[Git][security-tracker-team/security-tracker][master] "new" blk-mq issue, already fixed in all brances

Moritz Muehlenhoff jmm at debian.org
Mon Sep 21 11:23:03 BST 2020



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
0a8bebd7 by Moritz Muehlenhoff at 2020-09-21T12:21:53+02:00
"new" blk-mq issue, already fixed in all brances
NFU

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -64894,9 +64894,13 @@ CVE-2020-0435 (In inline_data_addr of f2fs.h, there is a possible out of bounds
 	NOTE: https://android.googlesource.com/kernel/common/+/d7d9d29a837358636e12fe09c90a7882b53b2220
 	NOTE: https://source.android.com/security/bulletin/pixel/2020-09-01
 CVE-2020-0434 (In Pixel's use of the Catpipe library, there is possible memory corrup ...)
-	TODO: check
+	NOT-FOR-US: Catpipe
 CVE-2020-0433 (In blk_mq_queue_tag_busy_iter of blk-mq-tag.c, there is a possible use ...)
-	TODO: check
+	- linux 4.19.9-1
+	[stretch] - linux 4.9.228-1
+	NOTE:  https://source.android.com/security/bulletin/pixel/2020-09-01
+	NOTE: https://git.kernel.org/linus/f5bbbbe4d63577026f908a809f22f5fd5a90ea1f
+	NOTE: https://git.kernel.org/linus/530ca2c9bd6949c72c9b5cfc330cb3dbccaa3f5b
 CVE-2020-0432 (In skb_to_mamac of networking.c, there is a possible out of bounds wri ...)
 	TODO: check
 CVE-2020-0431 (In kbd_keycode of keyboard.c, there is a possible out of bounds write  ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0a8bebd713ac73f6ccc1bba9150b4f185a93054c

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/0a8bebd713ac73f6ccc1bba9150b4f185a93054c
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20200921/c853cbdd/attachment.html>


More information about the debian-security-tracker-commits mailing list