[kernel-sec-discuss] r2943 - active

Ben Hutchings benh at alioth.debian.org
Fri May 10 14:09:26 UTC 2013


Author: benh
Date: 2013-05-10 14:09:04 +0000 (Fri, 10 May 2013)
New Revision: 2943

Added:
   active/CVE-2013-0160
Log:
Add CVE-2013-0160 (Local users can obtain keystroke timing through inotify on ptmx)

Added: active/CVE-2013-0160
===================================================================
--- active/CVE-2013-0160	                        (rev 0)
+++ active/CVE-2013-0160	2013-05-10 14:09:04 UTC (rev 2943)
@@ -0,0 +1,10 @@
+Description: Local users can obtain keystroke timing through inotify on ptmx
+References: http://www.openwall.com/lists/oss-security/2013/01/08/3
+Notes:
+Bugs:
+upstream: pending [b0b885657b6c8ef63a46bc9299b2a7715d19acde, 37b7f3c76595e23257f61bd80b223de8658617ee, b0b885657b6c8ef63a46bc9299b2a7715d19acde]
+2.6.32-upstream-stable:
+sid: released (3.8.12-1)
+3.2-wheezy-security:
+2.6.32-squeeze-security:
+3.2-upstream-stable: pending (3.2.45-rc1) [tty-do-not-update-atime-mtime-on-read-write.patch, tty-fix-atime-mtime-regression.patch, tty-fix-up-atime-mtime-mess-take-three.patch]




More information about the kernel-sec-discuss mailing list