[kernel-sec-discuss] r2643 - active retired

Dann Frazier dannf at alioth.debian.org
Wed Mar 14 01:17:29 UTC 2012


Author: dannf
Date: 2012-03-14 01:17:28 +0000 (Wed, 14 Mar 2012)
New Revision: 2643

Added:
   active/CVE-2009-4307
Removed:
   retired/CVE-2009-4307
Log:
resurrect CVE-2009-4307

Fix we had in squeeze was incomplete.



Copied: active/CVE-2009-4307 (from rev 2642, retired/CVE-2009-4307)
===================================================================
--- active/CVE-2009-4307	                        (rev 0)
+++ active/CVE-2009-4307	2012-03-14 01:17:28 UTC (rev 2643)
@@ -0,0 +1,14 @@
+Candidate: CVE-2009-4307
+Description:
+References:
+ http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4307
+Notes:
+Bugs:
+upstream: pending (2.6.33-rc1) [503358ae]
+2.6.31-upstream-stable: released (2.6.31.8) [a7aaaff9]
+2.6.32-upstream-stable: released (2.6.32.1) [8ed33ff5]
+linux-2.6: released (2.6.32-2)
+2.6.18-etch-security: N/A "introduced in 2.6.27 commit 772cb7c8"
+2.6.24-etch-security: N/A "introduced in 2.6.27 commit 772cb7c8"
+2.6.26-lenny-security: N/A "introduced in 2.6.27 commit 772cb7c8"
+2.6.32-squeeze-security: pending (2.6.32-41squeeze1) [bugfix/all/ext4-fix-undefined-behavior-in-ext4_fill_flex_info.patch] "fix in 2.6.32-2 was incomplete"

Deleted: retired/CVE-2009-4307
===================================================================
--- retired/CVE-2009-4307	2012-03-13 20:30:10 UTC (rev 2642)
+++ retired/CVE-2009-4307	2012-03-14 01:17:28 UTC (rev 2643)
@@ -1,14 +0,0 @@
-Candidate: CVE-2009-4307
-Description:
-References:
- http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-4307
-Notes:
-Bugs:
-upstream: pending (2.6.33-rc1) [503358ae]
-2.6.31-upstream-stable: released (2.6.31.8) [a7aaaff9]
-2.6.32-upstream-stable: released (2.6.32.1) [8ed33ff5]
-linux-2.6: released (2.6.32-2)
-2.6.18-etch-security: N/A "introduced in 2.6.27 commit 772cb7c8"
-2.6.24-etch-security: N/A "introduced in 2.6.27 commit 772cb7c8"
-2.6.26-lenny-security: N/A "introduced in 2.6.27 commit 772cb7c8"
-2.6.32-squeeze-security: released (2.6.32-2)




More information about the kernel-sec-discuss mailing list