[Secure-testing-commits] r37015 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Oct 6 07:26:33 UTC 2015


Author: carnil
Date: 2015-10-06 07:26:33 +0000 (Tue, 06 Oct 2015)
New Revision: 37015

Modified:
   data/CVE/list
Log:
Reported bugs for spice

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-10-06 07:02:01 UTC (rev 37014)
+++ data/CVE/list	2015-10-06 07:26:33 UTC (rev 37015)
@@ -5942,10 +5942,10 @@
 	NOTE: Jessie's 4.3.5-2 is however missing the upstream patch: http://svn.apache.org/viewvc/httpcomponents/httpclient/branches/4.3.x/httpclient/src/main/java/org/apache/http/conn/ssl/SSLConnectionSocketFactory.java?r1=1560975&r2=1626784
 CVE-2015-5261 [host memory access from guest using crafted images]
 	RESERVED
-	- spice <unfixed>
+	- spice <unfixed> (bug #801091)
 CVE-2015-5260 [Insufficient validation of surface_id parameter can cause crash]
 	RESERVED
-	- spice <unfixed>
+	- spice <unfixed> (bug #801089)
 CVE-2015-5259
 	RESERVED
 CVE-2015-5258




More information about the Secure-testing-commits mailing list