aports issueshttps://gitlab.alpinelinux.org/alpine/aports/-/issues2019-07-23T14:23:20Zhttps://gitlab.alpinelinux.org/alpine/aports/-/issues/1934[v2.4] libX11 <= 1.5.99.901 (1.6 RC1) CVE-2013-1981 CVE-2013-1997 CVE-2013-20042019-07-23T14:23:20ZPeter Kotcauer[v2.4] libX11 <= 1.5.99.901 (1.6 RC1) CVE-2013-1981 CVE-2013-1997 CVE-2013-2004*(from redmine: issue id 1934, created on 2013-05-23, closed on 2013-05-29)*
* Relations:
* parent #1931
* Changesets:
* Revision 2649f751c0e9819efb815acf526ce7540d894538 by Natanael Copa on 2013-05-24T16:08:10Z:
```
main/libx11: s...*(from redmine: issue id 1934, created on 2013-05-23, closed on 2013-05-29)*
* Relations:
* parent #1931
* Changesets:
* Revision 2649f751c0e9819efb815acf526ce7540d894538 by Natanael Copa on 2013-05-24T16:08:10Z:
```
main/libx11: security fix (CVE-2013-1981,CVE-2013-1997,CVE-2013-2004)
ref #1931
fixes #1934
(cherry picked from commit db1e74cf060eb177b9bd1f5ef787b90b19609c5b)
```Alpine 2.4.12https://gitlab.alpinelinux.org/alpine/aports/-/issues/1937[v2.4] libXext <= 1.3.1 CVE-2013-19822019-07-23T14:23:17ZPeter Kotcauer[v2.4] libXext <= 1.3.1 CVE-2013-1982*(from redmine: issue id 1937, created on 2013-05-23, closed on 2013-05-29)*
* Relations:
* parent #1931
* Changesets:
* Revision 24d0ce7a8c4c75342428d763b97a7f4e69b0a118 by Natanael Copa on 2013-05-24T16:21:13Z:
```
main/libxext: ...*(from redmine: issue id 1937, created on 2013-05-23, closed on 2013-05-29)*
* Relations:
* parent #1931
* Changesets:
* Revision 24d0ce7a8c4c75342428d763b97a7f4e69b0a118 by Natanael Copa on 2013-05-24T16:21:13Z:
```
main/libxext: fix CVE-2013-1982
ref #1931
fixes #1937
(cherry picked from commit adf915bf8b5c4ff1c07648f42cee8ab4d804dede)
```Alpine 2.4.12https://gitlab.alpinelinux.org/alpine/aports/-/issues/1941[v2.4] libXfixes <= 5.0 CVE-2013-19832019-07-23T14:23:13ZPeter Kotcauer[v2.4] libXfixes <= 5.0 CVE-2013-1983*(from redmine: issue id 1941, created on 2013-05-23, closed on 2013-05-29)*
* Relations:
* parent #1931
* Changesets:
* Revision adad53cfd12db1c1f98f8beafae12554e5a9a8f1 by Natanael Copa on 2013-05-24T16:18:21Z:
```
main/libxfixes...*(from redmine: issue id 1941, created on 2013-05-23, closed on 2013-05-29)*
* Relations:
* parent #1931
* Changesets:
* Revision adad53cfd12db1c1f98f8beafae12554e5a9a8f1 by Natanael Copa on 2013-05-24T16:18:21Z:
```
main/libxfixes: fix for CVE-2013-1983
ref #1931
fixes #1941
(cherry picked from commit b26655eaa38290e14b41bf0dd3645030445f42d7)
```Alpine 2.4.12https://gitlab.alpinelinux.org/alpine/aports/-/issues/1946[v2.4] libXi <= 1.7.1 CVE-2013-1984 CVE-2013-1995 CVE-2013-19982019-07-23T14:23:09ZPeter Kotcauer[v2.4] libXi <= 1.7.1 CVE-2013-1984 CVE-2013-1995 CVE-2013-1998*(from redmine: issue id 1946, created on 2013-05-23, closed on 2013-05-29)*
* Relations:
* parent #1931
* Changesets:
* Revision 12ae6c6dff5d79147ae77b188fcdc11f28fc3cee by Natanael Copa on 2013-05-24T16:24:02Z:
```
main/libxi: se...*(from redmine: issue id 1946, created on 2013-05-23, closed on 2013-05-29)*
* Relations:
* parent #1931
* Changesets:
* Revision 12ae6c6dff5d79147ae77b188fcdc11f28fc3cee by Natanael Copa on 2013-05-24T16:24:02Z:
