[Secure-testing-commits] r50338 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Apr 4 14:57:08 UTC 2017


Author: carnil
Date: 2017-04-04 14:57:05 +0000 (Tue, 04 Apr 2017)
New Revision: 50338

Modified:
   data/CVE/list
Log:
Add CVE-2017-7228/xen

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-04-04 13:55:16 UTC (rev 50337)
+++ data/CVE/list	2017-04-04 14:57:05 UTC (rev 50338)
@@ -735,8 +735,10 @@
 	NOT-FOR-US: Disk Sorter Enterprise
 CVE-2017-7229
 	RESERVED
-CVE-2017-7228
+CVE-2017-7228 [x86: broken check in memory_exchange() permits PV guest breakout]
 	RESERVED
+	- xen <unfixed>
+	NOTE: https://xenbits.xen.org/xsa/advisory-212.html
 CVE-2017-7227 (GNU linker (ld) in GNU Binutils 2.28 is vulnerable to a heap-based ...)
 	- binutils 2.27.51.20161212-1
 	[jessie] - binutils <no-dsa> (Minor issue)




More information about the Secure-testing-commits mailing list