[kernel-sec-discuss] r2355 - dsa-texts
Dann Frazier
dannf at alioth.debian.org
Sat Jun 18 19:22:11 UTC 2011
Author: dannf
Date: 2011-06-18 19:22:10 +0000 (Sat, 18 Jun 2011)
New Revision: 2355
Modified:
dsa-texts/2.6.26-26lenny3
Log:
remove "new description" markers
Modified: dsa-texts/2.6.26-26lenny3
===================================================================
--- dsa-texts/2.6.26-26lenny3 2011-06-18 14:15:57 UTC (rev 2354)
+++ dsa-texts/2.6.26-26lenny3 2011-06-18 19:22:10 UTC (rev 2355)
@@ -24,7 +24,7 @@
to a privilege escalation, denial of service or information leak. The Common
Vulnerabilities and Exposures project identifies the following problems:
-*CVE-2010-2524
+CVE-2010-2524
David Howells reported an issue in the Common Internet File System (CIFS).
Local users could cause arbitrary CIFS shares to be mounted by introducing
@@ -36,12 +36,12 @@
Amateur Radio AX.25 Level 2 protocol. Local users may obtain access to
sensitive kernel memory.
-*CVE-2010-4075
+CVE-2010-4075
Dan Rosenberg reported an issue in the tty layer that may allow local
users to obtain access to sensitive kernel memory.
-*CVE-2010-4655
+CVE-2010-4655
Kees Cook discovered several issues in the ethtool interface which may
allow local users with the CAP_NET_ADMIN capability to obtain access to
@@ -52,7 +52,7 @@
Jens Kuehnel reported an issue in the InfiniBand stack. Remote attackers can
exploit a race condition to cause a denial of service (kernel panic).
-*CVE-2011-0710
+CVE-2011-0710
Al Viro reported an issue in the /proc/<pid>/status interface on the
s390 architecture. Local users could gain access to sensitive memory
@@ -69,19 +69,19 @@
users could learn the text location of a process, defeating protections
provided by address space layout randomization (ASLR).
-*CVE-2011-1010
+CVE-2011-1010
Timo Warns reported an issue in the Linux support for Mac partition tables.
Local users with physical access could cause a denial of service (panic)
by adding a storage device with a malicious map_count value.
-*CVE-2011-1012
+CVE-2011-1012
Timo Warns reported an issue in the Linux support for Mac partition tables.
Local users with physical access could cause a denial of service (panic)
by adding a storage device with a malicious map_count value.
-*CVE-2011-1017
+CVE-2011-1017
Timo Warns reported an issue in the Linux support for LDM partition tables.
Users with physical access can gain access to sensitive kernel memory or
@@ -110,7 +110,7 @@
filesystems. Local users can exploit this to cause a denial of service
(Oops).
-*CVE-2011-1093
+CVE-2011-1093
Johan Hovold reported an issue in the Datagram Congestion Control Protocol
(DCCP) implementation. Remote users could cause a denial of service by
@@ -179,7 +179,7 @@
Radio X.25 PLP (Rose) protocol. A remote user can cause a denial of service
by providing specially crafted facilities fields.
-*CVE-2011-1577
+CVE-2011-1577
Timo Warns reported an issue in the Linux support for GPT partition tables.
Local users with physical access could cause a denial of service (Oops)
@@ -229,7 +229,7 @@
Remote users can cause a denial of service by sending a packet during module
initialization.
-*CVE-2011-1768
+CVE-2011-1768
Alexecy Dobriyan reported an issue in the IP tunnels implementation.
Remote users can cause a denial of service by sending a packet during
@@ -249,7 +249,7 @@
to missing bounds checking in the AGPIOC_UNBIND ioctl. On default Debian
installations, this is exploitable only by users in the video group.
-*CVE-2011-2182
+CVE-2011-2182
Ben Hutchings reported an issue with the fix for CVE-2011-1017 (see above)
that made it insufficient to resolve the issue.
More information about the kernel-sec-discuss
mailing list