[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Details on CVE-2016-10229: Remote code execution vulnerability in kernel networking subsystem



Hello,


Am 04/04/2017 um 08:11 AM schrieb Salvatore Bonaccorso:
> Hi
> 
> On Tue, Apr 04, 2017 at 12:52:41AM +0200, Jan Lühr wrote:
>> Hei folks,
>>
>> android recently patched CVE-2016-10229: Remote code execution
>> vulnerability in kernel networking subsystem.
>>
>> Since https://security-tracker.debian.org/tracker/CVE-2016-10229 is
>> rather blank ... does this problem exists in debian, too?
> 
> The problem has been fixed in Debian stable already with
> 3.16.7-ckt20-1+deb8u2. I have updated the tracker. Unfortunately that
> is one of the CVE assigned by Android and assigned only later on. I
> guess most distributions have the fixes already in their releases
> (without CVE references).

Thanks!

Greetz, Jan

-- 
There's a ripped off cord
To my TV screen
With a note saying:
"Im not afraid to dream"
-- Donkey Boy, Crazy Something Normal


Reply to: