[Secure-testing-commits] r45779 - in data: CVE DLA

Salvatore Bonaccorso carnil at moszumanska.debian.org
Mon Oct 31 05:47:55 UTC 2016


Author: carnil
Date: 2016-10-31 05:47:55 +0000 (Mon, 31 Oct 2016)
New Revision: 45779

Modified:
   data/CVE/list
   data/DLA/list
Log:
CVE-2016-9103/qemu assigned

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-10-31 05:45:35 UTC (rev 45778)
+++ data/CVE/list	2016-10-31 05:47:55 UTC (rev 45779)
@@ -34,15 +34,14 @@
 	NOTE: Xen switched to qemu-system in 4.4.0-1
 	NOTE: https://lists.gnu.org/archive/html/qemu-devel/2016-10/msg02942.html
 	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/10/28/2
-CVE-2016-XXXX [9pfs: information leakage via xattribute]
+CVE-2016-9103 [9pfs: information leakage via xattribute]
 	- qemu <unfixed> (bug #842463)
 	- qemu-kvm <removed>
-	[wheezy] - qemu-kvm 1.1.2+dfsg-6+deb7u18
-	NOTE: Workaround entry for DLA-689-1 until CVE is assigned
 	- xen 4.4.0-1
 	NOTE: Xen switched to qemu-system in 4.4.0-1
 	NOTE: https://lists.gnu.org/archive/html/qemu-devel/2016-10/msg01790.html
-	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/10/28/1
+	NOTE: http://www.openwall.com/lists/oss-security/2016/10/28/1
+	NOTE: http://git.qemu.org/?p=qemu.git;a=commit;h=eb687602853b4ae656e9236ee4222609f3a6887d
 CVE-2016-9102 [memory leakage when creating extended attribute]
 	- qemu <unfixed> (bug #842463)
 	- qemu-kvm <removed>

Modified: data/DLA/list
===================================================================
--- data/DLA/list	2016-10-31 05:45:35 UTC (rev 45778)
+++ data/DLA/list	2016-10-31 05:47:55 UTC (rev 45779)
@@ -1,5 +1,5 @@
 [30 Oct 2016] DLA-689-1 qemu-kvm - security update
-	{CVE-2016-7909 CVE-2016-8909 CVE-2016-8910 CVE-2016-9101 CVE-2016-9102}
+	{CVE-2016-7909 CVE-2016-8909 CVE-2016-8910 CVE-2016-9101 CVE-2016-9102 CVE-2016-9103}
 	[wheezy] - qemu-kvm 1.1.2+dfsg-6+deb7u18
 [28 Oct 2016] DLA-680-2 bash - version number correction
 	[wheezy] - bash 4.2+dfsg-0.1+deb7u4




More information about the Secure-testing-commits mailing list