[kernel] r14473 - in dists/lenny-security/linux-2.6/debian: . patches/bugfix/all patches/series
Dann Frazier
dannf at alioth.debian.org
Wed Oct 28 03:58:29 UTC 2009
Author: dannf
Date: Wed Oct 28 03:58:27 2009
New Revision: 14473
Log:
netlink: fix typo in initialization (CVE-2009-3612)
Added:
dists/lenny-security/linux-2.6/debian/patches/bugfix/all/netlink-fix-typo-in-initialization.patch
Modified:
dists/lenny-security/linux-2.6/debian/changelog
dists/lenny-security/linux-2.6/debian/patches/series/19lenny2
Modified: dists/lenny-security/linux-2.6/debian/changelog
==============================================================================
--- dists/lenny-security/linux-2.6/debian/changelog Wed Oct 28 03:45:24 2009 (r14472)
+++ dists/lenny-security/linux-2.6/debian/changelog Wed Oct 28 03:58:27 2009 (r14473)
@@ -2,6 +2,7 @@
* tc: Fix uninitialized kernel memory leak (CVE-2009-3228)
* random: make get_random_int() more random (CVE-2009-3238)
+ * netlink: fix typo in initialization (CVE-2009-3612)
-- dann frazier <dannf at debian.org> Tue, 27 Oct 2009 21:33:02 -0600
Added: dists/lenny-security/linux-2.6/debian/patches/bugfix/all/netlink-fix-typo-in-initialization.patch
==============================================================================
--- /dev/null 00:00:00 1970 (empty, because file is newly added)
+++ dists/lenny-security/linux-2.6/debian/patches/bugfix/all/netlink-fix-typo-in-initialization.patch Wed Oct 28 03:58:27 2009 (r14473)
@@ -0,0 +1,27 @@
+commit ad61df918c44316940404891d5082c63e79c256a
+Author: Jiri Pirko <jpirko at redhat.com>
+Date: Thu Oct 8 01:21:46 2009 -0700
+
+ netlink: fix typo in initialization
+
+ Commit 9ef1d4c7c7aca1cd436612b6ca785b726ffb8ed8 ("[NETLINK]: Missing
+ initializations in dumped data") introduced a typo in
+ initialization. This patch fixes this.
+
+ Signed-off-by: Jiri Pirko <jpirko at redhat.com>
+ Signed-off-by: David S. Miller <davem at davemloft.net>
+
+Adjusted to apply to Debian's 2.6.26 by dann frazier <dannf at debian.org>
+
+diff -urpN linux-source-2.6.26.orig/net/sched/cls_api.c linux-source-2.6.26/net/sched/cls_api.c
+--- linux-source-2.6.26.orig/net/sched/cls_api.c 2008-07-13 15:51:29.000000000 -0600
++++ linux-source-2.6.26/net/sched/cls_api.c 2009-10-27 21:47:00.000000000 -0600
+@@ -333,7 +333,7 @@ static int tcf_fill_node(struct sk_buff
+ tcm = NLMSG_DATA(nlh);
+ tcm->tcm_family = AF_UNSPEC;
+ tcm->tcm__pad1 = 0;
+- tcm->tcm__pad1 = 0;
++ tcm->tcm__pad2 = 0;
+ tcm->tcm_ifindex = tp->q->dev->ifindex;
+ tcm->tcm_parent = tp->classid;
+ tcm->tcm_info = TC_H_MAKE(tp->prio, tp->protocol);
Modified: dists/lenny-security/linux-2.6/debian/patches/series/19lenny2
==============================================================================
--- dists/lenny-security/linux-2.6/debian/patches/series/19lenny2 Wed Oct 28 03:45:24 2009 (r14472)
+++ dists/lenny-security/linux-2.6/debian/patches/series/19lenny2 Wed Oct 28 03:58:27 2009 (r14473)
@@ -1,2 +1,3 @@
+ bugfix/all/tc-fix-pad-leak.patch
+ bugfix/all/random-make-get_random_int-more-random.patch
++ bugfix/all/netlink-fix-typo-in-initialization.patch
More information about the Kernel-svn-changes
mailing list