[kernel-sec-discuss] r3981 - active

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sun Nov 1 06:12:34 UTC 2015


Author: carnil
Date: 2015-11-01 06:12:33 +0000 (Sun, 01 Nov 2015)
New Revision: 3981

Modified:
   active/CVE-2015-8019
Log:
Update information for CVE-2015-8019

Modified: active/CVE-2015-8019
===================================================================
--- active/CVE-2015-8019	2015-10-31 09:50:47 UTC (rev 3980)
+++ active/CVE-2015-8019	2015-11-01 06:12:33 UTC (rev 3981)
@@ -3,12 +3,18 @@
  http://www.openwall.com/lists/oss-security/2015/10/27/11
  http://patchwork.ozlabs.org/patch/530642/
 Notes:
+ For all stable kernels before v3.19 which have backported commit
+ 89c22d8c3b27 ("net: Fix skb csum races when peeking") but are lacking
+ the ioviter conversion.
+ .
+ Only 3.2.72-1 (which is in wheezy-p-u) and 3.16.7-ckt17-1 (jessie-p-u)
+ still affected and need to be updated.
 Bugs:
-upstream:
-3.16-upstream-stable:
-3.2-upstream-stable:
+upstream: N/A "Vulnerable code not present"
+3.16-upstream-stable: released (v3.16.7-ckt19) [fa89ae5548ed282f0ceb4660b3b93e4e2ee875f3]
+3.2-upstream-stable: needed
 2.6.32-upstream-stable:
-sid:
-3.16-jessie-security:
-3.2-wheezy-security:
-2.6.32-squeeze-security:
+sid: N/A "Vulnerable code not present"
+3.16-jessie-security: N/A "Vulnerable code not present"
+3.2-wheezy-security: N/A "Vulnerable code not present"
+2.6.32-squeeze-security: N/A "Vulnerable code not present"




More information about the kernel-sec-discuss mailing list