[Secure-testing-commits] r32962 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Mar 18 12:45:22 UTC 2015


Author: carnil
Date: 2015-03-18 12:45:22 +0000 (Wed, 18 Mar 2015)
New Revision: 32962

Modified:
   data/CVE/list
Log:
Add nother linux issue, left TODO in this case

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-03-18 12:03:28 UTC (rev 32961)
+++ data/CVE/list	2015-03-18 12:45:22 UTC (rev 32962)
@@ -1,3 +1,10 @@
+CVE-2015-XXXX [execution in the early microcode loader]
+	- linux <unfixed>
+	- linux-2.6 <removed>
+	NOTE: Introduced by https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=ec400ddeff200b068ddc6c70f7321f49ecf32ed5 (v3.9-rc1)
+	NOTE: Fixed by https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=f84598bd7c851f8b0bf8cd0d7c3be0d73c432ff4 (v4.0-rc1)
+	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2015/03/18/7
+	TODO: check
 CVE-2015-XXXX [unprivileged denial-of-service due to mis-protected xsave/xrstor instructions]
 	- linux <not-affected>
 	- linux-2.6 <not-affected>




More information about the Secure-testing-commits mailing list