[Secure-testing-commits] r40217 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Mon Mar 7 21:06:44 UTC 2016


Author: carnil
Date: 2016-03-07 21:06:44 +0000 (Mon, 07 Mar 2016)
New Revision: 40217

Modified:
   data/CVE/list
Log:
Mark CVE-2015-5228 and CVE-205-5231 in criu as fixed in 1.8-2

Fixed in v1.8 upstream, cf. http://criu.org/Download/criu#v._1.8

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-03-07 21:04:21 UTC (rev 40216)
+++ data/CVE/list	2016-03-07 21:06:44 UTC (rev 40217)
@@ -18160,7 +18160,7 @@
 	NOT-FOR-US: OPA Fabric Manager and OPA tools and Fast Fabric
 CVE-2015-5231 [service daemon allows to bypass ptrace policy]
 	RESERVED
-	- criu <unfixed> (bug #797110)
+	- criu 1.8-2 (bug #797110)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1256728
 CVE-2015-5230
 	RESERVED
@@ -18175,7 +18175,7 @@
 	- eglibc <not-affected> (RHEL-specific backport)
 CVE-2015-5228 [arbitrary file creation and chown]
 	RESERVED
-	- criu <unfixed> (bug #797111)
+	- criu 1.8-2 (bug #797111)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1255782
 CVE-2015-5227
 	RESERVED




More information about the Secure-testing-commits mailing list