[Secure-testing-commits] r54612 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Aug 11 11:48:49 UTC 2017


Author: carnil
Date: 2017-08-11 11:48:49 +0000 (Fri, 11 Aug 2017)
New Revision: 54612

Modified:
   data/CVE/list
Log:
Add note for CVE-2017-1000111

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-08-11 11:48:35 UTC (rev 54611)
+++ data/CVE/list	2017-08-11 11:48:49 UTC (rev 54612)
@@ -55,6 +55,7 @@
 	- linux <unfixed>
 	NOTE: Introduced by: https://git.kernel.org/linus/8913336a7e8d56e984109a3137d6c0e3362596a4 (2.6.27-rc1)
 	NOTE: Fixed by: https://git.kernel.org/linus/c27927e372f0785f3303e8fad94b85945e2c97b7
+	NOTE: Non-privileged user namespaces disabled by default, only exploitable by arbitrary user if sysctl kernel.unprivileged_userns_clone=1
 CVE-2017-1000117
 	{DSA-3934-1}
 	- git 1:2.14.1-1




More information about the Secure-testing-commits mailing list