```
main/libxi: security upgrade to 1.6.2.901 (CVE-2013-1984,CVE-2013-1995,CVE-2013-1998)
ref #1931
fixes #1946
```Alpine 2.4.12https://gitlab.alpinelinux.org/alpine/aports/-/issues/1950[v2.4] libXinerama <= 1.1.2 CVE-2013-19852019-07-23T14:23:05ZPeter Kotcauer[v2.4] libXinerama <= 1.1.2 CVE-2013-1985*(from redmine: issue id 1950, created on 2013-05-23, closed on 2013-05-29)*
* Relations:
* parent #1931
* Changesets:
* Revision 33a1152b1f5f134b0fe6439b0eaec2a46574b561 by Natanael Copa on 2013-05-24T16:25:02Z:
```
main/libxinera...*(from redmine: issue id 1950, created on 2013-05-23, closed on 2013-05-29)*
* Relations:
* parent #1931
* Changesets:
* Revision 33a1152b1f5f134b0fe6439b0eaec2a46574b561 by Natanael Copa on 2013-05-24T16:25:02Z:
```
main/libxinerama: fix CVE-2013-1985
ref #1931
fixes #1950
(cherry picked from commit 3e5921fae9eef23dbc7c56b7905ccbf9de168cea)
```Alpine 2.4.12https://gitlab.alpinelinux.org/alpine/aports/-/issues/1954[v2.4] libXp <= 1.0.1 CVE-2013-20622019-07-23T14:23:01ZPeter Kotcauer[v2.4] libXp <= 1.0.1 CVE-2013-2062*(from redmine: issue id 1954, created on 2013-05-23, closed on 2013-05-29)*
* Relations:
* parent #1931
* Changesets:
* Revision 04fca7445c2068e588b79b32e01639ef1a0de1b6 by Natanael Copa on 2013-05-24T16:26:19Z:
```
main/libxp: fi...*(from redmine: issue id 1954, created on 2013-05-23, closed on 2013-05-29)*
* Relations:
* parent #1931
* Changesets:
* Revision 04fca7445c2068e588b79b32e01639ef1a0de1b6 by Natanael Copa on 2013-05-24T16:26:19Z:
```
main/libxp: fix CVE-2013-2062
ref #1931
fixes #1954
(cherry picked from commit 596f76568714ab83fed8fef00c69f6493e6996e3)
```Alpine 2.4.12https://gitlab.alpinelinux.org/alpine/aports/-/issues/1958[v2.4] libXrandr <= 1.4.0 CVE-2013-19862019-07-23T14:22:57ZPeter Kotcauer[v2.4] libXrandr <= 1.4.0 CVE-2013-1986*(from redmine: issue id 1958, created on 2013-05-23, closed on 2013-05-29)*
* Relations:
* parent #1931
* Changesets:
* Revision 0df792b849962f1e9302b2405f6d846e414e27bc by Natanael Copa on 2013-05-24T16:39:02Z:
```
main/libxrandr...*(from redmine: issue id 1958, created on 2013-05-23, closed on 2013-05-29)*
* Relations:
* parent #1931
* Changesets:
* Revision 0df792b849962f1e9302b2405f6d846e414e27bc by Natanael Copa on 2013-05-24T16:39:02Z:
```
main/libxrandr: fix CVE-2013-1986
ref #1931
fixes #1958
```Alpine 2.4.12https://gitlab.alpinelinux.org/alpine/aports/-/issues/1962[v2.4] libXrender <= 0.9.7 CVE-2013-19872019-07-23T14:22:53ZPeter Kotcauer[v2.4] libXrender <= 0.9.7 CVE-2013-1987*(from redmine: issue id 1962, created on 2013-05-23, closed on 2013-05-29)*
* Relations:
* parent #1931
* Changesets:
* Revision 2ae1730c58fb4314514c31b87eaff8759f81d236 by Natanael Copa on 2013-05-24T16:19:03Z:
```
main/libxrende...*(from redmine: issue id 1962, created on 2013-05-23, closed on 2013-05-29)*
* Relations:
* parent #1931
* Changesets:
* Revision 2ae1730c58fb4314514c31b87eaff8759f81d236 by Natanael Copa on 2013-05-24T16:19:03Z:
```
main/libxrender: fix CVE-2013-1987
ref #1931
fixes #1962
(cherry picked from commit de43558cd1904b59c2358a05514aea1d20fab1c2)
