[kernel-sec-discuss] r3128 - active

Ben Hutchings benh at alioth.debian.org
Sun Nov 3 02:27:25 UTC 2013


Author: benh
Date: 2013-11-03 02:27:04 +0000 (Sun, 03 Nov 2013)
New Revision: 3128

Added:
   active/CVE-2013-4348
Log:
Add CVE-2013-4348 to active issues

Added: active/CVE-2013-4348
===================================================================
--- active/CVE-2013-4348	                        (rev 0)
+++ active/CVE-2013-4348	2013-11-03 02:27:04 UTC (rev 3128)
@@ -0,0 +1,12 @@
+Description: Malformed IPIP packet triggers infinite loop in skb_flow_dissect()
+References:
+ https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2013-4348
+ http://marc.info/?l=linux-netdev&m=138328930602180&w=2
+Notes:
+Bugs:
+upstream: pending [6f092343855a71e03b8d209815d8c45bf3a27fcd]
+2.6.32-upstream-stable: N/A "relevant code added in commit ec5efe794628, Linux 3.2-rc1"
+sid: released (3.11.6-2) [bugfix/all/CVE-2013-4348.patch]
+3.2-wheezy-security: pending (3.2.51-1+deb7u1) [bugfix/all/CVE-2013-4348.patch]
+2.6.32-squeeze-security: N/A "relevant code added in commit ec5efe794628, Linux 3.2-rc1"
+3.2-upstream-stable: needed




More information about the kernel-sec-discuss mailing list