Salvatore Bonaccorso pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
594ece0b by Salvatore Bonaccorso at 2020-06-24T21:05:08+02:00
Mark four CVEs for linux as fixed with 5.7.6-1 upload to unstable
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -2540,7 +2540,7 @@ CVE-2020-13976 (** DISPUTED ** An issue was discovered in
DD-WRT through 16214.
CVE-2020-13975
RESERVED
CVE-2020-13974 (** DISPUTED ** An issue was discovered in the Linux kernel
through 5.7 ...)
- - linux <unfixed>
+ - linux 5.7.6-1
NOTE:
https://git.kernel.org/linus/b86dab054059b970111b5516ae548efaae5b3aae
CVE-2020-13973 (OWASP json-sanitizer before 1.2.1 allows XSS. An attacker who
controls ...)
TODO: check
@@ -11895,17 +11895,17 @@ CVE-2020-10769
NOTE:
https://git.kernel.org/linus/8f9c469348487844328e162db57112f7d347c49f
CVE-2020-10768 [Indirect branch speculation can be enabled after it was
force-disabled by the PR_SPEC_FORCE_DISABLE prctl command]
RESERVED
- - linux <unfixed>
+ - linux 5.7.6-1
NOTE: https://www.openwall.com/lists/oss-security/2020/06/10/1
NOTE:
https://git.kernel.org/linus/4d8df8cbb9156b0a0ab3f802b80cb5db57acc0bf
CVE-2020-10767 [Indirect Branch Prediction Barrier is force-disabled when
STIBP is unavailable or enhanced IBRS is available]
RESERVED
- - linux <unfixed>
+ - linux 5.7.6-1
NOTE: https://www.openwall.com/lists/oss-security/2020/06/10/1
NOTE:
https://git.kernel.org/linus/21998a351512eba4ed5969006f0c55882d995ada
CVE-2020-10766 [Rogue cross-process SSBD shutdown]
RESERVED
- - linux <unfixed>
+ - linux 5.7.6-1
NOTE: https://www.openwall.com/lists/oss-security/2020/06/10/1
NOTE:
https://git.kernel.org/linus/dbbe2ad02e9df26e372f38cc3e70dab9222c832e
CVE-2020-10765
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/594ece0b25dc6f42152b27b8d3d136ecd2f2cb68
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/594ece0b25dc6f42152b27b8d3d136ecd2f2cb68
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits