[kernel-sec-discuss] r4164 - active

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sun Feb 14 18:16:39 UTC 2016


Author: carnil
Date: 2016-02-14 18:16:39 +0000 (Sun, 14 Feb 2016)
New Revision: 4164

Added:
   active/CVE-2016-2384
Removed:
   active/CVE-2016-usbmidi-double-free
Log:
CVE-2016-2384 assigned

Copied: active/CVE-2016-2384 (from rev 4163, active/CVE-2016-usbmidi-double-free)
===================================================================
--- active/CVE-2016-2384	                        (rev 0)
+++ active/CVE-2016-2384	2016-02-14 18:16:39 UTC (rev 4164)
@@ -0,0 +1,12 @@
+Description: Double-free in snd-usbmidi-lib triggered by invalid USB descriptor
+References:
+Notes:
+Bugs:
+upstream: pending (4.5-rc4) [07d86ca93db7e5cdf4743564d98292042ec21af7]
+3.16-upstream-stable: needed
+3.2-upstream-stable: needed
+2.6.32-upstream-stable: needed
+sid: pending (4.4.1-1) [bugfix/all/alsa-usb-audio-avoid-freeing-umidi-object-twice.patch]
+3.16-jessie-security: pending (3.16.7-ckt20-1+deb8u4) [bugfix/all/alsa-usb-audio-avoid-freeing-umidi-object-twice.patch]
+3.2-wheezy-security: pending (3.2.73-2+deb7u3) [bugfix/all/alsa-usb-audio-avoid-freeing-umidi-object-twice.patch]
+2.6.32-squeeze-security: pending (2.6.32-48squeeze20) [bugfix/all/alsa-usb-audio-avoid-freeing-umidi-object-twice.patch]

Deleted: active/CVE-2016-usbmidi-double-free
===================================================================
--- active/CVE-2016-usbmidi-double-free	2016-02-14 18:16:38 UTC (rev 4163)
+++ active/CVE-2016-usbmidi-double-free	2016-02-14 18:16:39 UTC (rev 4164)
@@ -1,12 +0,0 @@
-Description: Double-free in snd-usbmidi-lib triggered by invalid USB descriptor
-References:
-Notes:
-Bugs:
-upstream: pending (4.5-rc4) [07d86ca93db7e5cdf4743564d98292042ec21af7]
-3.16-upstream-stable: needed
-3.2-upstream-stable: needed
-2.6.32-upstream-stable: needed
-sid: pending (4.4.1-1) [bugfix/all/alsa-usb-audio-avoid-freeing-umidi-object-twice.patch]
-3.16-jessie-security: pending (3.16.7-ckt20-1+deb8u4) [bugfix/all/alsa-usb-audio-avoid-freeing-umidi-object-twice.patch]
-3.2-wheezy-security: pending (3.2.73-2+deb7u3) [bugfix/all/alsa-usb-audio-avoid-freeing-umidi-object-twice.patch]
-2.6.32-squeeze-security: pending (2.6.32-48squeeze20) [bugfix/all/alsa-usb-audio-avoid-freeing-umidi-object-twice.patch]




More information about the kernel-sec-discuss mailing list