summaryrefslogtreecommitdiffstats
path: root/retired/CVE-2014-3145
diff options
context:
space:
mode:
authorMoritz Muehlenhoff <jmm@debian.org>2014-07-14 10:16:14 +0000
committerMoritz Muehlenhoff <jmm@debian.org>2014-07-14 10:16:14 +0000
commit62a92f5f266664476bac215626961ab647075056 (patch)
tree27f05669d005f5a7457e2e1a54710427a0a922d4 /retired/CVE-2014-3145
parentfc1e12a588f67532c94cb9c2ef71c2f53efb4911 (diff)
retire issues which have been submitted to 2.6.32.x LTS and which are fixed in
all other suites, 2.6.32.x releases at much slower pace, no need to wait here git-svn-id: svn+ssh://svn.debian.org/svn/kernel-sec@3442 e094ebfe-e918-0410-adfb-c712417f3574
Diffstat (limited to 'retired/CVE-2014-3145')
-rw-r--r--retired/CVE-2014-314511
1 files changed, 11 insertions, 0 deletions
diff --git a/retired/CVE-2014-3145 b/retired/CVE-2014-3145
new file mode 100644
index 00000000..2ad3ccdf
--- /dev/null
+++ b/retired/CVE-2014-3145
@@ -0,0 +1,11 @@
+Description: The remainder calculation for the BPF_S_ANC_NLATTR_NEST extension is also wrong. It has the minuend and subtrahend mixed up
+References:
+ http://www.openwall.com/lists/oss-security/2014/05/09/5
+Notes:
+Bugs:
+upstream: released (v3.15-rc2) [05ab8f2647e4221cbdb3856dd7d32bd5407316b3]
+2.6.32-upstream-stable: pending (2.6.32.64)
+sid: released (3.14.4-1) [bugfix/all/filter-prevent-nla-extensions-to-peek-beyond-the-end.patch]
+3.2-wheezy-security: released (3.2.57-3+deb7u2) [bugfix/all/filter-prevent-nla-extensions-to-peek-beyond-the-end.patch]
+2.6.32-squeeze-security: released (2.6.32-48squeeze8)
+3.2-upstream-stable: released (3.2.60)

© 2014-2024 Faster IT GmbH | imprint | privacy policy