[kernel-sec-discuss] r2150 - active

Moritz Muehlenhoff jmm at alioth.debian.org
Fri Jan 14 20:26:17 UTC 2011


Author: jmm
Date: 2011-01-14 20:26:17 +0000 (Fri, 14 Jan 2011)
New Revision: 2150

Removed:
   active/CVE-2010-sctp-dos
Log:
this was CVE-2010-1173


Deleted: active/CVE-2010-sctp-dos
===================================================================
--- active/CVE-2010-sctp-dos	2011-01-14 20:23:23 UTC (rev 2149)
+++ active/CVE-2010-sctp-dos	2011-01-14 20:26:17 UTC (rev 2150)
@@ -1,14 +0,0 @@
-Candidate: needed
-Description: sctp dos
-References:
- http://twitter.com/jonoberheide/statuses/20744052422
-Notes:
- - fixed in 2.6.33.4, which has four sctp commits
- - most likely commit 81540f22 (upstream 8170c35e)
- - should the other sctp commits in 2.6.33.4 be fixed as well?  most seem to have security implications (freed pointer issue, etc.). upstream commits c07866934, 0c42749c, 561b1733
-Bugs:
-upstream: released (2.6.34) [8170c35e]
-2.6.32-upstream-stable: needed
-linux-2.6: needed
-2.6.26-lenny-security:
-2.6.32-squeeze-security: needed




More information about the kernel-sec-discuss mailing list