[kernel-sec-discuss] r3315 - active

Ben Hutchings benh at moszumanska.debian.org
Wed Apr 16 13:02:17 UTC 2014


Author: benh
Date: 2014-04-16 13:02:17 +0000 (Wed, 16 Apr 2014)
New Revision: 3315

Modified:
   active/CVE-2014-2851
Log:
Mark CVE-2014-2851 as not affecting 2.6.32/squeeze

Modified: active/CVE-2014-2851
===================================================================
--- active/CVE-2014-2851	2014-04-16 13:01:56 UTC (rev 3314)
+++ active/CVE-2014-2851	2014-04-16 13:02:17 UTC (rev 3315)
@@ -3,10 +3,11 @@
  https://lkml.org/lkml/2014/4/10/736
 Notes:
  raphael: Appears to have been introduced with the support for IPPROTO_ICMP in 3.0-rc1
+ bwh> This doesn't seem very serious as by default no-one can create ping sockets
 Bugs:
 upstream: needed
-2.6.32-upstream-stable:
+2.6.32-upstream-stable: N/A "Vulnerable code not present"
 sid:
 3.2-wheezy-security:
-2.6.32-squeeze-security:
+2.6.32-squeeze-security: N/A "Vulnerable code not present"
 3.2-upstream-stable:




More information about the kernel-sec-discuss mailing list