[Git][security-tracker-team/security-tracker][master] Point to open and ongoing discussion on proper fix for CVE-2024-8612

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Oct 25 18:37:08 BST 2024



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
e25fe38d by Salvatore Bonaccorso at 2024-10-25T19:36:33+02:00
Point to open and ongoing discussion on proper fix for CVE-2024-8612

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -8374,6 +8374,7 @@ CVE-2024-8612 (A flaw was found in QEMU, in the virtio-scsi, virtio-blk, and vir
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2313760
 	NOTE: Mitigation addressing symptomps (but not root issue): https://gitlab.com/qemu-project/qemu/-/commit/637b0aa139565cb82a7b9269e62214f87082635c
 	NOTE: qemu/1:9.1.1+ds-1 upload only addresses the symtoms but not the root cause of the issue.
+	NOTE: Discussion on proper fix: https://lore.kernel.org/qemu-devel/20240926040912-mutt-send-email-mst@kernel.org/
 CVE-2024-45769 (A vulnerability was found in Performance Co-Pilot (PCP). This flaw all ...)
 	- pcp 6.3.1-1
 	[bookworm] - pcp <no-dsa> (Minor issue)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e25fe38db590e543e9a883dc359e0879c40bc62e

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/e25fe38db590e543e9a883dc359e0879c40bc62e
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20241025/f7cf9e41/attachment.htm>


More information about the debian-security-tracker-commits mailing list