[Secure-testing-commits] r26659 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Tue Apr 22 06:45:52 UTC 2014


Author: jmm
Date: 2014-04-22 06:45:51 +0000 (Tue, 22 Apr 2014)
New Revision: 26659

Modified:
   data/CVE/list
Log:
qemu fixed/various updates
add note to openssl


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-04-22 05:53:09 UTC (rev 26658)
+++ data/CVE/list	2014-04-22 06:45:51 UTC (rev 26659)
@@ -3822,9 +3822,9 @@
 	- wordpress 3.2.1+dfsg-1
 CVE-2010-5298 (Race condition in the ssl3_read_bytes function in s3_pkt.c in OpenSSL ...)
 	{DSA-2908-1}
-	- openssl 1.0.1g-3
+	- openssl 1.0.1g-3 (unimportant)
 	[squeeze] - openssl <not-affected> (Introduced in 1.0.0)
-	TODO: double check
+	NOTE: Only exploitable with OPENSSL_NO_BUF_FREELIST enabled
 CVE-2010-5297 (WordPress before 3.0.1, when a Multisite installation is used, ...)
 	- wordpress 3.0.1-1
 CVE-2010-5296 (wp-includes/capabilities.php in WordPress before 3.0.2, when a ...)
@@ -7426,39 +7426,34 @@
 	RESERVED
 CVE-2014-0148
 	RESERVED
-	- qemu <unfixed> (bug #742730)
-	- qemu-kvm <removed>
-	TODO: check
+	- qemu 2.0.0+dfsg-1 (bug #742730)
+	[squeeze] - qemu <not-affected> (vhdx support introduced in 1.5)
+	[wheezy] - qemu <not-affected> (vhdx support introduced in 1.5)
+	- qemu-kvm <not-affected> (vhdx support introduced in 1.5)
 CVE-2014-0147
 	RESERVED
-	- qemu <unfixed> (bug #742730)
+	- qemu 2.0.0+dfsg-1 (bug #742730)
 	- qemu-kvm <removed>
-	TODO: check
 CVE-2014-0146
 	RESERVED
-	- qemu <unfixed> (bug #742730)
+	- qemu 2.0.0+dfsg-1 (bug #742730)
 	- qemu-kvm <removed>
-	TODO: check
 CVE-2014-0145
 	RESERVED
-	- qemu <unfixed> (bug #742730)
+	- qemu 2.0.0+dfsg-1 (bug #742730)
 	- qemu-kvm <removed>
-	TODO: check
 CVE-2014-0144
 	RESERVED
-	- qemu <unfixed> (bug #742730)
+	- qemu 2.0.0+dfsg-1 (bug #742730)
 	- qemu-kvm <removed>
-	TODO: check
 CVE-2014-0143
 	RESERVED
-	- qemu <unfixed> (bug #742730)
+	- qemu 2.0.0+dfsg-1 (bug #742730)
 	- qemu-kvm <removed>
-	TODO: check
 CVE-2014-0142
 	RESERVED
-	- qemu <unfixed> (bug #742730)
+	- qemu 2.0.0+dfsg-1 (bug #742730)
 	- qemu-kvm <removed>
-	TODO: check
 CVE-2014-0141
 	RESERVED
 CVE-2014-0140




More information about the Secure-testing-commits mailing list