[Git][security-tracker-team/security-tracker][master] Reserve DLA-1949-1 for xen

Bastian Blank waldi at debian.org
Tue Oct 8 13:35:07 BST 2019



Bastian Blank pushed to branch master at Debian Security Tracker / security-tracker


Commits:
979f4649 by Bastian Blank at 2019-10-08T12:34:03Z
Reserve DLA-1949-1 for xen

- - - - -


3 changed files:

- data/CVE/list
- data/DLA/list
- data/dla-needed.txt


Changes:

=====================================
data/CVE/list
=====================================
@@ -23639,12 +23639,15 @@ CVE-2019-17344 (An issue was discovered in Xen through 4.11.x allowing x86 PV gu
 	NOTE: https://xenbits.xen.org/xsa/advisory-290.html
 CVE-2019-17343 (An issue was discovered in Xen through 4.11.x allowing x86 PV guest OS ...)
 	- xen 4.11.1+92-g6c33308a8d-1 (bug #929994)
+	- xen 4.4.4lts5-0+deb8u1
 	NOTE: https://xenbits.xen.org/xsa/advisory-288.html
 CVE-2019-17342 (An issue was discovered in Xen through 4.11.x allowing x86 PV guest OS ...)
 	- xen 4.11.1+92-g6c33308a8d-1 (bug #930001)
+	- xen 4.4.4lts5-0+deb8u1
 	NOTE: https://xenbits.xen.org/xsa/advisory-287.html
 CVE-2019-17341 (An issue was discovered in Xen through 4.11.x allowing x86 PV guest OS ...)
 	- xen 4.11.1+92-g6c33308a8d-1 (bug #929998)
+	- xen 4.4.4lts5-0+deb8u1
 	NOTE: https://xenbits.xen.org/xsa/advisory-285.html
 CVE-2019-17340 (An issue was discovered in Xen through 4.11.x allowing x86 guest OS us ...)
 	- xen 4.11.1+92-g6c33308a8d-1 (bug #929991)


=====================================
data/DLA/list
=====================================
@@ -1,3 +1,6 @@
+[08 Oct 2019] DLA-1949-1 xen - security update
+	{CVE-2018-19961 CVE-2018-19962 CVE-2018-19966}
+	[jessie] - xen 4.4.4lts5-0+deb8u1
 [07 Oct 2019] DLA-1948-1 ruby-mini-magick - security update
 	{CVE-2019-13574}
 	[jessie] - ruby-mini-magick 3.8.1-1+deb8u1


=====================================
data/dla-needed.txt
=====================================
@@ -152,9 +152,6 @@ tika
 wordpress
   NOTE: 20190614: No upstream fix yet. (apo)
 --
-xen
-  NOTE: 20190629: Contacted credativ support and asked for a status update (apo)
---
 xtrlock
   NOTE: 20190822: WIP on #830726 (lamby)
   NOTE: 20190904: Need to get advice/pointer from libinput2 maintainers for a full patch. (lamby)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/979f464948ca27a05a49bdadb21d5904580bfb5c

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/979f464948ca27a05a49bdadb21d5904580bfb5c
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20191008/25122b61/attachment-0001.html>


More information about the debian-security-tracker-commits mailing list