[kernel-sec-discuss] r5061 - dsa-texts

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Mar 8 16:03:25 UTC 2017


Author: carnil
Date: 2017-03-08 16:03:25 +0000 (Wed, 08 Mar 2017)
New Revision: 5061

Modified:
   dsa-texts/3.16.39-1+deb8u2
Log:
Add proposed wording for CVE-2017-6348

Modified: dsa-texts/3.16.39-1+deb8u2
===================================================================
--- dsa-texts/3.16.39-1+deb8u2	2017-03-08 15:28:00 UTC (rev 5060)
+++ dsa-texts/3.16.39-1+deb8u2	2017-03-08 16:03:25 UTC (rev 5061)
@@ -67,5 +67,10 @@
 
 CVE-2017-6348
 
+    Dmitry Vyukov reported that lock dropping is not properly managed in
+    the general queue implementation in the net/irda subsystem,
+    potentially allowing a local users to cause a denial-of-service
+    (deadlock) via crafted operations on IrDA devices.
+
 For the stable distribution (jessie), these problems have been fixed in
 version 3.16.39-1+deb8u2.




More information about the kernel-sec-discuss mailing list