[kernel] r5479 - patch-tracking

Dann Frazier dannf at costa.debian.org
Tue Jan 17 02:14:21 UTC 2006


Author: dannf
Date: Tue Jan 17 02:14:20 2006
New Revision: 5479

Modified:
   patch-tracking/CVE-2004-0415
Log:
marcelo says 2.6 isn't vulnerable


Modified: patch-tracking/CVE-2004-0415
==============================================================================
--- patch-tracking/CVE-2004-0415	(original)
+++ patch-tracking/CVE-2004-0415	Tue Jan 17 02:14:20 2006
@@ -25,10 +25,13 @@
  Which doesn't look like it ever made 2.6.
  .
  dannf> I've asked Al Viro & Marcelo for more info
+ dannf> Marcelo says:
+   2.6 avoids the file offset race by having a copy of it at the high
+   level VFS functions, its safe.
 Bugs: 
 upstream: released (2.4.27-rc5)
-linux-2.6: 
-2.6.8-sarge-security: 
+linux-2.6: N/A
+2.6.8-sarge-security: N/A
 2.4.27-sarge-security: N/A
 2.4.19-woody-security: 
 2.4.18-woody-security: 



More information about the Kernel-svn-changes mailing list