[Secure-testing-commits] r47274 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Wed Dec 21 12:08:33 UTC 2016
Author: carnil
Date: 2016-12-21 12:08:33 +0000 (Wed, 21 Dec 2016)
New Revision: 47274
Modified:
data/CVE/list
Log:
Add CVE-2016-10025
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2016-12-21 12:01:16 UTC (rev 47273)
+++ data/CVE/list 2016-12-21 12:08:33 UTC (rev 47274)
@@ -3,6 +3,11 @@
NOTE: http://ikiwiki.info/bugs/rcs_revert_can_bypass_authorization_if_affected_files_were_renamed/
NOTE: Fix: http://source.ikiwiki.branchable.com/?p=source.git;a=commitdiff;h=9cada49ed6ad24556dbe9861ad5b0a9f526167f9
NOTE: http://www.openwall.com/lists/oss-security/2016/12/20/7
+CVE-2016-10025 [x86: missing NULL pointer check in VMFUNC emulation]
+ - xen <unfixed>
+ [jessie] - xen <not-affected> (Vulnerable code introduced later)
+ [wheezy] - xen <not-affected> (Vulnerable code introduced later)
+ NOTE: https://xenbits.xen.org/xsa/advisory-202.html
CVE-2016-XXXX [display: virtio-gpu-3d: OOB access while reading virgl capabilities]
- qemu <unfixed>
[jessie] - qemu <not-affected> (Vulnerable code not present)
More information about the Secure-testing-commits
mailing list