[kernel-sec-discuss] r4895 - retired

Moritz Muehlenhoff jmm at moszumanska.debian.org
Fri Feb 3 17:52:19 UTC 2017


Author: jmm
Date: 2017-02-03 17:52:19 +0000 (Fri, 03 Feb 2017)
New Revision: 4895

Added:
   retired/CVE-2016-3695
Log:
new securelevel issue, already fixed


Added: retired/CVE-2016-3695
===================================================================
--- retired/CVE-2016-3695	                        (rev 0)
+++ retired/CVE-2016-3695	2017-02-03 17:52:19 UTC (rev 4895)
@@ -0,0 +1,12 @@
+Description: Error injection via EINJ is allowed when securelevel is enabled
+References:
+ https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2016-3695
+ https://github.com/mjg59/linux/commit/d7a6be58edc01b1c66ecd8fcc91236bfbce0a420
+Notes:
+Bugs:
+upstream: N/A "securelevel patch not upstream"
+3.16-upstream-stable: N/A "Vulnerable code not present"
+3.2-upstream-stable: N/A "Vulnerable code not present"
+sid: released (4.5.1-1)
+3.16-jessie-security: N/A "Vulnerable code not present"
+3.2-wheezy-security: N/A "Vulnerable code not present"




More information about the kernel-sec-discuss mailing list