[Git][security-tracker-team/security-tracker][master] CVE-2018-16867: not-affected in jessie

Hugo Lefeuvre hle at debian.org
Tue Feb 26 09:20:59 GMT 2019


Hugo Lefeuvre pushed to branch master at Debian Security Tracker / security-tracker


Commits:
1b0c31dd by Hugo Lefeuvre at 2019-02-26T09:20:33Z
CVE-2018-16867: not-affected in jessie

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -30056,10 +30056,13 @@ CVE-2018-16868 (A Bleichenbacher type side-channel based padding oracle attack w
 	NOTE: nettle version.
 CVE-2018-16867 (A flaw was found in qemu Media Transfer Protocol (MTP) before version ...)
 	- qemu 1:3.1+dfsg-1 (bug #915884)
+	[jessie] - qemu <not-affected> (Vulnerable code not present)
 	[stretch] - qemu <not-affected> (Vulnerable code not present)
 	- qemu-kvm <removed>
 	NOTE: https://lists.gnu.org/archive/html/qemu-devel/2018-12/msg00390.html
 	NOTE: https://git.qemu.org/?p=qemu.git;a=commit;h=c52d46e041b42bb1ee6f692e00a0abe37a9659f6 (master)
+	NOTE: vulnerable code introduced in
+	NOTE: https://git.qemu.org/?p=qemu.git;a=commit;h=88d5f381ecb2d2828fd77676572ff9a99da699fb
 CVE-2018-16866 (An out of bounds read was discovered in systemd-journald in the way it ...)
 	{DSA-4367-1}
 	- systemd 240-1



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/1b0c31dd6e6d095301c8aff62ec38a761e567168

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/1b0c31dd6e6d095301c8aff62ec38a761e567168
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190226/e1a3ea29/attachment.html>


More information about the debian-security-tracker-commits mailing list