summaryrefslogtreecommitdiffstats
path: root/retired/CVE-2021-20317
diff options
context:
space:
mode:
authorSalvatore Bonaccorso <carnil@debian.org>2022-03-25 20:49:54 +0100
committerSalvatore Bonaccorso <carnil@debian.org>2022-03-25 20:49:54 +0100
commit799d3c586b6df4d41fccd5fc2ff796a087c26329 (patch)
tree58859fea1691e870e5406a47cbb0c08c1e4582e6 /retired/CVE-2021-20317
parente3e90ffdadf6bb9b0e7ff277a38879d594f49edd (diff)
Retire several CVEs
Diffstat (limited to 'retired/CVE-2021-20317')
-rw-r--r--retired/CVE-2021-2031717
1 files changed, 17 insertions, 0 deletions
diff --git a/retired/CVE-2021-20317 b/retired/CVE-2021-20317
new file mode 100644
index 00000000..44ec6985
--- /dev/null
+++ b/retired/CVE-2021-20317
@@ -0,0 +1,17 @@
+Description: lib/timerqueue: Rely on rbtree semantics for next timer
+References:
+ https://bugzilla.redhat.com/show_bug.cgi?id=2005258
+Notes:
+ bwh> It's not totally clear what the bug is, but the code in 4.9 is
+ bwh> similar enough to 4.19 that I think it must also be affected.
+ bwh> For 4.9, commit cd9e61ed1eeb "rbtree: cache leftmost node internally"
+ bwh> needs to be applied first.
+Bugs:
+upstream: released (5.4-rc1) [511885d7061eda3eb1faf3f57dcc936ff75863f1]
+5.10-upstream-stable: N/A "Fixed before branching point"
+4.19-upstream-stable: released (4.19.210) [b9a1ac8e7c03fd09992352c7fb1a61cbbb9ad52b]
+4.9-upstream-stable: released (4.9.298) [ef2e64035f074bfeef14c28347aaec0b486a9e9f]
+sid: released (5.4.6-1)
+5.10-bullseye-security: N/A "Fixed before branching point"
+4.19-buster-security: released (4.19.232-1)
+4.9-stretch-security: released (4.9.290-1) [bugfix/all/lib-timerqueue-rely-on-rbtree-semantics-for-next-tim.patch]

© 2014-2024 Faster IT GmbH | imprint | privacy policy