[Secure-testing-commits] r45778 - in data: CVE DLA

Salvatore Bonaccorso carnil at moszumanska.debian.org
Mon Oct 31 05:45:35 UTC 2016


Author: carnil
Date: 2016-10-31 05:45:35 +0000 (Mon, 31 Oct 2016)
New Revision: 45778

Modified:
   data/CVE/list
   data/DLA/list
Log:
CVE-2016-9102/qemu assigned

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-10-31 05:43:55 UTC (rev 45777)
+++ data/CVE/list	2016-10-31 05:45:35 UTC (rev 45778)
@@ -43,16 +43,15 @@
 	NOTE: Xen switched to qemu-system in 4.4.0-1
 	NOTE: https://lists.gnu.org/archive/html/qemu-devel/2016-10/msg01790.html
 	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/10/28/1
-CVE-2016-XXXX [memory leakage when creating extended attribute]
+CVE-2016-9102 [memory leakage when creating extended attribute]
 	- qemu <unfixed> (bug #842463)
 	- qemu-kvm <removed>
-	[wheezy] - qemu-kvm 1.1.2+dfsg-6+deb7u18
-	NOTE: Workaround entry for DLA-689-1 until CVE is assigned
 	- xen 4.4.0-1
 	NOTE: Xen switched to qemu-system in 4.4.0-1
 	NOTE: https://lists.gnu.org/archive/html/qemu-devel/2016-10/msg01861.html
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1389550
-	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/10/27/15
+	NOTE: http://www.openwall.com/lists/oss-security/2016/10/27/15
+	NOTE: http://git.qemu.org/?p=qemu.git;a=commit;h=ff55e94d23ae94c8628b0115320157c763eb3e06
 CVE-2016-9101 [net: eepro100 memory leakage at device unplug]
 	- qemu <unfixed> (bug #842455)
 	- qemu-kvm <removed>

Modified: data/DLA/list
===================================================================
--- data/DLA/list	2016-10-31 05:43:55 UTC (rev 45777)
+++ data/DLA/list	2016-10-31 05:45:35 UTC (rev 45778)
@@ -1,5 +1,5 @@
 [30 Oct 2016] DLA-689-1 qemu-kvm - security update
-	{CVE-2016-7909 CVE-2016-8909 CVE-2016-8910 CVE-2016-9101}
+	{CVE-2016-7909 CVE-2016-8909 CVE-2016-8910 CVE-2016-9101 CVE-2016-9102}
 	[wheezy] - qemu-kvm 1.1.2+dfsg-6+deb7u18
 [28 Oct 2016] DLA-680-2 bash - version number correction
 	[wheezy] - bash 4.2+dfsg-0.1+deb7u4




More information about the Secure-testing-commits mailing list