[Git][security-tracker-team/security-tracker][master] Add CVE-2020-13765/qemu

Salvatore Bonaccorso carnil at debian.org
Wed Jun 3 20:32:16 BST 2020



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
bfeefc69 by Salvatore Bonaccorso at 2020-06-03T21:31:47+02:00
Add CVE-2020-13765/qemu

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -27,8 +27,12 @@ CVE-2020-13767
 	RESERVED
 CVE-2020-13766
 	RESERVED
-CVE-2020-13765
+CVE-2020-13765 [loader: OOB access while loading registered ROM may lead to code execution]
 	RESERVED
+	- qemu <unfixed>
+	NOTE: https://www.openwall.com/lists/oss-security/2020/06/03/6
+	NOTE: https://git.qemu.org/?p=qemu.git;a=commitdiff;h=e423455c4f23a1a828901c78fe6d03b7dde79319
+	NOTE: https://bugs.launchpad.net/qemu/+bug/1844635
 CVE-2020-13764 (common.php in the Gravity Forms plugin before 2.4.9 for WordPress can  ...)
 	NOT-FOR-US: Gravity Forms plugin for WordPress
 CVE-2020-13763 (In Joomla! before 3.9.19, the default settings of the global textfilte ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/bfeefc69fbecc9d46c021f69f3570a35047b1909

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/bfeefc69fbecc9d46c021f69f3570a35047b1909
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20200603/0677653c/attachment.html>


More information about the debian-security-tracker-commits mailing list