[kernel-sec-discuss] r5008 - active

Ben Hutchings benh at moszumanska.debian.org
Fri Feb 24 01:53:33 UTC 2017


Author: benh
Date: 2017-02-24 01:53:32 +0000 (Fri, 24 Feb 2017)
New Revision: 5008

Modified:
   active/CVE-2015-8709
Log:
Note dependencies for probable upstream fix for CVE-2015-8709

Modified: active/CVE-2015-8709
===================================================================
--- active/CVE-2015-8709	2017-02-23 23:43:29 UTC (rev 5007)
+++ active/CVE-2015-8709	2017-02-24 01:53:32 UTC (rev 5008)
@@ -6,6 +6,9 @@
  bwh> CVE requested at http://www.openwall.com/lists/oss-security/2015/12/17/12
  bwh> This was initially rejected as an upstream kernel bug, but I believe it
  bwh> was eventually fixed upstream as noted below.
+ bwh> Dependencies:
+ bwh> 3dfb7d8cdbc7 security: let security modules use PTRACE_MODE_* with bitmasks
+ bwh> caaee6234d05 ptrace: use fsuid, fsgid, effective creds for fs access checks
 Bugs:
 upstream: released (4.10-rc1) [bfedb589252c01fa505ac9f6f2a3d5d68d707ef4]
 4.9-upstream-stable: released (4.9.1) [694a95fa6dae4991f16cda333d897ea063021fed]




More information about the kernel-sec-discuss mailing list