[Git][security-tracker-team/security-tracker][master] CVE-2019-3812: jessie not affected, introduced 2.6.50

Hugo Lefeuvre hle at debian.org
Wed Feb 27 07:40:21 GMT 2019


Hugo Lefeuvre pushed to branch master at Debian Security Tracker / security-tracker


Commits:
1304658a by Hugo Lefeuvre at 2019-02-27T07:39:07Z
CVE-2019-3812: jessie not affected, introduced 2.6.50

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -12251,8 +12251,11 @@ CVE-2019-3813 (Spice, versions 0.5.2 through 0.14.1, are vulnerable to an ...)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1665371
 CVE-2019-3812 (QEMU, through version 2.10 and through version 3.1.0, is vulnerable to ...)
 	- qemu <unfixed> (bug #922635)
+	[jessie] - qemu <not-affected> (vulnerable code introduced later)
 	- qemu-kvm <removed>
 	NOTE: https://git.qemu.org/?p=qemu.git;a=commit;h=b05b267840515730dbf6753495d5b7bd8b04ad1c
+	NOTE: vulnerable code not present prior 2.6.50, introduced in
+	NOTE: https://git.qemu.org/?p=qemu.git;a=commit;h=78c71af8049c40657b646d9dd722867fa15c0f1b
 CVE-2019-3811 (A vulnerability was found in sssd. If a user was configured with no ...)
 	{DLA-1635-1}
 	- sssd <unfixed> (bug #919051)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/1304658a921e0289770aca42d35c263ae6e786be

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/1304658a921e0289770aca42d35c263ae6e786be
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190227/6f3f851b/attachment.html>


More information about the debian-security-tracker-commits mailing list