From d4c981d3a5e96d0dc2446030b31a8e269123c1b6 Mon Sep 17 00:00:00 2001 From: Moritz Muehlenhoff Date: Wed, 4 Sep 2013 12:55:29 +0000 Subject: retire git-svn-id: svn+ssh://svn.debian.org/svn/kernel-sec@3078 e094ebfe-e918-0410-adfb-c712417f3574 --- retired/CVE-2011-4131 | 15 +++++++++++++++ 1 file changed, 15 insertions(+) create mode 100644 retired/CVE-2011-4131 (limited to 'retired/CVE-2011-4131') diff --git a/retired/CVE-2011-4131 b/retired/CVE-2011-4131 new file mode 100644 index 00000000..cfe00bd7 --- /dev/null +++ b/retired/CVE-2011-4131 @@ -0,0 +1,15 @@ +Description: nfs4_getfacl decoding kernel oops +References: + http://www.spinics.net/lists/linux-nfs/msg25288.html +Notes: + bwh: The upstream fix relies on the rather larger commit 6650239a4b01 + 'NFS: Don't use vm_map_ram() in readdir'. If we can get a test case then + it may be feasible to implement graceful failure instead. Otherwise this + is probably unfixable. +Bugs: +upstream: released (3.3-rc5) [e5012d1f3861d18c7f3814e757c1c3ab3741dbcd, bf118a342f10dafe44b14451a1392c3254629a1f, de040beccd52bb5fcac90031505384d037b1111c, 331818f1c468a24e581aedcbe52af799366a9dfe] +2.6.32-upstream-stable: ignored "too complex to backport for too little gain" +sid: released (3.2.19-1) +3.2-wheezy-security: released (3.2.19-1) +2.6.32-squeeze-security: ignored "too complex to backport for too little gain" +3.2-upstream-stable: released (3.2.19) [e5012d1f3861d18c7f3814e757c1c3ab3741dbcd, 4a818b4288d5a897b0e928dd0cd1e1e29501159f, 4910b0c6a122dade90898c079027423a3204ac44, 84e017e3ff4113a32c827f2d7f96e1a9b1f7a677] -- cgit v1.2.3