[kernel-sec-discuss] r770 - active retired

Moritz Muehlenhoff jmm at alioth.debian.org
Sun Apr 29 20:54:08 UTC 2007


Author: jmm
Date: 2007-04-29 20:54:07 +0000 (Sun, 29 Apr 2007)
New Revision: 770

Added:
   retired/CVE-2006-2629
Removed:
   active/CVE-2006-2629
Modified:
   active/CVE-2006-3468
Log:
retire CVE-2006-2629
record fix for CVE-2006-3468


Deleted: active/CVE-2006-2629
===================================================================
--- active/CVE-2006-2629	2007-04-29 20:51:48 UTC (rev 769)
+++ active/CVE-2006-2629	2007-04-29 20:54:07 UTC (rev 770)
@@ -1,18 +0,0 @@
-Candidate: CVE-2006-2629
-References: 
- URL:http://marc.theaimsgroup.com/?l=linux-kernel&m=114860432801543&w=2
-Description: 
- Race condition in Linux kernel 2.6.15 to 2.6.17, when running on SMP
- platforms, allows local users to cause a denial of service (crash) by
- creating and exiting a large number of tasks, then accessing the /proc
- entry of a task that is exiting, which causes memory corruption that
- leads to a failure in the prune_dcache function or a BUG_ON error in
- include/linux/list.h.
-Notes: 
- dannf> marking sarge kernels N/A because they are < 2.6.15
- jmm> git commit cd6a3ce9ec040c0b56ea92a81ff710417798c559
-Bugs: 
-upstream: released (2.6.18)
-linux-2.6: released (2.6.18-1)
-2.6.8-sarge-security: N/A
-2.4.27-sarge-security: N/A

Modified: active/CVE-2006-3468
===================================================================
--- active/CVE-2006-3468	2007-04-29 20:51:48 UTC (rev 769)
+++ active/CVE-2006-3468	2007-04-29 20:54:07 UTC (rev 770)
@@ -20,10 +20,12 @@
 Bugs: 
  https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=199172
 upstream: released (2.6.17.8, 2.6.18-rc4)
-linux-2.6: needed
+linux-2.6: released (2.6.18-1)
 2.6.8-sarge-security: released (2.6.8-16sarge5) [fs-ext3-bad-nfs-handle.dpatch]
 2.4.27-sarge-security: ignored (2.4.27-10sarge4)
 2.6.10-hoary-security: released (2.6.10-34.23)
 2.6.12-breezy-security: released (2.6.12-10.37)
 2.6.15-dapper-security: released (2.6.15-26.47)
 2.6.17-edgy: released (2.6.17-10.30)
+2.6.18-etch-security: N/A
+

Copied: retired/CVE-2006-2629 (from rev 762, active/CVE-2006-2629)




More information about the kernel-sec-discuss mailing list