r4431 - people/micah

Dann Frazier dannf at costa.debian.org
Thu Oct 13 02:16:27 UTC 2005


Author: dannf
Date: 2005-10-13 02:16:21 +0000 (Thu, 13 Oct 2005)
New Revision: 4431

Modified:
   people/micah/pending_CVE_requests
Log:
add some sample cve text for fs_ext2_ext3_xattr-sharing.dpatch

Modified: people/micah/pending_CVE_requests
===================================================================
--- people/micah/pending_CVE_requests	2005-10-12 12:12:36 UTC (rev 4430)
+++ people/micah/pending_CVE_requests	2005-10-13 02:16:21 UTC (rev 4431)
@@ -104,8 +104,8 @@
     See http://lists.debian.org/debian-kernel/2005/08/msg00238.html
 URL: http://lists.debian.org/debian-kernel/2005/08/msg00238.html
 URL: http://www.novell.com/linux/security/advisories/2005_18_kernel.html
-URL:
-http://acl.bestbits.at/pipermail/acl-devel/2005-February/001848.html
-TODO: CVE description (Debian specific?)
-
-
+URL: http://acl.bestbits.at/pipermail/acl-devel/2005-February/001848.html
+Draft CVE Text:
+The ext2 and ext3 filesystems in Linux 2.6 kernels prior to 2.6.11 may mistake two xattr structures as being
+identical when they differ only by the e_name_index field.  This can lead to a situation where the
+default ACLs on a directory disappear.




More information about the Kernel-svn-changes mailing list