~ubuntu-security/ubuntu-cve-tracker/master

« back to all changes in this revision

Viewing changes to retired/CVE-2013-4344

  • Committer: Steve Beattie
  • Date: 2019-02-19 06:18:27 UTC
  • Revision ID: sbeattie@ubuntu.com-20190219061827-oh57fzcfc1u9dlfk
The ubuntu-cve-tracker project has been converted to git.

Please use 'git clone https://git.launchpad.net/ubuntu-cve-tracker' to
get the converted tree.

Show diffs side-by-side

added added

removed removed

Lines of Context:
1
 
PublicDateAtUSN: 2013-10-04
2
 
Candidate: CVE-2013-4344
3
 
PublicDate: 2013-10-04
4
 
References:
5
 
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-4344
6
 
 http://www.openwall.com/lists/oss-security/2013/10/02/2
7
 
 http://thread.gmane.org/gmane.comp.emulators.qemu/237161
8
 
 http://osvdb.org/98028
9
 
 https://usn.ubuntu.com/usn/usn-2092-1
10
 
Description:
11
 
 Buffer overflow in the SCSI implementation in QEMU, as used in Xen, when a
12
 
 SCSI controller has more than 256 attached devices, allows local users to
13
 
 gain privileges via a small transfer buffer in a REPORT LUNS command.
14
 
Ubuntu-Description:
15
 
Notes:
16
 
 mdeslaur> needs the admin to configure more than 256 scsi devices,
17
 
 mdeslaur> downgrading to low
18
 
Bugs:
19
 
 http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=725944
20
 
Priority: low
21
 
Discovered-by: Asias He
22
 
Assigned-to: mdeslaur
23
 
 
24
 
Patches_qemu-kvm:
25
 
 upstream: http://git.qemu.org/?p=qemu.git;a=commit;h=846424350b292f16b732b573273a5c1f195cd7a3
26
 
upstream_qemu-kvm: needs-triage
27
 
lucid_qemu-kvm: not-affected (code not present)
28
 
precise_qemu-kvm: released (1.0+noroms-0ubuntu14.13)
29
 
quantal_qemu-kvm: released (1.2.0+noroms-0ubuntu2.12.10.6)
30
 
raring_qemu-kvm: DNE
31
 
saucy_qemu-kvm: DNE
32
 
devel_qemu-kvm: DNE
33
 
 
34
 
Patches_qemu:
35
 
 upstream: http://article.gmane.org/gmane.comp.emulators.qemu/237163
36
 
 upstream: http://git.qemu.org/?p=qemu.git;a=commit;h=846424350b292f16b732b573273a5c1f195cd7a3
37
 
upstream_qemu: needs-triage
38
 
lucid_qemu: DNE
39
 
precise_qemu: DNE
40
 
quantal_qemu: DNE
41
 
raring_qemu: ignored (reached end-of-life)
42
 
saucy_qemu: released (1.5.0+dfsg-3ubuntu5.3)
43
 
devel_qemu: not-affected (1.7.0+dfsg-2ubuntu5)
44
 
 
45
 
Patches_xen-3.3:
46
 
upstream_xen-3.3: needs-triage
47
 
lucid_xen-3.3: not-affected (code not present)
48
 
precise_xen-3.3: DNE
49
 
quantal_xen-3.3: DNE
50
 
raring_xen-3.3: DNE
51
 
saucy_xen-3.3: DNE
52
 
devel_xen-3.3: DNE
53
 
 
54
 
Patches_xen:
55
 
upstream_xen: needs-triage
56
 
lucid_xen: DNE
57
 
precise_xen: not-affected (code not present)
58
 
quantal_xen: not-affected (code not present)
59
 
raring_xen: not-affected (code not present)
60
 
saucy_xen: not-affected (code not present)
61
 
devel_xen: not-affected (code not present)