[kernel-sec-discuss] r5180 - active

Salvatore Bonaccorso carnil at moszumanska.debian.org
Thu Apr 20 06:34:38 UTC 2017


Author: carnil
Date: 2017-04-20 06:34:38 +0000 (Thu, 20 Apr 2017)
New Revision: 5180

Added:
   active/CVE-2017-7472
Log:
Add CVE-2017-7472

Added: active/CVE-2017-7472
===================================================================
--- active/CVE-2017-7472	                        (rev 0)
+++ active/CVE-2017-7472	2017-04-20 06:34:38 UTC (rev 5180)
@@ -0,0 +1,16 @@
+Description: keyctl_set_reqkey_keyring() leaks thread keyrings
+References:
+ https://lkml.org/lkml/2017/4/1/235
+ https://lkml.org/lkml/2017/4/3/724
+Notes:
+ carnil> 'Fixes: d84f4f992cbd ("CRED: Inaugurate COW credentials")'
+ carnil> which is first in 2.6.29-rc1
+Bugs:
+ https://bugzilla.redhat.com/show_bug.cgi?id=1442086
+upstream: needed
+4.9-upstream-stable: needed
+3.16-upstream-stable: needed
+3.2-upstream-stable: needed
+sid: needed
+3.16-jessie-security: needed
+3.2-wheezy-security: needed




More information about the kernel-sec-discuss mailing list