[kernel-sec-discuss] r3875 - active

Ben Hutchings benh at moszumanska.debian.org
Mon Jul 27 18:02:00 UTC 2015


Author: benh
Date: 2015-07-27 18:01:59 +0000 (Mon, 27 Jul 2015)
New Revision: 3875

Added:
   active/CVE-2015-1333
Log:
Add CVE-2015-1333

Added: active/CVE-2015-1333
===================================================================
--- active/CVE-2015-1333	                        (rev 0)
+++ active/CVE-2015-1333	2015-07-27 18:01:59 UTC (rev 3875)
@@ -0,0 +1,15 @@
+Description: Replacement of keys leaks memory
+References: https://marc.info/?l=oss-security&m=143800676725867&w=2
+Notes:
+ bwh> Appears to have been introduced by commit 034faeb9ef39
+ bwh> ("KEYS: Fix keyring quota misaccounting on key replacement and unlink")
+ bwh> in 3.13.
+Bugs:
+upstream: needed
+3.16-upstream-stable: needed
+3.2-upstream-stable: N/A ("Vulnerable code not present")
+2.6.32-upstream-stable: N/A ("Vulnerable code not present")
+sid: needed
+3.16-jessie-security: needed
+3.2-wheezy-security: N/A ("Vulnerable code not present")
+2.6.32-squeeze-security: N/A ("Vulnerable code not present")




More information about the kernel-sec-discuss mailing list