From dbb1ebac2b0cff60db121fb8659348ba30b5382c Mon Sep 17 00:00:00 2001 From: Raphael Geissert Date: Thu, 13 May 2010 02:29:31 +0000 Subject: retire issue and new ones fixed in 2.6.32.13 git-svn-id: svn+ssh://svn.debian.org/svn/kernel-sec@1830 e094ebfe-e918-0410-adfb-c712417f3574 --- retired/CVE-2010-1146 | 14 ++++++++++++++ 1 file changed, 14 insertions(+) create mode 100644 retired/CVE-2010-1146 (limited to 'retired/CVE-2010-1146') diff --git a/retired/CVE-2010-1146 b/retired/CVE-2010-1146 new file mode 100644 index 000000000..c5d3a8b90 --- /dev/null +++ b/retired/CVE-2010-1146 @@ -0,0 +1,14 @@ +Candidate: CVE-2010-1146 +Description: + reiserfs privilege escalation +References: + http://www.openwall.com/lists/oss-security/2010/04/09/1 +Notes: + exploit in the wild -> this is a high urgency issue: + http://jon.oberheide.org/files/team-edward.py +Bugs: +upstream: released (2.6.34-rc6) [cac36f70] +2.6.32-upstream-stable: released (2.6.32.13) [aab06bd2] +linux-2.6: released (2.6.32-12) [bugfix/all/reiserfs-fix-permissions-on-reiserfs_priv.patch] +2.6.26-lenny-security: N/A "introduced in 2.6.30 commit 677c9b2e" +2.6.32-squeeze-security: released (2.6.32-12) [bugfix/all/reiserfs-fix-permissions-on-reiserfs_priv.patch] -- cgit v1.2.3