From c77a05b32b2f63a5cefb610c25affbe3a5afe807 Mon Sep 17 00:00:00 2001 From: Ben Hutchings Date: Thu, 23 Feb 2017 21:55:28 +0000 Subject: Retire many issues now released (or N/A or ignored) in all branches git-svn-id: svn+ssh://svn.debian.org/svn/kernel-sec@5001 e094ebfe-e918-0410-adfb-c712417f3574 --- retired/CVE-2016-8650 | 12 ++++++++++++ 1 file changed, 12 insertions(+) create mode 100644 retired/CVE-2016-8650 (limited to 'retired/CVE-2016-8650') diff --git a/retired/CVE-2016-8650 b/retired/CVE-2016-8650 new file mode 100644 index 000000000..14cf9f694 --- /dev/null +++ b/retired/CVE-2016-8650 @@ -0,0 +1,12 @@ +Description: Null pointer dereference via keyctl +References: + https://lkml.org/lkml/2016/11/23/477 + http://seclists.org/fulldisclosure/2016/Nov/76 +Notes: +Bugs: +upstream: released (4.9-rc7) [f5527fffff3f002b0a6b376163613b82f69de073] +3.16-upstream-stable: released (3.16.40) [mpi-fix-null-ptr-dereference-in-mpi_powm.patch] +3.2-upstream-stable: N/A "Vulnerable code introduced in 3.3-rc1 with cdec9cb5167ab1113ba9c58e395f664d9d3f9acb" +sid: released (4.8.11-1) [bugfix/all/mpi-Fix-NULL-ptr-dereference-in-mpi_powm-ver-3.patch] +3.16-jessie-security: released (3.16.39-1) [bugfix/all/mpi-fix-null-ptr-dereference-in-mpi_powm-ver-3.patch] +3.2-wheezy-security: N/A "Vulnerable code not present" -- cgit v1.2.3