summaryrefslogtreecommitdiffstats
path: root/retired/CVE-2018-20854
diff options
context:
space:
mode:
authorSalvatore Bonaccorso <carnil@debian.org>2019-07-26 09:52:57 +0200
committerSalvatore Bonaccorso <carnil@debian.org>2019-07-26 09:52:57 +0200
commit8956285224a2c2861849d957f6af612c371c8a89 (patch)
tree5c2e9ce37760adada4bd22742eef694d19e57ae4 /retired/CVE-2018-20854
parentaa8503d3585cd9e4f7af6a64cfd0e7efa82f1102 (diff)
Retire CVE-2018-20854
Diffstat (limited to 'retired/CVE-2018-20854')
-rw-r--r--retired/CVE-2018-2085415
1 files changed, 15 insertions, 0 deletions
diff --git a/retired/CVE-2018-20854 b/retired/CVE-2018-20854
new file mode 100644
index 00000000..718b7ef2
--- /dev/null
+++ b/retired/CVE-2018-20854
@@ -0,0 +1,15 @@
+Description: phy: ocelot-serdes: fix out-of-bounds read
+References:
+Notes:
+ carnil> Driver intorduced in same upstream version as per 51f6b410fc22
+ carnil> ("phy: add driver for Microsemi Ocelot SerDes muxing") so it is
+ carnil> disputable why this has a CVE.
+Bugs:
+upstream: released (4.20-rc1) [6acb47d1a318e5b3b7115354ebc4ea060c59d3a1]
+4.19-upstream-stable: N/A "Vulnerable code introduced later"
+4.9-upstream-stable: N/A "Vulnerable code introduced later"
+3.16-upstream-stable: N/A "Vulnerable code introduced later"
+sid: N/A "Vulnerable code introduced later"
+4.19-buster-security: N/A "Vulnerable code introduced later"
+4.9-stretch-security: N/A "Vulnerable code introduced later"
+3.16-jessie-security: N/A "Vulnerable code introduced later"

© 2014-2024 Faster IT GmbH | imprint | privacy policy