Activity log for bug #796606

Date Who What changed Old value New value Message
2011-06-13 13:09:23 Andy Whitcroft bug added bug
2011-06-13 13:09:26 Andy Whitcroft tags kernel-cve-tracking-bug
2011-06-13 13:09:26 Andy Whitcroft security vulnerability no yes
2011-06-13 13:09:28 Andy Whitcroft cve linked 2011-1163
2011-06-13 13:09:33 Andy Whitcroft nominated for series Ubuntu Oneiric
2011-06-13 13:09:34 Andy Whitcroft bug task added linux (Ubuntu Oneiric)
2011-06-13 13:09:34 Andy Whitcroft bug task added linux-fsl-imx51 (Ubuntu Oneiric)
2011-06-13 13:09:34 Andy Whitcroft bug task added linux-lts-backport-maverick (Ubuntu Oneiric)
2011-06-13 13:09:34 Andy Whitcroft bug task added linux-mvl-dove (Ubuntu Oneiric)
2011-06-13 13:09:34 Andy Whitcroft bug task added linux-ti-omap4 (Ubuntu Oneiric)
2011-06-13 13:09:39 Andy Whitcroft nominated for series Ubuntu Natty
2011-06-13 13:09:40 Andy Whitcroft bug task added linux (Ubuntu Natty)
2011-06-13 13:09:40 Andy Whitcroft bug task added linux-fsl-imx51 (Ubuntu Natty)
2011-06-13 13:09:40 Andy Whitcroft bug task added linux-lts-backport-maverick (Ubuntu Natty)
2011-06-13 13:09:40 Andy Whitcroft bug task added linux-mvl-dove (Ubuntu Natty)
2011-06-13 13:09:40 Andy Whitcroft bug task added linux-ti-omap4 (Ubuntu Natty)
2011-06-13 13:09:45 Andy Whitcroft nominated for series Ubuntu Maverick
2011-06-13 13:09:45 Andy Whitcroft bug task added linux (Ubuntu Maverick)
2011-06-13 13:09:45 Andy Whitcroft bug task added linux-fsl-imx51 (Ubuntu Maverick)
2011-06-13 13:09:45 Andy Whitcroft bug task added linux-lts-backport-maverick (Ubuntu Maverick)
2011-06-13 13:09:45 Andy Whitcroft bug task added linux-mvl-dove (Ubuntu Maverick)
2011-06-13 13:09:45 Andy Whitcroft bug task added linux-ti-omap4 (Ubuntu Maverick)
2011-06-13 13:09:51 Andy Whitcroft nominated for series Ubuntu Lucid
2011-06-13 13:09:52 Andy Whitcroft bug task added linux (Ubuntu Lucid)
2011-06-13 13:09:52 Andy Whitcroft bug task added linux-fsl-imx51 (Ubuntu Lucid)
2011-06-13 13:09:52 Andy Whitcroft bug task added linux-lts-backport-maverick (Ubuntu Lucid)
2011-06-13 13:09:52 Andy Whitcroft bug task added linux-mvl-dove (Ubuntu Lucid)
2011-06-13 13:09:52 Andy Whitcroft bug task added linux-ti-omap4 (Ubuntu Lucid)
2011-06-13 13:09:59 Andy Whitcroft nominated for series Ubuntu Hardy
2011-06-13 13:10:00 Andy Whitcroft bug task added linux (Ubuntu Hardy)
2011-06-13 13:10:00 Andy Whitcroft bug task added linux-fsl-imx51 (Ubuntu Hardy)
2011-06-13 13:10:00 Andy Whitcroft bug task added linux-lts-backport-maverick (Ubuntu Hardy)
2011-06-13 13:10:00 Andy Whitcroft bug task added linux-mvl-dove (Ubuntu Hardy)
2011-06-13 13:10:00 Andy Whitcroft bug task added linux-ti-omap4 (Ubuntu Hardy)
2011-06-13 13:10:40 Andy Whitcroft linux (Ubuntu Oneiric): status New Fix Released
2011-06-13 13:10:53 Andy Whitcroft linux (Ubuntu Natty): status New Fix Released
2011-06-13 13:11:13 Andy Whitcroft linux (Ubuntu Lucid): status New Fix Released
2011-06-13 13:11:28 Andy Whitcroft linux (Ubuntu Hardy): status New In Progress
2011-06-13 13:11:40 Andy Whitcroft linux (Ubuntu Maverick): status New In Progress
2011-06-13 13:11:40 Andy Whitcroft linux (Ubuntu Maverick): assignee Andy Whitcroft (apw)
2011-06-13 13:11:54 Andy Whitcroft linux (Ubuntu Hardy): assignee Andy Whitcroft (apw)
2011-06-13 13:12:07 Andy Whitcroft linux-fsl-imx51 (Ubuntu Hardy): status New Invalid
2011-06-13 13:14:02 Andy Whitcroft linux-fsl-imx51 (Ubuntu Maverick): status New Invalid
2011-06-13 13:14:14 Andy Whitcroft linux-fsl-imx51 (Ubuntu Natty): status New Invalid
2011-06-13 13:14:25 Andy Whitcroft linux-fsl-imx51 (Ubuntu Oneiric): status New Invalid
2011-06-13 13:14:38 Andy Whitcroft linux-lts-backport-maverick (Ubuntu Hardy): status New Invalid
2011-06-13 13:14:50 Andy Whitcroft linux-lts-backport-maverick (Ubuntu Maverick): status New Invalid
2011-06-13 13:15:01 Andy Whitcroft linux-lts-backport-maverick (Ubuntu Natty): status New Invalid
2011-06-13 13:15:14 Andy Whitcroft linux-lts-backport-maverick (Ubuntu Oneiric): status New Invalid
2011-06-13 13:15:27 Andy Whitcroft linux-mvl-dove (Ubuntu Hardy): status New Invalid
2011-06-13 13:15:48 Andy Whitcroft linux-mvl-dove (Ubuntu Lucid): status New Fix Released
2011-06-13 13:16:01 Andy Whitcroft linux-mvl-dove (Ubuntu Maverick): status New Fix Released
