[Secure-testing-commits] r34190 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Tue May 12 04:34:24 UTC 2015
Author: carnil
Date: 2015-05-12 04:34:24 +0000 (Tue, 12 May 2015)
New Revision: 34190
Modified:
data/CVE/list
Log:
Two linux CVEs fixed in unstable upload
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2015-05-11 23:29:34 UTC (rev 34189)
+++ data/CVE/list 2015-05-12 04:34:24 UTC (rev 34190)
@@ -859,7 +859,7 @@
NOTE: Affects: versions through 2014.1.4, and 2014.2 versions through 2014.2.3
CVE-2015-3636
RESERVED
- - linux <unfixed>
+ - linux 4.0.2-1
- linux-2.6 <removed>
NOTE: Upstream fix: https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=a134f083e79fb4c3d0a925691e732c56911b4326 (v4.1-rc2)
NOTE: https://lkml.org/lkml/2011/5/13/382
@@ -1238,7 +1238,7 @@
NOT-FOR-US: Lenovo USB Enhanced Performance Keyboard software
CVE-2014-9717 [USERNS allows circumventing MNT_LOCKED]
RESERVED
- - linux <unfixed>
+ - linux 4.0.2-1
[wheezy] - linux <not-affected> (user namespaces known broken before 3.5, see kernel-sec info)
- linux-2.6 <not-affected> (user namespaces known broken before 3.5, see kernel-sec info)
NOTE: https://groups.google.com/forum/#!topic/linux.kernel/HnegnbXk0Vs
More information about the Secure-testing-commits
mailing list