[kernel-sec-discuss] r4393 - active retired

Ben Hutchings benh at moszumanska.debian.org
Mon May 16 18:19:30 UTC 2016


Author: benh
Date: 2016-05-16 18:19:30 +0000 (Mon, 16 May 2016)
New Revision: 4393

Added:
   active/CVE-2016-4568
Removed:
   retired/CVE-2016-4568
Log:
Reactivate CVE-2016-4568 as upstream fix was reverted


Copied: active/CVE-2016-4568 (from rev 4392, retired/CVE-2016-4568)
===================================================================
--- active/CVE-2016-4568	                        (rev 0)
+++ active/CVE-2016-4568	2016-05-16 18:19:30 UTC (rev 4393)
@@ -0,0 +1,13 @@
+Description: Kernel memory overwrite in media/videobuf2
+References:
+Notes:
+ bwh> This was supposed to be fixed upstream in 4.6-rc6 by commit
+ bwh> 2c1f6951a8a82e6de0d82b1158b5e493fc6c54ab.  However that caused a
+ bwh> regression and was reverted.
+Bugs:
+upstream: needed
+3.16-upstream-stable: N/A "Introduced by b0e0e1f83de31aa0428c38b692c590cc0ecd3f03 in 4.4-rc1"
+3.2-upstream-stable: N/A "Introduced by b0e0e1f83de31aa0428c38b692c590cc0ecd3f03 in 4.4-rc1"
+sid: released (4.5.3-1)
+3.16-jessie-security: N/A "Vulnerable code not present"
+3.2-wheezy-security: N/A "Vulnerable code not present"

Deleted: retired/CVE-2016-4568
===================================================================
--- retired/CVE-2016-4568	2016-05-16 12:06:09 UTC (rev 4392)
+++ retired/CVE-2016-4568	2016-05-16 18:19:30 UTC (rev 4393)
@@ -1,10 +0,0 @@
-Description: Kernel memory overwrite in media/videobuf2
-References:
-Notes:
-Bugs:
-upstream: released (4.6-rc6) [2c1f6951a8a82e6de0d82b1158b5e493fc6c54ab]
-3.16-upstream-stable: N/A "Introduced by b0e0e1f83de31aa0428c38b692c590cc0ecd3f03 in 4.4-rc1"
-3.2-upstream-stable: N/A "Introduced by b0e0e1f83de31aa0428c38b692c590cc0ecd3f03 in 4.4-rc1"
-sid: released (4.5.3-1)
-3.16-jessie-security: N/A "Vulnerable code not present"
-3.2-wheezy-security: N/A "Vulnerable code not present"




More information about the kernel-sec-discuss mailing list