[kernel-sec-discuss] r3443 - active retired

Moritz Muehlenhoff jmm at moszumanska.debian.org
Mon Jul 14 10:16:41 UTC 2014


Author: jmm
Date: 2014-07-14 10:16:41 +0000 (Mon, 14 Jul 2014)
New Revision: 3443

Added:
   retired/CVE-2014-3940
Removed:
   active/CVE-2014-3940
Log:
retire


Deleted: active/CVE-2014-3940
===================================================================
--- active/CVE-2014-3940	2014-07-14 10:16:14 UTC (rev 3442)
+++ active/CVE-2014-3940	2014-07-14 10:16:41 UTC (rev 3443)
@@ -1,15 +0,0 @@
-Description: missing check during hugepage migration
-References: 
-Notes:
- bwh> Hugepage migration was extended in 3.12 and it's not clear that
- bwh> there is a security impact for older versions.  The upstream commit
- bwh> indicates that is the earliest stable branch it should be backported
- bwh> to.  But it should be harmless to add the pte_present() check to
- bwh> older versions anyway.
-Bugs:
-upstream: released (3.15-rc8) [d4c54919ed86302094c0ca7d48a8cbd4ee753e92]
-2.6.32-upstream-stable: N/A "Only needed for 3.12 and later"
-sid: released (3.14.7-1)
-3.2-wheezy-security: released (3.2.60-1) [bugfix/all/mm-add-pte_present-check-on-existing-hugetlb_entry-c.patch]
-2.6.32-squeeze-security: N/A "Only needed for 3.12 and later"
-3.2-upstream-stable: N/A "Only needed for 3.12 and later"

Copied: retired/CVE-2014-3940 (from rev 3439, active/CVE-2014-3940)
===================================================================
--- retired/CVE-2014-3940	                        (rev 0)
+++ retired/CVE-2014-3940	2014-07-14 10:16:41 UTC (rev 3443)
@@ -0,0 +1,15 @@
+Description: missing check during hugepage migration
+References: 
+Notes:
+ bwh> Hugepage migration was extended in 3.12 and it's not clear that
+ bwh> there is a security impact for older versions.  The upstream commit
+ bwh> indicates that is the earliest stable branch it should be backported
+ bwh> to.  But it should be harmless to add the pte_present() check to
+ bwh> older versions anyway.
+Bugs:
+upstream: released (3.15-rc8) [d4c54919ed86302094c0ca7d48a8cbd4ee753e92]
+2.6.32-upstream-stable: N/A "Only needed for 3.12 and later"
+sid: released (3.14.7-1)
+3.2-wheezy-security: released (3.2.60-1) [bugfix/all/mm-add-pte_present-check-on-existing-hugetlb_entry-c.patch]
+2.6.32-squeeze-security: N/A "Only needed for 3.12 and later"
+3.2-upstream-stable: N/A "Only needed for 3.12 and later"


Property changes on: retired/CVE-2014-3940
___________________________________________________________________
Added: svn:mergeinfo
   + 




More information about the kernel-sec-discuss mailing list