[kernel-sec-discuss] r3325 - dsa-texts

Dann Frazier dannf at moszumanska.debian.org
Thu Apr 24 23:46:49 UTC 2014


Author: dannf
Date: 2014-04-24 23:46:49 +0000 (Thu, 24 Apr 2014)
New Revision: 3325

Modified:
   dsa-texts/2.6.32-48squeeze5
Log:
Drop mention of CVE-2013-4511; it only appears to affect drivers we don't
build, and our fix isn't sufficient to fix the issue for someone building
from our linux-source.


Modified: dsa-texts/2.6.32-48squeeze5
===================================================================
--- dsa-texts/2.6.32-48squeeze5	2014-04-24 23:38:25 UTC (rev 3324)
+++ dsa-texts/2.6.32-48squeeze5	2014-04-24 23:46:49 UTC (rev 3325)
@@ -9,12 +9,12 @@
 Problem type   : local/remote
 Debian-specific: no
 CVE Id(s)      : CVE-2013-0343 CVE-2013-2147 CVE-2013-2889 CVE-2013-2893
-                 CVE-2013-4162 CVE-2013-4299 CVE-2013-4345 CVE-2013-4511
-                 CVE-2013-4512 CVE-2013-4587 CVE-2013-6367 CVE-2013-6380
-                 CVE-2013-6381 CVE-2013-6382 CVE-2013-6383 CVE-2013-7263
-                 CVE-2013-7264 CVE-2013-7265 CVE-2013-7339 CVE-2014-0101
-                 CVE-2014-1444 CVE-2014-1445 CVE-2014-1446 CVE-2014-1874
-                 CVE-2014-2039 CVE-2014-2523 CVE-2103-2929
+                 CVE-2013-4162 CVE-2013-4299 CVE-2013-4345 CVE-2013-4512
+                 CVE-2013-4587 CVE-2013-6367 CVE-2013-6380 CVE-2013-6381
+                 CVE-2013-6382 CVE-2013-6383 CVE-2013-7263 CVE-2013-7264
+                 CVE-2013-7265 CVE-2013-7339 CVE-2014-0101 CVE-2014-1444
+                 CVE-2014-1445 CVE-2014-1446 CVE-2014-1874 CVE-2014-2039
+                 CVE-2014-2523 CVE-2103-2929
 
 Several vulnerabilities have been discovered in the Linux kernel that may lead
 to a denial of service, information leak or privilege escalation. The Common
@@ -66,11 +66,6 @@
     Stephan Mueller found in bug in the ANSI pseudo random number generator
     which could lead to the use of less entropy than expected.
 
-CVE-2013-4511
-
-    XXX PATCH IS MISSING CODE CHANGES TO au1[1,2]00fb.c - not sure this is
-    fixed.
-
 CVE-2013-4512
 
     Nico Golde and Fabian Yamaguchi reported an issue in the user mode




More information about the kernel-sec-discuss mailing list