[Secure-testing-commits] r55205 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Aug 29 18:16:19 UTC 2017


Author: carnil
Date: 2017-08-29 18:16:19 +0000 (Tue, 29 Aug 2017)
New Revision: 55205

Modified:
   data/CVE/list
Log:
Add CVE-2017-13711/qemu

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-08-29 17:40:27 UTC (rev 55204)
+++ data/CVE/list	2017-08-29 18:16:19 UTC (rev 55205)
@@ -130,8 +130,12 @@
 CVE-2017-13712 (NULL Pointer Dereference in the id3v2AddAudioDuration function in ...)
 	- lame <unfixed>
 	NOTE: https://sourceforge.net/p/lame/bugs/472/
-CVE-2017-13711
+CVE-2017-13711 [Slirp: use-after-free when sending response]
 	RESERVED
+	- qemu <unfixed>
+	- qemu-kvm <removed>
+	NOTE: https://lists.gnu.org/archive/html/qemu-devel/2017-08/msg05201.html
+	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1486400
 CVE-2017-XXXX [stack-based buffer overflow write in pgxtoimage]
 	- openjpeg2 <unfixed>
 	NOTE: Fixed by: https://github.com/uclouvain/openjpeg/commit/e5285319229a5d77bf316bb0d3a6cbd3cb8666d9




More information about the Secure-testing-commits mailing list