[Secure-testing-commits] r46716 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Dec 2 18:22:00 UTC 2016


Author: carnil
Date: 2016-12-02 18:22:00 +0000 (Fri, 02 Dec 2016)
New Revision: 46716

Modified:
   data/CVE/list
Log:
Add CVE-2016-9776/qemu

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-12-02 18:18:19 UTC (rev 46715)
+++ data/CVE/list	2016-12-02 18:22:00 UTC (rev 46716)
@@ -1024,6 +1024,12 @@
 	NOTE: Fixed by: https://git.kernel.org/linus/81cdb259fb6d8c1c4ecfeea389ff5a73c07f5755 (v4.9-rc7)
 	NOTE: Introduced in: https://git.kernel.org/linus/af1bae5497b98cb99d6b0492e6981f060420a00c (v4.8-rc1)
 	NOTE: http://www.openwall.com/lists/oss-security/2016/12/02/2
+CVE-2016-9776 [net: mcf_fec: infinite loop while receiving data in mcf_fec_receive]
+	- qemu <unfixed>
+	- qemu-kvm <removed>
+	NOTE: https://lists.gnu.org/archive/html/qemu-devel/2016-11/msg05324.html
+	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1400829
+	TODO: check affected versions
 CVE-2016-9756 [kvm: stack memory information leakage]
 	- linux <unfixed>
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1400468




More information about the Secure-testing-commits mailing list