From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from eggs.gnu.org ([2001:4830:134:3::10]:43089) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1gD9f8-0006a8-5F for qemu-devel@nongnu.org; Thu, 18 Oct 2018 10:52:41 -0400 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1gD9eq-0000NI-Ga for qemu-devel@nongnu.org; Thu, 18 Oct 2018 10:52:25 -0400 Received: from mx1.redhat.com ([209.132.183.28]:40930) by eggs.gnu.org with esmtps (TLS1.0:DHE_RSA_AES_256_CBC_SHA1:32) (Exim 4.71) (envelope-from ) id 1gD9ep-0000MG-Ov for qemu-devel@nongnu.org; Thu, 18 Oct 2018 10:52:16 -0400 From: =?UTF-8?q?Daniel=20P=2E=20Berrang=C3=A9?= Date: Thu, 18 Oct 2018 15:52:02 +0100 Message-Id: <20181018145203.11336-4-berrange@redhat.com> In-Reply-To: <20181018145203.11336-1-berrange@redhat.com> References: <20181018145203.11336-1-berrange@redhat.com> MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: quoted-printable Subject: [Qemu-devel] [web PATCH 3/4] Add vulnerability reports for 2018 List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , To: qemu-devel@nongnu.org Cc: Prasad J Pandit , Paolo Bonzini , Thomas Huth , =?UTF-8?q?Daniel=20P=2E=20Berrang=C3=A9?= Signed-off-by: Daniel P. Berrang=C3=A9 --- secnotice/2018/001.xml | 248 +++++++++++++++++++++++++++++++++++++++++ secnotice/2018/002.xml | 242 ++++++++++++++++++++++++++++++++++++++++ secnotice/2018/003.xml | 191 +++++++++++++++++++++++++++++++ secnotice/2018/004.xml | 243 ++++++++++++++++++++++++++++++++++++++++ secnotice/2018/005.xml | 225 +++++++++++++++++++++++++++++++++++++ secnotice/2018/006.xml | 247 ++++++++++++++++++++++++++++++++++++++++ secnotice/2018/007.xml | 201 +++++++++++++++++++++++++++++++++ secnotice/2018/008.xml | 225 +++++++++++++++++++++++++++++++++++++ secnotice/2018/009.xml | 225 +++++++++++++++++++++++++++++++++++++ secnotice/2018/010.xml | 223 ++++++++++++++++++++++++++++++++++++ secnotice/2018/011.xml | 199 +++++++++++++++++++++++++++++++++ 11 files changed, 2469 insertions(+) create mode 100644 secnotice/2018/001.xml create mode 100644 secnotice/2018/002.xml create mode 100644 secnotice/2018/003.xml create mode 100644 secnotice/2018/004.xml create mode 100644 secnotice/2018/005.xml create mode 100644 secnotice/2018/006.xml create mode 100644 secnotice/2018/007.xml create mode 100644 secnotice/2018/008.xml create mode 100644 secnotice/2018/009.xml create mode 100644 secnotice/2018/010.xml create mode 100644 secnotice/2018/011.xml diff --git a/secnotice/2018/001.xml b/secnotice/2018/001.xml new file mode 100644 index 0000000..3636545 --- /dev/null +++ b/secnotice/2018/001.xml @@ -0,0 +1,248 @@ + + 2018-001 + + Speculative store bypass + + + + + + + + + + + + + + + + Ken Johnson (Microsoft Security Response Center) + + + Jann Horn (Google Project Zero) + + + Daniel P. Berrang=C3=A9 + berrange@redhat.com + + + Konrad Rzeszutek Wilk + konrad.wilk@oracle.com + + + + + 20180312 + 20180521 + 20180626 + + + + + + + + + master + d19d1f965904a533998739698020ff4ee8a103da + 403503b162ffc33fb64cfefdf7b880acf41772cd + 4f50c1673a89b07f376ce5c42d22d79a79cd466d<= /change> + a764f3f7197f4d7ad8fe8424269933de912224cb + e409d9a158c77c650651e8118f6c86c8dc76eba6<= /change> + + v0.10.1 + v0.10.2 + v1.0 + v1.1.0 + v1.2.0 + v1.3.0 + v1.4.0 + v1.5.0 + v1.6.0 + v1.7.0 + v2.0.0 + v2.1.0 + v2.2.0 + v2.3.0 + v2.4.0 + v2.5.0 + v2.6.0 + v2.7.0 + v2.8.0 + v2.9.0 + v2.10.0 + v2.11.0 + v2.12.0 + v3.0.0 + 7ba1e61953f4592606e60b2e7507ff6a6faf8= 61a + + + stable-0.10 + v0.10.0 + v0.10.3 + v0.10.4 + v0.10.5 + v0.10.6 + 7ba1e61953f4592606e60b2e7507ff6a6faf8= 61a + + + stable-0.11 + v0.11.0 + v0.11.1 + 7ba1e61953f4592606e60b2e7507ff6a6faf8= 61a + + + stable-0.12 + v0.12.0 + v0.12.1 + v0.12.2 + v0.12.3 + v0.12.4 + v0.12.5 + 7ba1e61953f4592606e60b2e7507ff6a6faf8= 61a + + + stable-0.13 + v0.13.0 + 7ba1e61953f4592606e60b2e7507ff6a6faf8= 61a + + + stable-0.14 + v0.14.0 + v0.14.1 + 7ba1e61953f4592606e60b2e7507ff6a6faf8= 61a + + + stable-0.15 + v0.15.0 + v0.15.1 + 7ba1e61953f4592606e60b2e7507ff6a6faf8= 61a + + + stable-1.0 + v1.0.1 + 7ba1e61953f4592606e60b2e7507ff6a6faf8= 61a + + + stable-1.1 + v1.1.1 + v1.1.2 + 7ba1e61953f4592606e60b2e7507ff6a6faf8= 61a + + + stable-1.2 + v1.2.1 + v1.2.2 + 7ba1e61953f4592606e60b2e7507ff6a6faf8= 61a + + + stable-1.3 + v1.3.1 + 7ba1e61953f4592606e60b2e7507ff6a6faf8= 61a + + + stable-1.4 + v1.4.1 + v1.4.2 + 7ba1e61953f4592606e60b2e7507ff6a6faf8= 61a + + + stable-1.5 + v1.5.1 + v1.5.2 + v1.5.3 + 7ba1e61953f4592606e60b2e7507ff6a6faf8= 61a + + + stable-1.6 + v1.6.1 + v1.6.2 + 7ba1e61953f4592606e60b2e7507ff6a6faf8= 61a + + + stable-1.7 + v1.7.1 + v1.7.2 + 7ba1e61953f4592606e60b2e7507ff6a6faf8= 61a + + + stable-2.0 + v2.0.1 + v2.0.2 + 7ba1e61953f4592606e60b2e7507ff6a6faf8= 61a + + + stable-2.1 + v2.1.1 + v2.1.2 + v2.1.3 + 7ba1e61953f4592606e60b2e7507ff6a6faf8= 61a + + + stable-2.2 + v2.2.1 + 7ba1e61953f4592606e60b2e7507ff6a6faf8= 61a + + + stable-2.3 + v2.3.1 + 7ba1e61953f4592606e60b2e7507ff6a6faf8= 61a + + + stable-2.4 + v2.4.0.1 + v2.4.1 + 7ba1e61953f4592606e60b2e7507ff6a6faf8= 61a + + + stable-2.5 + v2.5.1 + v2.5.1.1 + 7ba1e61953f4592606e60b2e7507ff6a6faf8= 61a + + + stable-2.6 + v2.6.1 + v2.6.2 + 7ba1e61953f4592606e60b2e7507ff6a6faf8= 61a + + + stable-2.7 + v2.7.1 + 7ba1e61953f4592606e60b2e7507ff6a6faf8= 61a + + + stable-2.8 + v2.8.1 + v2.8.1.1 + 7ba1e61953f4592606e60b2e7507ff6a6faf8= 61a + + + stable-2.9 + v2.9.1 + 7ba1e61953f4592606e60b2e7507ff6a6faf8= 61a + + + stable-2.10 + v2.10.1 + v2.10.2 + 7ba1e61953f4592606e60b2e7507ff6a6faf8= 61a + + + stable-2.11 + v2.11.1 + v2.11.2 + 7ba1e61953f4592606e60b2e7507ff6a6faf8= 61a + + + stable-2.12 + v2.12.1 + 7ba1e61953f4592606e60b2e7507ff6a6faf8= 61a + + + + diff --git a/secnotice/2018/002.xml b/secnotice/2018/002.xml new file mode 100644 index 0000000..6422715 --- /dev/null +++ b/secnotice/2018/002.xml @@ -0,0 +1,242 @@ + + 2018-002 + + VGA out of bounds in vga_draw_text + + + + + + + + + + + + + + + + Jiang Xin + jiangxin1@huawei.com + + + Lin ZheCheng + linzhecheng@huawei.com + + + + + 20171228 + 20171225 + 20180125 + + + + + + + + + master + v2.12.0 + 191f59dc17396bb5a8da50f8c59b6e0a430711a4 + b3bbe959b5dc3bf07041946455cc8e8d562bfd1f<= /change> + v0.4.4 + v0.5.0 + v0.5.1 + v0.6.0 + v0.6.1 + v0.7.0 + v0.7.1 + v0.8.1 + v0.8.2 + v0.9.0 + v0.9.1 + v1.0 + v1.1.0 + v1.2.0 + v1.3.0 + v1.4.0 + v1.5.0 + v1.6.0 + v1.7.0 + v2.0.0 + v2.1.0 + v2.2.0 + v2.3.0 + v2.4.0 + v2.5.0 + v2.6.0 + v2.7.0 + v2.8.0 + v2.9.0 + v2.10.0 + v2.11.0 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-0.10 + v0.10.0 + v0.10.1 + v0.10.2 + v0.10.3 + v0.10.4 + v0.10.5 + v0.10.6 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-0.11 + v0.11.0 + v0.11.1 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-0.12 + v0.12.0 + v0.12.1 + v0.12.2 + v0.12.3 + v0.12.4 + v0.12.5 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-0.13 + v0.13.0 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-0.14 + v0.14.0 + v0.14.1 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-0.15 + v0.15.0 + v0.15.1 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-1.0 + v1.0.1 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-1.1 + v1.1.1 + v1.1.2 