[Secure-testing-commits] r46702 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Dec 2 09:49:57 UTC 2016


Author: carnil
Date: 2016-12-02 09:49:57 +0000 (Fri, 02 Dec 2016)
New Revision: 46702

Modified:
   data/CVE/list
Log:
Track (already) one linux issue without CVE yet, will get one

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-12-02 09:10:14 UTC (rev 46701)
+++ data/CVE/list	2016-12-02 09:49:57 UTC (rev 46702)
@@ -998,6 +998,14 @@
 	RESERVED
 CVE-2017-0381
 	RESERVED
+CVE-2016-XXXX [kvm: out of bounds memory access via vcpu_id]
+	- linux <unfixed>
+	[jessie] - linux <not-affected> (Vulnerable code introduced later)
+	[wheezy] - linux <not-affected> (Vulnerable code introduced later)
+	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1400804
+	NOTE: Fixed by: https://git.kernel.org/linus/81cdb259fb6d8c1c4ecfeea389ff5a73c07f5755 (v4.9-rc7)
+	NOTE: Introduced in: https://git.kernel.org/linus/af1bae5497b98cb99d6b0492e6981f060420a00c (v4.8-rc1)
+	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/12/02/2
 CVE-2016-9756 [kvm: stack memory information leakage]
 	- linux <unfixed>
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1400468




More information about the Secure-testing-commits mailing list