[Git][security-tracker-team/security-tracker][master] Mark lxd-issues as not-affected.
Anton Gladky (@gladk)
gladk at debian.org
Sun Sep 11 21:08:30 BST 2022
Anton Gladky pushed to branch master at Debian Security Tracker / security-tracker
Commits:
dc352c6c by Anton Gladky at 2022-09-11T22:08:02+02:00
Mark lxd-issues as not-affected.
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -394864,9 +394864,9 @@ CVE-2016-1583 (The ecryptfs_privileged_open function in fs/ecryptfs/kthread.c in
{DSA-3607-1 DLA-516-1}
- linux 4.6.2-1
CVE-2016-1582 (LXD before 2.0.2 does not properly set permissions when switching an u ...)
- - lxd <itp> (bug #768073)
+ - lxd <not-affected> (Fixed before initial upload to Debian)
CVE-2016-1581 (LXD before 2.0.2 uses world-readable permissions for /var/lib/lxd/zfs. ...)
- - lxd <itp> (bug #768073)
+ - lxd <not-affected> (Fixed before initial upload to Debian)
CVE-2016-1580 (The setup_snappy_os_mounts function in the ubuntu-core-launcher packag ...)
NOT-FOR-US: ubuntu-core-launcher
CVE-2016-1579 (UDM provides support for running commands after a download is complete ...)
@@ -400798,7 +400798,7 @@ CVE-2015-8224 (Huawei P8 before GRA-CL00C92B210, before GRA-L09C432B200, before
CVE-2015-8223 (Huawei P7 before P7-L00C17B851, P7-L05C00B851, and P7-L09C92B85, and P ...)
NOT-FOR-US: Huawei
CVE-2015-8222 (The lxd-unix.socket systemd unit file in the Ubuntu lxd package before ...)
- - lxd <itp> (bug #768073)
+ - lxd <not-affected> (Fixed before initial upload to Debian)
CVE-2015-8221 (Integer overflow in Google Picasa before 3.9.140 Build 259 allows remo ...)
NOT-FOR-US: Google Picasa
CVE-2015-8220 (Stack-based buffer overflow in the URI handler in DWRCC.exe in SolarWi ...)
@@ -420872,7 +420872,7 @@ CVE-2015-1342 (LXCFS before 0.12 does not properly enforce directory escapes, wh
CVE-2015-1341 (Any Python module in sys.path can be imported if the command line of t ...)
NOT-FOR-US: Apport
CVE-2015-1340 (LXD before version 0.19-0ubuntu5 doUidshiftIntoContainer() has an unsa ...)
- - lxd <itp> (bug #768073)
+ - lxd <not-affected> (Fixed before initial upload to Debian)
CVE-2015-1339 (Memory leak in the cuse_channel_release function in fs/fuse/cuse.c in ...)
- linux 4.4.2-1
[jessie] - linux <not-affected> (Vulnerable code introduced in v4.2-rc1)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/dc352c6c236346f8c79c384da94455c6340afec9
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/dc352c6c236346f8c79c384da94455c6340afec9
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220911/e70f2331/attachment.htm>
More information about the debian-security-tracker-commits
mailing list