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-1.2 + v1.2.1 + v1.2.2 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-1.3 + v1.3.1 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-1.4 + v1.4.1 + v1.4.2 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-1.5 + v1.5.1 + v1.5.2 + v1.5.3 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-1.6 + v1.6.1 + v1.6.2 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-1.7 + v1.7.1 + v1.7.2 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-2.0 + v2.0.1 + v2.0.2 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-2.1 + v2.1.1 + v2.1.2 + v2.1.3 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-2.2 + v2.2.1 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-2.3 + v2.3.1 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-2.4 + v2.4.0.1 + v2.4.1 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-2.5 + v2.5.1 + v2.5.1.1 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-2.6 + v2.6.1 + v2.6.2 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-2.7 + v2.7.1 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-2.8 + v2.8.1 + v2.8.1.1 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-2.9 + v2.9.1 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-2.10 + v2.10.1 + v2.10.2 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-2.11 + v2.11.1 + v2.11.2 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + + diff --git a/secnotice/2018/003.xml b/secnotice/2018/003.xml new file mode 100644 index 0000000..9691805 --- /dev/null +++ b/secnotice/2018/003.xml @@ -0,0 +1,191 @@ + + 2018-003 + + Multiboot out of bounds loading kernel + + + + + + + + + + + + + + + + + + + + + + + + + + 20180221 + 20180227 + 20180328 + + + + + + + + + master + v2.12.0 + 2a8fcd119eb7c6bb3837fc3669eb1b2dfb31daf8 + 854a4436dd313eaeb51c275d00526d60437915d2<= /change> + v1.0 + v1.1.0 + v1.2.0 + v1.3.0 + v1.4.0 + v1.5.0 + v1.6.0 + v1.7.0 + v2.0.0 + v2.1.0 + v2.2.0 + v2.3.0 + v2.4.0 + v2.5.0 + v2.6.0 + v2.7.0 + v2.8.0 + v2.9.0 + v2.10.0 + v2.11.0 + 6b8273a1b97876950d91c228a420a851e10e1= 2bb + + + stable-1.0 + v1.0.1 + 6b8273a1b97876950d91c228a420a851e10e1= 2bb + + + stable-1.1 + v1.1.1 + v1.1.2 + 6b8273a1b97876950d91c228a420a851e10e1= 2bb + + + stable-1.2 + v1.2.1 + v1.2.2 + 6b8273a1b97876950d91c228a420a851e10e1= 2bb + + + stable-1.3 + v1.3.1 + 6b8273a1b97876950d91c228a420a851e10e1= 2bb + + + stable-1.4 + v1.4.1 + v1.4.2 + 6b8273a1b97876950d91c228a420a851e10e1= 2bb + + + stable-1.5 + v1.5.1 + v1.5.2 + v1.5.3 + 6b8273a1b97876950d91c228a420a851e10e1= 2bb + + + stable-1.6 + v1.6.1 + v1.6.2 + 6b8273a1b97876950d91c228a420a851e10e1= 2bb + + + stable-1.7 + v1.7.1 + v1.7.2 + 6b8273a1b97876950d91c228a420a851e10e1= 2bb + + + stable-2.0 + v2.0.1 + v2.0.2 + 6b8273a1b97876950d91c228a420a851e10e1= 2bb + + + stable-2.1 + v2.1.1 + v2.1.2 + v2.1.3 + 6b8273a1b97876950d91c228a420a851e10e1= 2bb + + + stable-2.2 + v2.2.1 + 6b8273a1b97876950d91c228a420a851e10e1= 2bb + + + stable-2.3 + v2.3.1 + 6b8273a1b97876950d91c228a420a851e10e1= 2bb + + + stable-2.4 + v2.4.0.1 + v2.4.1 + 6b8273a1b97876950d91c228a420a851e10e1= 2bb + + + stable-2.5 + v2.5.1 + v2.5.1.1 + 6b8273a1b97876950d91c228a420a851e10e1= 2bb + + + stable-2.6 + v2.6.1 + v2.6.2 + 6b8273a1b97876950d91c228a420a851e10e1= 2bb + + + stable-2.7 + v2.7.1 + 6b8273a1b97876950d91c228a420a851e10e1= 2bb + + + stable-2.8 + v2.8.1 + v2.8.1.1 + 6b8273a1b97876950d91c228a420a851e10e1= 2bb + + + stable-2.9 + v2.9.1 + 6b8273a1b97876950d91c228a420a851e10e1= 2bb + + + stable-2.10 + v2.10.1 + v2.10.2 + 6b8273a1b97876950d91c228a420a851e10e1= 2bb + + + stable-2.11 + v2.11.1 + v2.11.2 + 