[Secure-testing-commits] r40938 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Thu Apr 14 21:17:19 UTC 2016
Author: carnil
Date: 2016-04-14 21:17:19 +0000 (Thu, 14 Apr 2016)
New Revision: 40938
Modified:
data/CVE/list
Log:
Update CVE-2016-4001/qemu, mark as no-dsa
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2016-04-14 21:10:12 UTC (rev 40937)
+++ data/CVE/list 2016-04-14 21:17:19 UTC (rev 40938)
@@ -131,12 +131,14 @@
CVE-2016-4001 [net: buffer overflow in stellaris_enet emulator]
RESERVED
- qemu <unfixed>
+ [jessie] - qemu <no-dsa> (Minor issue)
+ [wheezy] - qemu <no-dsa> (Minor issue)
- qemu-kvm <removed>
+ [wheezy] - qemu-kvm <no-dsa> (Minor issue)
NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1325884
NOTE: https://lists.gnu.org/archive/html/qemu-devel/2016-04/msg01334.html
- NOTE: http://git.qemu.org/?p=qemu.git;a=commit;h=3a15cc0e1ee7168db0782133d2607a6bfa422d66
+ NOTE: http://git.qemu.org/?p=qemu.git;a=commit;h=3a15cc0e1ee7168db0782133d2607a6bfa422d66 (v2.6.0-rc2)
NOTE: http://www.openwall.com/lists/oss-security/2016/04/11/4
- TODO: check affected versions
CVE-2016-4008 [Infinite loops parsing malicious DER certificates]
RESERVED
- libtasn1-6 <unfixed>
More information about the Secure-testing-commits
mailing list