[kernel] r19810 - in dists/squeeze-security/linux-2.6/debian: . patches/features/all/xen patches/series

Dann Frazier dannf at alioth.debian.org
Thu Feb 14 09:33:53 UTC 2013


Author: dannf
Date: Thu Feb 14 09:33:53 2013
New Revision: 19810

Log:
xen: netback: correct netbk_tx_err() to handle wrap around (CVE-2013-0217)

Added:
   dists/squeeze-security/linux-2.6/debian/patches/features/all/xen/xsa39-classic-0002-xen-netback-wrap-around.patch
Modified:
   dists/squeeze-security/linux-2.6/debian/changelog
   dists/squeeze-security/linux-2.6/debian/patches/series/46squeeze1-extra

Modified: dists/squeeze-security/linux-2.6/debian/changelog
==============================================================================
--- dists/squeeze-security/linux-2.6/debian/changelog	Thu Feb 14 09:33:00 2013	(r19809)
+++ dists/squeeze-security/linux-2.6/debian/changelog	Thu Feb 14 09:33:53 2013	(r19810)
@@ -10,6 +10,7 @@
   * ipv6: discard overlapping fragment (CVE-2012-4444)
   * x86/msr: Add capabilities check (CVE-2013-0268)
   * xen: netback: shutdown the ring if it contains garbage (CVE-2013-0216)
+  * xen: netback: correct netbk_tx_err() to handle wrap around (CVE-2013-0217)
 
  -- dann frazier <dannf at debian.org>  Mon, 22 Oct 2012 20:34:13 -0500
 

Added: dists/squeeze-security/linux-2.6/debian/patches/features/all/xen/xsa39-classic-0002-xen-netback-wrap-around.patch
==============================================================================
--- /dev/null	00:00:00 1970	(empty, because file is newly added)
+++ dists/squeeze-security/linux-2.6/debian/patches/features/all/xen/xsa39-classic-0002-xen-netback-wrap-around.patch	Thu Feb 14 09:33:53 2013	(r19810)
@@ -0,0 +1,16 @@
+netback: correct netbk_tx_err() to handle wrap around
+
+Signed-off-by: Ian Campbell <ian.campbell at citrix.com>
+Signed-off-by: Jan Beulich <JBeulich at suse.com>
+
+--- a/drivers/xen/netback/netback.c
++++ b/drivers/xen/netback/netback.c
+@@ -1011,7 +1011,7 @@ static void netbk_tx_err(netif_t *netif,
+ 
+ 	do {
+ 		make_tx_response(netif, txp, NETIF_RSP_ERROR);
+-		if (cons >= end)
++		if (cons == end)
+ 			break;
+ 		txp = RING_GET_REQUEST(&netif->tx, cons++);
+ 	} while (1);

Modified: dists/squeeze-security/linux-2.6/debian/patches/series/46squeeze1-extra
==============================================================================
--- dists/squeeze-security/linux-2.6/debian/patches/series/46squeeze1-extra	Thu Feb 14 09:33:00 2013	(r19809)
+++ dists/squeeze-security/linux-2.6/debian/patches/series/46squeeze1-extra	Thu Feb 14 09:33:53 2013	(r19810)
@@ -1 +1,2 @@
 + features/all/xen/xsa39-classic-0001-xen-netback-garbage-ring.patch featureset=xen
++ features/all/xen/xsa39-classic-0002-xen-netback-wrap-around.patch featureset=xen



More information about the Kernel-svn-changes mailing list