From 8edb19820a99c8a9552ec4814ee966d937bede4b Mon Sep 17 00:00:00 2001 From: Salvatore Bonaccorso Date: Sun, 17 Jun 2018 11:29:51 +0200 Subject: Retire some CVEs --- retired/CVE-2017-13220 | 16 ++++++++++++++++ 1 file changed, 16 insertions(+) create mode 100644 retired/CVE-2017-13220 (limited to 'retired/CVE-2017-13220') diff --git a/retired/CVE-2017-13220 b/retired/CVE-2017-13220 new file mode 100644 index 00000000..9bf810e3 --- /dev/null +++ b/retired/CVE-2017-13220 @@ -0,0 +1,16 @@ +Description: Possible out-of-bound access in Bluetooth subsystem +References: + https://bugzilla.redhat.com/show_bug.cgi?id=1536155 + https://bugzilla.suse.com/show_bug.cgi?id=1076537 +Notes: + carnil> Introduced in/later than b4f34d8d9d26b2428fa7cf7c8f97690a297978e6 + carnil> in 3.10-rc1. +Bugs: +upstream: released (v3.19-rc3) [51bda2bca53b265715ca1852528f38dc67429d9a] +4.9-upstream-stable: N/A "Fixed before branching point" +3.16-upstream-stable: released (3.16.57) [3738d7b1da4d6f306ca6d5a6a96dd70c36f53f94] +3.2-upstream-stable: N/A "Vulnerable code not present" +sid: released (4.0.2-1) +4.9-stretch-security: N/A "Fixed before branching point" +3.16-jessie-security: released (3.16.56-1) [bugfix/all/bluetooth-hidp_connection_add-unsafe-use-of-l2cap_pi.patch] +3.2-wheezy-security: N/A "Vulnerable code not present" -- cgit v1.2.3