[kernel-sec-discuss] r3566 - active

Moritz Muehlenhoff jmm at moszumanska.debian.org
Mon Nov 24 12:56:28 UTC 2014


Author: jmm
Date: 2014-11-24 12:56:28 +0000 (Mon, 24 Nov 2014)
New Revision: 3566

Added:
   active/CVE-2014-8989
Log:
new userns issue


Added: active/CVE-2014-8989
===================================================================
--- active/CVE-2014-8989	                        (rev 0)
+++ active/CVE-2014-8989	2014-11-24 12:56:28 UTC (rev 3566)
@@ -0,0 +1,13 @@
+Description: Linux user namespaces can bypass group-based restrictions
+References:
+ http://www.openwall.com/lists/oss-security/2014/11/17/19
+ http://thread.gmane.org/gmane.linux.man/7385/
+Notes:
+Bugs:
+upstream: needed
+2.6.32-upstream-stable: N/A "User namespaces not usable"
+sid: needed
+3.2-wheezy-security: N/A "User namespaces not usable"
+2.6.32-squeeze-security: N/A "User namespaces not usable"
+3.16-upstream-stable: needed
+3.2-upstream-stable: N/A "User namespaces not usable"




More information about the kernel-sec-discuss mailing list