[Git][security-tracker-team/security-tracker][master] Mark lxd-issues as not-affected.

Anton Gladky (@gladk) gladk at debian.org
Sun Sep 11 21:08:30 BST 2022



Anton Gladky pushed to branch master at Debian Security Tracker / security-tracker


Commits:
dc352c6c by Anton Gladky at 2022-09-11T22:08:02+02:00
Mark lxd-issues as not-affected.

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -394864,9 +394864,9 @@ CVE-2016-1583 (The ecryptfs_privileged_open function in fs/ecryptfs/kthread.c in
 	{DSA-3607-1 DLA-516-1}
 	- linux 4.6.2-1
 CVE-2016-1582 (LXD before 2.0.2 does not properly set permissions when switching an u ...)
-	- lxd <itp> (bug #768073)
+	- lxd <not-affected> (Fixed before initial upload to Debian)
 CVE-2016-1581 (LXD before 2.0.2 uses world-readable permissions for /var/lib/lxd/zfs. ...)
-	- lxd <itp> (bug #768073)
+	- lxd <not-affected> (Fixed before initial upload to Debian)
 CVE-2016-1580 (The setup_snappy_os_mounts function in the ubuntu-core-launcher packag ...)
 	NOT-FOR-US: ubuntu-core-launcher
 CVE-2016-1579 (UDM provides support for running commands after a download is complete ...)
@@ -400798,7 +400798,7 @@ CVE-2015-8224 (Huawei P8 before GRA-CL00C92B210, before GRA-L09C432B200, before
 CVE-2015-8223 (Huawei P7 before P7-L00C17B851, P7-L05C00B851, and P7-L09C92B85, and P ...)
 	NOT-FOR-US: Huawei
 CVE-2015-8222 (The lxd-unix.socket systemd unit file in the Ubuntu lxd package before ...)
-	- lxd <itp> (bug #768073)
+	- lxd <not-affected> (Fixed before initial upload to Debian)
 CVE-2015-8221 (Integer overflow in Google Picasa before 3.9.140 Build 259 allows remo ...)
 	NOT-FOR-US: Google Picasa
 CVE-2015-8220 (Stack-based buffer overflow in the URI handler in DWRCC.exe in SolarWi ...)
@@ -420872,7 +420872,7 @@ CVE-2015-1342 (LXCFS before 0.12 does not properly enforce directory escapes, wh
 CVE-2015-1341 (Any Python module in sys.path can be imported if the command line of t ...)
 	NOT-FOR-US: Apport
 CVE-2015-1340 (LXD before version 0.19-0ubuntu5 doUidshiftIntoContainer() has an unsa ...)
-	- lxd <itp> (bug #768073)
+	- lxd <not-affected> (Fixed before initial upload to Debian)
 CVE-2015-1339 (Memory leak in the cuse_channel_release function in fs/fuse/cuse.c in  ...)
 	- linux 4.4.2-1
 	[jessie] - linux <not-affected> (Vulnerable code introduced in v4.2-rc1)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/dc352c6c236346f8c79c384da94455c6340afec9

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/dc352c6c236346f8c79c384da94455c6340afec9
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220911/e70f2331/attachment.htm>


More information about the debian-security-tracker-commits mailing list