[kernel-sec-discuss] r2370 - active retired

Moritz Muehlenhoff jmm at alioth.debian.org
Mon Jun 20 08:58:10 UTC 2011


Author: jmm
Date: 2011-06-20 08:58:10 +0000 (Mon, 20 Jun 2011)
New Revision: 2370

Added:
   retired/CVE-2011-1172
   retired/CVE-2011-1173
   retired/CVE-2011-1180
   retired/CVE-2011-1182
Removed:
   active/CVE-2011-1172
   active/CVE-2011-1173
   active/CVE-2011-1180
   active/CVE-2011-1182
Log:
retire issues


Deleted: active/CVE-2011-1172
===================================================================
--- active/CVE-2011-1172	2011-06-20 08:57:54 UTC (rev 2369)
+++ active/CVE-2011-1172	2011-06-20 08:58:10 UTC (rev 2370)
@@ -1,12 +0,0 @@
-Candidate: CVE-2011-1172
-Description:
-References:
- https://bugzilla.redhat.com/CVE-2011-1172
- http://git.kernel.org/?p=linux/kernel/git/kaber/nf-next-2.6.git;a=commitdiff;h=6a8ab060779779de8aea92ce3337ca348f973f54
-Notes:
-Bugs:
-upstream: released (2.6.39-rc1) [6a8ab060779779de8aea92ce3337ca348f973f54]
-2.6.32-upstream-stable: released (2.6.32.37)
-sid: released (2.6.38-4) [bugfix/all/stable/2.6.38.3.patch]
-2.6.26-lenny-security: released (2.6.26-26lenny3) [bugfix/all/ipv6-netfilter-ip6_tables-fix-infoleak-to-userspace.patch]
-2.6.32-squeeze-security: released (2.6.32-32) [bugfix/all/ipv6-netfilter-ip6_tables-fix-infoleak-to-userspace.patch]

Deleted: active/CVE-2011-1173
===================================================================
--- active/CVE-2011-1173	2011-06-20 08:57:54 UTC (rev 2369)
+++ active/CVE-2011-1173	2011-06-20 08:58:10 UTC (rev 2370)
@@ -1,12 +0,0 @@
-Candidate: CVE-2011-1173
-Description:
-References:
- https://bugzilla.redhat.com/show_bug.cgi?id=591815#c14
- http://git.kernel.org/?p=linux/kernel/git/davem/net-2.6.git;a=commitdiff;h=67c5c6cb8129c595f21e88254a3fc6b3b841ae8e
-Notes:
-Bugs:
-upstream: released (2.6.39-rc1) [67c5c6cb8129c595f21e88254a3fc6b3b841ae8e]
-2.6.32-upstream-stable: released (2.6.32.37)
-sid: released (2.6.38-4) [bugfix/all/stable/2.6.38.3.patch]
-2.6.26-lenny-security: released (2.6.26-26lenny3) [bugfix/all/econet-4-byte-infoleak-to-the-network.patch]
-2.6.32-squeeze-security: released (2.6.32-32) [bugfix/all/econet-4-byte-infoleak-to-the-network.patch]

Deleted: active/CVE-2011-1180
===================================================================
--- active/CVE-2011-1180	2011-06-20 08:57:54 UTC (rev 2369)
+++ active/CVE-2011-1180	2011-06-20 08:58:10 UTC (rev 2370)
@@ -1,11 +0,0 @@
-Candidate: CVE-2011-1180
-Description: irda: validate peer name and attribute lengths
-References:
- http://marc.info/?l=linux-netdev&m=130067113628164&w=2
-Notes:
-Bugs:
-upstream: released (2.6.39-rc1) [d370af0ef7951188daeb15bae75db7ba57c67846]
-2.6.32-upstream-stable: released (2.6.32.37)
-sid: released (2.6.38-4) [bugfix/all/stable/2.6.38.3.patch]
-2.6.26-lenny-security: released (2.6.26-26lenny3) [bugfix/all/irda-validate-peer-name-and-attribute-lengths.patch]
-2.6.32-squeeze-security: released (2.6.32-33) [bugfix/all/irda-validate-peer-name-and-attribute-lengths.patch]

Deleted: active/CVE-2011-1182
===================================================================
--- active/CVE-2011-1182	2011-06-20 08:57:54 UTC (rev 2369)
+++ active/CVE-2011-1182	2011-06-20 08:58:10 UTC (rev 2370)
@@ -1,11 +0,0 @@
-Candidate: CVE-2011-1182
-Description: signal spoofing
-References:
- http://seclists.org/oss-sec/2011/q1/593
-Notes:
-Bugs:
-upstream: released (2.6.39-rc1) [da48524eb20662618854bb3df2db01fc65f3070c]
-2.6.32-upstream-stable: released (2.6.32.36) [62a9fca67f7f5838894306ad5ab65af911dc0dfd]
-sid: released (2.6.38-2) [bugfix/all/stable/2.6.38.2.patch]
-2.6.26-lenny-security: released (2.6.26-26lenny3) [bugfix/x86/prevent-rt_sigqueueinfo-and-rt_tgsigqueueinfo-from-spoofing-the-signal-code.patch, bugfix/x86/prevent-rt_sigqueueinfo-and-rt_tgsigqueueinfo-from-spoofing-the-signal-code-regression.patch]
-2.6.32-squeeze-security: released (2.6.32-32) [bugfix/all/stable/2.6.32.36.patch]

