[Secure-testing-commits] r23255 - data/CVE

Salvatore Bonaccorso carnil at alioth.debian.org
Thu Aug 8 18:39:21 UTC 2013


Author: carnil
Date: 2013-08-08 18:39:20 +0000 (Thu, 08 Aug 2013)
New Revision: 23255

Modified:
   data/CVE/list
Log:
add (unchecked) linux issue: CVE-2013-4220

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-08-08 18:36:50 UTC (rev 23254)
+++ data/CVE/list	2013-08-08 18:39:20 UTC (rev 23255)
@@ -1879,8 +1879,13 @@
 	- restlet <itp> (bug #596472)
 	NOTE: http://blog.diniscruz.com/2013/08/using-xmldecoder-to-execute-server-side.html
 	NOTE: https://github.com/o2platform/DefCon_RESTing
-CVE-2013-4220
+CVE-2013-4220 [arm64: unhandled el0 traps]
 	RESERVED
+	- linux-2.6 <removed>
+	- linux <unfixed>
+	NOTE: upstream fixes: https://git.kernel.org/linus/381cc2b9705512ee7c7f1839cbdde374625a2a9f
+	NOTE: and https://git.kernel.org/linus/9955ac47f4ba1c95ecb6092aeaefb40a22e99268
+	TODO: check
 CVE-2013-4219
 	RESERVED
 CVE-2013-4218




More information about the Secure-testing-commits mailing list