[kernel-sec-discuss] r4982 - dsa-texts

Moritz Muehlenhoff jmm at moszumanska.debian.org
Wed Feb 22 09:37:58 UTC 2017


Author: jmm
Date: 2017-02-22 09:37:57 +0000 (Wed, 22 Feb 2017)
New Revision: 4982

Modified:
   dsa-texts/3.16.39-1+deb8u1
Log:
update two issues


Modified: dsa-texts/3.16.39-1+deb8u1
===================================================================
--- dsa-texts/3.16.39-1+deb8u1	2017-02-22 07:29:24 UTC (rev 4981)
+++ dsa-texts/3.16.39-1+deb8u1	2017-02-22 09:37:57 UTC (rev 4982)
@@ -12,7 +12,7 @@
 
     It was discovered that the performance subsystem does not properly
     manage locks during certain migrations, allowing a local attacker to
-    escalate his privileges.
+    escalate privileges.
 
 CVE-2016-8405
 
@@ -26,7 +26,16 @@
 CVE-2017-2584
 CVE-2017-2596
 CVE-2017-2618
+
+    It was discovered that an off-by-one in the handling of selinux 
+    attributes in /proc/pid/attr could result in local denial of
+    service.
+
 CVE-2017-5549
+
+    It was discovered that the KLSI KL5KUSB105 serial USB device driver
+    could leak kernel memory, resulting in an information leak.
+
 CVE-2017-5551
 CVE-2017-5897
 CVE-2017-5970




More information about the kernel-sec-discuss mailing list