[Secure-testing-commits] r36543 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Sep 8 17:53:31 UTC 2015


Author: carnil
Date: 2015-09-08 17:53:31 +0000 (Tue, 08 Sep 2015)
New Revision: 36543

Modified:
   data/CVE/list
Log:
Update information for CVE-2015-0272

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-09-08 17:14:27 UTC (rev 36542)
+++ data/CVE/list	2015-09-08 17:53:31 UTC (rev 36543)
@@ -20758,9 +20758,12 @@
 	NOTE: http://git.php.net/?p=php-src.git;a=commit;h=71335e6ebabc1b12c057d8017fd811892ecdfd24
 CVE-2015-0272 [linux: remote DoS using IPv6 RA with bogus MTU]
 	RESERVED
-	- linux <unfixed>
+	- linux 4.0.2-1
 	- linux-2.6 <removed>
-	NOTE: Underlying Red Hat bug is private, asked in RH Bugzilla for details
+	NOTE: Patch for the kernel to harden against invalid MTUs: http://article.gmane.org/gmane.linux.network/351269
+	NOTE: https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=77751427a1ff25b27d47a4c36b12c3c8667855ac (v4.0-rc3)
+	- network-manager <unfixed>
+	NOTE: Commit for NetworkManager: http://cgit.freedesktop.org/NetworkManager/NetworkManager/commit/?id=d5fc88e573fa58b93034b04d35a2454f5d28cad9
 CVE-2015-0271 (The log-viewing function in the Red Hat redhat-access-plugin before ...)
 	- horizon <not-affected> (RedHat-specific plugin)
 CVE-2015-0270 [Potential SQL injection in PostgreSQL Zend\Db adapter]




More information about the Secure-testing-commits mailing list