Hello community, here is the log from the commit of package patchinfo.1736 for openSUSE:12.1:Update checked in at 2013-06-13 09:05:52 ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Comparing /work/SRC/openSUSE:12.1:Update/patchinfo.1736 (Old) and /work/SRC/openSUSE:12.1:Update/.patchinfo.1736.new (New) ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Package is "patchinfo.1736" Changes: -------- New Changes file: NO CHANGES FILE!!! New: ---- _patchinfo ++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Other differences: ------------------ ++++++ _patchinfo ++++++ <patchinfo> <issue id="790920" tracker="bnc">reiser filesystem hangs when chown a file with both suid bit and acl set</issue> <issue id="821560" tracker="bnc">VUL-0: kernel: CVE-2013-2850: iSCSI target heap overflow</issue> <issue id="822722" tracker="bnc">reiserfs: readdir() can return the same entry multiple times under load</issue> <issue id="CVE-2013-2850" tracker="cve" /> <category>security</category> <rating>critical</rating> <packager>jeff_mahoney</packager> <description> The openSUSE 12.1 kernel was updated to fix a critical security issue and also some reiserfs bugs. CVE-2013-2850: Incorrect strncpy usage in the network listening part of the iscsi target driver could have been used by remote attackers to crash the kernel or execute code. This required the iscsi target running on the machine and the attacker able to make a network connection to it (aka not filtered by firewalls). Bugs: - reiserfs: fix spurious multiple-fill in reiserfs_readdir_dentry (bnc#822722). - reiserfs: fix problems with chowning setuid file w/ xattrs (bnc#790920). </description> <summary>kernel: security update</summary> <reboot_needed/> </patchinfo> -- To unsubscribe, e-mail: [email protected] For additional commands, e-mail: [email protected]
