[kernel-sec-discuss] r4555 - active

Ben Hutchings benh at moszumanska.debian.org
Sun Jul 31 23:01:34 UTC 2016


Author: benh
Date: 2016-07-31 23:01:34 +0000 (Sun, 31 Jul 2016)
New Revision: 4555

Modified:
   active/CVE-2016-1583
Log:
Note regression caused by original fix for CVE-2016-1583


Modified: active/CVE-2016-1583
===================================================================
--- active/CVE-2016-1583	2016-07-30 11:28:49 UTC (rev 4554)
+++ active/CVE-2016-1583	2016-07-31 23:01:34 UTC (rev 4555)
@@ -18,6 +18,10 @@
  bwh> The procfs fix depends on commit 69c433ed2ecd (3.18) which is an ABI
  bwh> breaker.
  bwh> The ecryptfs fix depends on the commit carnil mentioned.
+ bwh> The first ecryptfs fix prevents reading directories on many underlying
+ bwh> filesystems.  It was reverted upstream and replaced with commit
+ bwh> f0fe970df383.  But with this version it's important to have the procfs
+ bwh> fix as well.
 Bugs:
 upstream: released (4.7-rc3) [e54ad7f1ee263ffa5a2de9c609d58dfa27b21cd9, 2f36db71009304b3f0b95afacd8eba1f9f046b87, 29d6455178a09e1dc340380c582b13356227e8df]
 3.16-upstream-stable: needed




More information about the kernel-sec-discuss mailing list