[Git][security-tracker-team/security-tracker][master] 3 commits: Add CVE-2020-10701/libvirt

Salvatore Bonaccorso carnil at debian.org
Sun Apr 5 08:20:00 BST 2020



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
e8956797 by Salvatore Bonaccorso at 2020-04-05T08:56:32+02:00
Add CVE-2020-10701/libvirt

- - - - -
7606723a by Salvatore Bonaccorso at 2020-04-05T08:57:26+02:00
Add CVE-2020-10702/qemu

- - - - -
167b832a by Salvatore Bonaccorso at 2020-04-05T08:57:38+02:00
Add CVE-2020-10703/libvirt

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1995,12 +1995,20 @@ CVE-2020-10705
 	RESERVED
 CVE-2020-10704
 	RESERVED
-CVE-2020-10703
+CVE-2020-10703 [Potential denial of service via active pool without target path]
 	RESERVED
-CVE-2020-10702
+	- libvirt <unfixed>
+	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1790725
+	NOTE: https://libvirt.org/git/?p=libvirt.git;a=commit;h=dfff16a7c261f8d28e3abe60a47165f845fa952f
+CVE-2020-10702 [weak signature generation in Pointer Authentication support for ARM]
 	RESERVED
-CVE-2020-10701
+	- qemu <unfixed>
+	- qemu-kvm <removed>
+	NOTE: https://git.qemu.org/?p=qemu.git;a=commit;h=de0b1bae6461f67243282555475f88b2384a1eb9
+CVE-2020-10701 [guest agent timeout can be set under read-only mode leading to DoS]
 	RESERVED
+	- libvirt <unfixed>
+	NOTE: https://libvirt.org/git/?p=libvirt.git;a=commit;h=4cc90c2e62df653e909ad31fd810224bf8bcf913
 CVE-2020-10700
 	RESERVED
 CVE-2020-10699



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/e2d19a78fad31755bb71950c3e0fcdbb71b54137...167b832a06965f2027a2ee23a50141412d85e917

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/e2d19a78fad31755bb71950c3e0fcdbb71b54137...167b832a06965f2027a2ee23a50141412d85e917
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20200405/6a34f9e1/attachment-0001.html>


More information about the debian-security-tracker-commits mailing list