[kernel-sec-discuss] r3164 - active retired

Moritz Muehlenhoff jmm at moszumanska.debian.org
Mon Dec 2 07:44:17 UTC 2013


Author: jmm
Date: 2013-12-02 07:43:13 +0000 (Mon, 02 Dec 2013)
New Revision: 3164

Added:
   retired/CVE-2013-4270
   retired/CVE-2013-6379
Removed:
   active/CVE-2013-4270
   active/CVE-2013-6379
Log:
retire


Deleted: active/CVE-2013-4270
===================================================================
--- active/CVE-2013-4270	2013-12-02 04:20:00 UTC (rev 3163)
+++ active/CVE-2013-4270	2013-12-02 07:43:13 UTC (rev 3164)
@@ -1,11 +0,0 @@
-Description: open O_WRONLY succeeds on some root owned files in /proc for process running with unprivileged EUID
-References:
- https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2013-4270
-Notes:
-Bugs:
-upstream: released (3.12) [2433c8f094a008895e66f25bd1773cdb01c91d01]
-2.6.32-upstream-stable: N/A "Introduced in 3.8 with cff109768b2d9c03095848f4cd4b0754117262aa"
-sid: released (3.11.5-1)
-3.2-wheezy-security: N/A "Introduced in 3.8 with cff109768b2d9c03095848f4cd4b0754117262aa"
-2.6.32-squeeze-security: N/A "Introduced in 3.8 with cff109768b2d9c03095848f4cd4b0754117262aa"
-3.2-upstream-stable: N/A "Introduced in 3.8 with cff109768b2d9c03095848f4cd4b0754117262aa"

Deleted: active/CVE-2013-6379
===================================================================
--- active/CVE-2013-6379	2013-12-02 04:20:00 UTC (rev 3163)
+++ active/CVE-2013-6379	2013-12-02 07:43:13 UTC (rev 3164)
@@ -1,10 +0,0 @@
-Description: ozwpan: prevent overflow in oz_cdev_write()
-References:
-Notes:
-Bugs:
-upstream: released (3.13-rc1) [c2c65cd2e14ada6de44cb527e7f1990bede24e15]
-2.6.32-upstream-stable: N/A "Vulnerable driver not yet present"
-sid: released (3.11.8-1)
-3.2-wheezy-security: N/A "Vulnerable driver not yet present"
-2.6.32-squeeze-security: N/A "Vulnerable driver not yet present"
-3.2-upstream-stable: N/A "Vulnerable driver not yet present"

Copied: retired/CVE-2013-4270 (from rev 3163, active/CVE-2013-4270)
===================================================================
--- retired/CVE-2013-4270	                        (rev 0)
+++ retired/CVE-2013-4270	2013-12-02 07:43:13 UTC (rev 3164)
@@ -0,0 +1,11 @@
+Description: open O_WRONLY succeeds on some root owned files in /proc for process running with unprivileged EUID
+References:
+ https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2013-4270
+Notes:
+Bugs:
+upstream: released (3.12) [2433c8f094a008895e66f25bd1773cdb01c91d01]
+2.6.32-upstream-stable: N/A "Introduced in 3.8 with cff109768b2d9c03095848f4cd4b0754117262aa"
+sid: released (3.11.5-1)
+3.2-wheezy-security: N/A "Introduced in 3.8 with cff109768b2d9c03095848f4cd4b0754117262aa"
+2.6.32-squeeze-security: N/A "Introduced in 3.8 with cff109768b2d9c03095848f4cd4b0754117262aa"
+3.2-upstream-stable: N/A "Introduced in 3.8 with cff109768b2d9c03095848f4cd4b0754117262aa"


Property changes on: retired/CVE-2013-4270
___________________________________________________________________
Added: svn:mergeinfo
   + 

Copied: retired/CVE-2013-6379 (from rev 3163, active/CVE-2013-6379)
===================================================================
--- retired/CVE-2013-6379	                        (rev 0)
+++ retired/CVE-2013-6379	2013-12-02 07:43:13 UTC (rev 3164)
@@ -0,0 +1,10 @@
+Description: ozwpan: prevent overflow in oz_cdev_write()
+References:
+Notes:
+Bugs:
+upstream: released (3.13-rc1) [c2c65cd2e14ada6de44cb527e7f1990bede24e15]
+2.6.32-upstream-stable: N/A "Vulnerable driver not yet present"
+sid: released (3.11.8-1)
+3.2-wheezy-security: N/A "Vulnerable driver not yet present"
+2.6.32-squeeze-security: N/A "Vulnerable driver not yet present"
+3.2-upstream-stable: N/A "Vulnerable driver not yet present"


Property changes on: retired/CVE-2013-6379
___________________________________________________________________
Added: svn:mergeinfo
   + 




More information about the kernel-sec-discuss mailing list