[kernel] r5142 - patch-tracking
Moritz Muehlenhoff
jmm-guest at costa.debian.org
Fri Dec 30 03:52:26 UTC 2005
Author: jmm-guest
Date: Fri Dec 30 03:52:25 2005
New Revision: 5142
Modified:
patch-tracking/CVE-2005-3623
Log:
update on CVE-2005-3623
Modified: patch-tracking/CVE-2005-3623
==============================================================================
--- patch-tracking/CVE-2005-3623 (original)
+++ patch-tracking/CVE-2005-3623 Fri Dec 30 03:52:25 2005
@@ -6,15 +6,17 @@
checking for read-only exports: the lower-level setxattr operation
that eventually sets the acl cannot check export-level restrictions.
Notes:
+ jmm> NFS ACLs were only introduced somewhere between 2.6.12-2.6.14, so
+ jmm> Sarge and Woody are not vulnerable
Bugs:
-upstream:
-linux-2.6: pending (2.6.14.5), released (2.6.15-pre7)
-2.6.8-sarge-security:
-2.4.27-sarge-security:
-2.6.8:
-2.4.19-woody-security:
-2.4.18-woody-security:
-2.4.17-woody-security:
-2.4.16-woody-security:
-2.4.17-woody-security-hppa:
-2.4.17-woody-security-ia64:
+upstream: released (2.6.14.5), released (2.6.15-pre7)
+linux-2.6: released (2.6.14-7)
+2.6.8-sarge-security: N/A
+2.4.27-sarge-security: N/A
+2.6.8: N/A
+2.4.19-woody-security: N/A
+2.4.18-woody-security: N/A
+2.4.17-woody-security: N/A
+2.4.16-woody-security: N/A
+2.4.17-woody-security-hppa: N/A
+2.4.17-woody-security-ia64: N/A
More information about the Kernel-svn-changes
mailing list