```Alpine 2.4.12https://gitlab.alpinelinux.org/alpine/aports/-/issues/1966[v2.4] libXRes <= 1.0.6 CVE-2013-19882019-07-23T14:22:50ZPeter Kotcauer[v2.4] libXRes <= 1.0.6 CVE-2013-1988*(from redmine: issue id 1966, created on 2013-05-23, closed on 2013-05-29)*
* Relations:
* parent #1931
* Changesets:
* Revision 1953e4184b10893c215af56b6968543717976d46 by Natanael Copa on 2013-05-24T16:40:11Z:
```
main/libxres: ...*(from redmine: issue id 1966, created on 2013-05-23, closed on 2013-05-29)*
* Relations:
* parent #1931
* Changesets:
* Revision 1953e4184b10893c215af56b6968543717976d46 by Natanael Copa on 2013-05-24T16:40:11Z:
```
main/libxres: fix CVE-2013-1988
ref #1931
fixes #1966
(cherry picked from commit b262cf6c02f0e15dc88618b6a9e1298ace184057)
```Alpine 2.4.12https://gitlab.alpinelinux.org/alpine/aports/-/issues/1970[v2.4] libXtst <= 1.2.1 CVE-2013-20632019-07-23T14:22:46ZPeter Kotcauer[v2.4] libXtst <= 1.2.1 CVE-2013-2063*(from redmine: issue id 1970, created on 2013-05-23, closed on 2013-05-29)*
* Relations:
* parent #1931
* Changesets:
* Revision 406661591c02dd83efcb2a8885ed58349e2864cd by Natanael Copa on 2013-05-27T16:41:01Z:
```
main/libxtst: ...*(from redmine: issue id 1970, created on 2013-05-23, closed on 2013-05-29)*
* Relations:
* parent #1931
* Changesets:
* Revision 406661591c02dd83efcb2a8885ed58349e2864cd by Natanael Copa on 2013-05-27T16:41:01Z:
```
main/libxtst: fix CVE-2013-2063
ref #1931
fixes #1970
(cherry picked from commit ca33affea49de655ea0a1aa27accea11f84df7c1)
```Alpine 2.4.12https://gitlab.alpinelinux.org/alpine/aports/-/issues/1974[v2.4] libXv <= 1.0.7 CVE-2013-1989 CVE-2013-20662019-07-23T14:22:43ZPeter Kotcauer[v2.4] libXv <= 1.0.7 CVE-2013-1989 CVE-2013-2066*(from redmine: issue id 1974, created on 2013-05-23, closed on 2013-05-29)*
* Relations:
* parent #1931
* Changesets:
* Revision 116a8d9ca2f4a57fd5c27dc32f9d393d7ed3b48e by Natanael Copa on 2013-05-24T16:40:51Z:
```
main/libxv: fi...*(from redmine: issue id 1974, created on 2013-05-23, closed on 2013-05-29)*
* Relations:
* parent #1931
* Changesets:
* Revision 116a8d9ca2f4a57fd5c27dc32f9d393d7ed3b48e by Natanael Copa on 2013-05-24T16:40:51Z:
```
main/libxv: fix CVE-2013-1989,CVE-2013-2066
ref #1931
fixes #1974
(cherry picked from commit a04d1c8ff925273f3caf3a46393cf73ac2b96ab5)
```Alpine 2.4.12https://gitlab.alpinelinux.org/alpine/aports/-/issues/1978[v2.4] libXvMC <= 1.0.7 CVE-2013-1990 CVE-2013-19992019-07-23T14:22:39ZPeter Kotcauer[v2.4] libXvMC <= 1.0.7 CVE-2013-1990 CVE-2013-1999*(from redmine: issue id 1978, created on 2013-05-23, closed on 2013-05-29)*
* Relations:
* parent #1931
* Changesets:
* Revision 0ec2f93c9d72ee4b5af6481a370acbfcb426dc4e by Natanael Copa on 2013-05-24T16:41:25Z:
```
main/libxvmc: ...*(from redmine: issue id 1978, created on 2013-05-23, closed on 2013-05-29)*
* Relations:
* parent #1931
* Changesets:
* Revision 0ec2f93c9d72ee4b5af6481a370acbfcb426dc4e by Natanael Copa on 2013-05-24T16:41:25Z:
```
main/libxvmc: fix CVE-2013-1990,CVE-2013-1999
ref #1931
fixes #1978
(cherry picked from commit dfac4cbecc1c27d53504a0d9a80019146c9c9bfb)
