Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!

Bug 341915

Summary: Please mark =sys-kernel/hardened-sources-2.6.32-r22 stable for security bug
Product: Gentoo Linux Reporter: Anthony Basile <blueness>
Component: New packagesAssignee: The Gentoo Linux Hardened Kernel Team (OBSOLETE) <hardened-kernel+disabled>
Status: RESOLVED FIXED    
Severity: critical CC: capsel, hardened, ppc64, ppc
Priority: High Keywords: SECURITY, STABLEREQ
Version: unspecified   
Hardware: All   
OS: Linux   
Whiteboard:
Package list:
Runtime testing required: ---

Description Anthony Basile gentoo-dev 2010-10-20 16:54:28 UTC
Arch teams, please consider fast track stabilization of =sys-kernel/hardened-sources-2.6.32-r22 which addresses a local root escalation exploit.  See bug #341801.
Comment 1 Anthony Basile gentoo-dev 2010-10-20 21:14:14 UTC
Marking amd64 stable (with permission from the arch team)

Comment 2 Christian Faulhammer (RETIRED) gentoo-dev 2010-10-21 07:36:28 UTC
(In reply to comment #1)
> Marking amd64 stable (with permission from the arch team)

 If someone of you has x86 hardware this is also fine by me.
Comment 3 Jeroen Roovers (RETIRED) gentoo-dev 2010-10-21 17:55:32 UTC
HPPA doesn't have any hardened-sources stable (yet).
Comment 4 Anthony Basile gentoo-dev 2010-10-21 21:37:02 UTC
(In reply to comment #2)
> (In reply to comment #1)
> > Marking amd64 stable (with permission from the arch team)
> 
>  If someone of you has x86 hardware this is also fine by me.
> 

Marking x86 stable.
Comment 5 Raúl Porcel (RETIRED) gentoo-dev 2010-10-23 18:10:04 UTC
neither alpha/ia64/sparc have hardened sources stable
Comment 6 Anthony Basile gentoo-dev 2010-10-24 00:21:52 UTC
ppc and ppc64 will not stabilize because of a syntax error introduced in arch/powerpc/mm/slice.c by 4420_grsecurity-2.2.0-2.6.32.24-201010191911.patch.  Upstream has a fix which I'll include in the next rev bump.
Comment 7 Anthony Basile gentoo-dev 2010-10-31 16:13:52 UTC
ppc and ppc64, please drop this in favor of STABLEREQ bug #343535.

Closing this one since all the arch teams have responded.