2011-06-13 13:16:13 Andy Whitcroft linux-mvl-dove (Ubuntu Natty): status New Invalid
2011-06-13 13:16:26 Andy Whitcroft linux-mvl-dove (Ubuntu Oneiric): status New Invalid
2011-06-13 13:16:41 Andy Whitcroft linux-ti-omap4 (Ubuntu Hardy): status New Invalid
2011-06-13 13:16:55 Andy Whitcroft linux-ti-omap4 (Ubuntu Lucid): status New Invalid
2011-06-13 13:17:07 Andy Whitcroft linux-ti-omap4 (Ubuntu Maverick): status New Fix Released
2011-06-13 13:17:17 Andy Whitcroft linux-ti-omap4 (Ubuntu Natty): status New Fix Released
2011-06-13 13:17:30 Andy Whitcroft linux-ti-omap4 (Ubuntu Oneiric): status New Confirmed
2011-06-13 13:17:55 Andy Whitcroft linux-lts-backport-maverick (Ubuntu Lucid): status New Fix Released
2011-06-13 13:18:07 Andy Whitcroft linux-fsl-imx51 (Ubuntu Lucid): status New Fix Released
2011-06-13 13:19:06 Andy Whitcroft description Placeholder Fixed-by: 1eafbfeb7bdf59cfe173304c76188f3fd5f1fd05 commit 1eafbfeb7bdf59cfe173304c76188f3fd5f1fd05 Author: Timo Warns <Warns@pre-sense.de> Date: Mon Mar 14 14:59:33 2011 +0100 Fix corrupted OSF partition table parsing The kernel automatically evaluates partition tables of storage devices. The code for evaluating OSF partitions contains a bug that leaks data from kernel heap memory to userspace for certain corrupted OSF partitions. In more detail: for (i = 0 ; i < le16_to_cpu(label->d_npartitions); i++, partition++) { iterates from 0 to d_npartitions - 1, where d_npartitions is read from the partition table without validation and partition is a pointer to an array of at most 8 d_partitions. Add the proper and obvious validation. Signed-off-by: Timo Warns <warns@pre-sense.de> Cc: stable@kernel.org [ Changed the patch trivially to not repeat the whole le16_to_cpu() thing, and to use an explicit constant for the magic value '8' ] Signed-off-by: Linus Torvalds <torvalds@linux-foundation.org>
2011-06-13 13:31:37 Andy Whitcroft linux-ti-omap4 (Ubuntu Maverick): status Fix Released In Progress
2011-06-13 13:31:37 Andy Whitcroft linux-ti-omap4 (Ubuntu Maverick): assignee Andy Whitcroft (apw)
2011-06-22 14:49:55 Tim Gardner linux-ti-omap4 (Ubuntu Maverick): status In Progress Fix Committed
2011-07-12 17:19:16 Launchpad Janitor branch linked lp:ubuntu/lucid-proposed/linux-lts-backport-maverick
2011-07-14 16:24:30 Launchpad Janitor linux (Ubuntu Hardy): status In Progress Fix Released
2011-07-14 16:24:30 Launchpad Janitor cve linked 2010-4076
2011-07-14 16:24:30 Launchpad Janitor cve linked 2010-4077
2011-07-14 16:24:30 Launchpad Janitor cve linked 2010-4247
2011-07-14 16:24:30 Launchpad Janitor cve linked 2010-4526
2011-07-14 16:24:30 Launchpad Janitor cve linked 2011-0726
2011-07-14 16:24:30 Launchpad Janitor cve linked 2011-1577
2011-07-14 16:24:30 Launchpad Janitor cve linked 2011-1746
2011-08-02 02:15:38 Kees Cook linux-ti-omap4 (Ubuntu Natty): status Fix Released Fix Committed
2011-08-02 02:15:59 Kees Cook linux-ti-omap4 (Ubuntu Oneiric): status Confirmed Invalid
2011-08-02 03:06:35 Kees Cook linux (Ubuntu Maverick): status In Progress Fix Committed
2011-08-02 03:06:38 Kees Cook description Fixed-by: 1eafbfeb7bdf59cfe173304c76188f3fd5f1fd05 commit 1eafbfeb7bdf59cfe173304c76188f3fd5f1fd05 Author: Timo Warns <Warns@pre-sense.de> Date: Mon Mar 14 14:59:33 2011 +0100 Fix corrupted OSF partition table parsing The kernel automatically evaluates partition tables of storage devices. The code for evaluating OSF partitions contains a bug that leaks data from kernel heap memory to userspace for certain corrupted OSF partitions. In more detail: for (i = 0 ; i < le16_to_cpu(label->d_npartitions); i++, partition++) { iterates from 0 to d_npartitions - 1, where d_npartitions is read from the partition table without validation and partition is a pointer to an array of at most 8 d_partitions. Add the proper and obvious validation. Signed-off-by: Timo Warns <warns@pre-sense.de> Cc: stable@kernel.org [ Changed the patch trivially to not repeat the whole le16_to_cpu() thing, and to use an explicit constant for the magic value '8' ] Signed-off-by: Linus Torvalds <torvalds@linux-foundation.org> The osf_partition function in fs/partitions/osf.c in the Linux kernel before 2.6.38 does not properly handle an invalid number of partitions, which might allow local users to obtain potentially sensitive information from kernel heap memory via vectors related to partition-table parsing. Fixed-by: 1eafbfeb7bdf59cfe173304c76188f3fd5f1fd05