```Alpine 2.4.12https://gitlab.alpinelinux.org/alpine/aports/-/issues/1982[v2.4] libXxf86dga <= 1.1.3 CVE-2013-1991 CVE-2013-20002019-07-23T14:22:36ZPeter Kotcauer[v2.4] libXxf86dga <= 1.1.3 CVE-2013-1991 CVE-2013-2000*(from redmine: issue id 1982, created on 2013-05-23, closed on 2013-05-29)*
* Relations:
* parent #1931
* Changesets:
* Revision 6e94674a196771ea7599e54e128c8a4cedbdbe49 by Natanael Copa on 2013-05-24T16:42:40Z:
```
main/libxxf86d...*(from redmine: issue id 1982, created on 2013-05-23, closed on 2013-05-29)*
* Relations:
* parent #1931
* Changesets:
* Revision 6e94674a196771ea7599e54e128c8a4cedbdbe49 by Natanael Copa on 2013-05-24T16:42:40Z:
```
main/libxxf86dga: fix CVE-2013-1991,CVE-2013-2000
ref #1931
fixes #1982
(cherry picked from commit decef4fe3c4a8fac3afe45c8beebfa95550484f7)
```
* Revision aac3ab664faee25685e9a6fa912f8ec49d1aadab by Natanael Copa on 2013-05-27T15:57:44Z:
```
main/libxxf86dga: actually apply the patches
fixes #1982
```Alpine 2.4.12https://gitlab.alpinelinux.org/alpine/aports/-/issues/1986[v2.4] libxcb <= 1.9 CVE-2013-20642019-07-23T14:22:32ZPeter Kotcauer[v2.4] libxcb <= 1.9 CVE-2013-2064*(from redmine: issue id 1986, created on 2013-05-23, closed on 2013-05-29)*
* Relations:
* parent #1931
* Changesets:
* Revision 9688473ac6aba4112f17501b088e2eb353ec56c2 by Natanael Copa on 2013-05-24T16:03:44Z:
```
main/libxcb: s...*(from redmine: issue id 1986, created on 2013-05-23, closed on 2013-05-29)*
* Relations:
* parent #1931
* Changesets:
* Revision 9688473ac6aba4112f17501b088e2eb353ec56c2 by Natanael Copa on 2013-05-24T16:03:44Z:
```
main/libxcb: security fix (CVE-2013-2064)
ref #1931
fixes #1986
(cherry picked from commit 682ed1fa3f5d7338fff3b497e1b95d45b2481e79)
Conflicts:
main/libxcb/APKBUILD
```Alpine 2.4.12https://gitlab.alpinelinux.org/alpine/aports/-/issues/1990[v2.4] libXxf86vm <= 1.1.2 CVE-2013-20012019-07-23T14:22:29ZPeter Kotcauer[v2.4] libXxf86vm <= 1.1.2 CVE-2013-2001*(from redmine: issue id 1990, created on 2013-05-23, closed on 2013-05-29)*
* Relations:
* parent #1931
* Changesets:
* Revision d5889b384b3c55e50fddd85dad707f163012eaf4 by Natanael Copa on 2013-05-24T16:42:00Z:
```
main/libxxf86v...*(from redmine: issue id 1990, created on 2013-05-23, closed on 2013-05-29)*
* Relations:
* parent #1931
* Changesets:
* Revision d5889b384b3c55e50fddd85dad707f163012eaf4 by Natanael Copa on 2013-05-24T16:42:00Z:
```
main/libxxf86vm: fix CVE-2013-2001
ref #1931
fixes #1990
(cherry picked from commit a632a13327ab882c590bbae004b3be338edc14cf)
```Alpine 2.4.12https://gitlab.alpinelinux.org/alpine/aports/-/issues/1994[v2.4] libXt <= 1.1.3 CVE-2013-2002 CVE-2013-20052019-07-23T14:22:25ZPeter Kotcauer[v2.4] libXt <= 1.1.3 CVE-2013-2002 CVE-2013-2005*(from redmine: issue id 1994, created on 2013-05-23, closed on 2013-05-29)*
* Relations:
* parent #1931
* Changesets:
* Revision f7aaccfd77acfce44d757b68afb7d33532f9447e by Natanael Copa on 2013-05-24T16:43:16Z:
```
main/libxt: fi...*(from redmine: issue id 1994, created on 2013-05-23, closed on 2013-05-29)*
* Relations:
* parent #1931
* Changesets:
