From 81376040c2abcd2250a8b0a6191cb59d2c78d846 Mon Sep 17 00:00:00 2001 From: Moritz Muehlenhoff Date: Sun, 29 Apr 2007 20:48:51 +0000 Subject: retire CVE-2007-0772 git-svn-id: svn+ssh://svn.debian.org/svn/kernel-sec@767 e094ebfe-e918-0410-adfb-c712417f3574 --- retired/CVE-2007-0772 | 22 ++++++++++++++++++++++ 1 file changed, 22 insertions(+) create mode 100644 retired/CVE-2007-0772 (limited to 'retired/CVE-2007-0772') diff --git a/retired/CVE-2007-0772 b/retired/CVE-2007-0772 new file mode 100644 index 000000000..9cb015943 --- /dev/null +++ b/retired/CVE-2007-0772 @@ -0,0 +1,22 @@ +Candidate: CVE-2007-0772 +References: + CONFIRM:http://kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.20.1 + FRSIRT:ADV-2007-0660 + URL:http://www.frsirt.com/english/advisories/2007/0660 + SECUNIA:24215 + URL:http://secunia.com/advisories/24215 +Description: + The Linux kernel before 2.6.20.1 allows remote attackers to cause a denial + of service (oops) via a crafed NFSACL 2 ACCESS request that triggers a free + of an incorrect pointer. +Ubuntu-Description: +Notes: + dannf> sarge doesn't have the affected source file +Bugs: +upstream: released (2.6.20.1) +linux-2.6: released (2.6.18.dfsg.1-11) [bugfix/nfs-acl-free-wrong-pointer.patch] +2.6.18-etch-security: released (2.6.18.dfsg.1-11) [bugfix/nfs-acl-free-wrong-pointer.patch] +2.6.8-sarge-security: N/A +2.4.27-sarge-security: N/A +2.6.15-dapper-security: released (2.6.15-28.53) +2.6.17-edgy-security: released (2.6.17.1-11.37) -- cgit v1.2.3