[Git][security-tracker-team/security-tracker][master] more u-boot fixes

Moritz Muehlenhoff jmm at debian.org
Wed Jan 22 17:36:03 GMT 2020



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
ca4a3cd1 by Moritz Muehlenhoff at 2020-01-22T18:35:40+01:00
more u-boot fixes

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -37310,29 +37310,33 @@ CVE-2019-13107 (Multiple integer overflows exist in MATIO before 1.5.16, related
 	[stretch] - libmatio <no-dsa> (Minor issue)
 	NOTE: Several commits between 1.5.15..1.5.16: https://github.com/tbeu/matio/compare/f8cd397...fabac6c
 CVE-2019-13106 (Das U-Boot versions 2016.09 through 2019.07-rc4 can memset() too much  ...)
-	- u-boot <unfixed> (low)
+	- u-boot 2020.01+dfsg-1 (low)
 	[buster] - u-boot <no-dsa> (Minor issue)
 	[stretch] - u-boot <no-dsa> (Minor issue)
 	[jessie] - u-boot <no-dsa> (Minor issue)
 	NOTE: https://lists.denx.de/pipermail/u-boot/2019-July/375516.html
+	NOTE: https://gitlab.denx.de/u-boot/u-boot/commit/e205896c5383c938274262524adceb2775fb03ba
 CVE-2019-13105 (Das U-Boot versions 2019.07-rc1 through 2019.07-rc4 can double-free a  ...)
-	- u-boot <unfixed> (low)
+	- u-boot 2020.01+dfsg-1 (low)
 	[buster] - u-boot <no-dsa> (Minor issue)
 	[stretch] - u-boot <no-dsa> (Minor issue)
 	[jessie] - u-boot <no-dsa> (Minor issue)
 	NOTE: https://lists.denx.de/pipermail/u-boot/2019-July/375513.html
+	NOTE: https://gitlab.denx.de/u-boot/u-boot/commit/6e5a79de658cb1c8012c86e0837379aa6eabd024
 CVE-2019-13104 (In Das U-Boot versions 2016.11-rc1 through 2019.07-rc4, an underflow c ...)
-	- u-boot <unfixed> (low)
+	- u-boot 2020.01+dfsg-1 (low)
 	[buster] - u-boot <no-dsa> (Minor issue)
 	[stretch] - u-boot <no-dsa> (Minor issue)
 	[jessie] - u-boot <no-dsa> (Minor issue)
 	NOTE: https://lists.denx.de/pipermail/u-boot/2019-July/375514.html
+	NOTE: https://gitlab.denx.de/u-boot/u-boot/commit/878269dbe74229005dd7f27aca66c554e31dad8e
 CVE-2019-13103 (A crafted self-referential DOS partition table will cause all Das U-Bo ...)
-	- u-boot <unfixed> (low)
+	- u-boot 2020.01+dfsg-1 (low)
 	[buster] - u-boot <no-dsa> (Minor issue)
 	[stretch] - u-boot <no-dsa> (Minor issue)
 	[jessie] - u-boot <no-dsa> (Minor issue)
 	NOTE: https://lists.denx.de/pipermail/u-boot/2019-July/375512.html
+	NOTE: https://gitlab.denx.de/u-boot/u-boot/commit/232e2f4fd9a24bf08215ddc8c53ccadffc841fb5
 CVE-2019-13102
 	RESERVED
 CVE-2019-13101 (An issue was discovered on D-Link DIR-600M 3.02, 3.03, 3.04, and 3.06  ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/ca4a3cd157baea0d771b79b81dc8ef0be9a810a5

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/ca4a3cd157baea0d771b79b81dc8ef0be9a810a5
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20200122/552dab32/attachment.html>


More information about the debian-security-tracker-commits mailing list