[kernel-sec-discuss] r4884 - active

Ben Hutchings benh at moszumanska.debian.org
Thu Jan 26 21:29:53 UTC 2017


Author: benh
Date: 2017-01-26 21:29:53 +0000 (Thu, 26 Jan 2017)
New Revision: 4884

Modified:
   active/CVE-2015-8709
Log:
Note the upstream fix for CVE-2015-8709

Modified: active/CVE-2015-8709
===================================================================
--- active/CVE-2015-8709	2017-01-26 20:59:05 UTC (rev 4883)
+++ active/CVE-2015-8709	2017-01-26 21:29:53 UTC (rev 4884)
@@ -4,8 +4,10 @@
  https://lkml.org/lkml/2015/12/25/71
 Notes:
  bwh> CVE requested at http://www.openwall.com/lists/oss-security/2015/12/17/12
+ bwh> This was initially rejected as an upstream kernel bug, but I believe it
+ bwh> was eventually fixed upstream as noted below.
 Bugs:
-upstream: needed
+upstream: released (4.10-rc1) [bfedb589252c01fa505ac9f6f2a3d5d68d707ef4]
 3.16-upstream-stable: needed
 3.2-upstream-stable: N/A "Vulnerable code not present"
 sid: released (4.3.3-3) [bugfix/all/ptrace-being-capable-wrt-a-process-requires-mapped-uids-gids.patch]




More information about the kernel-sec-discuss mailing list