[kernel-sec-discuss] r3012 - active

Moritz Muehlenhoff jmm at alioth.debian.org
Fri Jul 5 10:06:00 UTC 2013


Author: jmm
Date: 2013-07-05 10:05:39 +0000 (Fri, 05 Jul 2013)
New Revision: 3012

Modified:
   active/CVE-2013-1059
   active/CVE-2013-2140
   active/CVE-2013-2147
   active/CVE-2013-2148
   active/CVE-2013-2164
   active/CVE-2013-2851
Log:
update upstream status of several issues


Modified: active/CVE-2013-1059
===================================================================
--- active/CVE-2013-1059	2013-07-04 05:24:36 UTC (rev 3011)
+++ active/CVE-2013-1059	2013-07-05 10:05:39 UTC (rev 3012)
@@ -4,7 +4,7 @@
  https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2013-1059
 Notes:
 Bugs:
-upstream: needed
+upstream: needed "no fix merged as of 2013-07-05"
 2.6.32-upstream-stable: N/A "ceph was introduced in 2.6.34"
 sid: needed
 3.2-wheezy-security: needed

Modified: active/CVE-2013-2140
===================================================================
--- active/CVE-2013-2140	2013-07-04 05:24:36 UTC (rev 3011)
+++ active/CVE-2013-2140	2013-07-05 10:05:39 UTC (rev 3012)
@@ -3,7 +3,7 @@
  http://seclists.org/oss-sec/2013/q2/att-488/0001-xen-blkback-Check-device-permissions-before-allowing.patch
 Notes:
 Bugs:
-upstream: needed
+upstream: needed "no fix merged as of 2013-07-05"
 2.6.32-upstream-stable: N/A "Vulnerable code not present"
 sid: needed
 3.2-wheezy-security: N/A "Vulnerable code not present"

Modified: active/CVE-2013-2147
===================================================================
--- active/CVE-2013-2147	2013-07-04 05:24:36 UTC (rev 3011)
+++ active/CVE-2013-2147	2013-07-05 10:05:39 UTC (rev 3012)
@@ -4,7 +4,7 @@
  https://lkml.org/lkml/2013/6/3/127
 Notes:
 Bugs:
-upstream: needed
+upstream: needed "no fix merged as of 2013-07-05"
 2.6.32-upstream-stable: needed
 sid: needed
 3.2-wheezy-security: needed

Modified: active/CVE-2013-2148
===================================================================
--- active/CVE-2013-2148	2013-07-04 05:24:36 UTC (rev 3011)
+++ active/CVE-2013-2148	2013-07-05 10:05:39 UTC (rev 3012)
@@ -3,7 +3,7 @@
  https://lkml.org/lkml/2013/6/3/128
 Notes:
 Bugs: 
-upstream: needed
+upstream: needed "no fix merged as of 2013-07-05"
 2.6.32-upstream-stable: N/A "fanotify introduced in 2.6.36"
 sid: released (3.9.8-1)
 3.2-wheezy-security: needed

Modified: active/CVE-2013-2164
===================================================================
--- active/CVE-2013-2164	2013-07-04 05:24:36 UTC (rev 3011)
+++ active/CVE-2013-2164	2013-07-05 10:05:39 UTC (rev 3012)
@@ -4,7 +4,7 @@
  http://git.kernel.org/cgit/linux/kernel/git/next/linux-next.git/commit/drivers/cdrom/cdrom.c?id=050e4b8fb7cdd7096c987a9cd556029c622c7fe2
 Notes:
 Bugs:
-upstream: needed
+upstream: pending [542db01579fbb7ea7d1f7bb9ddcef1559df660b2]
 2.6.32-upstream-stable: needed
 sid: released (3.9.8-1)
 3.2-wheezy-security: needed

Modified: active/CVE-2013-2851
===================================================================
--- active/CVE-2013-2851	2013-07-04 05:24:36 UTC (rev 3011)
+++ active/CVE-2013-2851	2013-07-05 10:05:39 UTC (rev 3012)
@@ -3,7 +3,7 @@
  http://marc.info/?l=linux-kernel&m=137055204522556&w=2
 Notes:
 Bugs:
-upstream: needed
+upstream: pending [ffc8b30866879ed9ba62bd0a86fecdbd51cd3d19]
 2.6.32-upstream-stable: needed
 sid: released (3.9.8-1)
 3.2-wheezy-security: needed




More information about the kernel-sec-discuss mailing list