[kernel-sec-discuss] [Git][kernel-team/kernel-sec][master] Mark CVE-2017-18222 as fixed for 4.9.90

Salvatore Bonaccorso gitlab at salsa.debian.org
Wed Mar 28 20:34:44 UTC 2018


Salvatore Bonaccorso pushed to branch master at Debian kernel team / kernel-sec


Commits:
3de6b6ed by Salvatore Bonaccorso at 2018-03-28T22:33:17+02:00
Mark CVE-2017-18222 as fixed for 4.9.90

Note for reviewers: this one is a bit tricky, see the discussion in
https://patchwork.kernel.org/patch/10187633/ were an isolated fix was
provided. The reporter found by bisecting that upstream
cabfb3680f78981d26c078a26e5c748531257ebb fixes the issue, later
df09b6f7b54adba78693997096d0bcb1bd80537c which is
cabfb3680f78981d26c078a26e5c748531257ebb upstream was taken for 4.9.x
and landed in 4.9.90 accordingly. Please double check correctness of
this update.

- - - - -


1 changed file:

- active/CVE-2018-1066


Changes:

=====================================
active/CVE-2018-1066
=====================================
--- a/active/CVE-2018-1066
+++ b/active/CVE-2018-1066
@@ -9,7 +9,7 @@ Notes:
  carnil> Cf. https://patchwork.kernel.org/patch/10187633/ discussion.
 Bugs:
 upstream: released (4.11-rc1) [cabfb3680f78981d26c078a26e5c748531257ebb]
-4.9-upstream-stable: needed
+4.9-upstream-stable: released (4.9.90) [df09b6f7b54adba78693997096d0bcb1bd80537c]
 3.16-upstream-stable: needed
 3.2-upstream-stable: N/A "Vulnerable code not present"
 sid: released (4.11.6-1)



View it on GitLab: https://salsa.debian.org/kernel-team/kernel-sec/commit/3de6b6edf229fcb66a59225322387607e8ef91da

---
View it on GitLab: https://salsa.debian.org/kernel-team/kernel-sec/commit/3de6b6edf229fcb66a59225322387607e8ef91da
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.alioth.debian.org/pipermail/kernel-sec-discuss/attachments/20180328/5b974dc5/attachment.html>


More information about the kernel-sec-discuss mailing list