[kernel-sec-discuss] r3186 - active retired

Moritz Muehlenhoff jmm at moszumanska.debian.org
Mon Dec 16 08:32:23 UTC 2013


Author: jmm
Date: 2013-12-16 08:31:19 +0000 (Mon, 16 Dec 2013)
New Revision: 3186

Added:
   retired/CVE-2013-2596
   retired/CVE-2013-2851
Removed:
   active/CVE-2013-2596
   active/CVE-2013-2851
Log:
retire


Deleted: active/CVE-2013-2596
===================================================================
--- active/CVE-2013-2596	2013-12-16 07:59:13 UTC (rev 3185)
+++ active/CVE-2013-2596	2013-12-16 08:31:19 UTC (rev 3186)
@@ -1,13 +0,0 @@
-Description:
-References:
- http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-2596
-Notes:
- jmm> The MITRE link has some links to upstream commits in fbdev. We need to figure out, whether
- jmm> this is only exploitable with some Android drivers/setups/circumstances
-Bugs:
-upstream: released (3.9) [fc9bbca8f650e5f738af8806317c0a041a48ae4a, b4cbb197c7e7a68dbad0d491242e3ca67420c13e]
-2.6.32-upstream-stable: ignored "too intrusive to backport"
-sid: released (3.8.11-1)
-3.2-wheezy-security: released (3.2.45-1)
-2.6.32-squeeze-security: ignored "too intrusive to backport"
-3.2-upstream-stable: released (3.2.45) [4d3c99057cd2c18272dbb730cd31f1cd817d7379, fc6b92e0aa98ec9547bf779f4e71c0f259f794f3]

Deleted: active/CVE-2013-2851
===================================================================
--- active/CVE-2013-2851	2013-12-16 07:59:13 UTC (rev 3185)
+++ active/CVE-2013-2851	2013-12-16 08:31:19 UTC (rev 3186)
@@ -1,11 +0,0 @@
-Description: format string issue in block handling
-References:
- http://marc.info/?l=linux-kernel&m=137055204522556&w=2
-Notes:
-Bugs:
-upstream: released (3.11-rc1) [ffc8b30866879ed9ba62bd0a86fecdbd51cd3d19]
-2.6.32-upstream-stable: pending (2.6.32.62)
-sid: released (3.9.8-1)
-3.2-wheezy-security: released (3.2.46-1+deb7u1) [bugfix/all/block-do-not-pass-disk-names-as-format-strings.patch]
-2.6.32-squeeze-security: released (2.6.32-48squeeze4) [bugfix/all/block-do-not-pass-disknames-as-formatstrings.patch]
-3.2-upstream-stable: released (3.2.49)

Copied: retired/CVE-2013-2596 (from rev 3179, active/CVE-2013-2596)
===================================================================
--- retired/CVE-2013-2596	                        (rev 0)
+++ retired/CVE-2013-2596	2013-12-16 08:31:19 UTC (rev 3186)
@@ -0,0 +1,13 @@
+Description:
+References:
+ http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-2596
+Notes:
+ jmm> The MITRE link has some links to upstream commits in fbdev. We need to figure out, whether
+ jmm> this is only exploitable with some Android drivers/setups/circumstances
+Bugs:
+upstream: released (3.9) [fc9bbca8f650e5f738af8806317c0a041a48ae4a, b4cbb197c7e7a68dbad0d491242e3ca67420c13e]
+2.6.32-upstream-stable: ignored "too intrusive to backport"
+sid: released (3.8.11-1)
+3.2-wheezy-security: released (3.2.45-1)
+2.6.32-squeeze-security: ignored "too intrusive to backport"
+3.2-upstream-stable: released (3.2.45) [4d3c99057cd2c18272dbb730cd31f1cd817d7379, fc6b92e0aa98ec9547bf779f4e71c0f259f794f3]


Property changes on: retired/CVE-2013-2596
___________________________________________________________________
Added: svn:mergeinfo
   + 

Copied: retired/CVE-2013-2851 (from rev 3179, active/CVE-2013-2851)
===================================================================
--- retired/CVE-2013-2851	                        (rev 0)
+++ retired/CVE-2013-2851	2013-12-16 08:31:19 UTC (rev 3186)
@@ -0,0 +1,11 @@
+Description: format string issue in block handling
+References:
+ http://marc.info/?l=linux-kernel&m=137055204522556&w=2
+Notes:
+Bugs:
+upstream: released (3.11-rc1) [ffc8b30866879ed9ba62bd0a86fecdbd51cd3d19]
+2.6.32-upstream-stable: pending (2.6.32.62)
+sid: released (3.9.8-1)
+3.2-wheezy-security: released (3.2.46-1+deb7u1) [bugfix/all/block-do-not-pass-disk-names-as-format-strings.patch]
+2.6.32-squeeze-security: released (2.6.32-48squeeze4) [bugfix/all/block-do-not-pass-disknames-as-formatstrings.patch]
+3.2-upstream-stable: released (3.2.49)


Property changes on: retired/CVE-2013-2851
___________________________________________________________________
Added: svn:mergeinfo
   + 




More information about the kernel-sec-discuss mailing list