-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 Format: 1.7 Date: Mon, 7 Mar 2005 01:05:55 +0100 Source: kernel-patch-adamantix Binary: kernel-patch-adamantix Architecture: source all Version: 1.7 Distribution: unstable Urgency: high Maintainer: Javier Fernandez-Sanguino Pen~a <[EMAIL PROTECTED]> Changed-By: Javier Fernandez-Sanguino Pen~a <[EMAIL PROTECTED]> Description: kernel-patch-adamantix - Kernel patches introduced in Adamantix Closes: 298233 Changes: kernel-patch-adamantix (1.7) unstable; urgency=high . * Fix privilege escalation bug in PaX (Closes: #298233) For more information http://seclists.org/lists/bugtraq/2005/Mar/0106.html This is [BID-12729] (no CVE reference assigned yet) This is a deviation from upstream since Adamantix does not yet provide the patch. This issue is tracked in Adamantix as Issue #413. For more information see: http://www.adamantix.org/wiki/IssueNo0413PaXPrivilegeElevationSecurityBug IMPORTANT NOTE: This is also an _UNTESTED_ patch, I had to manually derive this by comparing the patchset pax-linux-2.4.29-200503050030.patch vs pax-linux-2.4.29-200502120800.patch and the changes I might have introduced might not be accurate. Please provide feedback in the BTS. * For those that do not want to use this patch and would rather use upstream's: - Provide the original PaX patchset in the Debian sources and as a kpatch file. These are only available for 2.4.29, though. - Provide the original RSBAC patch (version 1.2.4 plus bugfixes -1 and -2) also in the Debian sources and as a kpatch file. These are only available for 2.4.29 [ I'm actually considering changing this package's patch into a number of patches (instead of a unified single patch) to make it easier to update upstream's patches. ] Files: 41885ded94d76722e51b2d297e8c1125 687 devel extra kernel-patch-adamantix_1.7.dsc 923cbaebce5312b936908762a66c0569 3176874 devel extra kernel-patch-adamantix_1.7.tar.gz b0245798bb2c3b37e38c29ee9920d786 2504610 devel extra kernel-patch-adamantix_1.7_all.deb
-----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.0 (GNU/Linux) iQCVAwUBQiuu8vtEPvakNq0lAQIakgQAmju1pNk5KBizMvqCnR+EF1/jnsCptmkF OgbYqNaUgZ6UryNq4xSltdxbc3Tzyxmf9r74Ic2We7V40DQ1XsHMektatvLGzXX7 pkaxVcN5iEGhkAGshCifsvyaV5UHHmypWiVllYhCWILOYL5gFGjnroJ5K4tcg6g2 JeWJ2gpISeM= =MmZC -----END PGP SIGNATURE----- Accepted: kernel-patch-adamantix_1.7.dsc to pool/main/k/kernel-patch-adamantix/kernel-patch-adamantix_1.7.dsc kernel-patch-adamantix_1.7.tar.gz to pool/main/k/kernel-patch-adamantix/kernel-patch-adamantix_1.7.tar.gz kernel-patch-adamantix_1.7_all.deb to pool/main/k/kernel-patch-adamantix/kernel-patch-adamantix_1.7_all.deb -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]