[kernel-sec-discuss] r5578 - dsa-texts
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Wed Sep 20 18:43:21 UTC 2017
Author: carnil
Date: 2017-09-20 18:43:21 +0000 (Wed, 20 Sep 2017)
New Revision: 5578
Modified:
dsa-texts/4.9.30-2+deb9u5
Log:
Complete name for reporter of CVE-2017-14489
Modified: dsa-texts/4.9.30-2+deb9u5
===================================================================
--- dsa-texts/4.9.30-2+deb9u5 2017-09-20 18:43:20 UTC (rev 5577)
+++ dsa-texts/4.9.30-2+deb9u5 2017-09-20 18:43:21 UTC (rev 5578)
@@ -99,11 +99,11 @@
CVE-2017-14489
- ChunYu of Red Hat discovered that the iSCSI subsystem does not
+ ChunYu Wang of Red Hat discovered that the iSCSI subsystem does not
properly validate the length of a netlink message, leading to
memory corruption. A local user with permission to manage iSCSI
- devices can use this for denial of service or possibly to
- execute arbitrary code.
+ devices can use this for denial of service or possibly to execute
+ arbitrary code.
CVE-2017-14497 (stretch only)
More information about the kernel-sec-discuss
mailing list