[Secure-testing-commits] r49031 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Fri Feb 17 20:27:49 UTC 2017
Author: carnil
Date: 2017-02-17 20:27:49 +0000 (Fri, 17 Feb 2017)
New Revision: 49031
Modified:
data/CVE/list
Log:
Update four CVEs for linux fixed in sid
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2017-02-17 20:17:38 UTC (rev 49030)
+++ data/CVE/list 2017-02-17 20:27:49 UTC (rev 49031)
@@ -177,7 +177,7 @@
NOTE: https://lists.gnu.org/archive/html/qemu-devel/2017-02/msg02776.html
CVE-2017-5986 [Reachable BUG_ON from userspace in sctp_wait_for_sndbuf()]
RESERVED
- - linux <unfixed>
+ - linux 4.9.10-1
NOTE: Fixed by: https://git.kernel.org/linus/2dcab598484185dea7ec22219c76dcdd59e3cb90
CVE-2017-5985
RESERVED
@@ -250,7 +250,7 @@
CVE-2017-5971
RESERVED
CVE-2017-5970 (The ipv4_pktinfo_prepare function in net/ipv4/ip_sockglue.c in the ...)
- - linux <unfixed>
+ - linux 4.9.10-1
[wheezy] - linux <not-affected> (Vulnerable code introduced later)
NOTE: Fixed by: https://github.com/torvalds/linux/commit/34b2cef20f19c87999fff3da4071e66937db9644 (v4.10-rc8)
NOTE: Introduced by: https://github.com/torvalds/linux/commit/d826eb14ecef3574b6b3be55e5f4329f4a76fbf3 (v3.3-rc1)
@@ -9495,7 +9495,7 @@
RESERVED
CVE-2017-2618 [selinux: fix off-by-one in setprocattr]
RESERVED
- - linux <unfixed>
+ - linux 4.9.10-1
NOTE: Fixed by: https://github.com/torvalds/linux/commit/0c461cb727d146c9ef2d3e86214f498b78b7d125
CVE-2017-2617
RESERVED
@@ -18062,7 +18062,7 @@
NOTE: Introduced by: http://git.kernel.org/cgit/boot/dracut/dracut.git/commit/?id=5f2c30d9bcd614d546d5c55c6897e33f88b9ab90 (030)
CVE-2016-8636 [mem_check_range integer overflow]
RESERVED
- - linux <unfixed>
+ - linux 4.9.10-1
[jessie] - linux <not-affected> (Vulnerable code not present)
[wheezy] - linux <not-affected> (Vulnerable code not present)
NOTE: Fix https://github.com/torvalds/linux/commit/647bf3d8a8e5777319da92af672289b2a6c4dc66
More information about the Secure-testing-commits
mailing list