[Secure-testing-commits] r13155 - data/CVE

Michael Gilbert gilbert-guest at alioth.debian.org
Fri Oct 30 17:37:44 UTC 2009


Author: gilbert-guest
Date: 2009-10-30 17:37:44 +0000 (Fri, 30 Oct 2009)
New Revision: 13155

Modified:
   data/CVE/list
Log:
new kernel issue

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2009-10-30 12:48:38 UTC (rev 13154)
+++ data/CVE/list	2009-10-30 17:37:44 UTC (rev 13155)
@@ -437,8 +437,13 @@
 CVE-2009-3639 (The mod_tls module in ProFTPD before 1.3.2b, and 1.3.3 before ...)
 	- proftpd-dfsg 1.3.2a-2 (low)
 	NOTE: http://bugs.proftpd.org/show_bug.cgi?id=3275
-CVE-2009-3638
+CVE-2009-3638 [linux-2.6: integer overflow in kvm_dev_ioctl_get_supported_cpuid()]
 	RESERVED
+	- linux-2.6 <unfixed> (medium)
+	[etch] - linux-2.6 <not-affected> (introduced in 2.6.25)
+	NOTE: fixed in upstream 2.6.32-rc4
+	- linux-2.6.24 <not-affected> (introduced in 2.6.25)
+	- kvm <unfixed> (medium)
 CVE-2009-3637 [alien-arena server issue]
 	RESERVED
 	- alien-arena <unfixed> (bug #552038)




More information about the Secure-testing-commits mailing list