summaryrefslogtreecommitdiffstats
path: root/retired/CVE-2012-4542
diff options
context:
space:
mode:
authorMoritz Muehlenhoff <jmm@debian.org>2014-08-01 10:35:34 +0000
committerMoritz Muehlenhoff <jmm@debian.org>2014-08-01 10:35:34 +0000
commit85146d951307c8d00794749c07dea3b67b3621d5 (patch)
tree90db04520cdd18db08197bea46ac307364fdb06d /retired/CVE-2012-4542
parente3ebd13f044c7114887ec00ae4e8758e35db53ec (diff)
retire, per recent ping on oss-sec this doesn't seem to get addressed in mainline
git-svn-id: svn+ssh://svn.debian.org/svn/kernel-sec@3458 e094ebfe-e918-0410-adfb-c712417f3574
Diffstat (limited to 'retired/CVE-2012-4542')
-rw-r--r--retired/CVE-2012-454215
1 files changed, 15 insertions, 0 deletions
diff --git a/retired/CVE-2012-4542 b/retired/CVE-2012-4542
new file mode 100644
index 00000000..794a27f0
--- /dev/null
+++ b/retired/CVE-2012-4542
@@ -0,0 +1,15 @@
+Description: block: default SCSI command filter does not accomodate commands overlap across device classes
+References:
+ https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2012-4542
+ https://lkml.org/lkml/2013/1/24/279
+ https://oss.oracle.com/git/?p=redpatch.git;a=commitdiff;h=76a274e17114abf1a77de6b651424648ce9e10c8
+Notes:
+ jmm> the patches from https://lkml.org/lkml/2013/1/24/279 are not merged as of 2013-11-18
+ jmm> Apparently an upstream fix is no longer planned/in the works
+Bugs:
+upstream: needed "no upstream fix as of 2013.11.19"
+2.6.32-upstream-stable: ignored "too intrusive to backport"
+sid: needed "no upstream fix as of 2013.11.19"
+2.6.32-squeeze-security: ignored "too intrusive to backport"
+3.2-upstream-stable: needed "no upstream fix as of 2013.11.19"
+3.2-wheezy-security: needed "no upstream fix as of 2013.11.19" \ No newline at end of file

© 2014-2024 Faster IT GmbH | imprint | privacy policy