[Secure-testing-commits] r31546 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Jan 20 15:24:43 UTC 2015


Author: carnil
Date: 2015-01-20 15:24:43 +0000 (Tue, 20 Jan 2015)
New Revision: 31546

Modified:
   data/CVE/list
Log:
Add new linux issue

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-01-19 21:54:40 UTC (rev 31545)
+++ data/CVE/list	2015-01-20 15:24:43 UTC (rev 31546)
@@ -1,3 +1,9 @@
+CVE-2015-XXXX [information leak in event device handling]
+	- linux <unfixed>
+	- linux-2.6 <removed>
+	NOTE: Upstream fix: https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=7c4f56070fde2367766fa1fb04852599b5e1ad35 (v3.18-rc1)
+	NOTE: (Possibly) introduced by https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=483180281f0ac60d1138710eb21f4b9961901294
+	TODO: check in which version the issue was introduced exactly
 CVE-2015-XXXX [heap buffer overrun]
 	- grep <unfixed>
 	NOTE: http://bugs.gnu.org/19563




More information about the Secure-testing-commits mailing list