[Secure-testing-commits] r46862 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Dec 7 19:22:39 UTC 2016


Author: carnil
Date: 2016-12-07 19:22:39 +0000 (Wed, 07 Dec 2016)
New Revision: 46862

Modified:
   data/CVE/list
Log:
Add more qemu issues, pending triage

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-12-07 19:22:26 UTC (rev 46861)
+++ data/CVE/list	2016-12-07 19:22:39 UTC (rev 46862)
@@ -1,3 +1,33 @@
+CVE-2016-XXXX [display: virtio-gpu: memory leakage when destroying gpu resource]
+	- qemu <unfixed>
+	- qemu-kvm <removed>
+	NOTE: https://lists.gnu.org/archive/html/qemu-devel/2016-11/msg05043.html
+	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/12/06/12
+	TODO: check affected versions
+CVE-2016-XXXX [9pfs: memory leakage via proxy/handle callbacks]
+	- qemu <unfixed>
+	- qemu-kvm <removed>
+	NOTE: https://lists.gnu.org/archive/html/qemu-devel/2016-11/msg03278.html
+	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/12/06/11
+	TODO: check affected versions
+CVE-2016-XXXX [usb: ehci: memory leakage in ehci_init_transfer]
+	- qemu <unfixed>
+	- qemu-kvm <removed>
+	NOTE: http://git.qemu.org/?p=qemu.git;a=commitdiff;h=791f97758e223de3290592d169f (v2.8.0-rc0)
+	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/12/06/10
+	TODO: check affected versions
+CVE-2016-XXXX [usb: redirector: memory leakage when destroying redirector]
+	- qemu <unfixed>
+	- qemu-kvm <removed>
+	NOTE: https://lists.gnu.org/archive/html/qemu-devel/2016-11/msg01379.html
+	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/12/06/3
+	TODO: check affected versions
+CVE-2016-XXXX [display: virtio-gpu-3d: information leakage in virgl_cmd_get_capset]
+	- qemu <unfixed>
+	- qemu-kvm <removed>
+	NOTE: http://lists.gnu.org/archive/html/qemu-devel/2016-11/msg00059.html
+	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/12/06/2
+	TODO: check affected versions
 CVE-2017-3229
 	RESERVED
 CVE-2017-3228




More information about the Secure-testing-commits mailing list