summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorBen Hutchings <ben@decadent.org.uk>2019-04-25 14:49:09 +0100
committerBen Hutchings <ben@decadent.org.uk>2019-04-25 20:41:22 +0100
commit7daea8c3af8df8d1d1103505efed5eeaed0baf66 (patch)
treeb067886f9a5bbda9d6e65aed33b585eafe6a4b49
parent46564783906b28651bbf75e2770218de302c4e94 (diff)
Mark CVE-2018-11987 as N/A for upstream Linux, and retire it
-rw-r--r--retired/CVE-2018-11987 (renamed from active/CVE-2018-11987)15
1 files changed, 8 insertions, 7 deletions
diff --git a/active/CVE-2018-11987 b/retired/CVE-2018-11987
index 87b75717..462750d4 100644
--- a/active/CVE-2018-11987
+++ b/retired/CVE-2018-11987
@@ -8,11 +8,12 @@ Notes:
carnil> drivers/staging/android/ion/ion_system_heap.c . For Debian the
carnil> code is not build so would be unimportant.
carnil> Possibly introduced in e7f63771b60e7802c5a9b437c5ab1a8e33a0bb35 (4.9-rc1)?
+ bwh> There doesn't seem to be any path to double-free in any upstream version.
Bugs:
-upstream:
-4.19-upstream-stable:
-4.9-upstream-stable:
-3.16-upstream-stable:
-sid:
-4.9-stretch-security:
-3.16-jessie-security:
+upstream: N/A "Vulnerable code path not present"
+4.19-upstream-stable: N/A "Vulnerable code path not present"
+4.9-upstream-stable: N/A "Vulnerable code path not present"
+3.16-upstream-stable: N/A "Vulnerable code path not present"
+sid: N/A "Vulnerable code path not present"
+4.9-stretch-security: N/A "Vulnerable code path not present"
+3.16-jessie-security: N/A "Vulnerable code path not present"

© 2014-2024 Faster IT GmbH | imprint | privacy policy