Back to bug 1388821

Who When What Removed Added
Andrej Nemec 2016-10-26 09:02:11 UTC CC security-response-team
Andrej Nemec 2016-10-26 09:04:11 UTC Blocks 1388822
Andrej Nemec 2016-10-26 13:24:45 UTC CC vvs
Depends On 1387632
Wade Mealing 2016-11-07 02:56:21 UTC CC wmealing
Wade Mealing 2016-11-07 05:16:58 UTC Whiteboard impact=moderate,public=no,reported=20161021,source=researcher,cvss2=4.7/AV:L/AC:M/Au:N/C:N/I:N/A:C,cvss3=5.5/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H,rhel-5/kernel=new,rhel-6/kernel=new,rhel-7/kernel=new,rhel-7/kernel-rt=new,mrg-2/realtime-kernel=new,rhelsa-7/arm-kernel=new,fedora-all/kernel=affected impact=moderate,public=no,reported=20161021,source=researcher,cvss2=4.7/AV:L/AC:M/Au:N/C:N/I:N/A:C,cvss3=5.5/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H,rhel-5/kernel=notaffected,rhel-6/kernel=notaffected,rhel-7/kernel=affected,rhel-7/kernel-rt=affected,mrg-2/realtime-kernel=affected,rhelsa-7/arm-kernel=notaffected,fedora-all/kernel=affected
Wade Mealing 2016-11-07 05:49:00 UTC Whiteboard impact=moderate,public=no,reported=20161021,source=researcher,cvss2=4.7/AV:L/AC:M/Au:N/C:N/I:N/A:C,cvss3=5.5/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H,rhel-5/kernel=notaffected,rhel-6/kernel=notaffected,rhel-7/kernel=affected,rhel-7/kernel-rt=affected,mrg-2/realtime-kernel=affected,rhelsa-7/arm-kernel=notaffected,fedora-all/kernel=affected impact=moderate,public=no,reported=20161021,source=researcher,cvss2=4.7/AV:L/AC:M/Au:N/C:N/I:N/A:C,cvss3=5.5/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H,rhel-5/kernel=notaffected,rhel-6/kernel=notaffected,rhel-7/kernel=wontfix,rhel-7/kernel-rt=wontfix,mrg-2/realtime-kernel=wontfix,rhelsa-7/arm-kernel=notaffected,fedora-all/kernel=affected
Wade Mealing 2016-11-07 06:10:50 UTC Comment 3 is private 1 0
Wade Mealing 2016-11-07 06:49:17 UTC Doc Text A vulnerability was found in the Linux kernel. An unprivileged local user could triger oops in shash_async_export() by attempting to force the in-kernel hashing algorithms into decrypting an empty data set.
Wade Mealing 2016-11-07 06:51:14 UTC Whiteboard impact=moderate,public=no,reported=20161021,source=researcher,cvss2=4.7/AV:L/AC:M/Au:N/C:N/I:N/A:C,cvss3=5.5/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H,rhel-5/kernel=notaffected,rhel-6/kernel=notaffected,rhel-7/kernel=wontfix,rhel-7/kernel-rt=wontfix,mrg-2/realtime-kernel=wontfix,rhelsa-7/arm-kernel=notaffected,fedora-all/kernel=affected impact=moderate,public=no,reported=20161021,source=researcher,cvss2=4.7/AV:L/AC:M/Au:N/C:N/I:N/A:C,cvss3=5.5/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H,cwe=CWE-476,rhel-5/kernel=notaffected,rhel-6/kernel=notaffected,rhel-7/kernel=wontfix,rhel-7/kernel-rt=wontfix,mrg-2/realtime-kernel=wontfix,rhelsa-7/arm-kernel=notaffected,fedora-all/kernel=affected
Eric Christensen 2016-11-08 16:23:35 UTC Doc Text A vulnerability was found in the Linux kernel. An unprivileged local user could triger oops in shash_async_export() by attempting to force the in-kernel hashing algorithms into decrypting an empty data set. A vulnerability was found in the Linux kernel. An unprivileged local user could trigger oops in shash_async_export() by attempting to force the in-kernel hashing algorithms into decrypting an empty data set.
