[Git][security-tracker-team/security-tracker][master] Update notes on CVE-2020-28374/tcmu

Salvatore Bonaccorso carnil at debian.org
Wed Jan 13 15:41:09 GMT 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
46270ab9 by Salvatore Bonaccorso at 2021-01-13T16:40:35+01:00
Update notes on CVE-2020-28374/tcmu

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -16325,8 +16325,13 @@ CVE-2020-28374 (In drivers/target/target_core_xcopy.c in the Linux kernel before
 	- tcmu <unfixed> (bug #980007)
 	NOTE: https://git.kernel.org/linus/2896c93811e39d63a4d9b63ccf12a8fbc226e5e4
 	NOTE: https://www.openwall.com/lists/oss-security/2021/01/12/12
-	NOTE: tcmu-runner patch: https://bugzilla.suse.com/attachment.cgi?id=844924&action=diff&context=patch&collapsed=&headers=1&format=raw
 	NOTE: https://github.com/open-iscsi/tcmu-runner/issues/645
+	NOTE: https://github.com/open-iscsi/tcmu-runner/pull/644
+	NOTE: Fixed by: https://github.com/open-iscsi/tcmu-runner/commit/2b16e96e6b63d0419d857f53e4cc67f0adb383fd
+	NOTE: Some followup fixes: https://github.com/open-iscsi/tcmu-runner/pull/646
+	NOTE: https://github.com/open-iscsi/tcmu-runner/commit/b202dc06ef391c6ab9a7561856238a258de04663
+	NOTE: https://github.com/open-iscsi/tcmu-runner/commit/170bfa63288a399b38c35eb646b2835d4ba7c08a
+	NOTE: https://github.com/open-iscsi/tcmu-runner/commit/01685b2ab8c430c0fb9ce397e7e76b60fe6cbde5
 CVE-2020-28373 (upnpd on certain NETGEAR devices allows remote (LAN) attackers to exec ...)
 	NOT-FOR-US: Netgear
 CVE-2020-28372



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/46270ab9f4e9faef5a3682df176dc520f3d2fa3c

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/46270ab9f4e9faef5a3682df176dc520f3d2fa3c
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210113/e9c98cfe/attachment-0001.html>


More information about the debian-security-tracker-commits mailing list