[Secure-testing-commits] r31796 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Jan 28 18:46:08 UTC 2015


Author: carnil
Date: 2015-01-28 18:46:08 +0000 (Wed, 28 Jan 2015)
New Revision: 31796

Modified:
   data/CVE/list
Log:
Add CVE-2014-7822/linux

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-01-28 18:39:48 UTC (rev 31795)
+++ data/CVE/list	2015-01-28 18:46:08 UTC (rev 31796)
@@ -8495,8 +8495,12 @@
 	[squeeze] - libvirt <not-affected> (Introduced in v1.0.0)
 	NOTE: Introduced in http://libvirt.org/git/?p=libvirt.git;a=commit;h=28f8dfdcccd4c0f69063ef741545b37d8a7f7935 (v1.0.0)
 	NOTE: Fixed by http://libvirt.org/git/?p=libvirt.git;a=commit;h=b1674ad5a97441b7e1bd5f5ebaff498ef2fbb11b
-CVE-2014-7822
+CVE-2014-7822 [splice: lack of generic write checks]
 	RESERVED
+	- linux 3.16.2-1
+	- linux-2.6 <removed>
+	NOTE: Upstream fixes: https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=8d0207652cbe27d1f962050737848e5ad4671958 (v3.16-rc1)
+	TODO: check, which versions affected
 CVE-2014-7821 (OpenStack Neutron before 2014.1.4 and 2014.2.x before 2014.2.1 allows ...)
 	- neutron 2014.1.3-6 (bug #770431)
 	NOTE: Versions up to 2014.1.3 and 2014.2




More information about the Secure-testing-commits mailing list