From c41499b21dc2d0868c354bec0233b09dbdb45413 Mon Sep 17 00:00:00 2001 From: Raphael Geissert Date: Thu, 6 May 2010 03:52:15 +0000 Subject: more updates git-svn-id: svn+ssh://svn.debian.org/svn/kernel-sec@1826 e094ebfe-e918-0410-adfb-c712417f3574 --- retired/CVE-2009-mmap_min_addr-bypass | 14 ++++++++++++++ 1 file changed, 14 insertions(+) create mode 100644 retired/CVE-2009-mmap_min_addr-bypass (limited to 'retired/CVE-2009-mmap_min_addr-bypass') diff --git a/retired/CVE-2009-mmap_min_addr-bypass b/retired/CVE-2009-mmap_min_addr-bypass new file mode 100644 index 00000000..c0236aec --- /dev/null +++ b/retired/CVE-2009-mmap_min_addr-bypass @@ -0,0 +1,14 @@ +Candidate: +Description: + processes with CAP_SYS_RAWIO could bypass selinux mmapm_min_addr +References: + http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=blobdiff;f=security/min_addr.c;fp=security/min_addr.c;h=fc43c9d37084599056680e55c5e8c38491b117ba;hp=c844eed7915d0d270c058c16d6b3db40ffa576d0;hb=83fdbfbfe6e7e8906e3a3f8f6bc074d887e92109;hpb=d9b2c4d0b03c721808c0d259e43a27f1e80205bc +Notes: +Bugs: +upstream: released (2.6.33) [0e1a6ef2] +2.6.32-upstream-stable: released (2.6.32.11) [c907edc6] +linux-2.6: released (2.6.32-11) [bugfix/all/stable/2.6.32.11.patch] +2.6.18-etch-security: N/A "introduced in 2.6.31 commit 788084a" +2.6.24-etch-security: N/A "introduced in 2.6.31 commit 788084a" +2.6.26-lenny-security: N/A "introduced in 2.6.31 commit 788084a" +2.6.32-squeeze-security: released (2.6.32-11) [bugfix/all/stable/2.6.32.11.patch] -- cgit v1.2.3