* Revision f7aaccfd77acfce44d757b68afb7d33532f9447e by Natanael Copa on 2013-05-24T16:43:16Z:
```
main/libxt: fix CVE-2013-2002,CVE-2013-2005
ref #1931
fixes #1994
(cherry picked from commit e6d9eccdf7eeb94ed8fdd2cd4e7ebd51ed7fb04a)
```Alpine 2.4.12https://gitlab.alpinelinux.org/alpine/aports/-/issues/1998[v2.4] libXcursor <= 1.1.13 CVE-2013-20032019-07-23T14:22:21ZPeter Kotcauer[v2.4] libXcursor <= 1.1.13 CVE-2013-2003*(from redmine: issue id 1998, created on 2013-05-23, closed on 2013-05-29)*
* Relations:
* parent #1931
* Changesets:
* Revision 99d3e572056d735f20db0b6a80e86398462ee97b by Natanael Copa on 2013-05-24T16:19:38Z:
```
main/libxcurso...*(from redmine: issue id 1998, created on 2013-05-23, closed on 2013-05-29)*
* Relations:
* parent #1931
* Changesets:
* Revision 99d3e572056d735f20db0b6a80e86398462ee97b by Natanael Copa on 2013-05-24T16:19:38Z:
```
main/libxcursor: fix CVE-2013-2003
ref #1931
fixes #1998
(cherry picked from commit 12fb9608ca0d7e1478f57863518a56e57fc759bc)
```Alpine 2.4.12https://gitlab.alpinelinux.org/alpine/aports/-/issues/2020[v2.4] cgit directory traversal (CVE-2013-2117)2019-07-23T14:22:07ZNatanael Copa[v2.4] cgit directory traversal (CVE-2013-2117)*(from redmine: issue id 2020, created on 2013-05-28, closed on 2013-05-29)*
* Relations:
* parent #2017
* Changesets:
* Revision 8fa342f4e4662c5ac3038410c69eb77da75c66b3 by Natanael Copa on 2013-05-28T16:48:05Z:
```
main/cgit: sec...*(from redmine: issue id 2020, created on 2013-05-28, closed on 2013-05-29)*
* Relations:
* parent #2017
* Changesets:
* Revision 8fa342f4e4662c5ac3038410c69eb77da75c66b3 by Natanael Copa on 2013-05-28T16:48:05Z:
```
main/cgit: security upgrade to 0.9.2 (CVE-2013-2117)
fixes #2020
(cherry picked from commit 44e740eef26389110713c40214989466c8c83ba5)
```Alpine 2.4.12https://gitlab.alpinelinux.org/alpine/aports/-/issues/2027[v2.4] haproxy 1.4 - 1.4.22 CVE-2013-19122019-07-23T14:22:00ZPeter Kotcauer[v2.4] haproxy 1.4 - 1.4.22 CVE-2013-1912Yves Lafon from the W3C reported some random crashes of haproxy with
an
advanced configuration, that we finally considered was a security
issue
as it could remotely be triggered.
—- summary —-
Configurations at risk are those which...Yves Lafon from the W3C reported some random crashes of haproxy with
an
advanced configuration, that we finally considered was a security
issue
as it could remotely be triggered.
—- summary —-
Configurations at risk are those which combine use of HTTP keywords in
TCP content inspection rules, client-side keep-alive, header rewriting
rules and which receive pipelined requests. These configurations may
be
remotely crashed when run with haproxy 1.4 up to and including 1.4.22
or development versions up to and including 1.5-dev17. Versions 1.4.23
and 1.5-dev18 are safe.
—- quick workaround —-
Disable TCP content inspection, or disable HTTP keep-alive by
inserting
“option forceclose” in the affected frontends.
—- details —-
During normal HTTP request processing, request buffers are realigned
if
there are less than global.maxrewrite bytes available after them, in
order to leave enough room for rewriting headers after the request.
