[Secure-testing-commits] r23255 - data/CVE
Salvatore Bonaccorso
carnil at alioth.debian.org
Thu Aug 8 18:39:21 UTC 2013
Author: carnil
Date: 2013-08-08 18:39:20 +0000 (Thu, 08 Aug 2013)
New Revision: 23255
Modified:
data/CVE/list
Log:
add (unchecked) linux issue: CVE-2013-4220
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2013-08-08 18:36:50 UTC (rev 23254)
+++ data/CVE/list 2013-08-08 18:39:20 UTC (rev 23255)
@@ -1879,8 +1879,13 @@
- restlet <itp> (bug #596472)
NOTE: http://blog.diniscruz.com/2013/08/using-xmldecoder-to-execute-server-side.html
NOTE: https://github.com/o2platform/DefCon_RESTing
-CVE-2013-4220
+CVE-2013-4220 [arm64: unhandled el0 traps]
RESERVED
+ - linux-2.6 <removed>
+ - linux <unfixed>
+ NOTE: upstream fixes: https://git.kernel.org/linus/381cc2b9705512ee7c7f1839cbdde374625a2a9f
+ NOTE: and https://git.kernel.org/linus/9955ac47f4ba1c95ecb6092aeaefb40a22e99268
+ TODO: check
CVE-2013-4219
RESERVED
CVE-2013-4218
More information about the Secure-testing-commits
mailing list