[Secure-testing-commits] r49031 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Feb 17 20:27:49 UTC 2017


Author: carnil
Date: 2017-02-17 20:27:49 +0000 (Fri, 17 Feb 2017)
New Revision: 49031

Modified:
   data/CVE/list
Log:
Update four CVEs for linux fixed in sid

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-02-17 20:17:38 UTC (rev 49030)
+++ data/CVE/list	2017-02-17 20:27:49 UTC (rev 49031)
@@ -177,7 +177,7 @@
 	NOTE: https://lists.gnu.org/archive/html/qemu-devel/2017-02/msg02776.html
 CVE-2017-5986 [Reachable BUG_ON from userspace in sctp_wait_for_sndbuf()]
 	RESERVED
-	- linux <unfixed>
+	- linux 4.9.10-1
 	NOTE: Fixed by: https://git.kernel.org/linus/2dcab598484185dea7ec22219c76dcdd59e3cb90
 CVE-2017-5985
 	RESERVED
@@ -250,7 +250,7 @@
 CVE-2017-5971
 	RESERVED
 CVE-2017-5970 (The ipv4_pktinfo_prepare function in net/ipv4/ip_sockglue.c in the ...)
-	- linux <unfixed>
+	- linux 4.9.10-1
 	[wheezy] - linux <not-affected> (Vulnerable code introduced later)
 	NOTE: Fixed by: https://github.com/torvalds/linux/commit/34b2cef20f19c87999fff3da4071e66937db9644 (v4.10-rc8)
 	NOTE: Introduced by: https://github.com/torvalds/linux/commit/d826eb14ecef3574b6b3be55e5f4329f4a76fbf3 (v3.3-rc1)
@@ -9495,7 +9495,7 @@
 	RESERVED
 CVE-2017-2618 [selinux: fix off-by-one in setprocattr]
 	RESERVED
-	- linux <unfixed>
+	- linux 4.9.10-1
 	NOTE: Fixed by: https://github.com/torvalds/linux/commit/0c461cb727d146c9ef2d3e86214f498b78b7d125
 CVE-2017-2617
 	RESERVED
@@ -18062,7 +18062,7 @@
 	NOTE: Introduced by: http://git.kernel.org/cgit/boot/dracut/dracut.git/commit/?id=5f2c30d9bcd614d546d5c55c6897e33f88b9ab90 (030)
 CVE-2016-8636 [mem_check_range integer overflow]
 	RESERVED
-	- linux <unfixed>
+	- linux 4.9.10-1
 	[jessie] - linux <not-affected> (Vulnerable code not present)
 	[wheezy] - linux <not-affected> (Vulnerable code not present)
 	NOTE: Fix https://github.com/torvalds/linux/commit/647bf3d8a8e5777319da92af672289b2a6c4dc66




More information about the Secure-testing-commits mailing list