Date: Thu, 21 Apr 2011 10:01:37 -1000 From: akuster <akuster@...sta.com> To: oss-security@...ts.openwall.com CC: Eugene Teo <eugene@...hat.com>, Josh Bressers <bressers@...hat.com>, "Steven M. Christey" <coley@...us.mitre.org> Subject: Re: CVE request: kernel: missing socket check in can/bcm release So this would affect kernels 2.6.25-rc1 and above? (if I figured it out correctly) - Armin On 04/20/2011 03:58 PM, Eugene Teo wrote: > On 04/21/2011 09:55 AM, Eugene Teo wrote: >> On 04/21/2011 07:45 AM, Eugene Teo wrote: >>> On 04/21/2011 04:52 AM, Josh Bressers wrote: >>>> Please use CVE-2011-1598 >>> >>> Updated patch: http://permalink.gmane.org/gmane.linux.network/192974 >> >> Correction: s/Updated patch//. This patch is for a similar issue but for >> can/raw release. I rather group these two patches with CVE-2011-1598 >> than to have another name assigned for it. But I'm fine either way. > > On second thoughts, let's have another CVE assigned. > > can/bcm release: credit Dave Jones > can/raw release: credit Oliver Hartkopp > > Thanks, Eugene
Powered by blists - more mailing lists
Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.