Hello community,

here is the log from the commit of package patchinfo.1736 for 
openSUSE:12.1:Update checked in at 2013-06-13 09:05:52
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Comparing /work/SRC/openSUSE:12.1:Update/patchinfo.1736 (Old)
 and      /work/SRC/openSUSE:12.1:Update/.patchinfo.1736.new (New)
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++

Package is "patchinfo.1736"

Changes:
--------
New Changes file:

NO CHANGES FILE!!!

New:
----
  _patchinfo

++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++

Other differences:
------------------
++++++ _patchinfo ++++++
<patchinfo>
  <issue id="790920" tracker="bnc">reiser filesystem hangs when chown a file 
with both suid bit and acl set</issue>
  <issue id="821560" tracker="bnc">VUL-0: kernel: CVE-2013-2850: iSCSI target 
heap overflow</issue>
  <issue id="822722" tracker="bnc">reiserfs: readdir() can return the same 
entry multiple times under load</issue>
  <issue id="CVE-2013-2850" tracker="cve" />
  <category>security</category>
  <rating>critical</rating>
  <packager>jeff_mahoney</packager>
  <description>
The openSUSE 12.1 kernel was updated to fix a critical security issue and
also some reiserfs bugs.

CVE-2013-2850: Incorrect strncpy usage in the network
listening part of the iscsi target driver could have been
used by remote attackers to crash the kernel or execute
code.

This required the iscsi target running on the machine
and the attacker able to make a network connection to it
(aka not filtered by firewalls).


Bugs:
- reiserfs: fix spurious multiple-fill in reiserfs_readdir_dentry
  (bnc#822722).

- reiserfs: fix problems with chowning setuid file w/ xattrs
  (bnc#790920).

</description>
  <summary>kernel: security update</summary>
  <reboot_needed/>
</patchinfo>
-- 
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]

Reply via email to