Bug 132825 - Kernel: SCTP issues (CVE-2006-{2271,2272,2274,2275})
Bug#: 132825 Product:  Gentoo Security Version: unspecified Platform: All
OS/Version: Linux Status: RESOLVED Severity: normal Priority: P2
Resolution: FIXED Assigned To: security@gentoo.org Reported By: jaervosz@gentoo.org
Component: Kernel
URL:  http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=35d63edb1c807bc5317e49592260e84637bc432e
Summary: Kernel: SCTP issues (CVE-2006-{2271,2272,2274,2275})
Keywords:  
Status Whiteboard: [linux <2.6.16.15]
Opened: 2006-05-09 14:12 0000
Description:   Opened: 2006-05-09 14:12 0000
CVE-2006-2274:
http://git.kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=672e7cca17ed6036a1756ed34cf20dbd72d5e5f6

CVE-2006-2275:
http://git.kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commit;h=7c3ceb4fb9667f34f1599a062efecf4cdc4a4ce5

------- Comment #1 From Tim Yamin (RETIRED) 2006-05-14 15:22:17 0000 -------
CVE-2006-2271:
http://git.kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commitdiff;h=35d63edb1c807bc5317e49592260e84637bc432e

CVE-2006-2272:
http://git.kernel.org/git/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commitdiff;h=62b08083ec3dbfd7e533c8d230dd1d8191a6e813

... thanks hlieberman for pointing these out!

------- Comment #2 From Tim Yamin (RETIRED) 2006-05-18 13:52:10 0000 -------
Dan, please bump genpatches to .16.16...

------- Comment #3 From Daniel Drake 2006-05-21 08:47:19 0000 -------
Fixed in genpatches-2.6.16-10 (gentoo-sources-2.6.16-r8)

------- Comment #4 From Tim Yamin (RETIRED) 2006-05-26 08:36:18 0000 -------
Maintainers please bump:

hardened-sources-2.6: johnm, hardened herd
hppa-sources-2.6: GMSoft
rsbac-sources-2.6: kang
sh-sources-2.6: vapier
suspend2-sources-2.6: brix
usermode-sources-2.6: dang

------- Comment #5 From Guy Martin 2006-05-26 09:04:44 0000 -------
hppa-sources-2.6.16.18-pa11 in the tree.

------- Comment #6 From Henrik Brix Andersen 2006-05-26 13:56:15 0000 -------
Fixed in sys-kernel/suspend2-sources-2.6.16-r7.

------- Comment #7 From Daniel Gryniewicz 2006-05-28 20:11:49 0000 -------
usermode bumped to 2.6.16-r1

------- Comment #8 From Tim Yamin (RETIRED) 2006-06-24 11:49:55 0000 -------
All fixed, closing. vapier please bump sh-sources.