[Git][security-tracker-team/security-tracker][master] Update status for CVE-2024-6519/qemu

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed May 13 06:58:15 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
aa90148b by Salvatore Bonaccorso at 2026-05-13T07:57:50+02:00
Update status for CVE-2024-6519/qemu

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -214043,13 +214043,14 @@ CVE-2024-8757 (The WP Post Author \u2013 Boost Your Blog's Engagement with
 CVE-2024-49193 (Zendesk before 2024-07-02 allows remote attackers to read ticket histo ...)
 	NOT-FOR-US: Zendesk
 CVE-2024-6519 (A use-after-free vulnerability was found in the QEMU LSI53C895A SCSI H ...)
-	- qemu <unfixed> (bug #1085299)
+	- qemu 1:11.0.0+ds-1 (bug #1085299)
 	[trixie] - qemu <no-dsa> (Minor issue)
 	[bookworm] - qemu <no-dsa> (Minor issue)
 	[bullseye] - qemu <postponed> (Minor issue; can be fixed in next update)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=2292089
 	NOTE: https://www.zerodayinitiative.com/advisories/ZDI-24-1382/
 	NOTE: https://gitlab.com/qemu-project/qemu/-/issues/3090
+	NOTE: Fixed by: https://gitlab.com/qemu-project/qemu/-/commit/4862d2c95104d9fd0430cc003c205094f8ada1f9 (v11.0.0-rc2)
 CVE-2024-9860 (The Bridge Core plugin for WordPress is vulnerable to unauthorized mod ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2024-9824 (The ImagePress \u2013 Image Gallery plugin for WordPress is vulnerable ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/aa90148b96034b0ca4b49548134d7026540cb68f

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/aa90148b96034b0ca4b49548134d7026540cb68f
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260513/8e72f723/attachment.htm>


More information about the debian-security-tracker-commits mailing list