[kernel-sec-discuss] r4810 - active retired

Ben Hutchings benh at moszumanska.debian.org
Wed Dec 28 16:31:26 UTC 2016


Author: benh
Date: 2016-12-28 16:31:26 +0000 (Wed, 28 Dec 2016)
New Revision: 4810

Added:
   retired/CVE-2015-8966
Removed:
   active/CVE-2015-8966
Log:
Fill in status of CVE-2015-8966 and retire it


Deleted: active/CVE-2015-8966
===================================================================
--- active/CVE-2015-8966	2016-12-28 15:58:01 UTC (rev 4809)
+++ active/CVE-2015-8966	2016-12-28 16:31:26 UTC (rev 4810)
@@ -1,10 +0,0 @@
-Description:
-References:
-Notes:
-Bugs:
-upstream: released (4.4-rc8) [76cc404bfdc0d419c720de4daaf2584542734f42]
-3.16-upstream-stable: released (3.16.7-ckt23) [4f4ac03fd22520d211607a09dd3f7a9b2b6d57f8]
-3.2-upstream-stable:
-sid: released (4.4.2-1)
-3.16-jessie-security: released (3.16.7-ckt25-1)
-3.2-wheezy-security:

Copied: retired/CVE-2015-8966 (from rev 4809, active/CVE-2015-8966)
===================================================================
--- retired/CVE-2015-8966	                        (rev 0)
+++ retired/CVE-2015-8966	2016-12-28 16:31:26 UTC (rev 4810)
@@ -0,0 +1,13 @@
+Description: Incorrect manipulation of memory spaces in OABI compat layer for file locks
+References:
+Notes:
+ bwh> Introduced in 3.15 by commit 5d50ffd7c31d "locks: add new fcntl cmd
+ bwh> values for handling file private locks".  No Debian kernel images
+ bwh> were affected since we disabled OABI compatibility before this.
+Bugs:
+upstream: released (4.4-rc8) [76cc404bfdc0d419c720de4daaf2584542734f42]
+3.16-upstream-stable: released (3.16.7-ckt23) [4f4ac03fd22520d211607a09dd3f7a9b2b6d57f8]
+3.2-upstream-stable: N/A "Vulnerable case not present"
+sid: released (4.4.2-1)
+3.16-jessie-security: released (3.16.7-ckt25-1)
+3.2-wheezy-security: N/A "Vulnerable case not present"




More information about the kernel-sec-discuss mailing list