[Secure-testing-commits] r19856 - data/CVE

Moritz Muehlenhoff jmm at alioth.debian.org
Thu Aug 2 10:41:13 UTC 2012


Author: jmm
Date: 2012-08-02 10:41:13 +0000 (Thu, 02 Aug 2012)
New Revision: 19856

Modified:
   data/CVE/list
Log:
libvirt fixed
icinga not affected
new kernel issue


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2012-08-02 05:36:46 UTC (rev 19855)
+++ data/CVE/list	2012-08-02 10:41:13 UTC (rev 19856)
@@ -1453,7 +1453,7 @@
 	RESERVED
 CVE-2012-3445 [libvirt: crash in virTypedParameterArrayClear]
 	RESERVED
-	- libvirt <unfixed> (bug #683483)
+	- libvirt 0.9.12-4 (bug #683483)
 	[squeeze] - libvirt <not-affected> (Vulnerable code not present)
 	NOTE: https://www.redhat.com/archives/libvir-list/2012-July/msg01650.html
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=844734
@@ -1474,7 +1474,7 @@
 	NOTE: http://www.openwall.com/lists/oss-security/2012/07/31/2
 CVE-2012-3441 [insecure permissions in DB creation script]
 	RESERVED
-	- icinga <unfixed> (bug #683320)
+	- icinga <not-affected> (Debian uses dbconfig, which does the right thing, bug #683320)
 CVE-2012-3440
 	RESERVED
 CVE-2012-3439
@@ -1558,6 +1558,8 @@
 	NOTE: https://bugs.launchpad.net/ubuntu/+source/kdepim/+bug/1022690
 CVE-2012-3412
 	RESERVED
+	- linux <unfixed>
+	- linux-2.6 <removed>
 CVE-2012-3411
 	RESERVED
 	- dnsmasq <unfixed> (low; bug #683372)




More information about the Secure-testing-commits mailing list