[Git][security-tracker-team/security-tracker][master] Add note for CVE-2019-6501/qemu

Salvatore Bonaccorso carnil at debian.org
Tue Jan 22 20:27:37 GMT 2019


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
be5216d1 by Salvatore Bonaccorso at 2019-01-22T20:27:12Z
Add note for CVE-2019-6501/qemu

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -43,6 +43,8 @@ CVE-2019-6501 [scsi-generic: possible OOB access while handling inquiry request]
 	- qemu <unfixed>
 	- qemu-kvm <removed>
 	NOTE: https://lists.gnu.org/archive/html/qemu-devel/2019-01/msg02324.html
+	NOTE: Code introduced by https://git.qemu.org/?p=qemu.git;a=commit;h=6c219fc8a1 ,
+	NOTE: but but the overflow was already possible before.
 CVE-2016-10739 (In the GNU C Library (aka glibc or libc6) through 2.28, the getaddrinfo ...)
 	- glibc <unfixed> (bug #920047)
 	[stretch] - glibc <no-dsa> (Minor issue)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/be5216d1aa6340d44ba3247115d66a5c65167c09

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/be5216d1aa6340d44ba3247115d66a5c65167c09
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190122/84354722/attachment.html>


More information about the debian-security-tracker-commits mailing list