Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
230bb607 by security tracker role at 2019-09-02T20:10:50Z
automatic update
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -1,3 +1,5 @@
+CVE-2019-15846
+ RESERVED
CVE-2019-XXXX [rust image: Flaw in interface may drop uninitialized instance
of arbitrary types]
- rust-image <not-affected> (Fixed before initial upload)
NOTE: https://rustsec.org/advisories/RUSTSEC-2019-0014.html
@@ -4655,7 +4657,7 @@ CVE-2019-14379 (SubTypeValidator.java in FasterXML
jackson-databind before 2.9.9
NOTE: https://github.com/FasterXML/jackson-databind/issues/2387
NOTE:
https://github.com/FasterXML/jackson-databind/commit/ad418eeb974e357f2797aef64aa0e3ffaaa6125b
CVE-2019-14378 (ip_reass in ip_input.c in libslirp 4.0.0 has a heap-based
buffer overf ...)
- {DSA-4506-1}
+ {DSA-4512-1 DSA-4506-1}
- qemu 1:4.1-1 (bug #933741)
- qemu-kvm <removed>
- slirp4netns 0.3.2-1 (bug #933742)
@@ -8662,7 +8664,7 @@ CVE-2019-13166
CVE-2019-13165
RESERVED
CVE-2019-13164 (qemu-bridge-helper.c in QEMU 4.0.0 does not ensure that a
network inte ...)
- {DSA-4506-1}
+ {DSA-4512-1 DSA-4506-1}
- qemu 1:4.1-1 (bug #931351)
- qemu-kvm <removed>
NOTE:
https://lists.gnu.org/archive/html/qemu-devel/2019-07/msg00245.html
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/commit/230bb6072a8d2f55c27021146bfb65d96ae56617
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/commit/230bb6072a8d2f55c27021146bfb65d96ae56617
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits