[Secure-testing-commits] r37015 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Tue Oct 6 07:26:33 UTC 2015
Author: carnil
Date: 2015-10-06 07:26:33 +0000 (Tue, 06 Oct 2015)
New Revision: 37015
Modified:
data/CVE/list
Log:
Reported bugs for spice
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2015-10-06 07:02:01 UTC (rev 37014)
+++ data/CVE/list 2015-10-06 07:26:33 UTC (rev 37015)
@@ -5942,10 +5942,10 @@
NOTE: Jessie's 4.3.5-2 is however missing the upstream patch: http://svn.apache.org/viewvc/httpcomponents/httpclient/branches/4.3.x/httpclient/src/main/java/org/apache/http/conn/ssl/SSLConnectionSocketFactory.java?r1=1560975&r2=1626784
CVE-2015-5261 [host memory access from guest using crafted images]
RESERVED
- - spice <unfixed>
+ - spice <unfixed> (bug #801091)
CVE-2015-5260 [Insufficient validation of surface_id parameter can cause crash]
RESERVED
- - spice <unfixed>
+ - spice <unfixed> (bug #801089)
CVE-2015-5259
RESERVED
CVE-2015-5258
More information about the Secure-testing-commits
mailing list