[kernel] r5142 - patch-tracking

Moritz Muehlenhoff jmm-guest at costa.debian.org
Fri Dec 30 03:52:26 UTC 2005


Author: jmm-guest
Date: Fri Dec 30 03:52:25 2005
New Revision: 5142

Modified:
   patch-tracking/CVE-2005-3623
Log:
update on CVE-2005-3623


Modified: patch-tracking/CVE-2005-3623
==============================================================================
--- patch-tracking/CVE-2005-3623	(original)
+++ patch-tracking/CVE-2005-3623	Fri Dec 30 03:52:25 2005
@@ -6,15 +6,17 @@
  checking for read-only exports: the lower-level setxattr operation
  that eventually sets the acl cannot check export-level restrictions.
 Notes: 
+ jmm> NFS ACLs were only introduced somewhere between 2.6.12-2.6.14, so
+ jmm> Sarge and Woody are not vulnerable
 Bugs: 
-upstream: 
-linux-2.6: pending (2.6.14.5), released (2.6.15-pre7)
-2.6.8-sarge-security: 
-2.4.27-sarge-security: 
-2.6.8: 
-2.4.19-woody-security: 
-2.4.18-woody-security: 
-2.4.17-woody-security: 
-2.4.16-woody-security: 
-2.4.17-woody-security-hppa: 
-2.4.17-woody-security-ia64: 
+upstream: released (2.6.14.5), released (2.6.15-pre7)
+linux-2.6: released (2.6.14-7)
+2.6.8-sarge-security: N/A
+2.4.27-sarge-security: N/A
+2.6.8: N/A
+2.4.19-woody-security: N/A
+2.4.18-woody-security: N/A
+2.4.17-woody-security: N/A
+2.4.16-woody-security: N/A
+2.4.17-woody-security-hppa: N/A
+2.4.17-woody-security-ia64: N/A



More information about the Kernel-svn-changes mailing list