oss-sec mailing list archives

Re: Status of two Linux kernel issues w/o CVE assignments


From: Eugene Teo <eteo () redhat com>
Date: Sun, 25 Dec 2011 06:08:29 +0800

On 12/24/2011 04:52 AM, Kurt Seifried wrote:
On 12/22/2011 09:44 AM, Moritz Muehlenhoff wrote:
Hi,
there were a two Linux-related CVE requests/discussions, which
didn't end up in an assignment:

1: rose: Add length checks to CALL_REQUEST parsing
e0bccd315db0c2f919e7fcf9cb60db21d9986f52 in mainline

It was decided that this should be split, but without a final
resulting CVE assignment:
http://www.openwall.com/lists/oss-security/2011/04/12/1

Can anyone shed more light on this for me? (links to fixes/etc.?).

I have forwarded you the email thread. This patch refers to the changes
made by Ben Hutchings.

Eugene


Current thread: