[kernel-sec-discuss] r2577 - active retired

Moritz Muehlenhoff jmm at alioth.debian.org
Sat Dec 24 11:49:01 UTC 2011


Author: jmm
Date: 2011-12-24 11:49:00 +0000 (Sat, 24 Dec 2011)
New Revision: 2577

Added:
   retired/CVE-2010-4076
   retired/CVE-2010-4077
   retired/CVE-2011-1476
Removed:
   active/CVE-2010-4076
   active/CVE-2010-4077
   active/CVE-2011-1476
Log:
retire three issues, which require ABI-changing fixes for oldstable,
we won't do that anymore for lenny)


Deleted: active/CVE-2010-4076
===================================================================
--- active/CVE-2010-4076	2011-12-23 20:17:12 UTC (rev 2576)
+++ active/CVE-2010-4076	2011-12-24 11:49:00 UTC (rev 2577)
@@ -1,10 +0,0 @@
-Candidate: CVE-2010-4076
-Description: stack leak in drivers/char/amiserial.c
-References:
-Notes:
-Bugs:
-upstream: released (2.6.37) [0587102cf9f427c185bfdeb2cef41e13ee0264b1 ,d281da7ff6f70efca0553c288bb883e8605b3862]
-2.6.32-upstream-stable: released (2.6.32.49)
-sid: released (2.6.37-1)
-2.6.26-lenny-security: needed "ABI breaker"
-2.6.32-squeeze-security: released (2.6.32-31)

Deleted: active/CVE-2010-4077
===================================================================
--- active/CVE-2010-4077	2011-12-23 20:17:12 UTC (rev 2576)
+++ active/CVE-2010-4077	2011-12-24 11:49:00 UTC (rev 2577)
@@ -1,11 +0,0 @@
-Candidate: CVE-2010-4077
-Description: stack leak in drivers/char/nozomi.c
-References:
-Notes:
- jmm> 
-Bugs:
-upstream: released (2.6.37) [0587102cf9f427c185bfdeb2cef41e13ee0264b1 , d281da7ff6f70efca0553c288bb883e8605b3862]
-2.6.32-upstream-stable: released (2.6.32.49)
-sid: released (2.6.37-1)
-2.6.26-lenny-security: needed "ABI breaker"
-2.6.32-squeeze-security: released (2.6.32-31)

Deleted: active/CVE-2011-1476
===================================================================
--- active/CVE-2011-1476	2011-12-23 20:17:12 UTC (rev 2576)
+++ active/CVE-2011-1476	2011-12-24 11:49:00 UTC (rev 2577)
@@ -1,12 +0,0 @@
-Candidate: CVE-2011-1476
-Description: MIDI underflow
-References:
- http://marc.info/?l=linux-kernel&m=130089204124354&w=2
-Notes:
- jmm> OSS disabled since Squeeze
-Bugs:
-upstream: released (2.6.39-rc1) [b769f49463711205d57286e64cf535ed4daf59e9]
-2.6.32-upstream-stable: released (2.6.32.37)
-sid: released (2.6.38-4) [bugfix/all/stable/2.6.38.3.patch]
-2.6.26-lenny-security: needed "in r17581, but reverted due to ABI change"
-2.6.32-squeeze-security: released (2.6.32-34) [bugfix/all/stable/2.6.32.37.patch]

Copied: retired/CVE-2010-4076 (from rev 2575, active/CVE-2010-4076)
===================================================================
--- retired/CVE-2010-4076	                        (rev 0)
+++ retired/CVE-2010-4076	2011-12-24 11:49:00 UTC (rev 2577)
@@ -0,0 +1,10 @@
+Candidate: CVE-2010-4076
+Description: stack leak in drivers/char/amiserial.c
+References:
+Notes:
+Bugs:
+upstream: released (2.6.37) [0587102cf9f427c185bfdeb2cef41e13ee0264b1 ,d281da7ff6f70efca0553c288bb883e8605b3862]
+2.6.32-upstream-stable: released (2.6.32.49)
+sid: released (2.6.37-1)
+2.6.26-lenny-security: needed "ABI breaker"
+2.6.32-squeeze-security: released (2.6.32-31)

Copied: retired/CVE-2010-4077 (from rev 2575, active/CVE-2010-4077)
===================================================================
--- retired/CVE-2010-4077	                        (rev 0)
+++ retired/CVE-2010-4077	2011-12-24 11:49:00 UTC (rev 2577)
@@ -0,0 +1,11 @@
+Candidate: CVE-2010-4077
+Description: stack leak in drivers/char/nozomi.c
+References:
+Notes:
+ jmm> 
+Bugs:
+upstream: released (2.6.37) [0587102cf9f427c185bfdeb2cef41e13ee0264b1 , d281da7ff6f70efca0553c288bb883e8605b3862]
+2.6.32-upstream-stable: released (2.6.32.49)
+sid: released (2.6.37-1)
+2.6.26-lenny-security: needed "ABI breaker"
+2.6.32-squeeze-security: released (2.6.32-31)

Copied: retired/CVE-2011-1476 (from rev 2575, active/CVE-2011-1476)
===================================================================
--- retired/CVE-2011-1476	                        (rev 0)
+++ retired/CVE-2011-1476	2011-12-24 11:49:00 UTC (rev 2577)
@@ -0,0 +1,12 @@
+Candidate: CVE-2011-1476
+Description: MIDI underflow
+References:
+ http://marc.info/?l=linux-kernel&m=130089204124354&w=2
+Notes:
+ jmm> OSS disabled since Squeeze
+Bugs:
+upstream: released (2.6.39-rc1) [b769f49463711205d57286e64cf535ed4daf59e9]
+2.6.32-upstream-stable: released (2.6.32.37)
+sid: released (2.6.38-4) [bugfix/all/stable/2.6.38.3.patch]
+2.6.26-lenny-security: needed "in r17581, but reverted due to ABI change"
+2.6.32-squeeze-security: released (2.6.32-34) [bugfix/all/stable/2.6.32.37.patch]




More information about the kernel-sec-discuss mailing list