[Secure-testing-commits] r57850 - data/CVE

Guido Guenther agx at moszumanska.debian.org
Mon Nov 20 13:40:41 UTC 2017


Author: agx
Date: 2017-11-20 13:40:41 +0000 (Mon, 20 Nov 2017)
New Revision: 57850

Modified:
   data/CVE/list
Log:
lts: mark xsa-244 as no-dsa

The issue can only be triggered in during cpu hotplug and is too risky
to backport for that corner case

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-11-20 13:40:30 UTC (rev 57849)
+++ data/CVE/list	2017-11-20 13:40:41 UTC (rev 57850)
@@ -4577,6 +4577,7 @@
 	NOT-FOR-US: Mirasys Video Management System
 CVE-2017-15594 (An issue was discovered in Xen through 4.9.x allowing x86 SVM PV guest ...)
 	- xen <unfixed>
+	[wheezy] - xen <ignored> (minor issue)
 	NOTE: https://xenbits.xen.org/xsa/advisory-244.html
 CVE-2017-15592 (An issue was discovered in Xen through 4.9.x allowing x86 HVM guest OS ...)
 	- xen <unfixed>




More information about the Secure-testing-commits mailing list