[Secure-testing-commits] r48377 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Jan 25 15:00:15 UTC 2017


Author: carnil
Date: 2017-01-25 15:00:15 +0000 (Wed, 25 Jan 2017)
New Revision: 48377

Modified:
   data/CVE/list
Log:
Add virglrenderer bugs

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-01-25 14:52:01 UTC (rev 48376)
+++ data/CVE/list	2017-01-25 15:00:15 UTC (rev 48377)
@@ -36,19 +36,17 @@
 	NOTE: Fixed by: https://cgit.freedesktop.org/xorg/lib/libXpm/commit/?id=d1167418f0fd02a27f617ec5afd6db053afbe185
 	NOTE: http://www.openwall.com/lists/oss-security/2017/01/22/2
 CVE-2016-10163 [host memory leakage when creating decode context]
-	- virglrenderer <unfixed>
+	- virglrenderer <unfixed> (bug #852603)
 	NOTE: https://cgit.freedesktop.org/virglrenderer/commit/?id=747a293ff6055203e529f083896b823e22523fe7
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1415944
-	TODO: check
 CVE-2017-5581
 	- tigervnc <unfixed> (bug #852213)
 	NOTE: https://github.com/TigerVNC/tigervnc/pull/399
 	NOTE: https://github.com/TigerVNC/tigervnc/commit/18c020124ff1b2441f714da2017f63dba50720ba
 CVE-2017-5580 [OOB access while parsing texture instruction]
-	- virglrenderer <unfixed>
+	- virglrenderer <unfixed> (bug #852604)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1415986
 	NOTE: https://lists.freedesktop.org/archives/virglrenderer-devel/2017-January/000105.html
-	TODO: check
 CVE-2017-5579 [serial: host memory leakage in 16550A UART emulation]
 	- qemu <unfixed>
 	- qemu-kvm <removed>




More information about the Secure-testing-commits mailing list