[Secure-testing-commits] r41229 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Apr 27 08:43:48 UTC 2016


Author: carnil
Date: 2016-04-27 08:43:48 +0000 (Wed, 27 Apr 2016)
New Revision: 41229

Modified:
   data/CVE/list
Log:
Update information for CVE-2015-7837

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-04-27 07:20:21 UTC (rev 41228)
+++ data/CVE/list	2016-04-27 08:43:48 UTC (rev 41229)
@@ -14683,8 +14683,10 @@
 	NOT-FOR-US: SolarWinds
 CVE-2015-7837
 	RESERVED
-	- linux 4.3-1 (unimportant)
+	- linux 4.5.1-1 (unimportant)
 	NOTE: secureboot not yet supported in the Debian package in 4.3
+	NOTE: https://github.com/mjg59/linux/commit/4b2b64d5a6ebc84214755ebccd599baef7c1b798
+	NOTE: Fix is included in 4.5.1-1 with the patches/features/all/securelevel/kexec-uefi-copy-secure_boot-flag-in-boot-params-acro.patch
 CVE-2015-7836 (Siemens RUGGEDCOM ROS before 4.2.1 allows remote attackers to obtain ...)
 	NOT-FOR-US: Siemens
 CVE-2015-7835 (The mod_l2_entry function in arch/x86/mm.c in Xen 3.4 through 4.6.x ...)




More information about the Secure-testing-commits mailing list