[Git][security-tracker-team/security-tracker][master] Update information on CVE-2020-10701/libvirt

Salvatore Bonaccorso carnil at debian.org
Sun Apr 5 08:24:40 BST 2020



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
dbed89c3 by Salvatore Bonaccorso at 2020-04-05T09:23:46+02:00
Update information on CVE-2020-10701/libvirt

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -2008,7 +2008,11 @@ CVE-2020-10702 [weak signature generation in Pointer Authentication support for
 CVE-2020-10701 [guest agent timeout can be set under read-only mode leading to DoS]
 	RESERVED
 	- libvirt <unfixed>
-	NOTE: https://libvirt.org/git/?p=libvirt.git;a=commit;h=4cc90c2e62df653e909ad31fd810224bf8bcf913
+	[buster] - libvirt <not-affected> (Vulnerable code introduced later)
+	[stretch] - libvirt <not-affected> (Vulnerable code introduced later)
+	[jessie] - libvirt <not-affected> (Vulnerable code introduced later)
+	NOTE: Introduced in: https://libvirt.org/git/?p=libvirt.git;a=commit;h=95f5ac9ae52455e9da47afc95fa31c9456ac27ae (v5.10.0-rc1)
+	NOTE: Fixed by: https://libvirt.org/git/?p=libvirt.git;a=commit;h=4cc90c2e62df653e909ad31fd810224bf8bcf913 (v6.2.0-rc1)
 CVE-2020-10700
 	RESERVED
 CVE-2020-10699



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/dbed89c33c6f134fc801fe2b8716403d01f52578

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/dbed89c33c6f134fc801fe2b8716403d01f52578
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20200405/c00b5b81/attachment.html>


More information about the debian-security-tracker-commits mailing list