[kernel-sec-discuss] r1992 - active

Moritz Muehlenhoff jmm at alioth.debian.org
Fri Oct 8 14:03:19 UTC 2010


Author: jmm
Date: 2010-10-08 14:03:15 +0000 (Fri, 08 Oct 2010)
New Revision: 1992

Modified:
   active/CVE-2010-3079
   active/CVE-2010-3310
   active/CVE-2010-3705
Log:
updates


Modified: active/CVE-2010-3079
===================================================================
--- active/CVE-2010-3079	2010-10-07 21:20:37 UTC (rev 1991)
+++ active/CVE-2010-3079	2010-10-08 14:03:15 UTC (rev 1992)
@@ -9,7 +9,7 @@
 Notes:
 Bugs:
 upstream: released (2.6.35.5)
-2.6.32-upstream-stable:
-linux-2.6:
-2.6.26-lenny-security:
-2.6.32-squeeze-security:
+2.6.32-upstream-stable: released (2.6.32.22)
+linux-2.6: released (2.6.32-24)
+2.6.26-lenny-security: N/A (Introduced in 2.6.30 (8fc0c701), ftrace not present anyway)
+2.6.32-squeeze-security: released (2.6.32-24)

Modified: active/CVE-2010-3310
===================================================================
--- active/CVE-2010-3310	2010-10-07 21:20:37 UTC (rev 1991)
+++ active/CVE-2010-3310	2010-10-08 14:03:15 UTC (rev 1992)
@@ -5,6 +5,7 @@
  http://marc.info/?l=linux-netdev&m=128502238927086&w=2
 Notes:
  jmm> 9828e6e6e3f19efcb476c567b9999891d051f52f
+ jmm> submitted for 2.6.32.x stable
 Bugs:
 upstream: released (2.6.36-rc6)
 2.6.32-upstream-stable: needed

Modified: active/CVE-2010-3705
===================================================================
--- active/CVE-2010-3705	2010-10-07 21:20:37 UTC (rev 1991)
+++ active/CVE-2010-3705	2010-10-08 14:03:15 UTC (rev 1992)
@@ -1,12 +1,13 @@
-Candidate:
+Candidate: CVE-2010-3705
 Description:
  sctp out-of-bounds issue
 References:
  http://marc.info/?l=linux-kernel&m=128596992418814&w=2
+ http://git.kernel.org/?p=linux/kernel/git/davem/net-2.6.git;a=commitdiff;h=51e97a12bef19b7e43199fc153cf9bd5f2140362
 Notes:
 Bugs:
-upstream:
-2.6.32-upstream-stable:
-linux-2.6:
-2.6.26-lenny-security:
-2.6.32-squeeze-security:
+upstream: needed
+2.6.32-upstream-stable: needed
+linux-2.6: needed
+2.6.26-lenny-security: needed
+2.6.32-squeeze-security: needed




More information about the kernel-sec-discuss mailing list