[Secure-testing-commits] r13156 - data/CVE

Michael Gilbert gilbert-guest at alioth.debian.org
Fri Oct 30 17:45:19 UTC 2009


Author: gilbert-guest
Date: 2009-10-30 17:45:19 +0000 (Fri, 30 Oct 2009)
New Revision: 13156

Modified:
   data/CVE/list
Log:
new kernel issue

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2009-10-30 17:37:44 UTC (rev 13155)
+++ data/CVE/list	2009-10-30 17:45:19 UTC (rev 13156)
@@ -432,8 +432,13 @@
 	NOT-FOR-US: FrontRange HEAT
 CVE-2009-3641 (Snort before 2.8.5.1, when the -v option is enabled, allows remote ...)
 	TODO: check
-CVE-2009-3640
+CVE-2009-3640 [linux-2.6: kvm null ptr dereference]
 	RESERVED
+	- linux-2.6 <unfixed> (medium)
+	[etch] - linux-2.6 <not-affected> (introduced in 2.6.25)
+	NOTE: fixed in upstream 2.6.32-rc1
+	- linux-2.6.24 <not-affected> (introduced in 2.6.25)
+	- kvm <unfixed> (medium)
 CVE-2009-3639 (The mod_tls module in ProFTPD before 1.3.2b, and 1.3.3 before ...)
 	- proftpd-dfsg 1.3.2a-2 (low)
 	NOTE: http://bugs.proftpd.org/show_bug.cgi?id=3275




More information about the Secure-testing-commits mailing list