[Secure-testing-commits] r26515 - data/CVE

Raphael Geissert atomo64-guest at moszumanska.debian.org
Fri Apr 11 14:21:16 UTC 2014


Author: atomo64-guest
Date: 2014-04-11 14:21:16 +0000 (Fri, 11 Apr 2014)
New Revision: 26515

Modified:
   data/CVE/list
Log:
qemu 2.0 doesn't fix a whole lot of issues

reported by Michael Tokarev


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-04-11 14:15:04 UTC (rev 26514)
+++ data/CVE/list	2014-04-11 14:21:16 UTC (rev 26515)
@@ -8884,7 +8884,6 @@
 	[wheezy] - qemu <no-dsa> (Minor issue, hardly exploitable in practice)
 	- qemu-kvm <removed> (low)
 	[squeeze] - qemu-kvm <no-dsa> (Minor issue, hardly exploitable in practice)
-	NOTE: qemu/2.0.0~rc1+dfsg-1exp fixed the issue, update entry when uploaded to sid
 CVE-2013-6398 (The virtual router in Apache CloudStack before 4.2.1 does not preserve ...)
 	NOT-FOR-US: Apache CloudStack
 CVE-2013-6397 (Directory traversal vulnerability in SolrResourceLoader in Apache Solr ...)
@@ -13375,96 +13374,82 @@
 	[wheezy] - qemu <no-dsa> (Minor issue, hardly exploitable in practice)
 	- qemu-kvm <removed> (low)
 	[squeeze] - qemu-kvm <no-dsa> (Minor issue, hardly exploitable in practice)
-	NOTE: qemu/2.0.0~rc1+dfsg-1exp fixed the issue, update entry when uploaded to sid
 CVE-2013-4541
 	RESERVED
 	- qemu <unfixed> (low; bug #739589)
 	[wheezy] - qemu <no-dsa> (Minor issue, hardly exploitable in practice)
 	- qemu-kvm <removed> (low)
 	[squeeze] - qemu-kvm <no-dsa> (Minor issue, hardly exploitable in practice)
-	NOTE: qemu/2.0.0~rc1+dfsg-1exp fixed the issue, update entry when uploaded to sid
 CVE-2013-4540
 	RESERVED
 	- qemu <unfixed> (low; bug #739589)
 	[wheezy] - qemu <no-dsa> (Minor issue, hardly exploitable in practice)
 	- qemu-kvm <removed> (low)
 	[squeeze] - qemu-kvm <no-dsa> (Minor issue, hardly exploitable in practice)
-	NOTE: qemu/2.0.0~rc1+dfsg-1exp fixed the issue, update entry when uploaded to sid
 CVE-2013-4539
 	RESERVED
 	- qemu <unfixed> (low; bug #739589)
 	[wheezy] - qemu <no-dsa> (Minor issue, hardly exploitable in practice)
 	- qemu-kvm <removed> (low)
 	[squeeze] - qemu-kvm <no-dsa> (Minor issue, hardly exploitable in practice)
-	NOTE: qemu/2.0.0~rc1+dfsg-1exp fixed the issue, update entry when uploaded to sid
 CVE-2013-4538
 	RESERVED
 	- qemu <unfixed> (low; bug #739589)
 	[wheezy] - qemu <no-dsa> (Minor issue, hardly exploitable in practice)
 	- qemu-kvm <removed> (low)
 	[squeeze] - qemu-kvm <no-dsa> (Minor issue, hardly exploitable in practice)
-	NOTE: qemu/2.0.0~rc1+dfsg-1exp fixed the issue, update entry when uploaded to sid
 CVE-2013-4537
 	RESERVED
 	- qemu <unfixed> (low; bug #739589)
 	[wheezy] - qemu <no-dsa> (Minor issue, hardly exploitable in practice)
 	- qemu-kvm <removed> (low)
 	[squeeze] - qemu-kvm <no-dsa> (Minor issue, hardly exploitable in practice)
-	NOTE: qemu/2.0.0~rc1+dfsg-1exp fixed the issue, update entry when uploaded to sid
 CVE-2013-4536
 	RESERVED
 	- qemu <unfixed> (low; bug #739589)
 	[wheezy] - qemu <no-dsa> (Minor issue, hardly exploitable in practice)
 	- qemu-kvm <removed> (low)
 	[squeeze] - qemu-kvm <no-dsa> (Minor issue, hardly exploitable in practice)
-	NOTE: qemu/2.0.0~rc1+dfsg-1exp fixed the issue, update entry when uploaded to sid
 CVE-2013-4535
 	RESERVED
 	- qemu <unfixed> (low; bug #739589)
 	[wheezy] - qemu <no-dsa> (Minor issue, hardly exploitable in practice)
 	- qemu-kvm <removed> (low)
 	[squeeze] - qemu-kvm <no-dsa> (Minor issue, hardly exploitable in practice)
-	NOTE: qemu/2.0.0~rc1+dfsg-1exp fixed the issue, update entry when uploaded to sid
 CVE-2013-4534
 	RESERVED
 	- qemu <unfixed> (low; bug #739589)
 	[wheezy] - qemu <no-dsa> (Minor issue, hardly exploitable in practice)
 	- qemu-kvm <removed> (low)
 	[squeeze] - qemu-kvm <no-dsa> (Minor issue, hardly exploitable in practice)
-	NOTE: qemu/2.0.0~rc1+dfsg-1exp fixed the issue, update entry when uploaded to sid
