[kernel-sec-discuss] r2569 - active retired

Moritz Muehlenhoff jmm at alioth.debian.org
Thu Dec 15 14:01:17 UTC 2011


Author: jmm
Date: 2011-12-15 14:01:16 +0000 (Thu, 15 Dec 2011)
New Revision: 2569

Added:
   retired/CVE-2011-4081
Removed:
   active/CVE-2011-4081
Log:
retire


Deleted: active/CVE-2011-4081
===================================================================
--- active/CVE-2011-4081	2011-12-15 14:01:03 UTC (rev 2568)
+++ active/CVE-2011-4081	2011-12-15 14:01:16 UTC (rev 2569)
@@ -1,15 +0,0 @@
-Description: CVE-2011-4081
-References:
- https://bugzilla.redhat.com/show_bug.cgi?id=749475
- https://secunia.com/advisories/46584/
- https://bugs.gentoo.org/show_bug.cgi?id=388581
-Notes:
- Not sure if this is exploitable without AF_ALG sockets.  Upstream
- change was cc'd to stable for 2.6.37+.
- jmm> Submitted for 2.6.32
-Bugs:
-upstream: released (3.1) [7ed47b7d142ec99ad6880bbbec51e9f12b3af74c]
-2.6.32-upstream-stable: N/A "Not exploitable without AF_ALG sockets, confirmed by upstream"
-sid: released (3.0.0-6) [bugfix/all/stable/3.0.8.patch]
-2.6.26-lenny-security: N/A "CRYPTO_GHASH Introduced in 2.6.32"
-2.6.32-squeeze-security: N/A "Not exploitable without AF_ALG sockets, confirmed by upstream"

Copied: retired/CVE-2011-4081 (from rev 2568, active/CVE-2011-4081)
===================================================================
--- retired/CVE-2011-4081	                        (rev 0)
+++ retired/CVE-2011-4081	2011-12-15 14:01:16 UTC (rev 2569)
@@ -0,0 +1,15 @@
+Description: CVE-2011-4081
+References:
+ https://bugzilla.redhat.com/show_bug.cgi?id=749475
+ https://secunia.com/advisories/46584/
+ https://bugs.gentoo.org/show_bug.cgi?id=388581
+Notes:
+ Not sure if this is exploitable without AF_ALG sockets.  Upstream
+ change was cc'd to stable for 2.6.37+.
+ jmm> Submitted for 2.6.32
+Bugs:
+upstream: released (3.1) [7ed47b7d142ec99ad6880bbbec51e9f12b3af74c]
+2.6.32-upstream-stable: N/A "Not exploitable without AF_ALG sockets, confirmed by upstream"
+sid: released (3.0.0-6) [bugfix/all/stable/3.0.8.patch]
+2.6.26-lenny-security: N/A "CRYPTO_GHASH Introduced in 2.6.32"
+2.6.32-squeeze-security: N/A "Not exploitable without AF_ALG sockets, confirmed by upstream"


Property changes on: retired/CVE-2011-4081
___________________________________________________________________
Added: svn:mergeinfo
   + 




More information about the kernel-sec-discuss mailing list