[kernel-sec-discuss] r3776 - active

Ben Hutchings benh at moszumanska.debian.org
Sun May 10 18:58:49 UTC 2015


Author: benh
Date: 2015-05-10 18:58:49 +0000 (Sun, 10 May 2015)
New Revision: 3776

Modified:
   active/CVE-2014-9717
Log:
Note that CVE-2014-9717 is (probably) fixed upstream and pending for sid

Modified: active/CVE-2014-9717
===================================================================
--- active/CVE-2014-9717	2015-05-04 20:12:50 UTC (rev 3775)
+++ active/CVE-2014-9717	2015-05-10 18:58:49 UTC (rev 3776)
@@ -25,10 +25,11 @@
  jmm> http://www.spinics.net/lists/linux-containers/msg30798.html (17/19)
  jmm> http://www.spinics.net/lists/linux-containers/msg30797.html (18/19)
  jmm> http://www.spinics.net/lists/linux-containers/msg30802.html (19/19)
+ bwh> I think the last four are needed for CVE-2015-2925, not CVE-2014-9717
 Bugs:
-upstream: needed
+upstream: released (4.1-rc1) [a3b3c5627c8301ac850962b04f645dfab81e6a60^..e0c9c0afd2fc958ffa34b697972721d81df8a56f]
 2.6.32-upstream-stable: N/A "user namespaces known broken before 3.5"
-sid: needed
+sid: pending (4.0.2-1)
 3.16-jessie-security: needed
 3.2-wheezy-security: N/A "user namespaces known broken before 3.5"
 2.6.32-squeeze-security: N/A "user namespaces known broken before 3.5"




More information about the kernel-sec-discuss mailing list