2.6.31.4

Ben Hutchings ben at decadent.org.uk
Tue Oct 13 23:15:15 UTC 2009


On Tue, 2009-10-13 at 14:56 +0100, Andy Whitcroft wrote:
> Stefan and I did a review of the 2.6.31.4 stable updates.  Most appear
> to either be fairly important fixes in core code, or small but very self
> contained updates for drivers and/or quirks and low risk.

At least two of these have CVE numbers assigned:

[...]
> ee39c2f x86: Don't leak 64-bit kernel register values to 32-bit processes
> 	potiential security issue
CVE-2009-2910

[...]
> fb0e870 appletalk: Fix skb leak when ipddp interface is not loaded
> 	memory leak in non-core protocol support
CVE-2009-2903

Ben.

-- 
Ben Hutchings
For every action, there is an equal and opposite criticism. - Harrison
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 828 bytes
Desc: This is a digitally signed message part
URL: <https://lists.ubuntu.com/archives/kernel-team/attachments/20091014/8aa72431/attachment.sig>


More information about the kernel-team mailing list