[kernel-sec-discuss] r2255 - active

Dann Frazier dannf at alioth.debian.org
Fri Apr 15 14:30:04 UTC 2011


Author: dannf
Date: 2011-04-15 14:30:01 +0000 (Fri, 15 Apr 2011)
New Revision: 2255

Modified:
   active/CVE-2010-4655
   active/CVE-2011-0710
   active/CVE-2011-0711
   active/CVE-2011-1010
   active/CVE-2011-1012
   active/CVE-2011-1016
   active/CVE-2011-1078
   active/CVE-2011-1079
   active/CVE-2011-1080
   active/CVE-2011-1082
   active/CVE-2011-1090
   active/CVE-2011-1093
   active/CVE-2011-1163
   active/CVE-2011-1170
   active/CVE-2011-1171
   active/CVE-2011-1172
   active/CVE-2011-1173
   active/CVE-2011-1180
Log:
various updates

Modified: active/CVE-2010-4655
===================================================================
--- active/CVE-2010-4655	2011-04-13 17:12:28 UTC (rev 2254)
+++ active/CVE-2010-4655	2011-04-15 14:30:01 UTC (rev 2255)
@@ -9,5 +9,5 @@
 upstream: released (2.6.37) [b00916b189d13a615ff05c9242201135992fcda3]
 2.6.32-upstream-stable: released (2.6.32.25)
 linux-2.6: released (2.6.37-1)
-2.6.26-lenny-security: needed
+2.6.26-lenny-security: pending (2.6.26-26lenny3) [bugfix/all/net-clear-heap-allocations-for-privileged-ethtool-actions.patch]
 2.6.32-squeeze-security: released (2.6.32-27)

Modified: active/CVE-2011-0710
===================================================================
--- active/CVE-2011-0710	2011-04-13 17:12:28 UTC (rev 2254)
+++ active/CVE-2011-0710	2011-04-15 14:30:01 UTC (rev 2255)
@@ -6,5 +6,5 @@
 upstream: released (2.6.38-rc5) [261cd298a8c363d7985e3482946edb4bfedacf98]
 2.6.32-upstream-stable: released (2.6.32.30)
 linux-2.6: released (2.6.37-2)
-2.6.26-lenny-security: needed
+2.6.26-lenny-security: pending (2.6.26-26lenny3) [bugfix/s390/remove-task_show_regs.patch]
 2.6.32-squeeze-security: released (2.6.32-31) [bugfix/s390/remove-task_show_regs.patch]

Modified: active/CVE-2011-0711
===================================================================
--- active/CVE-2011-0711	2011-04-13 17:12:28 UTC (rev 2254)
+++ active/CVE-2011-0711	2011-04-15 14:30:01 UTC (rev 2255)
@@ -6,6 +6,6 @@
 Bugs:
 upstream: released (2.6.38-rc7) [c4d0c3b097f7584772316ee4d64a09fe0e4ddfca]
 2.6.32-upstream-stable: pending (2.6.32.37)
-linux-2.6: released (2.6.38-1) 
-2.6.26-lenny-security: needed 
-2.6.32-squeeze-security: pending (2.6.32.32) [bugfix/all/xfs-prevent-leaking-uninitialized-stack-memory-in-FSGEOMETRY_V1.patch]
+linux-2.6: released (2.6.38-1)
+2.6.26-lenny-security: pending (2.6.26-26lenny3) [bugfix/all/xfs-prevent-leaking-uninitialized-stack-memory-in-FSGEOMETRY_V1.patch, bugfix/all/xfs-zero-proper-structure-size-for-geometry-calls.patch]
+2.6.32-squeeze-security: released (2.6.32-33) [bugfix/all/xfs-prevent-leaking-uninitialized-stack-memory-in-FSGEOMETRY_V1.patch, bugfix/all/xfs-zero-proper-structure-size-for-geometry-calls.patch]

Modified: active/CVE-2011-1010
===================================================================
--- active/CVE-2011-1010	2011-04-13 17:12:28 UTC (rev 2254)
+++ active/CVE-2011-1010	2011-04-15 14:30:01 UTC (rev 2255)
@@ -6,5 +6,5 @@
 upstream: released (2.6.38-rc6) [fa7ea87a057958a8b7926c1a60a3ca6d696328ed]
 2.6.32-upstream-stable: released (2.6.32.30)
 linux-2.6: released (2.6.37-2)
-2.6.26-lenny-security: needed
+2.6.26-lenny-security: pending (2.6.26-26lenny3) [bugfix/all/fs-partitions-Validate-map_count-in-Mac-partition-tables.patch]
 2.6.32-squeeze-security: released (2.6.32-31) [bugfix/all/fs-partitions-Validate-map_count-in-Mac-partition-ta.patch]