2011-08-02 17:37:49 Launchpad Janitor linux (Ubuntu Maverick): status Fix Committed Fix Released
2011-08-02 17:37:49 Launchpad Janitor cve linked 2011-1090
2011-08-02 17:37:49 Launchpad Janitor cve linked 2011-1598
2011-08-10 21:47:35 Kees Cook linux-ec2 (Ubuntu Lucid): status New Fix Released
2011-08-10 21:47:39 Kees Cook linux-ec2 (Ubuntu Oneiric): status New Invalid
2011-08-10 21:47:42 Kees Cook linux-ec2 (Ubuntu Hardy): status New Invalid
2011-08-10 21:47:45 Kees Cook linux-ec2 (Ubuntu Maverick): status New Invalid
2011-08-10 21:47:47 Kees Cook linux-ec2 (Ubuntu Natty): status New Invalid
2011-08-10 21:47:49 Kees Cook linux-lts-backport-natty (Ubuntu Lucid): status New Invalid
2011-08-10 21:47:52 Kees Cook linux-lts-backport-natty (Ubuntu Oneiric): status New Invalid
2011-08-10 21:47:55 Kees Cook linux-lts-backport-natty (Ubuntu Hardy): status New Invalid
2011-08-10 21:47:58 Kees Cook linux-lts-backport-natty (Ubuntu Maverick): status New Invalid
2011-08-10 21:48:01 Kees Cook linux-lts-backport-natty (Ubuntu Natty): status New Invalid
2011-08-10 21:48:04 Kees Cook description The osf_partition function in fs/partitions/osf.c in the Linux kernel before 2.6.38 does not properly handle an invalid number of partitions, which might allow local users to obtain potentially sensitive information from kernel heap memory via vectors related to partition-table parsing. Fixed-by: 1eafbfeb7bdf59cfe173304c76188f3fd5f1fd05 The osf_partition function in fs/partitions/osf.c in the Linux kernel before 2.6.38 does not properly handle an invalid number of partitions, which might allow local users to obtain potentially sensitive information from kernel heap memory via vectors related to partition-table parsing. Break-Fix: - 1eafbfeb7bdf59cfe173304c76188f3fd5f1fd05
2011-08-16 19:19:35 Kees Cook linux-ec2 (Ubuntu Lucid): importance Undecided Low
2011-08-16 19:19:38 Kees Cook linux-ec2 (Ubuntu Oneiric): importance Undecided Low
2011-08-16 19:19:41 Kees Cook linux-ec2 (Ubuntu Hardy): importance Undecided Low
2011-08-16 19:19:43 Kees Cook linux-ec2 (Ubuntu Maverick): importance Undecided Low
2011-08-16 19:19:45 Kees Cook linux-ec2 (Ubuntu Natty): importance Undecided Low
2011-08-16 19:19:47 Kees Cook linux-lts-backport-natty (Ubuntu Lucid): importance Undecided Low
2011-08-16 19:19:50 Kees Cook linux-lts-backport-natty (Ubuntu Oneiric): importance Undecided Low
2011-08-16 19:19:52 Kees Cook linux-lts-backport-natty (Ubuntu Hardy): importance Undecided Low
2011-08-16 19:19:54 Kees Cook linux-lts-backport-natty (Ubuntu Maverick): importance Undecided Low
2011-08-16 19:19:57 Kees Cook linux-lts-backport-natty (Ubuntu Natty): importance Undecided Low
2011-08-16 19:19:59 Kees Cook linux-mvl-dove (Ubuntu Lucid): importance Undecided Low
2011-08-16 19:20:01 Kees Cook linux-mvl-dove (Ubuntu Oneiric): importance Undecided Low
2011-08-16 19:20:03 Kees Cook linux-mvl-dove (Ubuntu Hardy): importance Undecided Low
2011-08-16 19:20:06 Kees Cook linux-mvl-dove (Ubuntu Maverick): importance Undecided Low
2011-08-16 19:20:08 Kees Cook linux-mvl-dove (Ubuntu Natty): importance Undecided Low
2011-08-16 19:20:10 Kees Cook linux-lts-backport-maverick (Ubuntu Lucid): importance Undecided Low
2011-08-16 19:20:12 Kees Cook linux-lts-backport-maverick (Ubuntu Oneiric): importance Undecided Low
2011-08-16 19:20:14 Kees Cook linux-lts-backport-maverick (Ubuntu Hardy): importance Undecided Low
2011-08-16 19:20:16 Kees Cook linux-lts-backport-maverick (Ubuntu Maverick): importance Undecided Low
2011-08-16 19:20:19 Kees Cook linux-lts-backport-maverick (Ubuntu Natty): importance Undecided Low
2011-08-16 19:20:22 Kees Cook linux (Ubuntu Lucid): importance Undecided Low
2011-08-16 19:20:25 Kees Cook linux (Ubuntu Oneiric): importance Undecided Low
2011-08-16 19:20:28 Kees Cook linux (Ubuntu Hardy): importance Undecided Low
2011-08-16 19:20:30 Kees Cook linux (Ubuntu Maverick): importance Undecided Low
2011-08-16 19:20:33 Kees Cook linux (Ubuntu Natty): importance Undecided Low
2011-08-16 19:20:35 Kees Cook linux-ti-omap4 (Ubuntu Lucid): importance Undecided Low
