r4443 - people/dannf
Dann Frazier
dannf at costa.debian.org
Thu Oct 13 16:38:13 UTC 2005
Author: dannf
Date: 2005-10-13 16:38:09 +0000 (Thu, 13 Oct 2005)
New Revision: 4443
Modified:
people/dannf/2.6.8-16sarge1.dsa
Log:
place holders for cans; though we'll use Joey's descriptions instead
Modified: people/dannf/2.6.8-16sarge1.dsa
===================================================================
--- people/dannf/2.6.8-16sarge1.dsa 2005-10-13 12:34:15 UTC (rev 4442)
+++ people/dannf/2.6.8-16sarge1.dsa 2005-10-13 16:38:09 UTC (rev 4443)
@@ -163,3 +163,73 @@
might allow remote attackers to cause a denial of service (crash) via
a series of packets that cause a value to be modified after it has been
read but before it has been locked.
+
+NO-CAN (arch-x86_64-kernel-smp-boot-race.dpatch)
+
+CAN-NEEDED [fs-exec-ptrace-core-exec-race.dpatch]
+
+ Fix race between core dumping and exec with shared mm
+
+CAN-NEEDED [fs-exec-ptrace-deadlock.dpatch]
+
+ Fix coredump_wait deadlock with ptracer & tracee on shared mm
+
+CAN-NEEDED [fs-exec-posix-timers-leak-1.dpatch]
+
+ Make exec clean up posix timers.
+
+CAN-NEEDED [fs-exec-posix-timers-leak-2.dpatch]
+
+ I don't consider this to be a security bug. Unfortunately, the commit
+ description also describes the -1 patch (above), which is a security bug.
+ Confusing..
+
+CAN-NEEDED [fs-hfs-oops-and-leak.dpatch]
+
+ Fix an oops that occurs when an attempt is made to mount a non-hfs
+ filesystem as HFS+.
+
+CAN-NEEDED [net-bridge-netfilter-etables-smp-race.dpatch]
+
+ The patch below fixes an smp race that happens on such systems under
+ heavy load.
+
+NO-CAN [net-bridge-mangle-oops-1.dpatch]
+NO-CAN [net-bridge-mangle-oops-2.dpatch]
+
+CAN-NEEDED [net-bridge-forwarding-poison-1.dpatch]
+CAN-NEEDED [net-bridge-forwarding-poison-2.dpatch]
+
+ Avoid poisoning of the bridge forwarding table by frames that have been
+ dropped by filtering. This prevents spoofed source addresses on hostile
+ side of bridge from causing packet leakage, a small but possible
+ security risk.
+
+
+CAN-NEEDED [net-rose-ndigis-verify.dpatch]
+
+ Verify ndigis argument of a new route.
+
+CAN-NEEDED [sound-usb-usbaudio-unplug-oops.dpatch]
+
+ Prevent oops & dead keyboard on usb unplugging while the device is being
+ used.
+
+CAN-NEEDED [net-ipv4-ipvs-conn_tab-race.dpatch]
+
+ Fix race condition on ip_vs_conn_tab list modification
+
+CAN-NEEDED [net-netlink-autobind-return.dpatch]
+
+
+
+CAN-NEEDED [ppc32-time_offset-misuse.dpatch]
+
+CAN-NEEDED [netfilter-NAT-memory-corruption.dpatch]
+
+ ** Is this the same as 174_net-ipv4-netfilter-nat-mem.diff?
+
+CAN-NEEDED [netfilter-ip_conntrack_untracked-refcount.dpatch]
+
+
+CAN-NEEDED [sys_get_thread_area-leak.dpatch]
More information about the Kernel-svn-changes
mailing list