Wade Mealing 2016-11-11 01:32:30 UTC Whiteboard impact=moderate,public=no,reported=20161021,source=researcher,cvss2=4.7/AV:L/AC:M/Au:N/C:N/I:N/A:C,cvss3=5.5/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H,cwe=CWE-476,rhel-5/kernel=notaffected,rhel-6/kernel=notaffected,rhel-7/kernel=wontfix,rhel-7/kernel-rt=wontfix,mrg-2/realtime-kernel=wontfix,rhelsa-7/arm-kernel=notaffected,fedora-all/kernel=affected impact=moderate,public=no,reported=20161021,source=researcher,cvss2=4.7/AV:L/AC:M/Au:N/C:N/I:N/A:C,cvss3=5.5/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H,cwe=CWE-476,rhel-5/kernel=notaffected,rhel-6/kernel=notaffected,rhel-7/kernel=affected,rhel-7/kernel-rt=affected,mrg-2/realtime-kernel=affected,rhelsa-7/arm-kernel=notaffected,fedora-all/kernel=affected
Wade Mealing 2016-11-11 03:59:52 UTC Depends On 1394099
Wade Mealing 2016-11-11 04:00:36 UTC Depends On 1394100
Wade Mealing 2016-11-11 04:01:37 UTC Depends On 1394101
Wade Mealing 2016-11-11 04:02:06 UTC Depends On 1394102
Adam Mariš 2016-11-11 08:21:53 UTC Summary EMBARGOED kernel: Oops in shash_async_export() EMBARGOED CVE-2016-8646 kernel: Oops in shash_async_export()
Alias CVE-2016-8646
Wade Mealing 2016-11-15 01:58:22 UTC Whiteboard impact=moderate,public=no,reported=20161021,source=researcher,cvss2=4.7/AV:L/AC:M/Au:N/C:N/I:N/A:C,cvss3=5.5/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H,cwe=CWE-476,rhel-5/kernel=notaffected,rhel-6/kernel=notaffected,rhel-7/kernel=affected,rhel-7/kernel-rt=affected,mrg-2/realtime-kernel=affected,rhelsa-7/arm-kernel=notaffected,fedora-all/kernel=affected impact=moderate,public=20161115,reported=20161021,source=researcher,cvss2=4.7/AV:L/AC:M/Au:N/C:N/I:N/A:C,cvss3=5.5/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H,cwe=CWE-476,rhel-5/kernel=notaffected,rhel-6/kernel=notaffected,rhel-7/kernel=affected,rhel-7/kernel-rt=affected,mrg-2/realtime-kernel=affected,rhelsa-7/arm-kernel=notaffected,fedora-all/kernel=affected
Wade Mealing 2016-11-15 02:17:08 UTC Summary EMBARGOED CVE-2016-8646 kernel: Oops in shash_async_export() CVE-2016-8646 kernel: Oops in shash_async_export()
Wade Mealing 2016-11-15 02:17:17 UTC Group security, qe_staff
Wade Mealing 2016-11-15 02:19:10 UTC Depends On 1395044
Slawomir Czarko 2016-11-15 09:48:59 UTC CC slawomir
Jason Shepherd 2016-11-24 06:39:37 UTC Whiteboard impact=moderate,public=20161115,reported=20161021,source=researcher,cvss2=4.7/AV:L/AC:M/Au:N/C:N/I:N/A:C,cvss3=5.5/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H,cwe=CWE-476,rhel-5/kernel=notaffected,rhel-6/kernel=notaffected,rhel-7/kernel=affected,rhel-7/kernel-rt=affected,mrg-2/realtime-kernel=affected,rhelsa-7/arm-kernel=notaffected,fedora-all/kernel=affected impact=moderate,public=20161124,reported=20161021,source=researcher,cvss2=4.7/AV:L/AC:M/Au:N/C:N/I:N/A:C,cvss3=5.5/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H,cwe=CWE-476,rhel-5/kernel=notaffected,rhel-6/kernel=notaffected,rhel-7/kernel=affected,rhel-7/kernel-rt=affected,mrg-2/realtime-kernel=affected,rhelsa-7/arm-kernel=notaffected,fedora-all/kernel=affected
Jason Shepherd 2016-11-24 06:41:12 UTC Whiteboard impact=moderate,public=20161124,reported=20161021,source=researcher,cvss2=4.7/AV:L/AC:M/Au:N/C:N/I:N/A:C,cvss3=5.5/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H,cwe=CWE-476,rhel-5/kernel=notaffected,rhel-6/kernel=notaffected,rhel-7/kernel=affected,rhel-7/kernel-rt=affected,mrg-2/realtime-kernel=affected,rhelsa-7/arm-kernel=notaffected,fedora-all/kernel=affected impact=moderate,public=20161115,reported=20161021,source=researcher,cvss2=4.7/AV:L/AC:M/Au:N/C:N/I:N/A:C,cvss3=5.5/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H,cwe=CWE-476,rhel-5/kernel=notaffected,rhel-6/kernel=notaffected,rhel-7/kernel=affected,rhel-7/kernel-rt=affected,mrg-2/realtime-kernel=affected,rhelsa-7/arm-kernel=notaffected,fedora-all/kernel=affected
Vladis Dronov 2016-12-07 10:14:07 UTC CC vdronov
Linda Wang 2017-06-06 18:21:56 UTC Depends On 1459304
PnT Account Manager 2018-02-07 23:19:20 UTC CC agordeev
PnT Account Manager 2018-07-19 06:21:00 UTC CC mguzik
PnT Account Manager 2018-08-28 22:08:54 UTC CC lwang
Eric Sammons 2019-02-08 14:58:10 UTC CC esammons
Product Security DevOps Team 2019-06-08 03:01:13 UTC Status NEW CLOSED
Resolution --- ERRATA
Last Closed 2019-06-08 03:01:13 UTC
Product Security DevOps Team 2019-09-29 13:58:49 UTC Whiteboard impact=moderate,public=20161115,reported=20161021,source=researcher,cvss2=4.7/AV:L/AC:M/Au:N/C:N/I:N/A:C,cvss3=5.5/CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H,cwe=CWE-476,rhel-5/kernel=notaffected,rhel-6/kernel=notaffected,rhel-7/kernel=affected,rhel-7/kernel-rt=affected,mrg-2/realtime-kernel=affected,rhelsa-7/arm-kernel=notaffected,fedora-all/kernel=affected

Back to bug 1388821