pending stable kernel security updates

Kees Cook kees at ubuntu.com
Tue Jun 24 05:49:39 UTC 2008


Hello!  I've got more pending kernel updates waiting in the
ubuntu-security git trees now:

                     dapper          feisty           gutsy           hardy
CVE-2007-6282:      pending         pending         pending         pending
CVE-2008-1615:       needed          needed          needed          needed
CVE-2008-1673:      pending         pending         pending         pending
CVE-2008-2136:      pending         pending         pending         pending
CVE-2008-2137:      pending         pending         pending         pending
CVE-2008-2148:          N/A             N/A         pending         pending
CVE-2008-2358:          N/A         pending         pending         pending
CVE-2008-2750:          N/A             N/A             N/A         pending

I need help with CVE-2008-1615: the code has changed a lot between
revisions, has been touched by the virt bits, and is pretty non-obvious
to me.

I'd like to publish as soon as possible after 8.04.1 is released.  To
that end, can someone start build and boot testing?  None of the patches
looked like ABI bumpers.

Thanks,

-Kees

-- 
Kees Cook
Ubuntu Security Team




More information about the kernel-team mailing list