Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / 
security-tracker


Commits:
04976e7d by Moritz Muehlenhoff at 2020-04-14T15:26:26+02:00
qemu fixed in sid

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1679,7 +1679,7 @@ CVE-2020-11104 (An issue was discovered in USC iLab 
cereal through 1.3.0. Serial
 CVE-2020-11103
        RESERVED
 CVE-2020-11102 (hw/net/tulip.c in QEMU 4.2.0 has a buffer overflow during the 
copying  ...)
-       - qemu <unfixed> (bug #956145)
+       - qemu 1:4.2-4 (bug #956145)
        [buster] - qemu <not-affected> (Vulnerable code/Tulip NIC emulator 
added later)
        [stretch] - qemu <not-affected> (Vulnerable code/Tulip NIC emulator 
added later)
        [jessie] - qemu <not-affected> (Vulnerable code/Tulip NIC emulator 
added later)
@@ -2825,7 +2825,7 @@ CVE-2020-10703 [Potential denial of service via active 
pool without target path]
        NOTE: Fixed by: 
https://libvirt.org/git/?p=libvirt.git;a=commit;h=dfff16a7c261f8d28e3abe60a47165f845fa952f
 (v6.0.0-rc1)
 CVE-2020-10702 [weak signature generation in Pointer Authentication support 
for ARM]
        RESERVED
-       - qemu <unfixed>
+       - qemu 1:4.2-5
        [buster] - qemu <not-affected> (Vulnerable code introduced later)
        [stretch] - qemu <not-affected> (Vulnerable code introduced later)
        [jessie] - qemu <not-affected> (Vulnerable code introduced later)



View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/04976e7d3ad111aa1d1f73b392187caf7e03bb51

-- 
View it on GitLab: 
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/04976e7d3ad111aa1d1f73b392187caf7e03bb51
You're receiving this email because of your account on salsa.debian.org.


_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits

Reply via email to