[kernel-sec-discuss] r1972 - active

Michael Gilbert gilbert-guest at alioth.debian.org
Thu Sep 23 01:08:39 UTC 2010


Author: gilbert-guest
Date: 2010-09-23 01:08:25 +0000 (Thu, 23 Sep 2010)
New Revision: 1972

Added:
   active/CVE-2010-3067
   active/CVE-2010-3477
Log:
new issues

Added: active/CVE-2010-3067
===================================================================
--- active/CVE-2010-3067	                        (rev 0)
+++ active/CVE-2010-3067	2010-09-23 01:08:25 UTC (rev 1972)
@@ -0,0 +1,11 @@
+Candidate: cve-2010-3067
+Description: fs/aio.c integer overflow
+References:
+ http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3067
+Notes:
+Bugs:
+upstream: released (2.6.36-rc5) [75e1c70f]
+2.6.32-upstream-stable: needed
+linux-2.6: needed
+2.6.26-lenny-security: needed
+2.6.32-squeeze-security: needed

Added: active/CVE-2010-3477
===================================================================
--- active/CVE-2010-3477	                        (rev 0)
+++ active/CVE-2010-3477	2010-09-23 01:08:25 UTC (rev 1972)
@@ -0,0 +1,12 @@
+Candidate: cve-2010-3477
+Description: net/sched infoleak
+References:
+ http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3477
+Notes:
+ addresses incomplete fix for cve-2010-2942
+Bugs:
+upstream: released (2.6.36-rc4) [0f04cfd0]
+2.6.32-upstream-stable: needed
+linux-2.6: needed
+2.6.26-lenny-security: needed
+2.6.32-squeeze-security: needed




More information about the kernel-sec-discuss mailing list