[Secure-testing-commits] r32529 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Feb 27 13:03:46 UTC 2015


Author: carnil
Date: 2015-02-27 13:03:46 +0000 (Fri, 27 Feb 2015)
New Revision: 32529

Modified:
   data/CVE/list
Log:
Add CVE-2012-6689/linux

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-02-27 09:17:12 UTC (rev 32528)
+++ data/CVE/list	2015-02-27 13:03:46 UTC (rev 32529)
@@ -1571,6 +1571,10 @@
 	[wheezy] - byzanz <no-dsa> (Minor issue)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=852481
 	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2015/02/06/11
+CVE-2012-6689 [incorrect validation of netlink message origin allows attackers to spoof netlink messages]
+	- linux 3.8.11-1
+	- linux-2.6 <removed>
+	NOTE: Upstream commit: https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=20e1db19db5d6b9e4e83021595eab0dc8f107bef (v3.6-rc5)
 CVE-2012-6687 (FastCGI (aka fcgi and libfcgi) 2.4.0 allows remote attackers to cause ...)
 	- libfcgi 2.4.0-8.3 (bug #681591)
 	[wheezy] - libfcgi <no-dsa> (Minor issue)




More information about the Secure-testing-commits mailing list