[Secure-testing-commits] r58643 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sun Dec 17 14:38:49 UTC 2017


Author: carnil
Date: 2017-12-17 14:38:49 +0000 (Sun, 17 Dec 2017)
New Revision: 58643

Modified:
   data/CVE/list
Log:
Add three new linux issues

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-12-17 14:10:06 UTC (rev 58642)
+++ data/CVE/list	2017-12-17 14:38:49 UTC (rev 58643)
@@ -14446,12 +14446,19 @@
 	RESERVED
 CVE-2017-15129
 	RESERVED
-CVE-2017-15128
+CVE-2017-15128 [Out of bound access in hugetlb_mcopy_atomic_pte function in mm/hugetlb.c]
 	RESERVED
-CVE-2017-15127
+	- linux <unfixed>
+	NOTE: http://post-office.corp.redhat.com/archives/rhkernel-list/2017-October/msg09574.html
+	TODO: check, no further detail available
+CVE-2017-15127 [Improper error handling of VM_SHARED hugetlbfs mapping in mm/hugetlb.c]
 	RESERVED
-CVE-2017-15126
+	- linux <unfixed>
+	NOTE: Fixed by: https://git.kernel.org/linus/5af10dfd0afc559bb4b0f7e3e8227a1578333995
+CVE-2017-15126 [Use-after-free in userfaultfd_event_wait_completion function in userfaultfd.c]
 	RESERVED
+	- linux <unfixed>
+	NOTE: Fixed by: https://git.kernel.org/linus/384632e67e0829deb8015ee6ad916b180049d252
 CVE-2017-15125
 	RESERVED
 CVE-2017-15124




More information about the Secure-testing-commits mailing list