[Secure-testing-commits] r57696 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Nov 17 06:20:29 UTC 2017


Author: carnil
Date: 2017-11-17 06:20:29 +0000 (Fri, 17 Nov 2017)
New Revision: 57696

Modified:
   data/CVE/list
Log:
Add CVE-2017-16845/qemu

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-11-17 05:17:38 UTC (rev 57695)
+++ data/CVE/list	2017-11-17 06:20:29 UTC (rev 57696)
@@ -206,8 +206,11 @@
 	NOT-FOR-US: Zoho ManageEngine Applications Manager
 CVE-2017-16846 (Zoho ManageEngine Applications Manager 13 allows SQL injection via the ...)
 	NOT-FOR-US: Zoho ManageEngine Applications Manager
-CVE-2017-16845
+CVE-2017-16845 [ps2: information leakage via post_load routine]
 	RESERVED
+	- qemu <unfixed>
+	- qemu-kvm <removed>
+	NOTE: https://lists.gnu.org/archive/html/qemu-devel/2017-11/msg02982.html
 CVE-2017-16844 (Heap-based buffer overflow in the loadbuf function in formisc.c in ...)
 	- procmail <unfixed> (bug #876511)
 CVE-2017-16843




More information about the Secure-testing-commits mailing list