[Secure-testing-commits] r19722 - data/CVE

Henri Salo fgeek-guest at alioth.debian.org
Wed Jul 11 22:28:17 UTC 2012


Author: fgeek-guest
Date: 2012-07-11 22:28:17 +0000 (Wed, 11 Jul 2012)
New Revision: 19722

Modified:
   data/CVE/list
Log:
NFU CVE-2012-3371 OpenStack Nova Scheduler

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2012-07-11 22:09:25 UTC (rev 19721)
+++ data/CVE/list	2012-07-11 22:28:17 UTC (rev 19722)
@@ -1249,8 +1249,13 @@
 	NOT-FOR-US: Cyberoam DPI devices
 	NOTE: https://blog.torproject.org/blog/security-vulnerability-found-cyberoam-dpi-devices-cve-2012-3372
 	NOTE: http://seclists.org/bugtraq/2012/Jul/20
-CVE-2012-3371
+CVE-2012-3371 [OpenStack Scheduler denial of service through scheduler_hints]
 	RESERVED
+	NOT-FOR-US: OpenStack Nova Scheduler
+	NOTE: http://www.openwall.com/lists/oss-security/2012/07/11/13
+	NOTE: https://github.com/openstack/nova/commit/034762e8060dcf0a11cb039b9d426b0d0bb1801d
+	NOTE: https://github.com/openstack/nova/commit/25f5bd31805bd21d7b7e3583c775252aa8f737e9
+	NOTE: https://bugs.launchpad.net/nova/+bug/1017795
 CVE-2012-3370
 	RESERVED
 CVE-2012-3369




More information about the Secure-testing-commits mailing list