[kernel-sec-discuss] r2485 - active retired

Moritz Muehlenhoff jmm at alioth.debian.org
Wed Sep 7 06:14:17 UTC 2011


Author: jmm
Date: 2011-09-07 06:14:16 +0000 (Wed, 07 Sep 2011)
New Revision: 2485

Added:
   retired/CVE-2011-2700
   retired/CVE-2011-2905
   retired/CVE-2011-2909
   retired/CVE-2011-2918
Removed:
   active/CVE-2011-2700
   active/CVE-2011-2905
   active/CVE-2011-2909
   active/CVE-2011-2918
Log:
retire issues


Deleted: active/CVE-2011-2700
===================================================================
--- active/CVE-2011-2700	2011-09-07 04:58:49 UTC (rev 2484)
+++ active/CVE-2011-2700	2011-09-07 06:14:16 UTC (rev 2485)
@@ -1,9 +0,0 @@
-Description: buffer overflow in si4713 radio driver
-References:
-Notes:
-Bugs:
-upstream: released (3.0) [dc6b845044ccb7e9e6f3b7e71bd179b3cf0223b6]
-2.6.32-upstream-stable: released (2.6.32.44)
-sid: released (3.0.0-1)
-2.6.26-lenny-security: N/A "Driver introduced in 2.6.32"
-2.6.32-squeeze-security: released (2.6.32-35squeeze1) [bugfix/all/si4713-i2c-avoid-potential-buffer-overflow-on-si4713.patch]

Deleted: active/CVE-2011-2905
===================================================================
--- active/CVE-2011-2905	2011-09-07 04:58:49 UTC (rev 2484)
+++ active/CVE-2011-2905	2011-09-07 06:14:16 UTC (rev 2485)
@@ -1,9 +0,0 @@
-Description:
-References:
-Notes:
-Bugs: 632923
-upstream: released (3.1-rc2) [aba8d056078e47350d85b06a9cabd5afcc4b72ea]
-2.6.32-upstream-stable: released (2.6.32.46)
-sid: released (3.0.0-2)
-2.6.26-lenny-security: N/A "perf does not yet exist"
-2.6.32-squeeze-security: released (2.6.32-35squeeze1) [bugfix/all/perf-do-not-look-at-.-config-for-configuration.patch]

Deleted: active/CVE-2011-2909
===================================================================
--- active/CVE-2011-2909	2011-09-07 04:58:49 UTC (rev 2484)
+++ active/CVE-2011-2909	2011-09-07 06:14:16 UTC (rev 2485)
@@ -1,9 +0,0 @@
-Description: comedi: fix infoleak to userspace
-References:
-Notes:
-Bugs:
-upstream: released (3.1-rc1) [819cbb120eaec7e014e5abd029260db1ca8c5735]
-2.6.32-upstream-stable: released (2.6.32.44)
-sid: released (3.0.0-2) [bugfix/all/stable/3.0.1.patch]
-2.6.26-lenny-security: N/A "Vulnerable code not present"
-2.6.32-squeeze-security: released (2.6.32-35squeeze1) [bugfix/all/comedi-fix-infoleak-to-userspace.patch]

Deleted: active/CVE-2011-2918
===================================================================
--- active/CVE-2011-2918	2011-09-07 04:58:49 UTC (rev 2484)
+++ active/CVE-2011-2918	2011-09-07 06:14:16 UTC (rev 2485)
@@ -1,12 +0,0 @@
-Description:
-References:
- https://bugzilla.redhat.com/show_bug.cgi?id=730706                                                                                           
- https://lkml.org/lkml/2011/7/27/337 (reproducer)                                                                                             
- https://lkml.org/lkml/2011/7/28/284 (fix)   
-Notes:
-Bugs:
-upstream: (3.1-rc1) [a8b0ca17b80e92faab46ee7179ba9e99ccb61233]
-2.6.32-upstream-stable: released (2.6.32.44)
-sid: released (3.0.0-2)
-2.6.26-lenny-security: N/A "perf does not yet exist"
-2.6.32-squeeze-security: released (2.6.32-35squeeze1) [bugfix/all/perf-remove-the-nmi-parameter-from-the-swevent-and-overflow-interface.patch]

