[Secure-testing-commits] r49270 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Mon Feb 27 16:14:32 UTC 2017


Author: carnil
Date: 2017-02-27 16:14:32 +0000 (Mon, 27 Feb 2017)
New Revision: 49270

Modified:
   data/CVE/list
Log:
Add CVE-2017-2635/libvirt

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-02-27 15:59:03 UTC (rev 49269)
+++ data/CVE/list	2017-02-27 16:14:32 UTC (rev 49270)
@@ -10186,8 +10186,13 @@
 	RESERVED
 CVE-2017-2636
 	RESERVED
-CVE-2017-2635
+CVE-2017-2635 [Null pointer dereference when updating storage size on empty drives]
 	RESERVED
+	- libvirt <unfixed>
+	[jessie] - libvirt <not-affected> (Vulnerable code introduced later)
+	[wheezy] - libvirt <not-affected> (Vulnerable code introduced later)
+	NOTE: Introduced by: https://libvirt.org/git/?p=libvirt.git;a=commit;h=c5f6151390ff0a8e65014172bb8c0a8d312c3353 (v3.0.0-rc1)
+	NOTE: Fixed by: https://libvirt.org/git/?p=libvirt.git;a=commit;h=c3de387380f6057ee0e46cd9f2f0a092e8070875 (v3.1.0-rc1)
 CVE-2017-2634 [dccp: crash while sending ipv6 reset packet]
 	RESERVED
 	- linux <not-affected> (Fixed before initial rename to src:linux)




More information about the Secure-testing-commits mailing list