[kernel-sec-discuss] r2730 - active retired

Moritz Muehlenhoff jmm at alioth.debian.org
Tue Jul 31 10:18:28 UTC 2012


Author: jmm
Date: 2012-07-31 10:18:27 +0000 (Tue, 31 Jul 2012)
New Revision: 2730

Added:
   retired/CVE-2012-2137
   retired/CVE-2012-3375
Removed:
   active/CVE-2012-2137
   active/CVE-2012-3375
Log:
retire issues


Deleted: active/CVE-2012-2137
===================================================================
--- active/CVE-2012-2137	2012-07-31 10:17:52 UTC (rev 2729)
+++ active/CVE-2012-2137	2012-07-31 10:18:27 UTC (rev 2730)
@@ -1,10 +0,0 @@
-Description: kvm: buffer overflow in kvm_set_irq()
-References:
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2012-2137
-Notes:
-Bugs:
-upstream: released (3.5-rc2) [f2ebd422f71cda9c791f76f85d2ca102ae34a1ed]
-2.6.32-upstream-stable: N/A "code introduced in 2.6.33"
-sid: released (3.2.20-1)
-2.6.32-squeeze-security: N/A "code introduced in 2.6.33"
-3.2-upstream-stable: released (3.2.24)

Deleted: active/CVE-2012-3375
===================================================================
--- active/CVE-2012-3375	2012-07-31 10:17:52 UTC (rev 2729)
+++ active/CVE-2012-3375	2012-07-31 10:18:27 UTC (rev 2730)
@@ -1,10 +0,0 @@
-Description: epoll: can leak file descriptors when returning  -ELOOP
-References:
-Notes:
- jmm> Introduced in 3.3, but change was backported to 3.2.9
-Bugs:
-upstream: released (3.4) [13d518074a952d33d47c428419693f63389547e9]
-2.6.32-upstream-stable: N/A "Vulnerable code not present"
-sid: released (3.2.23-1)
-2.6.32-squeeze-security: N/A "Vulnerable code not present"
-3.2-upstream-stable: released (3.2.24)

Copied: retired/CVE-2012-2137 (from rev 2729, active/CVE-2012-2137)
===================================================================
--- retired/CVE-2012-2137	                        (rev 0)
+++ retired/CVE-2012-2137	2012-07-31 10:18:27 UTC (rev 2730)
@@ -0,0 +1,10 @@
+Description: kvm: buffer overflow in kvm_set_irq()
+References:
+ https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2012-2137
+Notes:
+Bugs:
+upstream: released (3.5-rc2) [f2ebd422f71cda9c791f76f85d2ca102ae34a1ed]
+2.6.32-upstream-stable: N/A "code introduced in 2.6.33"
+sid: released (3.2.20-1)
+2.6.32-squeeze-security: N/A "code introduced in 2.6.33"
+3.2-upstream-stable: released (3.2.24)


Property changes on: retired/CVE-2012-2137
___________________________________________________________________
Added: svn:mergeinfo
   + 

Copied: retired/CVE-2012-3375 (from rev 2729, active/CVE-2012-3375)
===================================================================
--- retired/CVE-2012-3375	                        (rev 0)
+++ retired/CVE-2012-3375	2012-07-31 10:18:27 UTC (rev 2730)
@@ -0,0 +1,10 @@
+Description: epoll: can leak file descriptors when returning  -ELOOP
+References:
+Notes:
+ jmm> Introduced in 3.3, but change was backported to 3.2.9
+Bugs:
+upstream: released (3.4) [13d518074a952d33d47c428419693f63389547e9]
+2.6.32-upstream-stable: N/A "Vulnerable code not present"
+sid: released (3.2.23-1)
+2.6.32-squeeze-security: N/A "Vulnerable code not present"
+3.2-upstream-stable: released (3.2.24)


Property changes on: retired/CVE-2012-3375
___________________________________________________________________
Added: svn:mergeinfo
   + 




More information about the kernel-sec-discuss mailing list