[Secure-testing-commits] r22092 - data/CVE

Salvatore Bonaccorso carnil at alioth.debian.org
Tue Apr 30 05:41:16 UTC 2013


Author: carnil
Date: 2013-04-30 05:41:16 +0000 (Tue, 30 Apr 2013)
New Revision: 22092

Modified:
   data/CVE/list
Log:
CVE-2013-2016, not checked, only added notes. Does it affects qemu-kvm, qemu as present in Debian?

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-04-30 05:33:50 UTC (rev 22091)
+++ data/CVE/list	2013-04-30 05:41:16 UTC (rev 22092)
@@ -2825,8 +2825,11 @@
 	NOTE: https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=6ec82562ffc6f297d0de36d65776cff8e5704867
 	NOTE: http://marc.info/?l=linux-netdev&m=127310770900442&w=3
 	TODO: check (mark fixed versions, check, according to mail introduced in 2.6.33-rc1, fixed in 2.6.34)
-CVE-2013-2016
+CVE-2013-2016 [qemu: virtio: out-of-bounds config space access]
 	RESERVED
+	NOTE: https://lists.gnu.org/archive/html/qemu-devel/2013-04/msg05013.html
+	NOTE: https://lists.gnu.org/archive/html/qemu-devel/2013-04/msg05254.html
+	TODO: check
 CVE-2013-2015 (The ext4_orphan_del function in fs/ext4/namei.c in the Linux kernel ...)
 	- linux <not-affected>
 	- linux-2.6 <not-affected>




More information about the Secure-testing-commits mailing list