[kernel] r6853 - patch-tracking

Moritz Muehlenhoff jmm-guest at costa.debian.org
Tue Jun 20 22:11:46 UTC 2006


Author: jmm-guest
Date: Tue Jun 20 22:11:45 2006
New Revision: 6853

Modified:
   patch-tracking/CVE-2006-1855

Log:
checked CVE-2006-1855


Modified: patch-tracking/CVE-2006-1855
==============================================================================
--- patch-tracking/CVE-2006-1855	(original)
+++ patch-tracking/CVE-2006-1855	Tue Jun 20 22:11:45 2006
@@ -1,12 +1,19 @@
 Candidate: CVE-2006-1855
 References: 
+ https://bugzilla.redhat.com/bugzilla/attachment.cgi?id=127302
+ http://www.redhat.com/support/errata/RHSA-2006-0493.html
 Description: 
+ choose_new_parent in Linux kernel before 2.6.11.12 includes certain
+ debugging code, which allows local users to cause a denial of service
+ (panic) by causing certain circumstances involving termination of a
+ parent process.
 Notes: 
+ jmm> Vulnerable code not present in 2.4.27
 Bugs: 
-upstream: 
-linux-2.6:
-2.6.8-sarge-security: 
-2.4.27-sarge-security: 
+upstream: released (2.6.11.12)
+linux-2.6: N/A
+2.6.8-sarge-security: needed
+2.4.27-sarge-security: N/A
 2.4.27:
 2.4.19-woody-security: 
 2.4.18-woody-security: 



More information about the Kernel-svn-changes mailing list