 CVE-2013-4533
 	RESERVED
 	- qemu <unfixed> (low; bug #739589)
 	[wheezy] - qemu <no-dsa> (Minor issue, hardly exploitable in practice)
 	- qemu-kvm <removed> (low)
 	[squeeze] - qemu-kvm <no-dsa> (Minor issue, hardly exploitable in practice)
-	NOTE: qemu/2.0.0~rc1+dfsg-1exp fixed the issue, update entry when uploaded to sid
 CVE-2013-4532
 	RESERVED
 	- qemu <unfixed> (low; bug #739589)
 	[wheezy] - qemu <no-dsa> (Minor issue, hardly exploitable in practice)
 	- qemu-kvm <removed> (low)
 	[squeeze] - qemu-kvm <no-dsa> (Minor issue, hardly exploitable in practice)
-	NOTE: qemu/2.0.0~rc1+dfsg-1exp fixed the issue, update entry when uploaded to sid
 CVE-2013-4531
 	RESERVED
 	- qemu <unfixed> (low; bug #739589)
 	[wheezy] - qemu <no-dsa> (Minor issue, hardly exploitable in practice)
 	- qemu-kvm <removed> (low)
 	[squeeze] - qemu-kvm <no-dsa> (Minor issue, hardly exploitable in practice)
-	NOTE: qemu/2.0.0~rc1+dfsg-1exp fixed the issue, update entry when uploaded to sid
 CVE-2013-4530
 	RESERVED
 	- qemu <unfixed> (bug #739589)
 	- qemu-kvm <removed>
-	NOTE: qemu/2.0.0~rc1+dfsg-1exp fixed the issue, update entry when uploaded to sid
 CVE-2013-4529
 	RESERVED
 	- qemu <unfixed> (low; bug #739589)
 	[wheezy] - qemu <no-dsa> (Minor issue, hardly exploitable in practice)
 	- qemu-kvm <removed> (low)
 	[squeeze] - qemu-kvm <no-dsa> (Minor issue, hardly exploitable in practice)
-	NOTE: qemu/2.0.0~rc1+dfsg-1exp fixed the issue, update entry when uploaded to sid
 CVE-2013-4528
 	REJECTED
 CVE-2013-4527
@@ -13473,14 +13458,12 @@
 	[wheezy] - qemu <no-dsa> (Minor issue, hardly exploitable in practice)
 	- qemu-kvm <removed> (low)
 	[squeeze] - qemu-kvm <no-dsa> (Minor issue, hardly exploitable in practice)
-	NOTE: qemu/2.0.0~rc1+dfsg-1exp fixed the issue, update entry when uploaded to sid
 CVE-2013-4526
 	RESERVED
 	- qemu <unfixed> (low; bug #739589)
 	[wheezy] - qemu <no-dsa> (Minor issue, hardly exploitable in practice)
 	- qemu-kvm <removed> (low)
 	[squeeze] - qemu-kvm <no-dsa> (Minor issue, hardly exploitable in practice)
-	NOTE: qemu/2.0.0~rc1+dfsg-1exp fixed the issue, update entry when uploaded to sid
 CVE-2013-4525 (Cross-site scripting (XSS) vulnerability in ...)
 	- moodle 2.5.3-1
 	[squeeze] - moodle <not-affected> (Vulnerable code not present)
@@ -14783,28 +14766,24 @@
 	[wheezy] - qemu <no-dsa> (Minor issue, hardly exploitable in practice)
 	- qemu-kvm <removed> (low)
 	[squeeze] - qemu-kvm <no-dsa> (Minor issue, hardly exploitable in practice)
-	NOTE: qemu/2.0.0~rc1+dfsg-1exp fixed the issue, update entry when uploaded to sid
 CVE-2013-4150
 	RESERVED
 	- qemu <unfixed> (low; bug #739589)
 	[wheezy] - qemu <no-dsa> (Minor issue, hardly exploitable in practice)
 	- qemu-kvm <removed> (low)
 	[squeeze] - qemu-kvm <no-dsa> (Minor issue, hardly exploitable in practice)
-	NOTE: qemu/2.0.0~rc1+dfsg-1exp fixed the issue, update entry when uploaded to sid
 CVE-2013-4149
 	RESERVED
 	- qemu <unfixed> (low; bug #739589)
 	[wheezy] - qemu <no-dsa> (Minor issue, hardly exploitable in practice)
 	- qemu-kvm <removed> (low)
 	[squeeze] - qemu-kvm <no-dsa> (Minor issue, hardly exploitable in practice)
-	NOTE: qemu/2.0.0~rc1+dfsg-1exp fixed the issue, update entry when uploaded to sid
 CVE-2013-4148
 	RESERVED
 	- qemu <unfixed> (low; bug #739589)
 	[wheezy] - qemu <no-dsa> (Minor issue, hardly exploitable in practice)
 	- qemu-kvm <removed> (low)
 	[squeeze] - qemu-kvm <no-dsa> (Minor issue, hardly exploitable in practice)
-	NOTE: qemu/2.0.0~rc1+dfsg-1exp fixed the issue, update entry when uploaded to sid
 CVE-2013-4147 (Multiple format string vulnerabilities in Yet Another Radius Daemon ...)
 	- yardradius <unfixed> (low; bug #714612)
 	[squeeze] - yardradius <no-dsa> (Minor issue)




More information about the Secure-testing-commits mailing list