[Secure-testing-commits] r41808 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue May 17 17:03:08 UTC 2016


Author: carnil
Date: 2016-05-17 17:03:08 +0000 (Tue, 17 May 2016)
New Revision: 41808

Modified:
   data/CVE/list
Log:
Adjust entries for xen

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-05-17 16:13:46 UTC (rev 41807)
+++ data/CVE/list	2016-05-17 17:03:08 UTC (rev 41808)
@@ -2976,9 +2976,9 @@
 	[wheezy] - qemu <end-of-life> (Not supported in Wheezy LTS)
 	- qemu-kvm <removed>
 	[wheezy] - qemu-kvm <end-of-life> (Not supported in Wheezy LTS)
-	- xen <unfixed>
-	[jessie] - xen <no-dsa> (default configuration not vulnerable)
+	- xen 4.4.0-1
 	[wheezy] - xen <no-dsa> (default configuration not vulnerable)
+	NOTE: Xen switched to qemu-system in 4.4.0-1
 	NOTE: http://xenbits.xen.org/xsa/advisory-179.html
 	NOTE: mitigation: run HVM in stubdomains, PV, default video card not vulnerable, i386-only
 CVE-2016-3711 [Setting cookie containing internal IP address of a pod]
@@ -2990,9 +2990,9 @@
 	[wheezy] - qemu <end-of-life> (Not supported in Wheezy LTS)
 	- qemu-kvm <removed>
 	[wheezy] - qemu-kvm <end-of-life> (Not supported in Wheezy LTS)
-	- xen <unfixed>
-	[jessie] - xen <no-dsa> (default configuration not vulnerable)
+	- xen 4.4.0-1
 	[wheezy] - xen <no-dsa> (default configuration not vulnerable)
+	NOTE: Xen switched to qemu-system in 4.4.0-1
 	NOTE: http://xenbits.xen.org/xsa/advisory-179.html
 	NOTE: mitigation: run HVM in stubdomains, PV, default video card not vulnerable, i386-only
 CVE-2016-3709




More information about the Secure-testing-commits mailing list