[Pkg-libvirt-maintainers] Bug#699224: Bug#699224: libvirt [CVE-2013-0170]: libvirt Use-After-Free May Let Remote Users Execute Arbitrary Code

Guido Günther agx at sigxcpu.org
Tue Jan 29 20:35:35 UTC 2013


On Tue, Jan 29, 2013 at 10:52:16AM +0100, Luciano Bello wrote:
> Package: libvirt
> Severity: grave
> Tags: security patch
> Justification: user security hole
> 
> Hi,
> please see :
> https://bugzilla.redhat.com/show_bug.cgi?id=893450
> http://libvirt.org/git/?p=libvirt.git;a=commit;h=46532e3e8ed5f5a736a02f67d6c805492f9ca720
> 
> The Debian package in unstable looks affected. Can you check if the stable 
> version is affected too?

It seems stable isn't affected but I'm dobule checking with upstream.
Unstable/wheezy is affected.
Cheers,
 -- Guido

> 
> Cheers,
> luciano
> 
> _______________________________________________
> Pkg-libvirt-maintainers mailing list
> Pkg-libvirt-maintainers at lists.alioth.debian.org
> http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-libvirt-maintainers
> 



More information about the Pkg-libvirt-maintainers mailing list