From f3581ec9b2d48c6103c22fecb46f713217d834e8 Mon Sep 17 00:00:00 2001 From: dann frazier Date: Thu, 17 Aug 2006 00:24:25 +0000 Subject: move retired to the top level hierarchy so people can easily checkout just the active issues git-svn-id: svn+ssh://svn.debian.org/svn/kernel-sec@548 e094ebfe-e918-0410-adfb-c712417f3574 --- retired/CVE-2003-0550 | 26 ++++++++++++++++++++++++++ 1 file changed, 26 insertions(+) create mode 100644 retired/CVE-2003-0550 (limited to 'retired/CVE-2003-0550') diff --git a/retired/CVE-2003-0550 b/retired/CVE-2003-0550 new file mode 100644 index 00000000..ab06812f --- /dev/null +++ b/retired/CVE-2003-0550 @@ -0,0 +1,26 @@ +Candidate: CVE-2003-0550 +References: + REDHAT:RHSA-2003:238 + URL:http://www.redhat.com/support/errata/RHSA-2003-238.html + DEBIAN:DSA-358 + URL:http://www.debian.org/security/2004/dsa-358 + DEBIAN:DSA-423 + URL:http://www.debian.org/security/2004/dsa-423 + OVAL:OVAL380 + URL:http://oval.mitre.org/oval/definitions/data/oval380.html +Description: + The STP protocol, as enabled in Linux 2.4.x, does not provide sufficient + security by design, which allows attackers to modify the bridge topology. +Notes: +Bugs: +upstream: released (2.4.22-pre3) +linux-2.6: N/A +2.6.8-sarge-security: N/A +2.4.27-sarge-security: N/A +2.4.19-woody-security: released (2.4.19-4.woody3) +2.4.18-woody-security: released (2.4.18-10) +2.4.17-woody-security: released (2.4.17-1woody4) +2.4.16-woody-security: released (2.4.16-1woody3) +2.4.17-woody-security-hppa: released (32.5) +2.4.17-woody-security-ia64: released (011226.14.1) +2.4.18-woody-security-hppa: released (62.4) -- cgit v1.2.3