[kernel] r7242 - dists/sarge-security/kernel/source/kernel-source-2.6.8-2.6.8/debian

Dann Frazier dannf at costa.debian.org
Sun Aug 27 03:33:06 UTC 2006


Author: dannf
Date: Sun Aug 27 03:33:05 2006
New Revision: 7242

Modified:
   dists/sarge-security/kernel/source/kernel-source-2.6.8-2.6.8/debian/changelog

Log:
* [ERRATA] madvise_remove-restrict.dpatch
  [SECURITY] The 2.6.8-16sarge3 changelog associated this patch with
  CVE-2006-1524. However, this patch fixes an mprotect issue that was
  split off from the original report into CVE-2006-2071. 2.6.8 is not
  vulnerable to CVE-2006-1524 the madvise_remove issue.
  See CVE-2006-2071

Modified: dists/sarge-security/kernel/source/kernel-source-2.6.8-2.6.8/debian/changelog
==============================================================================
--- dists/sarge-security/kernel/source/kernel-source-2.6.8-2.6.8/debian/changelog	(original)
+++ dists/sarge-security/kernel/source/kernel-source-2.6.8-2.6.8/debian/changelog	Sun Aug 27 03:33:05 2006
@@ -1,5 +1,11 @@
 kernel-source-2.6.8 (2.6.8-16sarge5) UNRELEASED; urgency=high
 
+  * [ERRATA] madvise_remove-restrict.dpatch
+    [SECURITY] The 2.6.8-16sarge3 changelog associated this patch with
+    CVE-2006-1524. However, this patch fixes an mprotect issue that was
+    split off from the original report into CVE-2006-2071. 2.6.8 is not
+    vulnerable to CVE-2006-1524 the madvise_remove issue.
+    See CVE-2006-2071
   * fs-ext3-bad-nfs-handle.dpatch
     [SECURITY] James McKenzie discovered a Denial of Service vulnerability
     in the NFS driver. When exporting an ext3 file system over NFS, a remote
@@ -41,7 +47,7 @@
     [SECURITY] Add missing file_permission callback in readv/writev syscalls
     See CVE-2006-1856
 
- -- dann frazier <dannf at debian.org>  Sat, 26 Aug 2006 20:40:31 -0600
+ -- dann frazier <dannf at debian.org>  Sat, 26 Aug 2006 21:18:29 -0600
 
 kernel-source-2.6.8 (2.6.8-16sarge4) stable-security; urgency=high
 



More information about the Kernel-svn-changes mailing list