[kernel] r5031 - patch-tracking

Dann Frazier dannf at costa.debian.org
Sun Dec 18 23:53:17 UTC 2005


Author: dannf
Date: Sun Dec 18 23:53:17 2005
New Revision: 5031

Modified:
   patch-tracking/CVE-2005-0528
Log:
the mremap patch is actually CVE-2005-0528


Modified: patch-tracking/CVE-2005-0528
==============================================================================
--- patch-tracking/CVE-2005-0528	(original)
+++ patch-tracking/CVE-2005-0528	Sun Dec 18 23:53:17 2005
@@ -1,17 +1,24 @@
-Candidate: 
+Candidate: CVE-2005-0528
 References: 
 Description: 
 Notes: 
+ From Joey's 2.4.18-14.4 changelog:
+  * Applied patch by Andrea Arcangeli from 2.4.24 to fix privilege
+    escalation in the mremap() syscall [mm/mremap.c, CAN-2004-nnnn]
+ jmm> Isn't this CVE-2004-0077?
+ dannf> Looks like this is a different issue.  Joey's patch is here:
+  http://klecker.debian.org/~joey/security/kernel/patches/patch.CAN-2005-0528.mremap
+ dannf> But it doesn't look like mitre has released the details yet:
+  http://cve.mitre.org/cgi-bin/cvename.cgi?name=CAN-2005-0528
 Bugs: 
 upstream: 
 2.6.14: 
 2.6.8-sarge-security: 
 2.4.27-sarge-security: 
 2.6.8: 
-2.4.19-woody-security: 
-2.4.18-woody-security: 
-2.4.17-woody-security: 
-2.4.16-woody-security: 
-2.4.17-woody-security-hppa: 
-2.4.17-woody-security-ia64: 
-2.4.18-woody-security-hppa: 
+2.4.19-woody-security: pending (2.4.19-4.woody3)
+2.4.18-woody-security: released (2.4.18-14.4)
+2.4.17-woody-security: pending (2.4.17-1woody4)
+2.4.16-woody-security: pending (2.4.16-1woody3)
+2.4.17-woody-security-hppa: pending (32.5)
+2.4.17-woody-security-ia64: pending (011226.18)



More information about the Kernel-svn-changes mailing list