Modified: active/CVE-2011-1012
===================================================================
--- active/CVE-2011-1012	2011-04-13 17:12:28 UTC (rev 2254)
+++ active/CVE-2011-1012	2011-04-15 14:30:01 UTC (rev 2255)
@@ -7,5 +7,5 @@
 upstream: released (2.6.38-rc7) [294f6cf48666825d23c9372ef37631232746e40d]
 2.6.32-upstream-stable: released (2.6.32.30)
 linux-2.6: released (2.6.38-1)
-2.6.26-lenny-security: 
+2.6.26-lenny-security: pending (2.6.26-26lenny3) [bugfix/all/fs-partitions-Validate-map_count-in-Mac-partition-tables.patch]
 2.6.32-squeeze-security: released (2.6.32-31) [bugfix/all/stable/2.6.32.30.patch]

Modified: active/CVE-2011-1016
===================================================================
--- active/CVE-2011-1016	2011-04-13 17:12:28 UTC (rev 2254)
+++ active/CVE-2011-1016	2011-04-15 14:30:01 UTC (rev 2255)
@@ -6,5 +6,5 @@
 upstream: released (2.6.38-rc5) [45e4039c3aea597ede44a264cea322908cdedfe9, fff1ce4dc6113b6fdc4e3a815ca5fd229408f8ef]
 2.6.32-upstream-stable: 
 linux-2.6: released (2.6.38-1)
-2.6.26-lenny-security:
+2.6.26-lenny-security: "needs port"
 2.6.32-squeeze-security: pending (2.6.32-32) [bugfix/all/drm-radeon-kms-check-aa-resolve-registers-on-r300.patch, bugfix/all/drm-radeon-fix-regression-with-aa-resolve-checking.patch]

Modified: active/CVE-2011-1078
===================================================================
--- active/CVE-2011-1078	2011-04-13 17:12:28 UTC (rev 2254)
+++ active/CVE-2011-1078	2011-04-15 14:30:01 UTC (rev 2255)
@@ -7,5 +7,5 @@
 upstream: released (2.6.39-rc1) [c4c896e1471aec3b004a693c689f60be3b17ac86]
 2.6.32-upstream-stable: pending (2.6.32.37)
 linux-2.6: needed
-2.6.26-lenny-security: needed
+2.6.26-lenny-security: pending (2.6.26-26lenny3) [bugfix/all/bluetooth-sco-fix-information-leak-to-userspace.patch]
 2.6.32-squeeze-security: pending (2.6.32-32) [bugfix/all/bluetooth-sco-fix-information-leak-to-userspace.patch]

Modified: active/CVE-2011-1079
===================================================================
--- active/CVE-2011-1079	2011-04-13 17:12:28 UTC (rev 2254)
+++ active/CVE-2011-1079	2011-04-15 14:30:01 UTC (rev 2255)
@@ -7,5 +7,5 @@
 upstream: released (2.6.39-rc1) [43629f8f5ea32a998d06d1bb41eefa0e821ff573]
 2.6.32-upstream-stable: pending (2.6.32.37)
 linux-2.6: needed
-2.6.26-lenny-security: needed
-2.6.32-squeeze-security: pending (2.6.32-32) [bugfix/all/bluetooth-bnep-fix-buffer-overflow.patch]
+2.6.26-lenny-security: pending (2.6.26-26lenny3) [bugfix/all/bluetooth-bnep-fix-buffer-overflow.patch]
+2.6.32-squeeze-security: released (2.6.32-32) [bugfix/all/bluetooth-bnep-fix-buffer-overflow.patch]

Modified: active/CVE-2011-1080
===================================================================
--- active/CVE-2011-1080	2011-04-13 17:12:28 UTC (rev 2254)
+++ active/CVE-2011-1080	2011-04-15 14:30:01 UTC (rev 2255)
@@ -6,5 +6,5 @@
 upstream: released (2.6.39-rc1) [d846f71195d57b0bbb143382647c2c6638b04c5a]
 2.6.32-upstream-stable: pending (2.6.32.37)
 linux-2.6: needed
-2.6.26-lenny-security: needed
+2.6.26-lenny-security: pending (2.6.26-26lenny3) [bugfix/all/bridge-netfilter-fix-information-leak.patch]
 2.6.32-squeeze-security: pending (2.6.32-32) [bugfix/all/bridge-netfilter-fix-information-leak.patch]

