Merge lp://qastaging/~n-muench/ubuntu/raring/open-vm-tools/open-vm-tools.CVE-2013-3237 into lp://qastaging/ubuntu/raring-proposed/open-vm-tools

Proposed by Nate Muench (Mink)
Status: Needs review
Proposed branch: lp://qastaging/~n-muench/ubuntu/raring/open-vm-tools/open-vm-tools.CVE-2013-3237
Merge into: lp://qastaging/ubuntu/raring-proposed/open-vm-tools
Diff against target: 5524 lines (+5469/-0)
6 files modified
.pc/0006-vsock-cve.patch/modules/linux/vsock/linux/af_vsock.c (+5440/-0)
.pc/applied-patches (+1/-0)
debian/changelog (+7/-0)
debian/patches/0006-vsock-cve.patch (+18/-0)
debian/patches/series (+1/-0)
modules/linux/vsock/linux/af_vsock.c (+2/-0)
To merge this branch: bzr merge lp://qastaging/~n-muench/ubuntu/raring/open-vm-tools/open-vm-tools.CVE-2013-3237
Reviewer Review Type Date Requested Status
Marc Deslauriers Disapprove
Review via email: mp+163437@code.qastaging.launchpad.net

Description of the change

CVE patch pulled from Debian. Affects this packaging.

If you would be so kind to backport this patch (if they apply successfully) to the other supported Ubuntu versions (excluding Saucy, there are currently issues with GCC 4.8 (build failures), which I reported to upstream).

The plan is to apply to be a developer (my wiki's page already up, my developer application wiki page, not yet) during Saucy cycle.

To post a comment you must log in.
Revision history for this message
Marc Deslauriers (mdeslaur) wrote :

Thanks for the merge request. Since this is a security update, it needs to go to the -security pocket. Please submit this again using a bug report, and the procedure found here:

https://wiki.ubuntu.com/SecurityTeam/UpdateProcedures

Thanks!

review: Disapprove

Unmerged revisions

36. By Nate Muench (Mink)

Adding patch from Mathias Krause <email address hidden> to fix
kernel stack memory leack in vsock module [CVE-2013-3237].

Preview Diff

[H/L] Next/Prev Comment, [J/K] Next/Prev File, [N/P] Next/Prev Hunk
The diff is not available at this time. You can reload the page or download it.

Subscribers

People subscribed via source and target branches