This
is done in http\_wait\_for\_request().
However, if some HTTP inspection happens during a “tcp-request
content”
rule, this realignment is not performed. In theory this is not a
problem
because empty buffers are always aligned and TCP inspection happens at
the beginning of a connection. But with HTTP keep-alive, it also
happens
at the beginning of each subsequent request. So if a second request
was
pipelined by the client before the first one had a chance to be
forwarded,
the second request will not be realigned. Then,
http\_wait\_for\_request()
will not perform such a realignment either because the request was
already parsed and marked as such. The consequence of this, is that
the
rewrite of a sufficient number of such pipelined, unaligned requests
may
leave less room past the request been processed than the configured
reserve, which can lead to a buffer overflow if request processing
appends
some data past the end of the buffer.
A number of conditions are required for the bug to be triggered :
- HTTP keep-alive must be enabled ;
- HTTP inspection in TCP rules must be used ;
- some request appending rules are needed (reqadd, x-forwarded-for)
- since empty buffers are always realigned, the client must pipeline
enough requests so that the buffer always contains something till
the point where there is no more room for rewriting.
While such a configuration is quite unlikely to be met (which is
confirmed by the bug’s lifetime), a few people do use these features
together for very specific usages. And more importantly, writing such
a configuration and the request to attack it is trivial.
A quick workaround consists in forcing keep-alive off by adding
“option httpclose” or “option forceclose” in the frontend.
Alternatively,
disabling HTTP-based TCP inspection rules enough if the application
supports it.
At first glance, this bug does not look like it could lead to remote
code
execution, as the overflowing part is controlled by the configuration
and
not by the user. But some deeper analysis should be performed to
confirm
this. And anyway, corrupting the process’ memory and crashing it is
quite
trivial.
Special thanks go to Yves Lafon from the W3C who reported this bug and
deployed significant efforts to collect the relevant data needed to
understand it in less than one week, and to Ryan O’Hara from Red Hat
for providing me with a CVE number.
CVE-2013-1912 was assigned to this issue.
—- links —-
1.4-stable patch for version <= 1.4.22 :
http://git.1wt.eu/web?p=haproxy-1.4.git;a=commitdiff;h=dc80672211
1.4.23 source code:
http://haproxy.1wt.eu/download/1.4/src/haproxy-1.4.23.tar.gz
1.5-dev patch for versions <= 1.5-dev17 :
http://git.1wt.eu/web?p=haproxy.git;a=commitdiff;h=aae75e3279
1.5-dev18 source code:
http://haproxy.1wt.eu/download/1.5/src/devel/haproxy-1.5-dev18.tar.gz
*(from redmine: issue id 2027, created on 2013-05-29, closed on 2013-06-03)*
* Relations:
* parent #2025
* Changesets:
* Revision 9f78fab9c5ca88bf0106dae767f14bf8a08799ae by Natanael Copa on 2013-06-03T11:11:28Z:
```
main/haproxy: security upgrade to 1.4.23 (CVE-2013-1912)
fixes #2027
```Alpine 2.4.12Natanael CopaNatanael Copahttps://gitlab.alpinelinux.org/alpine/aports/-/issues/2042[v2.4] CVE-2013-2850: Linux kernel iSCSI target heap overflow2019-07-23T14:21:46ZPeter Kotcauer[v2.4] CVE-2013-2850: Linux kernel iSCSI target heap overflowupstream fix:
http://git.kernel.org/cgit/linux/kernel/git/nab/target-pending.git/commit/?id=cea4dcfdad926a27a18e188720efe0f2c9403456
http://www.openwall.com/lists/oss-security/2013/06/01/2
*(from redmine: issue id 2042, created on 201...upstream fix:
http://git.kernel.org/cgit/linux/kernel/git/nab/target-pending.git/commit/?id=cea4dcfdad926a27a18e188720efe0f2c9403456
http://www.openwall.com/lists/oss-security/2013/06/01/2
*(from redmine: issue id 2042, created on 2013-06-02, closed on 2013-06-06)*
* Relations:
* parent #2039
* Changesets:
* Revision 56028d0155b80c508b86c5b1215f0e444ab33c58 by Natanael Copa on 2013-06-05T14:02:08Z:
```
main/linux-grsec: upgrade to 3.4.47 and fix CVE-2013-2850
ref #2039
fixes #2042
```Alpine 2.4.12