[Secure-testing-commits] r24324 - data/CVE

Salvatore Bonaccorso carnil at alioth.debian.org
Thu Nov 7 20:08:01 UTC 2013


Author: carnil
Date: 2013-11-07 20:08:01 +0000 (Thu, 07 Nov 2013)
New Revision: 24324

Modified:
   data/CVE/list
Log:
Add CVE-2013-4270/linux

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-11-07 16:20:22 UTC (rev 24323)
+++ data/CVE/list	2013-11-07 20:08:01 UTC (rev 24324)
@@ -5538,8 +5538,13 @@
 	NOT-FOR-US: Drupal addon
 CVE-2013-4271 (The default configuration of the ObjectRepresentation class in Restlet ...)
 	- restlet <itp> (bug #596472)
-CVE-2013-4270
+CVE-2013-4270 [net: permissions flaw in /proc/sys/net]
 	RESERVED
+	- linux-2.6 <not-affected> (Introduced in 3.8)
+	- linux <unfixed>
+	[wheezy] - linux <not-affected> (Introduced in 3.8)
+	NOTE: Introduced with http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=cff109768b2d9c03095848f4cd4b0754117262aa
+	NOTE: Fixed by http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=2433c8f094a008895e66f25bd1773cdb01c91d01
 CVE-2013-4269
 	RESERVED
 	- ajaxplorer <itp> (bug #668381)




More information about the Secure-testing-commits mailing list