[Secure-testing-commits] r34190 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue May 12 04:34:24 UTC 2015


Author: carnil
Date: 2015-05-12 04:34:24 +0000 (Tue, 12 May 2015)
New Revision: 34190

Modified:
   data/CVE/list
Log:
Two linux CVEs fixed in unstable upload

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-05-11 23:29:34 UTC (rev 34189)
+++ data/CVE/list	2015-05-12 04:34:24 UTC (rev 34190)
@@ -859,7 +859,7 @@
 	NOTE: Affects: versions through 2014.1.4, and 2014.2 versions through 2014.2.3
 CVE-2015-3636
 	RESERVED
-	- linux <unfixed>
+	- linux 4.0.2-1
 	- linux-2.6 <removed>
 	NOTE: Upstream fix: https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=a134f083e79fb4c3d0a925691e732c56911b4326 (v4.1-rc2)
 	NOTE: https://lkml.org/lkml/2011/5/13/382
@@ -1238,7 +1238,7 @@
 	NOT-FOR-US: Lenovo USB Enhanced Performance Keyboard software
 CVE-2014-9717 [USERNS allows circumventing MNT_LOCKED]
 	RESERVED
-	- linux <unfixed>
+	- linux 4.0.2-1
 	[wheezy] - linux <not-affected> (user namespaces known broken before 3.5, see kernel-sec info)
 	- linux-2.6 <not-affected> (user namespaces known broken before 3.5, see kernel-sec info)
 	NOTE: https://groups.google.com/forum/#!topic/linux.kernel/HnegnbXk0Vs




More information about the Secure-testing-commits mailing list