[Secure-testing-commits] r11658 - data/CVE

Michael Gilbert gilbert-guest at alioth.debian.org
Mon Apr 20 02:52:54 UTC 2009


Author: gilbert-guest
Date: 2009-04-20 02:52:54 +0000 (Mon, 20 Apr 2009)
New Revision: 11658

Modified:
   data/CVE/list
Log:
adding /dev/mem rootkit issue


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2009-04-20 02:47:05 UTC (rev 11657)
+++ data/CVE/list	2009-04-20 02:52:54 UTC (rev 11658)
@@ -1,3 +1,8 @@
+CVE-2009-XXXX [linux-2.6: /dev/mem rootkit vulnerability]
+        - linux-2.6 2.6.29-1 (low; bug #524373)
+        NOTE: according to the kernel team (see bug report), they have no interest in backporting a
+        NOTE:   fix for the stable releases because it could potentially cause compatibility problems
+        NOTE: should a DSA be issued stating that no action will be taken to address the issue?
 CVE-2009-XXXX [pptp-linux: unrestrictive pptpsetup permissions]
         - pptp-linux <unfixed> (low; bug #523476)
 CVE-2009-XXXX [slurm-llnl doesn't drop supplementary groups]




More information about the Secure-testing-commits mailing list