[kernel-sec-discuss] r5569 - active retired

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Sep 20 17:17:10 UTC 2017


Author: carnil
Date: 2017-09-20 17:17:09 +0000 (Wed, 20 Sep 2017)
New Revision: 5569

Added:
   retired/CVE-2017-7541
Removed:
   active/CVE-2017-7541
Log:
Retire CVE-2017-7541

Deleted: active/CVE-2017-7541
===================================================================
--- active/CVE-2017-7541	2017-09-20 13:54:10 UTC (rev 5568)
+++ active/CVE-2017-7541	2017-09-20 17:17:09 UTC (rev 5569)
@@ -1,14 +0,0 @@
-Description: brcmfmac: fix possible buffer overflow in brcmf_cfg80211_mgmt_tx()
-References:
-Notes:
- bwh> Introduced by commit 18e2f61db3b70 ("brcmfmac: P2P action frame tx.")
- bwh> in 3.9.
-Bugs:
-upstream: released (4.13-rc1) [8f44c9a41386729fea410e688959ddaa9d51be7c]
-4.9-upstream-stable: released (4.9.39) [414848bba6ab91fe12ca8105b4652c4aa6f4b574]
-3.16-upstream-stable: released (3.16.48) [c63048a29cf222bcd75823b4ca898e2aa6311f8f]
-3.2-upstream-stable: N/A "Vulnerable code not present"
-sid: released (4.12.6-1)
-4.9-stretch-security: released (4.9.30-2+deb9u3) [bugfix/all/brcmfmac-fix-possible-buffer-overflow-in-brcmf_cfg80.patch]
-3.16-jessie-security: released (3.16.43-2+deb8u3) [bugfix/all/brcmfmac-fix-possible-buffer-overflow-in-brcmf_cfg80.patch]
-3.2-wheezy-security: N/A "Vulnerable code not present"

Copied: retired/CVE-2017-7541 (from rev 5568, active/CVE-2017-7541)
===================================================================
--- retired/CVE-2017-7541	                        (rev 0)
+++ retired/CVE-2017-7541	2017-09-20 17:17:09 UTC (rev 5569)
@@ -0,0 +1,14 @@
+Description: brcmfmac: fix possible buffer overflow in brcmf_cfg80211_mgmt_tx()
+References:
+Notes:
+ bwh> Introduced by commit 18e2f61db3b70 ("brcmfmac: P2P action frame tx.")
+ bwh> in 3.9.
+Bugs:
+upstream: released (4.13-rc1) [8f44c9a41386729fea410e688959ddaa9d51be7c]
+4.9-upstream-stable: released (4.9.39) [414848bba6ab91fe12ca8105b4652c4aa6f4b574]
+3.16-upstream-stable: released (3.16.48) [c63048a29cf222bcd75823b4ca898e2aa6311f8f]
+3.2-upstream-stable: N/A "Vulnerable code not present"
+sid: released (4.12.6-1)
+4.9-stretch-security: released (4.9.30-2+deb9u3) [bugfix/all/brcmfmac-fix-possible-buffer-overflow-in-brcmf_cfg80.patch]
+3.16-jessie-security: released (3.16.43-2+deb8u3) [bugfix/all/brcmfmac-fix-possible-buffer-overflow-in-brcmf_cfg80.patch]
+3.2-wheezy-security: N/A "Vulnerable code not present"




More information about the kernel-sec-discuss mailing list