[Secure-testing-commits] r23942 - data/CVE

Salvatore Bonaccorso carnil at alioth.debian.org
Thu Oct 10 12:42:05 UTC 2013


Author: carnil
Date: 2013-10-10 12:42:05 +0000 (Thu, 10 Oct 2013)
New Revision: 23942

Modified:
   data/CVE/list
Log:
Add CVE-2013-4375 for xen, qemu and qemu-kvm

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-10-10 12:37:17 UTC (rev 23941)
+++ data/CVE/list	2013-10-10 12:42:05 UTC (rev 23942)
@@ -3585,7 +3585,14 @@
 CVE-2013-4376 [arbitrary code as the x2go user]
 	RESERVED
 	- x2goserver <itp> (bug #465821)
-CVE-2013-4375
+CVE-2013-4375 [qemu disk backend (qdisk) resource leak]
+	- xen <unfixed>
+	[squeeze] - xen <not-affected> (potentially affected by 4.1 versions and above)
+	- qemu <unfixed>
+	[squeeze] - qemu <not-affected> (vulnerable from version 1.1 onwards)
+	- qemu-kvm <removed>
+	[squeeze] - qemu-kvm <not-affected> (vulnerable from version 1.1 onwards)
+	TODO: check
 	RESERVED
 CVE-2013-4374
 	RESERVED




More information about the Secure-testing-commits mailing list