[Git][security-tracker-team/security-tracker][master] Add CVE-2020-14339/libvirt

Salvatore Bonaccorso carnil at debian.org
Fri Jul 24 05:31:37 BST 2020



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
9c58e054 by Salvatore Bonaccorso at 2020-07-24T06:30:59+02:00
Add CVE-2020-14339/libvirt

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -3814,8 +3814,13 @@ CVE-2020-14341
 	RESERVED
 CVE-2020-14340
 	RESERVED
-CVE-2020-14339
+CVE-2020-14339 [leak of /dev/mapper/control into QEMU guests]
 	RESERVED
+	- libvirt <unfixed>
+	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1860069
+	NOTE: https://www.redhat.com/archives/libvir-list/2020-July/msg01500.html
+	NOTE: Proposed patch: https://www.redhat.com/archives/libvir-list/2020-July/msg01501.html
+	TODO: check, possibly only an issue since 6.2.0-rc1
 CVE-2020-14338
 	RESERVED
 CVE-2020-14337



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9c58e054f8ba5f91b754b0e715fafd2937a73578

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/9c58e054f8ba5f91b754b0e715fafd2937a73578
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20200724/cf3e1dc6/attachment-0001.html>


More information about the debian-security-tracker-commits mailing list