[kernel] r5005 - patch-tracking

Moritz Muehlenhoff jmm-guest at costa.debian.org
Mon Dec 12 11:50:55 UTC 2005


Author: jmm-guest
Date: Mon Dec 12 11:50:53 2005
New Revision: 5005

Modified:
   patch-tracking/CVE-2005-0207
   patch-tracking/CVE-2005-0209
   patch-tracking/CVE-2005-0400
   patch-tracking/CVE-2005-0449
Log:
add some information bits from the secure-testing tracker


Modified: patch-tracking/CVE-2005-0207
==============================================================================
--- patch-tracking/CVE-2005-0207	(original)
+++ patch-tracking/CVE-2005-0207	Mon Dec 12 11:50:53 2005
@@ -6,6 +6,8 @@
  URL:http://www.securityfocus.com/advisories/7880
  BID:12330
  URL:http://www.securityfocus.com/bid/12330
+ http://www.acm.cs.rpi.edu/~dilinger/patches/2.6.10/as2/linux-2.6.10-as2/026-nfs_o_direct_error.patch
+ http://linux.bkbits.net:8080/linux-2.6/cset@41db2d65wbgJvuXTv4x9_quExW0vEA
 Description: 
  Unknown vulnerability in Linux kernel 2.4.x, 2.5.x, and 2.6.x allows NFS
  clients to cause a denial of service via O_DIRECT.

Modified: patch-tracking/CVE-2005-0209
==============================================================================
--- patch-tracking/CVE-2005-0209	(original)
+++ patch-tracking/CVE-2005-0209	Mon Dec 12 11:50:53 2005
@@ -6,6 +6,7 @@
  URL:http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000945
  SUSE:SUSE-SA:2005:018
  URL:http://www.novell.com/linux/security/advisories/2005_18_kernel.html
+ http://oss.sgi.com/archives/netdev/2005-01/msg01072.html
 Description: 
  Netfilter in Linux kernel 2.6.8.1 allows remote attackers to cause a denial of
  service (kernel crash) via crafted IP packet fragments.

Modified: patch-tracking/CVE-2005-0400
==============================================================================
--- patch-tracking/CVE-2005-0400	(original)
+++ patch-tracking/CVE-2005-0400	Mon Dec 12 11:50:53 2005
@@ -18,9 +18,9 @@
  which allows local users to obtain potentially sensitive information by
  reading the block.
 Notes: 
-Bugs: 301799
+Bugs: 301799 303294
 upstream: released (2.6.11.6)
-2.6.14: 
+2.6.14: N/A
 2.6.8-sarge-security: released (2.6.8-16) [fs-ext2-info-leak.dpatch]
 2.4.27-sarge-security: released (2.4.27-10) [156_fs-ext2-info-leak.diff]
 2.6.8: released (2.6.8-16) [fs-ext2-info-leak.dpatch]

Modified: patch-tracking/CVE-2005-0449
==============================================================================
--- patch-tracking/CVE-2005-0449	(original)
+++ patch-tracking/CVE-2005-0449	Mon Dec 12 11:50:53 2005
@@ -1,6 +1,8 @@
 Candidate: CVE-2005-0449
 References: 
- URL:http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-0449
+ http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-0449
+ http://kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=1e01441051dda3bb01c455b6e20bce6d00563\d82
+ http://oss.sgi.com/archives/netdev/2005-01/msg01107.html
 Description: 
  The netfilter/iptables module in Linux before 2.6.8.1 allows remote attackers to
  cause a denial of service (kernel crash) or bypass firewall rules via crafted



More information about the Kernel-svn-changes mailing list