[Git][security-tracker-team/security-tracker][master] automatic update
Salvatore Bonaccorso
carnil at debian.org
Mon Sep 2 21:11:09 BST 2019
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
230bb607 by security tracker role at 2019-09-02T20:10:50Z
automatic update
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,3 +1,5 @@
+CVE-2019-15846
+ RESERVED
CVE-2019-XXXX [rust image: Flaw in interface may drop uninitialized instance of arbitrary types]
- rust-image <not-affected> (Fixed before initial upload)
NOTE: https://rustsec.org/advisories/RUSTSEC-2019-0014.html
@@ -4655,7 +4657,7 @@ CVE-2019-14379 (SubTypeValidator.java in FasterXML jackson-databind before 2.9.9
NOTE: https://github.com/FasterXML/jackson-databind/issues/2387
NOTE: https://github.com/FasterXML/jackson-databind/commit/ad418eeb974e357f2797aef64aa0e3ffaaa6125b
CVE-2019-14378 (ip_reass in ip_input.c in libslirp 4.0.0 has a heap-based buffer overf ...)
- {DSA-4506-1}
+ {DSA-4512-1 DSA-4506-1}
- qemu 1:4.1-1 (bug #933741)
- qemu-kvm <removed>
- slirp4netns 0.3.2-1 (bug #933742)
@@ -8662,7 +8664,7 @@ CVE-2019-13166
CVE-2019-13165
RESERVED
CVE-2019-13164 (qemu-bridge-helper.c in QEMU 4.0.0 does not ensure that a network inte ...)
- {DSA-4506-1}
+ {DSA-4512-1 DSA-4506-1}
- qemu 1:4.1-1 (bug #931351)
- qemu-kvm <removed>
NOTE: https://lists.gnu.org/archive/html/qemu-devel/2019-07/msg00245.html
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/230bb6072a8d2f55c27021146bfb65d96ae56617
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/230bb6072a8d2f55c27021146bfb65d96ae56617
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190902/58987ee9/attachment.html>
More information about the debian-security-tracker-commits
mailing list