Author: gilbert-guest Date: 2009-12-07 00:40:26 +0000 (Mon, 07 Dec 2009) New Revision: 13468 Modified: data/CVE/list Log: qemu ne2000 issues are already fixed in all kvm releases Modified: data/CVE/list ==================================================================--- data/CVE/list 2009-12-06 22:57:46 UTC (rev 13467) +++ data/CVE/list 2009-12-07 00:40:26 UTC (rev 13468) @@ -30472,11 +30472,15 @@ CVE-2007-5730 (Heap-based buffer overflow in QEMU 0.8.2, as used in Xen and possibly ...) {DSA-1284-1} - qemu 0.9.0-2 (bug #424070) - TODO: Affects KVM, check status + - kvm 72+dfsg-5 + - linux-2.6 <not-affected> (vulnerability does not affected kernel module) + - linux-2.6.24 <not-affected> (vulnerability does not affected kernel module) CVE-2007-5729 (The NE2000 emulator in QEMU 0.8.2 allows local users to execute ...) {DSA-1284-1} - qemu 0.9.0-2 (bug #424070) - TODO: Affects KVM, check status + - kvm 72+dfsg-5 + - linux-2.6 <not-affected> (vulnerability does not affected kernel module) + - linux-2.6.24 <not-affected> (vulnerability does not affected kernel module) CVE-2007-5728 (Cross-site scripting (XSS) vulnerability in phpPgAdmin 3.5 to 4.1.1, ...) {DSA-1693-1} - phppgadmin 4.1.3-0.1 (bug #449103; low) @@ -38088,7 +38092,7 @@ CVE-2007-2893 (Heap-based buffer overflow in the bx_ne2k_c::rx_frame function in ...) {DSA-1351-1} - bochs 2.3+20070705-1 (low; bug #427144) - TODO: Affects KVM, check status + NOTE: kvm/qemu are tracked as CVE-2007-5729 and CVE-2007-5730 CVE-2007-2892 (Cross-site scripting (XSS) vulnerability in news.asp in ASP-Nuke 2.0.7 ...) NOT-FOR-US: ASP-Nuke CVE-2007-2891 (Multiple PHP remote file inclusion vulnerabilities in FirmWorX 0.1.2 ...)