[Secure-testing-commits] r24290 - data/CVE

Salvatore Bonaccorso carnil at alioth.debian.org
Mon Nov 4 18:25:44 UTC 2013


Author: carnil
Date: 2013-11-04 18:25:44 +0000 (Mon, 04 Nov 2013)
New Revision: 24290

Modified:
   data/CVE/list
Log:
Add fixed version for CVE-2013-4399/libvirt

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-11-04 18:24:31 UTC (rev 24289)
+++ data/CVE/list	2013-11-04 18:25:44 UTC (rev 24290)
@@ -4498,10 +4498,9 @@
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1015228#c3
 CVE-2013-4399 [unprivileged user can crash libvirtd when ACLs are enabled]
 	RESERVED
-	- libvirt <unfixed>
+	- libvirt 1.1.4-1
 	[wheezy] - libvirt <not-affected> (Introduced in 1.1.0)
 	[squeeze] - libvirt <not-affected> (Introduced in 1.1.0)
-	NOTE: fixed in 1.1.3 (not yet in unstable)
 CVE-2013-4398
 	REJECTED
 CVE-2013-4397 (Multiple integer overflows in the th_read function in lib/block.c in ...)




More information about the Secure-testing-commits mailing list