Accepted kernel-patch-adamantix 1.7 (all source)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.7
Date: Mon, 7 Mar 2005 01:05:55 +0100
Source: kernel-patch-adamantix
Binary: kernel-patch-adamantix
Architecture: source all
Version: 1.7
Distribution: unstable
Urgency: high
Maintainer: Javier Fernandez-Sanguino Pen~a <jfs@computer.org>
Changed-By: Javier Fernandez-Sanguino Pen~a <jfs@computer.org>
Description:
kernel-patch-adamantix - Kernel patches introduced in Adamantix
Closes: 298233
Changes:
kernel-patch-adamantix (1.7) unstable; urgency=high
.
* Fix privilege escalation bug in PaX (Closes: #298233)
For more information
http://seclists.org/lists/bugtraq/2005/Mar/0106.html
This is [BID-12729] (no CVE reference assigned yet)
This is a deviation from upstream since Adamantix does
not yet provide the patch. This issue is tracked in Adamantix
as Issue #413. For more information see:
http://www.adamantix.org/wiki/IssueNo0413PaXPrivilegeElevationSecurityBug
IMPORTANT NOTE: This is also an _UNTESTED_ patch, I had to
manually derive this by comparing the patchset
pax-linux-2.4.29-200503050030.patch
vs pax-linux-2.4.29-200502120800.patch and the changes I might
have introduced might not be accurate. Please provide feedback
in the BTS.
* For those that do not want to use this patch and would rather use
upstream's:
- Provide the original PaX patchset in the Debian sources and as
a kpatch file. These are only available for 2.4.29, though.
- Provide the original RSBAC patch (version 1.2.4 plus bugfixes
-1 and -2) also in the Debian sources and as a kpatch file. These
are only available for 2.4.29
[ I'm actually considering changing this package's patch into
a number of patches (instead of a unified single patch) to make
it easier to update upstream's patches. ]
Files:
41885ded94d76722e51b2d297e8c1125 687 devel extra kernel-patch-adamantix_1.7.dsc
923cbaebce5312b936908762a66c0569 3176874 devel extra kernel-patch-adamantix_1.7.tar.gz
b0245798bb2c3b37e38c29ee9920d786 2504610 devel extra kernel-patch-adamantix_1.7_all.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.0 (GNU/Linux)
iQCVAwUBQiuu8vtEPvakNq0lAQIakgQAmju1pNk5KBizMvqCnR+EF1/jnsCptmkF
OgbYqNaUgZ6UryNq4xSltdxbc3Tzyxmf9r74Ic2We7V40DQ1XsHMektatvLGzXX7
pkaxVcN5iEGhkAGshCifsvyaV5UHHmypWiVllYhCWILOYL5gFGjnroJ5K4tcg6g2
JeWJ2gpISeM=
=MmZC
-----END PGP SIGNATURE-----
Accepted:
kernel-patch-adamantix_1.7.dsc
to pool/main/k/kernel-patch-adamantix/kernel-patch-adamantix_1.7.dsc
kernel-patch-adamantix_1.7.tar.gz
to pool/main/k/kernel-patch-adamantix/kernel-patch-adamantix_1.7.tar.gz
kernel-patch-adamantix_1.7_all.deb
to pool/main/k/kernel-patch-adamantix/kernel-patch-adamantix_1.7_all.deb
Reply to: