[Secure-testing-commits] r40938 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Thu Apr 14 21:17:19 UTC 2016


Author: carnil
Date: 2016-04-14 21:17:19 +0000 (Thu, 14 Apr 2016)
New Revision: 40938

Modified:
   data/CVE/list
Log:
Update CVE-2016-4001/qemu, mark as no-dsa

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-04-14 21:10:12 UTC (rev 40937)
+++ data/CVE/list	2016-04-14 21:17:19 UTC (rev 40938)
@@ -131,12 +131,14 @@
 CVE-2016-4001 [net: buffer overflow in stellaris_enet emulator]
 	RESERVED
 	- qemu <unfixed>
+	[jessie] - qemu <no-dsa> (Minor issue)
+	[wheezy] - qemu <no-dsa> (Minor issue)
 	- qemu-kvm <removed>
+	[wheezy] - qemu-kvm <no-dsa> (Minor issue)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1325884
 	NOTE: https://lists.gnu.org/archive/html/qemu-devel/2016-04/msg01334.html
-	NOTE: http://git.qemu.org/?p=qemu.git;a=commit;h=3a15cc0e1ee7168db0782133d2607a6bfa422d66
+	NOTE: http://git.qemu.org/?p=qemu.git;a=commit;h=3a15cc0e1ee7168db0782133d2607a6bfa422d66 (v2.6.0-rc2)
 	NOTE: http://www.openwall.com/lists/oss-security/2016/04/11/4
-	TODO: check affected versions
 CVE-2016-4008 [Infinite loops parsing malicious DER certificates]
 	RESERVED
 	- libtasn1-6 <unfixed>




More information about the Secure-testing-commits mailing list