Copied: retired/CVE-2011-1172 (from rev 2369, active/CVE-2011-1172)
===================================================================
--- retired/CVE-2011-1172	                        (rev 0)
+++ retired/CVE-2011-1172	2011-06-20 08:58:10 UTC (rev 2370)
@@ -0,0 +1,12 @@
+Candidate: CVE-2011-1172
+Description:
+References:
+ https://bugzilla.redhat.com/CVE-2011-1172
+ http://git.kernel.org/?p=linux/kernel/git/kaber/nf-next-2.6.git;a=commitdiff;h=6a8ab060779779de8aea92ce3337ca348f973f54
+Notes:
+Bugs:
+upstream: released (2.6.39-rc1) [6a8ab060779779de8aea92ce3337ca348f973f54]
+2.6.32-upstream-stable: released (2.6.32.37)
+sid: released (2.6.38-4) [bugfix/all/stable/2.6.38.3.patch]
+2.6.26-lenny-security: released (2.6.26-26lenny3) [bugfix/all/ipv6-netfilter-ip6_tables-fix-infoleak-to-userspace.patch]
+2.6.32-squeeze-security: released (2.6.32-32) [bugfix/all/ipv6-netfilter-ip6_tables-fix-infoleak-to-userspace.patch]


Property changes on: retired/CVE-2011-1172
___________________________________________________________________
Added: svn:mergeinfo
   + 

Copied: retired/CVE-2011-1173 (from rev 2369, active/CVE-2011-1173)
===================================================================
--- retired/CVE-2011-1173	                        (rev 0)
+++ retired/CVE-2011-1173	2011-06-20 08:58:10 UTC (rev 2370)
@@ -0,0 +1,12 @@
+Candidate: CVE-2011-1173
+Description:
+References:
+ https://bugzilla.redhat.com/show_bug.cgi?id=591815#c14
+ http://git.kernel.org/?p=linux/kernel/git/davem/net-2.6.git;a=commitdiff;h=67c5c6cb8129c595f21e88254a3fc6b3b841ae8e
+Notes:
+Bugs:
+upstream: released (2.6.39-rc1) [67c5c6cb8129c595f21e88254a3fc6b3b841ae8e]
+2.6.32-upstream-stable: released (2.6.32.37)
+sid: released (2.6.38-4) [bugfix/all/stable/2.6.38.3.patch]
+2.6.26-lenny-security: released (2.6.26-26lenny3) [bugfix/all/econet-4-byte-infoleak-to-the-network.patch]
+2.6.32-squeeze-security: released (2.6.32-32) [bugfix/all/econet-4-byte-infoleak-to-the-network.patch]


Property changes on: retired/CVE-2011-1173
___________________________________________________________________
Added: svn:mergeinfo
   + 

Copied: retired/CVE-2011-1180 (from rev 2369, active/CVE-2011-1180)
===================================================================
--- retired/CVE-2011-1180	                        (rev 0)
+++ retired/CVE-2011-1180	2011-06-20 08:58:10 UTC (rev 2370)
@@ -0,0 +1,11 @@
+Candidate: CVE-2011-1180
+Description: irda: validate peer name and attribute lengths
+References:
+ http://marc.info/?l=linux-netdev&m=130067113628164&w=2
+Notes:
+Bugs:
+upstream: released (2.6.39-rc1) [d370af0ef7951188daeb15bae75db7ba57c67846]
+2.6.32-upstream-stable: released (2.6.32.37)
+sid: released (2.6.38-4) [bugfix/all/stable/2.6.38.3.patch]
+2.6.26-lenny-security: released (2.6.26-26lenny3) [bugfix/all/irda-validate-peer-name-and-attribute-lengths.patch]
+2.6.32-squeeze-security: released (2.6.32-33) [bugfix/all/irda-validate-peer-name-and-attribute-lengths.patch]


Property changes on: retired/CVE-2011-1180
___________________________________________________________________
Added: svn:mergeinfo
   + 

Copied: retired/CVE-2011-1182 (from rev 2369, active/CVE-2011-1182)
===================================================================
--- retired/CVE-2011-1182	                        (rev 0)
+++ retired/CVE-2011-1182	2011-06-20 08:58:10 UTC (rev 2370)
@@ -0,0 +1,11 @@
+Candidate: CVE-2011-1182
+Description: signal spoofing
+References:
+ http://seclists.org/oss-sec/2011/q1/593
+Notes:
+Bugs:
+upstream: released (2.6.39-rc1) [da48524eb20662618854bb3df2db01fc65f3070c]
+2.6.32-upstream-stable: released (2.6.32.36) [62a9fca67f7f5838894306ad5ab65af911dc0dfd]
+sid: released (2.6.38-2) [bugfix/all/stable/2.6.38.2.patch]
+2.6.26-lenny-security: released (2.6.26-26lenny3) [bugfix/x86/prevent-rt_sigqueueinfo-and-rt_tgsigqueueinfo-from-spoofing-the-signal-code.patch, bugfix/x86/prevent-rt_sigqueueinfo-and-rt_tgsigqueueinfo-from-spoofing-the-signal-code-regression.patch]
+2.6.32-squeeze-security: released (2.6.32-32) [bugfix/all/stable/2.6.32.36.patch]


Property changes on: retired/CVE-2011-1182
___________________________________________________________________
Added: svn:mergeinfo
   + 




More information about the kernel-sec-discuss mailing list