[Secure-testing-commits] r30043 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Thu Nov 13 19:36:42 UTC 2014


Author: carnil
Date: 2014-11-13 19:36:41 +0000 (Thu, 13 Nov 2014)
New Revision: 30043

Modified:
   data/CVE/list
Log:
Update entry for CVE-2014-7840

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-11-13 19:32:15 UTC (rev 30042)
+++ data/CVE/list	2014-11-13 19:36:41 UTC (rev 30043)
@@ -1848,8 +1848,12 @@
 	TODO: check
 CVE-2014-7840 [insufficient parameter validation during ram load]
 	RESERVED
-	- qemu <unfixed> (bug #769451)
-	- qemu-kvm <removed>
+	- qemu <unfixed> (low; bug #769451)
+        [wheezy] - qemu <no-dsa> (Minor issue, hardly exploitable in practice)
+        [squeeze] - qemu <no-dsa> (Minor issue, hardly exploitable in practice)
+	- qemu-kvm <removed> (low)
+        [wheezy] - qemu-kvm <no-dsa> (Minor issue, hardly exploitable in practice)
+        [squeeze] - qemu-kvm <no-dsa> (Minor issue, hardly exploitable in practice)
 	NOTE: http://thread.gmane.org/gmane.comp.emulators.qemu/306117
 CVE-2014-7839
 	RESERVED




More information about the Secure-testing-commits mailing list