|
|
Message-ID: <2067197162.2450151284492365091.JavaMail.root@zmail01.collab.prod.int.phx2.redhat.com>
Date: Tue, 14 Sep 2010 15:26:05 -0400 (EDT)
From: Josh Bressers <bressers@...hat.com>
To: oss-security@...ts.openwall.com
Cc: "Steven M. Christey" <coley@...us.mitre.org>
Subject: Re: CVE request: kernel: numerous infoleaks
----- "Eugene Teo" <eugene@...hat.com> wrote:
> Reported by Dan Rosenberg,
>
> drivers/net/tulip/de4x5.c: reading uninitialized stack memory
> http://lkml.org/lkml/2010/9/11/169
> https://bugzilla.redhat.com/633158
CVE-2010-3295
>
> drivers/net/cxgb3/cxgb3_main.c reading uninitialized stack memory
> http://lkml.org/lkml/2010/9/11/170
> introduced in 4d22de3e (v2.6.21-rc2)
> https://bugzilla.redhat.com/633149
CVE-2010-3296
>
> drivers/net/eql.c: reading uninitialized stack memory
> http://lkml.org/lkml/2010/9/11/168
> https://bugzilla.redhat.com/633145
CVE-2010-3297
>
> drivers/net/usb/hso.c: reading uninitialized memory
> http://lkml.org/lkml/2010/9/11/167
> introduced in 542f5482 (v2.6.29-rc1)
> https://bugzilla.redhat.com/633140
>
CVE-2010-3298
Thanks.
--
JB
Powered by blists - more mailing lists
Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.
Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.