Copied: retired/CVE-2011-2700 (from rev 2484, active/CVE-2011-2700)
===================================================================
--- retired/CVE-2011-2700	                        (rev 0)
+++ retired/CVE-2011-2700	2011-09-07 06:14:16 UTC (rev 2485)
@@ -0,0 +1,9 @@
+Description: buffer overflow in si4713 radio driver
+References:
+Notes:
+Bugs:
+upstream: released (3.0) [dc6b845044ccb7e9e6f3b7e71bd179b3cf0223b6]
+2.6.32-upstream-stable: released (2.6.32.44)
+sid: released (3.0.0-1)
+2.6.26-lenny-security: N/A "Driver introduced in 2.6.32"
+2.6.32-squeeze-security: released (2.6.32-35squeeze1) [bugfix/all/si4713-i2c-avoid-potential-buffer-overflow-on-si4713.patch]


Property changes on: retired/CVE-2011-2700
___________________________________________________________________
Added: svn:mergeinfo
   + 

Copied: retired/CVE-2011-2905 (from rev 2484, active/CVE-2011-2905)
===================================================================
--- retired/CVE-2011-2905	                        (rev 0)
+++ retired/CVE-2011-2905	2011-09-07 06:14:16 UTC (rev 2485)
@@ -0,0 +1,9 @@
+Description:
+References:
+Notes:
+Bugs: 632923
+upstream: released (3.1-rc2) [aba8d056078e47350d85b06a9cabd5afcc4b72ea]
+2.6.32-upstream-stable: released (2.6.32.46)
+sid: released (3.0.0-2)
+2.6.26-lenny-security: N/A "perf does not yet exist"
+2.6.32-squeeze-security: released (2.6.32-35squeeze1) [bugfix/all/perf-do-not-look-at-.-config-for-configuration.patch]


Property changes on: retired/CVE-2011-2905
___________________________________________________________________
Added: svn:mergeinfo
   + 

Copied: retired/CVE-2011-2909 (from rev 2484, active/CVE-2011-2909)
===================================================================
--- retired/CVE-2011-2909	                        (rev 0)
+++ retired/CVE-2011-2909	2011-09-07 06:14:16 UTC (rev 2485)
@@ -0,0 +1,9 @@
+Description: comedi: fix infoleak to userspace
+References:
+Notes:
+Bugs:
+upstream: released (3.1-rc1) [819cbb120eaec7e014e5abd029260db1ca8c5735]
+2.6.32-upstream-stable: released (2.6.32.44)
+sid: released (3.0.0-2) [bugfix/all/stable/3.0.1.patch]
+2.6.26-lenny-security: N/A "Vulnerable code not present"
+2.6.32-squeeze-security: released (2.6.32-35squeeze1) [bugfix/all/comedi-fix-infoleak-to-userspace.patch]

Copied: retired/CVE-2011-2918 (from rev 2484, active/CVE-2011-2918)
===================================================================
--- retired/CVE-2011-2918	                        (rev 0)
+++ retired/CVE-2011-2918	2011-09-07 06:14:16 UTC (rev 2485)
@@ -0,0 +1,12 @@
+Description:
+References:
+ https://bugzilla.redhat.com/show_bug.cgi?id=730706                                                                                           
+ https://lkml.org/lkml/2011/7/27/337 (reproducer)                                                                                             
+ https://lkml.org/lkml/2011/7/28/284 (fix)   
+Notes:
+Bugs:
+upstream: (3.1-rc1) [a8b0ca17b80e92faab46ee7179ba9e99ccb61233]
+2.6.32-upstream-stable: released (2.6.32.44)
+sid: released (3.0.0-2)
+2.6.26-lenny-security: N/A "perf does not yet exist"
+2.6.32-squeeze-security: released (2.6.32-35squeeze1) [bugfix/all/perf-remove-the-nmi-parameter-from-the-swevent-and-overflow-interface.patch]


Property changes on: retired/CVE-2011-2918
___________________________________________________________________
Added: svn:mergeinfo
   + 




More information about the kernel-sec-discuss mailing list