Modified: active/CVE-2011-1082
===================================================================
--- active/CVE-2011-1082	2011-04-13 17:12:28 UTC (rev 2254)
+++ active/CVE-2011-1082	2011-04-15 14:30:01 UTC (rev 2255)
@@ -6,5 +6,5 @@
 upstream: released (2.6.38-rc7) [22bacca48a1755f79b7e0f192ddb9fbb7fc6e64e]
 2.6.32-upstream-stable: released (2.6.32.30)
 linux-2.6: released (2.6.38-1)
-2.6.26-lenny-security:
+2.6.26-lenny-security: "needs port"
 2.6.32-squeeze-security: released (2.6.32-31)

Modified: active/CVE-2011-1090
===================================================================
--- active/CVE-2011-1090	2011-04-13 17:12:28 UTC (rev 2254)
+++ active/CVE-2011-1090	2011-04-15 14:30:01 UTC (rev 2255)
@@ -6,5 +6,5 @@
 upstream: released (2.6.38-rc8) [e9e3d724e2145f5039b423c290ce2b2c3d8f94bc]
 2.6.32-upstream-stable: needed
 linux-2.6: released (2.6.38-1)
-2.6.26-lenny-security: needed
-2.6.32-squeeze-security: pending (2.6.32-32) [bugfix/all/nfs4-ensure-that-acl-pages-sent-over-nfs-were-not-allocated-from-the-slab.patch, bugfix/all/nfs4-ensure-that-acl-pages-sent-over-nfs-were-not-allocated-from-the-slab-compilation-warning.patch]
+2.6.26-lenny-security: pending (2.6.26-26lenny3) [bugfix/all/nfs4-ensure-that-acl-pages-sent-over-nfs-were-not-allocated-from-the-slab.patch, bugfix/all/nfs4-ensure-that-acl-pages-sent-over-nfs-were-not-allocated-from-the-slab-compilation-warning.patch]
+2.6.32-squeeze-security: released (2.6.32-32) [bugfix/all/nfs4-ensure-that-acl-pages-sent-over-nfs-were-not-allocated-from-the-slab.patch, bugfix/all/nfs4-ensure-that-acl-pages-sent-over-nfs-were-not-allocated-from-the-slab-compilation-warning.patch]

Modified: active/CVE-2011-1093
===================================================================
--- active/CVE-2011-1093	2011-04-13 17:12:28 UTC (rev 2254)
+++ active/CVE-2011-1093	2011-04-15 14:30:01 UTC (rev 2255)
@@ -6,5 +6,5 @@
 upstream: released (2.6.38) [720dc34bbbe9493c7bd48b2243058b4e447a929d]
 2.6.32-upstream-stable: released (2.6.32.32)
 linux-2.6: released (2.6.38-1)
-2.6.26-lenny-security: needed
+2.6.26-lenny-security: pending (2.6.26-26lenny3) [bugfix/all/dccp-fix-oops-on-Reset-after-close.patch]
 2.6.32-squeeze-security: released (2.6.32-31)

Modified: active/CVE-2011-1163
===================================================================
--- active/CVE-2011-1163	2011-04-13 17:12:28 UTC (rev 2254)
+++ active/CVE-2011-1163	2011-04-15 14:30:01 UTC (rev 2255)
@@ -7,5 +7,5 @@
 upstream: released (2.6.38) [34d211a2d5df4984a35b18d8ccacbe1d10abb067, 1eafbfeb7bdf59cfe173304c76188f3fd5f1fd05]
 2.6.32-upstream-stable: needed
 linux-2.6: released (2.6.38-1)
-2.6.26-lenny-security: needed
+2.6.26-lenny-security: pending (2.6.26-26lenny3) [bugfix/all/fix-corrupted-osf-partition-parsing.patch, bugfix/all/increase-osf-partition-limit-from-8-to-18.patch]
 2.6.32-squeeze-security: pending (2.6.32-32) [bugfix/all/fix-corrupted-osf-partition-parsing.patch, bugfix/all/increase-osf-partition-limit-from-8-to-18.patch]

