[Secure-testing-commits] r1090 - sarge-checks/CAN

Moritz Muehlenhoff jmm-guest@costa.debian.org
Tue, 17 May 2005 21:41:32 +0000


Author: jmm-guest
Date: 2005-05-17 21:41:29 +0000 (Tue, 17 May 2005)
New Revision: 1090

Modified:
   sarge-checks/CAN/list
Log:
Splitted CVE assign for latest kernel root holes.


Modified: sarge-checks/CAN/list
===================================================================
--- sarge-checks/CAN/list	2005-05-17 21:14:29 UTC (rev 1089)
+++ sarge-checks/CAN/list	2005-05-17 21:41:29 UTC (rev 1090)
@@ -6,8 +6,10 @@
 	- clamav 0.85.1-1
 CAN-2005-XXXX [libxpm4: new s_popen() function is insecure garbage]
 	- libxpm4 (unfixed; bug #308783)
-CAN-2005-1589
+CAN-2005-1589 [Local privilege escalation in the Linux kernel's pktcdvd ioctl]
 	NOTE: reserved
+	- kernel-source-2.6.8 (unfixed; bug #309429)
+	- kernel-source-2.6.11 2.6.11-5
 CAN-2005-1588 (SQL injection vulnerability in index.php for Quick.cart 0.3.0 allows ...)
 	NOTE: not-for-us (Quick.cart)
 CAN-2005-1587 (Cross-site scripting (XSS) vulnerability in index.php for Quick.cart ...)
@@ -1483,7 +1485,7 @@
 	NOTE: reserved
 CAN-2005-1265
 	NOTE: reserved
-CAN-2005-1264 [Local privilege escalation in the Linux kernel's raw and pktcdvd ioctls]
+CAN-2005-1264 [Local privilege escalation in the Linux kernel's raw ioctl]
 	NOTE: reserved
 	- kernel-source-2.6.8 (unfixed; bug #309429)
 	- kernel-source-2.6.11 2.6.11-5