r4443 - people/dannf

Dann Frazier dannf at costa.debian.org
Thu Oct 13 16:38:13 UTC 2005


Author: dannf
Date: 2005-10-13 16:38:09 +0000 (Thu, 13 Oct 2005)
New Revision: 4443

Modified:
   people/dannf/2.6.8-16sarge1.dsa
Log:
place holders for cans; though we'll use Joey's descriptions instead

Modified: people/dannf/2.6.8-16sarge1.dsa
===================================================================
--- people/dannf/2.6.8-16sarge1.dsa	2005-10-13 12:34:15 UTC (rev 4442)
+++ people/dannf/2.6.8-16sarge1.dsa	2005-10-13 16:38:09 UTC (rev 4443)
@@ -163,3 +163,73 @@
 	might allow remote attackers to cause a denial of service (crash) via
 	a series of packets that cause a value to be modified after it has been
 	read but before it has been locked.
+
+NO-CAN (arch-x86_64-kernel-smp-boot-race.dpatch)
+
+CAN-NEEDED [fs-exec-ptrace-core-exec-race.dpatch]
+
+	Fix race between core dumping and exec with shared mm
+
+CAN-NEEDED [fs-exec-ptrace-deadlock.dpatch]
+
+	Fix coredump_wait deadlock with ptracer & tracee on shared mm
+
+CAN-NEEDED [fs-exec-posix-timers-leak-1.dpatch]
+
+	Make exec clean up posix timers.
+
+CAN-NEEDED [fs-exec-posix-timers-leak-2.dpatch]
+
+	I don't consider this to be a security bug.  Unfortunately, the commit
+	description also describes the -1 patch (above), which is a security bug.
+	Confusing..
+
+CAN-NEEDED [fs-hfs-oops-and-leak.dpatch]
+
+	Fix an oops that occurs when an attempt is made to mount a non-hfs
+	filesystem as HFS+.
+
+CAN-NEEDED [net-bridge-netfilter-etables-smp-race.dpatch]
+
+	The patch below fixes an smp race that happens on such systems under
+	heavy load.
+
+NO-CAN [net-bridge-mangle-oops-1.dpatch]
+NO-CAN [net-bridge-mangle-oops-2.dpatch]
+
+CAN-NEEDED [net-bridge-forwarding-poison-1.dpatch]
+CAN-NEEDED [net-bridge-forwarding-poison-2.dpatch]
+
+	Avoid poisoning of the bridge forwarding table by frames that have been
+	dropped by filtering. This prevents spoofed source addresses on hostile
+	side of bridge from causing packet leakage, a small but possible
+	security risk.
+
+
+CAN-NEEDED [net-rose-ndigis-verify.dpatch]
+
+	Verify ndigis argument of a new route.
+
+CAN-NEEDED [sound-usb-usbaudio-unplug-oops.dpatch]
+
+	Prevent oops & dead keyboard on usb unplugging while the device is being
+	used.
+
+CAN-NEEDED [net-ipv4-ipvs-conn_tab-race.dpatch]
+
+	Fix race condition on ip_vs_conn_tab list modification
+
+CAN-NEEDED [net-netlink-autobind-return.dpatch]
+
+	
+
+CAN-NEEDED [ppc32-time_offset-misuse.dpatch]
+
+CAN-NEEDED [netfilter-NAT-memory-corruption.dpatch]
+
+	** Is this the same as 174_net-ipv4-netfilter-nat-mem.diff?
+
+CAN-NEEDED [netfilter-ip_conntrack_untracked-refcount.dpatch]
+
+
+CAN-NEEDED [sys_get_thread_area-leak.dpatch]




More information about the Kernel-svn-changes mailing list