[kernel-sec-discuss] r2619 - active

Moritz Muehlenhoff jmm at alioth.debian.org
Fri Feb 10 15:25:43 UTC 2012


Author: jmm
Date: 2012-02-10 15:25:42 +0000 (Fri, 10 Feb 2012)
New Revision: 2619

Removed:
   active/CVE-2011-XXXX-keystroke-delay-and-count-infoleak
Log:
drop


Deleted: active/CVE-2011-XXXX-keystroke-delay-and-count-infoleak
===================================================================
--- active/CVE-2011-XXXX-keystroke-delay-and-count-infoleak	2012-02-10 15:24:24 UTC (rev 2618)
+++ active/CVE-2011-XXXX-keystroke-delay-and-count-infoleak	2012-02-10 15:25:42 UTC (rev 2619)
@@ -1,11 +0,0 @@
-Description: 
- /proc/$PID/{sched,schedstat} are world readable, so it is possible collect 
- keystroke count and delay of other users, then use statistical analysis to 
- recreate the actual keys entered
-References: http://openwall.com/lists/oss-security/2011/11/05/3
-Notes:
-Bugs:
-upstream: needed
-2.6.32-upstream-stable: needed
-sid: needed
-2.6.32-squeeze-security: needed




More information about the kernel-sec-discuss mailing list