[Secure-testing-commits] r21416 - data/CVE

Moritz Muehlenhoff jmm at alioth.debian.org
Mon Feb 25 07:08:38 UTC 2013


Author: jmm
Date: 2013-02-25 07:08:37 +0000 (Mon, 25 Feb 2013)
New Revision: 21416

Modified:
   data/CVE/list
Log:
two kernel issues not in squeeze


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-02-25 06:54:34 UTC (rev 21415)
+++ data/CVE/list	2013-02-25 07:08:37 UTC (rev 21416)
@@ -4699,7 +4699,7 @@
 	- linux-2.6 <not-affected> (Vulnerable code not present)
 CVE-2013-0309 (arch/x86/include/asm/pgtable.h in the Linux kernel before 3.6.2, when ...)
 	- linux <unfixed>
-	- linux-2.6 <removed>
+	- linux-2.6 <not-affected> (THP not in Squeeze)
 CVE-2013-0308 [Incorrect IMAP server's SSL x509.v3 certificate validation in git-imap-send command]
 	RESERVED
 	- git <not-affected> (OpenSSL support is not enabled in Debian, see bug #701586)
@@ -4765,8 +4765,7 @@
 	RESERVED
 CVE-2013-0290 (The __skb_recv_datagram function in net/core/datagram.c in the Linux ...)
 	- linux <unfixed>
-	- linux-2.6 <removed>
-	NOTE: not verified, but list post mention v3.4 to v3.8 affected
+	- linux-2.6 <not-affected> (Introduced in 3.4)
 CVE-2013-0289 [missing SSL subject verification]
 	RESERVED
 	- isync <unfixed> (low; bug #701052)




More information about the Secure-testing-commits mailing list