[Secure-testing-commits] r8805 - data/CVE

nion at alioth.debian.org nion at alioth.debian.org
Wed May 14 13:40:48 UTC 2008


Author: nion
Date: 2008-05-14 13:40:46 +0000 (Wed, 14 May 2008)
New Revision: 8805

Modified:
   data/CVE/list
Log:
new linux-2.6 issue: CVE-2008-2148, etch not affected

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2008-05-14 13:15:25 UTC (rev 8804)
+++ data/CVE/list	2008-05-14 13:40:46 UTC (rev 8805)
@@ -31,7 +31,9 @@
 	- wordnet <unfixed> (bug #481186)
 	NOTE: wordnet can be used as a backend to web applications
 CVE-2008-2148 (The utimensat system call in Linux kernel 2.6.22 and other versions ...)
-	TODO: check
+	- linux-2.6 <unfixed> (bug #481195)
+	[etch] - linux-2.6 <not-affected> (vulnerable code not present)
+	NOTE: utimensat() was introduced in 2.6.22 and sched_slice() in 2.6.24
 CVE-2008-2145 (Stack-based buffer overflow in Novell Client 4.91 SP4 and earlier ...)
 	NOT-FOR-US: Novell Client 4.91 SP4
 CVE-2008-2144 (Multiple unspecified vulnerabilities in Solaris print service for Sun ...)




More information about the Secure-testing-commits mailing list