2011-08-16 19:20:37 Kees Cook linux-ti-omap4 (Ubuntu Oneiric): importance Undecided Low
2011-08-16 19:20:40 Kees Cook linux-ti-omap4 (Ubuntu Hardy): importance Undecided Low
2011-08-16 19:20:43 Kees Cook linux-ti-omap4 (Ubuntu Maverick): importance Undecided Low
2011-08-16 19:20:45 Kees Cook linux-ti-omap4 (Ubuntu Natty): importance Undecided Low
2011-08-16 19:20:48 Kees Cook linux-fsl-imx51 (Ubuntu Lucid): importance Undecided Low
2011-08-16 19:20:51 Kees Cook linux-fsl-imx51 (Ubuntu Oneiric): importance Undecided Low
2011-08-16 19:20:53 Kees Cook linux-fsl-imx51 (Ubuntu Hardy): importance Undecided Low
2011-08-16 19:20:56 Kees Cook linux-fsl-imx51 (Ubuntu Maverick): importance Undecided Low
2011-08-16 19:20:59 Kees Cook linux-fsl-imx51 (Ubuntu Natty): importance Undecided Low
2011-08-24 10:23:48 Launchpad Janitor branch linked lp:ubuntu/maverick-proposed/linux-ti-omap4
2011-09-13 10:42:07 Launchpad Janitor linux-ti-omap4 (Ubuntu Maverick): status Fix Committed Fix Released
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-3296
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-3297
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-3858
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-3859
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-3880
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-4073
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-4080
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-4081
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-4082
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-4083
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-4157
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-4162
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-4163
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-4169
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-4175
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-4242
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-4243
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-4248
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-4256
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-4565
2011-09-13 10:42:07 Launchpad Janitor cve linked 2010-4649
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-0463
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-0695
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-0711
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1010
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1012
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1013
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1016
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1017
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1019
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1020
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1078
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1079
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1080
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1082
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1093
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1160
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1169
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1170
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1171
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1172
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1173
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1180
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1478
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1493
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1494
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1748
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1770
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-1833
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-2484
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-2492
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-2534
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-2699
2011-09-13 10:42:07 Launchpad Janitor cve linked 2011-2918
2013-05-21 21:27:43 Jamie Strandboge linux-ti-omap4 (Ubuntu Natty): status Fix Committed Won't Fix