[Secure-testing-commits] r33593 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Apr 15 06:15:24 UTC 2015


Author: carnil
Date: 2015-04-15 06:15:24 +0000 (Wed, 15 Apr 2015)
New Revision: 33593

Modified:
   data/CVE/list
Log:
Add another issue in linux

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-04-15 05:46:12 UTC (rev 33592)
+++ data/CVE/list	2015-04-15 06:15:24 UTC (rev 33593)
@@ -1,3 +1,11 @@
+CVE-2015-XXXX [Buffer overruns in Linux kernel RFC4106 implementation using AESNI]
+	- linux <unfixed>
+	- linux-2.6 <removed>
+	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2015/04/14/16
+	NOTE: Fixed by: https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=ccfe8c3f7e52ae83155cb038753f4c75b774ca8a (v4.0-rc5)
+	NOTE: Introduced by: https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=0bd82f5f6355775fbaf7d3c664432ce1b862be1e (v2.6.38-rc1)
+	NOTE: Was backported to various stable branches
+	TODO: check
 CVE-2015-XXXX [TCP Fast Open local DoS]
 	- linux <unfixed> (bug #782515)
 	- linux-2.6 <removed>
@@ -3,4 +11,5 @@
 	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2015/04/14/14
 	NOTE: http://thread.gmane.org/gmane.linux.network/359588
+	TODO: check
 CVE-2015-XXXX [denial of service due to stack overflow in src/ber-decoder.c]
 	- libksba <unfixed>




More information about the Secure-testing-commits mailing list