[Secure-testing-commits] r51020 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Apr 25 06:53:40 UTC 2017


Author: carnil
Date: 2017-04-25 06:53:40 +0000 (Tue, 25 Apr 2017)
New Revision: 51020

Modified:
   data/CVE/list
Log:
Add upstream fix reference for CVE-2016-10028

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-04-25 06:09:15 UTC (rev 51019)
+++ data/CVE/list	2017-04-25 06:53:40 UTC (rev 51020)
@@ -12288,6 +12288,7 @@
 	NOTE: Marked as unimportant, since 1:2.8+dfsg-2 reverted the support for
 	NOTE: virtio gpu (virglrenderer) and opengl, but the affected code is
 	NOTE: still present.
+	NOTE: Fixed by: http://git.qemu.org/?p=qemu.git;a=commit;h=abd7f08b2353f43274b785db8c7224f082ef4d31
 CVE-2016-10029 (The virtio_gpu_set_scanout function in QEMU (aka Quick Emulator) built ...)
 	- qemu 1:2.7+dfsg-1
 	[jessie] - qemu <not-affected> (Vulnerable code not present)




More information about the Secure-testing-commits mailing list