Author: gilbert-guest Date: 2009-11-16 19:33:48 +0000 (Mon, 16 Nov 2009) New Revision: 13296 Modified: data/CVE/list Log: kernel issues fixed in latest unstable upload Modified: data/CVE/list ==================================================================--- data/CVE/list 2009-11-16 19:31:10 UTC (rev 13295) +++ data/CVE/list 2009-11-16 19:33:48 UTC (rev 13296) @@ -744,7 +744,7 @@ CVE-2009-3625 (Directory traversal vulnerability in www/index.php in Sahana 0.6.2.2 ...) - sahana <itp> (bug #497414) CVE-2009-3624 (The get_instantiation_keyring function in security/keys/keyctl.c in ...) - - linux-2.6 <unfixed> (low) + - linux-2.6 2.6.31-2 (low) [etch] - linux-2.6 <not-affected> (vulnerable code introduced in 2.6.29) [lenny] - linux-2.6 <not-affected> (vulnerable code introduced in 2.6.29) - linux-2.6.24 <not-affected> (vulnerable code introduced in 2.6.29) @@ -795,7 +795,7 @@ NOTE: http://www.openwall.com/lists/oss-security/2009/10/15/4 CVE-2009-3612 (The tcf_fill_node function in net/sched/cls_api.c in the netlink ...) {DSA-1929-1 DSA-1928-1 DSA-1927-1} - - linux-2.6 <unfixed> (low) + - linux-2.6 2.6.31-2 (low) - linux-2.6.24 <removed> (low) NOTE: fixed in 2.6.32-rc5 CVE-2009-3611 (common/snapshots.py in Back In Time (aka backintime) 0.9.26 changes ...) @@ -988,7 +988,7 @@ RESERVED CVE-2009-3547 (Multiple race conditions in fs/pipe.c in the Linux kernel before ...) {DSA-1929-1 DSA-1928-1 DSA-1927-1} - - linux-2.6 <unfixed> (high) + - linux-2.6 2.6.31-2 (high) - linux-2.6.24 <removed> (high) NOTE: being exploited in the wild CVE-2009-3546 (The _gdGetColors function in gd_gd.c in PHP 5.2.11 and 5.3.0, and the ...)