
Date: 2010-11-06 08:19:58 +0000 (Sat, 06 Nov 2010)
New Revision: 2015

Modified:
   active/CVE-2010-3705
   active/CVE-2010-4072
   active/CVE-2010-4073
Log:
various upstream fixes


Modified: active/CVE-2010-3705
===================================================================
--- active/CVE-2010-3705	2010-11-05 15:42:20 UTC (rev 2014)
+++ active/CVE-2010-3705	2010-11-06 08:19:58 UTC (rev 2015)
@@ -5,8 +5,9 @@
  http://marc.info/?l=linux-kernel&m=128596992418814&w=2
  http://git.kernel.org/?p=linux/kernel/git/davem/net-2.6.git;a=commitdiff;h=51e97a12bef19b7e43199fc153cf9bd5f2140362
 Notes:
+ jmm> 51e97a12bef19b7e43199fc153cf9bd5f2140362
 Bugs:
-upstream: needed
+upstream: released (2.6.36)
 2.6.32-upstream-stable: needed
 linux-2.6: released (2.6.32-25) [bugfix/all/sctp-fix-out-of-bounds-reading-in-sctp_assoc_get_hmac.patch]
 2.6.26-lenny-security: pending (2.6.26-25lenny2) [bugfix/all/sctp-fix-out-of-bounds-reading-in-sctp_asoc_get_hmac.patch]

Modified: active/CVE-2010-4072
===================================================================
--- active/CVE-2010-4072	2010-11-05 15:42:20 UTC (rev 2014)
+++ active/CVE-2010-4072	2010-11-06 08:19:58 UTC (rev 2015)
@@ -3,9 +3,10 @@
 References:
  http://lkml.org/lkml/2010/10/6/454
 Notes:
+ jmm> 3af54c9bd9e6f14f896aac1bb0e8405ae0bc7a44
 Bugs:
-upstream: needed
-2.6.32-upstream-stable: needed
+upstream: released (2.6.37-rc1)
+2.6.32-upstream-stable: needed (stable@ was CCed)
 linux-2.6: needed
 2.6.26-lenny-security: needed
 2.6.32-squeeze-security: neededx

Modified: active/CVE-2010-4073
===================================================================
--- active/CVE-2010-4073	2010-11-05 15:42:20 UTC (rev 2014)
+++ active/CVE-2010-4073	2010-11-06 08:19:58 UTC (rev 2015)
@@ -1,11 +1,12 @@
 Candidate: CVE-2010-4073
-Description: ipc/compat info leak
-References:
+Description: ipc/compat info leakR
+eferences:
 Notes:
  http://lkml.org/lkml/2010/10/6/492
+ jmm> 03145beb455cf5c20a761e8451e30b8a74ba58d9
 Bugs:
-upstream: needed 
-2.6.32-upstream-stable: needed
+upstream: released (2.6.37-rc1)
+2.6.32-upstream-stable: needed (stable@ was CCed)
 linux-2.6: needed
 2.6.26-lenny-security: needed
 2.6.32-squeeze-security: needed




More information about the kernel-sec-discuss mailing list