[Secure-testing-commits] r13820 - data/CVE

Michael Gilbert gilbert-guest at alioth.debian.org
Thu Jan 14 21:41:14 UTC 2010


Author: gilbert-guest
Date: 2010-01-14 21:41:13 +0000 (Thu, 14 Jan 2010)
New Revision: 13820

Modified:
   data/CVE/list
Log:
kernel issues

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2010-01-14 21:14:24 UTC (rev 13819)
+++ data/CVE/list	2010-01-14 21:41:13 UTC (rev 13820)
@@ -1306,8 +1306,10 @@
 	RESERVED
 CVE-2010-0008
 	RESERVED
-CVE-2010-0007
+CVE-2010-0007 [normal users can modify etables rules]
 	RESERVED
+	- linux-2.6 <unfixed>
+	- linux-2.6.24 <removed>
 CVE-2010-0006 [ipv6 null ptr dereference]
 	RESERVED
 	- linux-2.6 <unfixed>
@@ -1777,7 +1779,9 @@
 CVE-2009-4141
 	RESERVED
 	- linux-2.6 <unfixed>
-	- linux-2.6.24 <removed>
+	[lenny] - linux-2.6 <not-affected> (vulnerable code introduced in 2.6.28)
+	[etch] - linux-2.6 <not-affected> (vulnerable code introduced in 2.6.28)
+	- linux-2.6.24 <not-affected> (vulnerable code introduced in 2.6.28)
 	NOTE: http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commitdiff;h=53281b6d3
 CVE-2009-4140 (Unrestricted file upload vulnerability in ofc_upload_image.php in Open ...)
 	- piwik <itp> (bug #506933)




More information about the Secure-testing-commits mailing list