[Secure-testing-commits] r58099 - in data: CVE DSA

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Nov 29 05:14:58 UTC 2017


Author: carnil
Date: 2017-11-29 05:14:58 +0000 (Wed, 29 Nov 2017)
New Revision: 58099

Modified:
   data/CVE/list
   data/DSA/list
Log:
CVEs assigned for xen issues

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-11-28 22:03:36 UTC (rev 58098)
+++ data/CVE/list	2017-11-29 05:14:58 UTC (rev 58099)
@@ -81,21 +81,15 @@
 	RESERVED
 CVE-2017-17027
 	RESERVED
-CVE-2017-XXXX [XSA-247: Missing p2m error checking in PoD code]
+CVE-2017-17045 [XSA-247: Missing p2m error checking in PoD code]
 	- xen <unfixed>
-	[stretch] - xen 4.8.2+xsa245-0+deb9u1
 	NOTE: https://xenbits.xen.org/xsa/advisory-247.html
-	NOTE: Workaround for DSA 4050
-CVE-2017-XXXX [XSA-246: x86: infinite loop due to missing PoD error checking]
+CVE-2017-17044 [XSA-246: x86: infinite loop due to missing PoD error checking]
 	- xen <unfixed>
-	[stretch] - xen 4.8.2+xsa245-0+deb9u1
 	NOTE: https://xenbits.xen.org/xsa/advisory-246.html
-	NOTE: Workaround for DSA 4050
-CVE-2017-XXXX [XSA-245: ARM: Some memory not scrubbed at boot]
+CVE-2017-17046 [XSA-245: ARM: Some memory not scrubbed at boot]
 	- xen <unfixed>
-	[stretch] - xen 4.8.2+xsa245-0+deb9u1
 	NOTE: https://xenbits.xen.org/xsa/advisory-245.html
-	NOTE: Workaround for DSA 4050
 CVE-2018-0705
 	RESERVED
 CVE-2018-0704

Modified: data/DSA/list
===================================================================
--- data/DSA/list	2017-11-28 22:03:36 UTC (rev 58098)
+++ data/DSA/list	2017-11-29 05:14:58 UTC (rev 58099)
@@ -1,5 +1,5 @@
 [28 Nov 2017] DSA-4050-1 xen - security update
-	{CVE-2017-14316 CVE-2017-14317 CVE-2017-14318 CVE-2017-14319 CVE-2017-15588 CVE-2017-15589 CVE-2017-15590 CVE-2017-15591 CVE-2017-15592 CVE-2017-15593 CVE-2017-15594 CVE-2017-15595 CVE-2017-15597}
+	{CVE-2017-14316 CVE-2017-14317 CVE-2017-14318 CVE-2017-14319 CVE-2017-15588 CVE-2017-15589 CVE-2017-15590 CVE-2017-15591 CVE-2017-15592 CVE-2017-15593 CVE-2017-15594 CVE-2017-15595 CVE-2017-15597 CVE-2017-17044 CVE-2017-17045 CVE-2017-17046}
 	[stretch] - xen 4.8.2+xsa245-0+deb9u1
 [27 Nov 2017] DSA-4049-1 ffmpeg - security update
 	{CVE-2017-15186 CVE-2017-15672 CVE-2017-16840}




More information about the Secure-testing-commits mailing list