[kernel-sec-discuss] r3960 - active retired

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Oct 13 09:29:05 UTC 2015


Author: carnil
Date: 2015-10-13 09:29:04 +0000 (Tue, 13 Oct 2015)
New Revision: 3960

Added:
   retired/CVE-2015-5283
Removed:
   active/CVE-2015-5283
Log:
Retire CVE-2015-5283

Deleted: active/CVE-2015-5283
===================================================================
--- active/CVE-2015-5283	2015-10-13 09:29:01 UTC (rev 3959)
+++ active/CVE-2015-5283	2015-10-13 09:29:04 UTC (rev 3960)
@@ -1,13 +0,0 @@
-Description: Creating multiple sockets when SCTP module isn't loaded leads to kernel panic
-References:
- http://patchwork.ozlabs.org/patch/515996/
-Notes:
-Bugs:
-upstream: released (v4.3-rc3) [8e2d61e0aed2b7c4ecb35844fe07e0b2b762dee4]
-3.16-upstream-stable: released (3.16.7-ckt18) [eb084bd187c25f0b63556a4f6c440e3ac96ecaf5]
-3.2-upstream-stable: N/A ("Vulnerable code not present")
-2.6.32-upstream-stable: N/A ("Vulnerable code not present")
-sid: released (4.2.1-2) [bugfix/all/sctp-fix-race-on-protocol-netns-initialization.patch]
-3.16-jessie-security: released (3.16.7-ckt11-1+deb8u5) [bugfix/all/sctp-fix-race-on-protocol-netns-initialization.patch]
-3.2-wheezy-security: N/A ("Vulnerable code not present")
-2.6.32-squeeze-security: N/A ("Vulnerable code not present")

Copied: retired/CVE-2015-5283 (from rev 3959, active/CVE-2015-5283)
===================================================================
--- retired/CVE-2015-5283	                        (rev 0)
+++ retired/CVE-2015-5283	2015-10-13 09:29:04 UTC (rev 3960)
@@ -0,0 +1,13 @@
+Description: Creating multiple sockets when SCTP module isn't loaded leads to kernel panic
+References:
+ http://patchwork.ozlabs.org/patch/515996/
+Notes:
+Bugs:
+upstream: released (v4.3-rc3) [8e2d61e0aed2b7c4ecb35844fe07e0b2b762dee4]
+3.16-upstream-stable: released (3.16.7-ckt18) [eb084bd187c25f0b63556a4f6c440e3ac96ecaf5]
+3.2-upstream-stable: N/A ("Vulnerable code not present")
+2.6.32-upstream-stable: N/A ("Vulnerable code not present")
+sid: released (4.2.1-2) [bugfix/all/sctp-fix-race-on-protocol-netns-initialization.patch]
+3.16-jessie-security: released (3.16.7-ckt11-1+deb8u5) [bugfix/all/sctp-fix-race-on-protocol-netns-initialization.patch]
+3.2-wheezy-security: N/A ("Vulnerable code not present")
+2.6.32-squeeze-security: N/A ("Vulnerable code not present")




More information about the kernel-sec-discuss mailing list