[kernel-sec-discuss] r3053 - active

Moritz Muehlenhoff jmm at alioth.debian.org
Thu Aug 29 08:10:17 UTC 2013


Author: jmm
Date: 2013-08-29 08:09:56 +0000 (Thu, 29 Aug 2013)
New Revision: 3053

Added:
   active/CVE-2013-2898
   active/CVE-2013-2899
Log:
last two HID issues


Added: active/CVE-2013-2898
===================================================================
--- active/CVE-2013-2898	                        (rev 0)
+++ active/CVE-2013-2898	2013-08-29 08:09:56 UTC (rev 3053)
@@ -0,0 +1,11 @@
+Description: hid-sensor-hub information leak
+References:
+ http://marc.info/?l=linux-input&m=137772191114645&w=1
+Notes:
+Bugs:
+upstream: needed
+2.6.32-upstream-stable: N/A "Introduced in 3.7 with 401ca24fb34aee0cedf9c4fef361e533224f15a1"
+sid: needed
+3.2-wheezy-security: N/A "Introduced in 3.7 with 401ca24fb34aee0cedf9c4fef361e533224f15a1"
+2.6.32-squeeze-security: N/A "Introduced in 3.7 with 401ca24fb34aee0cedf9c4fef361e533224f15a1"
+3.2-upstream-stable: N/A "Introduced in 3.7 with 401ca24fb34aee0cedf9c4fef361e533224f15a1"

Added: active/CVE-2013-2899
===================================================================
--- active/CVE-2013-2899	                        (rev 0)
+++ active/CVE-2013-2899	2013-08-29 08:09:56 UTC (rev 3053)
@@ -0,0 +1,12 @@
+Description: picoLCD NULL deref
+References:
+ http://marc.info/?l=linux-input&m=137772182014614&w=1
+Notes:
+ In Wheezy the source file is hid-picolcd.c
+Bugs:
+upstream: needed
+2.6.32-upstream-stable: N/A "Introduced in 2.6.35 with 236db47c2b3b69464d50c695ab2ddd516cf64520"
+sid: needed
+3.2-wheezy-security: needed
+2.6.32-squeeze-security: N/A "Introduced in 2.6.35 with 236db47c2b3b69464d50c695ab2ddd516cf64520"
+3.2-upstream-stable: needed




More information about the kernel-sec-discuss mailing list