[kernel-sec-discuss] r5037 - active

Ben Hutchings benh at moszumanska.debian.org
Tue Mar 7 00:54:46 UTC 2017


Author: benh
Date: 2017-03-07 00:54:45 +0000 (Tue, 07 Mar 2017)
New Revision: 5037

Modified:
   active/CVE-2017-2596
   active/CVE-2017-5669
   active/CVE-2017-5986
   active/CVE-2017-6348
   active/CVE-2017-6353
Log:
Mark issues pending for upstream stable

Modified: active/CVE-2017-2596
===================================================================
--- active/CVE-2017-2596	2017-03-07 00:41:45 UTC (rev 5036)
+++ active/CVE-2017-2596	2017-03-07 00:54:45 UTC (rev 5037)
@@ -8,7 +8,7 @@
  https://bugzilla.redhat.com/show_bug.cgi?id=1417812
 upstream: released (4.11-rc1) [06ce521af9558814b8606c0476c54497cf83a653]
 4.9-upstream-stable: needed
-3.16-upstream-stable: needed
+3.16-upstream-stable: pending (3.16.42) [kvm-fix-page-struct-leak-in-handle_vmon.patch]
 3.2-upstream-stable: N/A "Vulnerable code not present"
 sid: released (4.9.13-1) [bugfix/x86/kvm-fix-page-struct-leak-in-handle_vmon.patch]
 3.16-jessie-security: released (3.16.39-1+deb8u1) [bugfix/x86/kvm-fix-page-struct-leak-in-handle_vmon.patch]

Modified: active/CVE-2017-5669
===================================================================
--- active/CVE-2017-5669	2017-03-07 00:41:45 UTC (rev 5036)
+++ active/CVE-2017-5669	2017-03-07 00:54:45 UTC (rev 5037)
@@ -7,8 +7,8 @@
  https://bugzilla.kernel.org/show_bug.cgi?id=192931
 upstream: released (4.11-rc1) [95e91b831f87ac8e1f8ed50c14d709089b4e01b8]
 4.9-upstream-stable: needed
-3.16-upstream-stable: needed
-3.2-upstream-stable: needed
+3.16-upstream-stable: pending (3.16.42) [ipc-shm-fix-shmat-mmap-nil-page-protection.patch]
+3.2-upstream-stable: pending (3.2.87) [ipc-shm-fix-shmat-mmap-nil-page-protection.patch]
 sid: released (4.9.13-1) [bugfix/all/ipc-shm-fix-shmat-mmap-nil-page-protection.patch]
 3.16-jessie-security: needed
 3.2-wheezy-security: needed

Modified: active/CVE-2017-5986
===================================================================
--- active/CVE-2017-5986	2017-03-07 00:41:45 UTC (rev 5036)
+++ active/CVE-2017-5986	2017-03-07 00:54:45 UTC (rev 5037)
@@ -7,8 +7,8 @@
 Bugs:
 upstream: released (4.10-rc8) [2dcab598484185dea7ec22219c76dcdd59e3cb90]
 4.9-upstream-stable: released (4.9.11) [00eff2ebbd229758e90659907724c14dd5a18339]
-3.16-upstream-stable: needed
-3.2-upstream-stable: needed
+3.16-upstream-stable: pending (3.16.42) [sctp-avoid-bug_on-on-sctp_wait_for_sndbuf.patch]
+3.2-upstream-stable: pending (3.2.87) [sctp-avoid-bug_on-on-sctp_wait_for_sndbuf.patch]
 sid: released (4.9.10-1) [bugfix/all/sctp-avoid-BUG_ON-on-sctp_wait_for_sndbuf.patch]
 3.16-jessie-security: needed
 3.2-wheezy-security: needed

Modified: active/CVE-2017-6348
===================================================================
--- active/CVE-2017-6348	2017-03-07 00:41:45 UTC (rev 5036)
+++ active/CVE-2017-6348	2017-03-07 00:54:45 UTC (rev 5037)
@@ -6,8 +6,8 @@
 Bugs:
 upstream: released (4.10) [4c03b862b12f980456f9de92db6d508a4999b788]
 4.9-upstream-stable: released (4.9.13) [c2219da51664451149350e47321aa0fcf72a8b8f]
-3.16-upstream-stable: needed
-3.2-upstream-stable: needed
+3.16-upstream-stable: pending (3.16.42) [irda-fix-lockdep-annotations-in-hashbin_delete.patch]
+3.2-upstream-stable: pending (3.2.87) [irda-fix-lockdep-annotations-in-hashbin_delete.patch]
 sid: released (4.9.13-1)
 3.16-jessie-security: needed
 3.2-wheezy-security: needed

Modified: active/CVE-2017-6353
===================================================================
--- active/CVE-2017-6353	2017-03-07 00:41:45 UTC (rev 5036)
+++ active/CVE-2017-6353	2017-03-07 00:54:45 UTC (rev 5037)
@@ -10,8 +10,8 @@
 Bugs:
 upstream: released (4.11-rc1) [dfcb9f4f99f1e9a49e43398a7bfbf56927544af1]
 4.9-upstream-stable: needed
-3.16-upstream-stable: needed
-3.2-upstream-stable: needed
+3.16-upstream-stable: pending (3.16.42) [sctp-deny-peeloff-operation-on-asocs-with-threads-sleeping-on-it.patch]
+3.2-upstream-stable: pending (3.2.87) [sctp-deny-peeloff-operation-on-asocs-with-threads-sleeping-on-it.patch]
 sid: released (4.9.13-1) [bugfix/all/sctp-deny-peeloff-operation-on-asocs-with-threads-sl.patch]
 3.16-jessie-security: needed
 3.2-wheezy-security: needed




More information about the kernel-sec-discuss mailing list