Modified: active/CVE-2011-1170
===================================================================
--- active/CVE-2011-1170	2011-04-13 17:12:28 UTC (rev 2254)
+++ active/CVE-2011-1170	2011-04-15 14:30:01 UTC (rev 2255)
@@ -8,5 +8,5 @@
 upstream: released (2.6.39-rc1) [42eab94fff18cb1091d3501cd284d6bd6cc9c143]
 2.6.32-upstream-stable: pending (2.6.32.37)
 linux-2.6: needed
-2.6.26-lenny-security: needed
+2.6.26-lenny-security: pending (2.6.26-26lenny3) [bugfix/all/netfilter-arp_tables-fix-infoleak-to-userspace.patch]
 2.6.32-squeeze-security: pending (2.6.32-32) [bugfix/all/netfilter-arp_tables-fix-infoleak-to-userspace.patch]

Modified: active/CVE-2011-1171
===================================================================
--- active/CVE-2011-1171	2011-04-13 17:12:28 UTC (rev 2254)
+++ active/CVE-2011-1171	2011-04-15 14:30:01 UTC (rev 2255)
@@ -8,5 +8,5 @@
 upstream: released (2.6.39-rc1) [78b79876761b86653df89c48a7010b5cbd41a84a]
 2.6.32-upstream-stable: pending (2.6.32.37)
 linux-2.6: needed
-2.6.26-lenny-security: needed
+2.6.26-lenny-security: pending (2.6.26-26lenny3) [bugfix/all/netfilter-ip_tables-fix-infoleak-to-userspace.patch]
 2.6.32-squeeze-security: pending (2.6.32-32) [bugfix/all/netfilter-ip_tables-fix-infoleak-to-userspace.patch]

Modified: active/CVE-2011-1172
===================================================================
--- active/CVE-2011-1172	2011-04-13 17:12:28 UTC (rev 2254)
+++ active/CVE-2011-1172	2011-04-15 14:30:01 UTC (rev 2255)
@@ -8,5 +8,5 @@
 upstream: released (2.6.39-rc1) [6a8ab060779779de8aea92ce3337ca348f973f54]
 2.6.32-upstream-stable: pending (2.6.32.37)
 linux-2.6:
-2.6.26-lenny-security:
-2.6.32-squeeze-security: pending (2.6.32-32) [bugfix/all/ipv6-netfilter-ip6_tables-fix-infoleak-to-userspace.patch]
+2.6.26-lenny-security: pending (2.6.26-26lenny3) [bugfix/all/ipv6-netfilter-ip6_tables-fix-infoleak-to-userspace.patch]
+2.6.32-squeeze-security: released (2.6.32-32) [bugfix/all/ipv6-netfilter-ip6_tables-fix-infoleak-to-userspace.patch]

Modified: active/CVE-2011-1173
===================================================================
--- active/CVE-2011-1173	2011-04-13 17:12:28 UTC (rev 2254)
+++ active/CVE-2011-1173	2011-04-15 14:30:01 UTC (rev 2255)
@@ -8,5 +8,5 @@
 upstream: released (2.6.39-rc1) [67c5c6cb8129c595f21e88254a3fc6b3b841ae8e]
 2.6.32-upstream-stable: pending (2.6.32.37)
 linux-2.6: needed
-2.6.26-lenny-security: needed
-2.6.32-squeeze-security: pending (2.6.32-32) [bugfix/all/econet-4-byte-infoleak-to-the-network.patch]
+2.6.26-lenny-security: pending (2.6.26-26lenny3) [bugfix/all/econet-4-byte-infoleak-to-the-network.patch]
+2.6.32-squeeze-security: released (2.6.32-32) [bugfix/all/econet-4-byte-infoleak-to-the-network.patch]

Modified: active/CVE-2011-1180
===================================================================
--- active/CVE-2011-1180	2011-04-13 17:12:28 UTC (rev 2254)
+++ active/CVE-2011-1180	2011-04-15 14:30:01 UTC (rev 2255)
@@ -4,8 +4,8 @@
  http://marc.info/?l=linux-netdev&m=130067113628164&w=2
 Notes:
 Bugs:
-upstream: needed
+upstream: released (2.6.39-rc1) [d370af0ef7951188daeb15bae75db7ba57c67846]
 2.6.32-upstream-stable: needed
 linux-2.6: needed
-2.6.26-lenny-security: needed
-2.6.32-squeeze-security: released (2.6.32-33)
+2.6.26-lenny-security: pending (2.6.26-26lenny3) [bugfix/all/irda-validate-peer-name-and-attribute-lengths.patch]
+2.6.32-squeeze-security: released (2.6.32-33) [bugfix/all/irda-validate-peer-name-and-attribute-lengths.patch]




More information about the kernel-sec-discuss mailing list