[kernel-sec-discuss] r4523 - active

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Jul 8 06:49:50 UTC 2016


Author: carnil
Date: 2016-07-08 06:49:50 +0000 (Fri, 08 Jul 2016)
New Revision: 4523

Modified:
   active/CVE-2016-6156
Log:
More nformation for CVE-2016-6156 added

Modified: active/CVE-2016-6156
===================================================================
--- active/CVE-2016-6156	2016-07-08 06:36:15 UTC (rev 4522)
+++ active/CVE-2016-6156	2016-07-08 06:49:50 UTC (rev 4523)
@@ -1,10 +1,13 @@
 Description:
 References:
 Notes:
+ carnil> As far I can see the vulnerable code is present in 4.6.3
+ carnil> but the CROS_EC_CHARDEV is not enabled in Debian builds.
 Bugs:
+ https://bugzilla.kernel.org/show_bug.cgi?id=120131
 upstream: pending [096cdc6f52225835ff503f987a0d68ef770bb78e]
-3.16-upstream-stable:
-3.2-upstream-stable:
-sid:
-3.16-jessie-security:
-3.2-wheezy-security:
+3.16-upstream-stable: N/A "Introduced in 4.2-rc1 with a841178445bb72a3d566b4e6ab9d19e9b002eb47"
+3.2-upstream-stable: N/A "Introduced in 4.2-rc1 with a841178445bb72a3d566b4e6ab9d19e9b002eb47"
+sid: neeed
+3.16-jessie-security: N/A "Vulnerable code not present"
+3.2-wheezy-security: N/A "Vulnerable code not present"




More information about the kernel-sec-discuss mailing list