6b8273a1b97876950d91c228a420a851e10e1= 2bb + + + + diff --git a/secnotice/2018/004.xml b/secnotice/2018/004.xml new file mode 100644 index 0000000..83a43dc --- /dev/null +++ b/secnotice/2018/004.xml @@ -0,0 +1,243 @@ + + 2018-004 + + Cirrus out of bounds access updating VGA display + + + + + + + + + + + + + + + + Ross Lagerwall + ross.lagerwall@citrix.com + + + Gerd Hoffmann + kraxel@redhat.com + + + + + 20180228 + 20180308 + 20180312 + + + + + + + + + master + v2.12.0 + 7cdc61becd095b64a786b2625f321624e7111f3d + fb5fff15881ba7a002924b967eb211c002897983<= /change> + v0.4.4 + v0.5.0 + v0.5.1 + v0.6.0 + v0.6.1 + v0.7.0 + v0.7.1 + v0.8.1 + v0.8.2 + v0.9.0 + v0.9.1 + v1.0 + v1.1.0 + v1.2.0 + v1.3.0 + v1.4.0 + v1.5.0 + v1.6.0 + v1.7.0 + v2.0.0 + v2.1.0 + v2.2.0 + v2.3.0 + v2.4.0 + v2.5.0 + v2.6.0 + v2.7.0 + v2.8.0 + v2.9.0 + v2.10.0 + v2.11.0 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-0.10 + v0.10.0 + v0.10.1 + v0.10.2 + v0.10.3 + v0.10.4 + v0.10.5 + v0.10.6 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-0.11 + v0.11.0 + v0.11.1 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-0.12 + v0.12.0 + v0.12.1 + v0.12.2 + v0.12.3 + v0.12.4 + v0.12.5 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-0.13 + v0.13.0 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-0.14 + v0.14.0 + v0.14.1 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-0.15 + v0.15.0 + v0.15.1 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-1.0 + v1.0.1 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-1.1 + v1.1.1 + v1.1.2 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-1.2 + v1.2.1 + v1.2.2 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-1.3 + v1.3.1 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-1.4 + v1.4.1 + v1.4.2 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-1.5 + v1.5.1 + v1.5.2 + v1.5.3 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-1.6 + v1.6.1 + v1.6.2 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-1.7 + v1.7.1 + v1.7.2 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-2.0 + v2.0.1 + v2.0.2 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-2.1 + v2.1.1 + v2.1.2 + v2.1.3 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-2.2 + v2.2.1 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-2.3 + v2.3.1 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-2.4 + v2.4.0.1 + v2.4.1 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-2.5 + v2.5.1 + v2.5.1.1 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-2.6 + v2.6.1 + v2.6.2 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-2.7 + v2.7.1 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-2.8 + v2.8.1 + v2.8.1.1 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-2.9 + v2.9.1 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-2.10 + v2.10.1 + v2.10.2 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + stable-2.11 + v2.11.1 + v2.11.2 + e89f66eca974d2a9d5d89271c6041daefdab2= 105 + + + + diff --git a/secnotice/2018/005.xml b/secnotice/2018/005.xml new file mode 100644 index 0000000..55a2374 --- /dev/null +++ b/secnotice/2018/005.xml @@ -0,0 +1,225 @@ + + 2018-005 + + ne2000 integer overflow in buffer access + + + + + + + + + + + + + + + + Daniel Shapira + daniel@twistlock.com + + + Jason Wang + jasonwang@redhat.com + + + + + 20180522 + 20180926 + + + + + + + + + + master + + 0caf499e2f26ae305a16ae2c4e7a2f295ddf64d1 + + v1.0 + v1.1.0 + v1.2.0 + v1.3.0 + v1.4.0 + v1.5.0 + v1.6.0 + v1.7.0 + v2.0.0 + v2.1.0 + v2.2.0 + v2.3.0 + v2.4.0 + v2.5.0 + v2.6.0 + v2.7.0 + v2.8.0 + v2.9.0 + v2.10.0 + v2.11.0 + v2.12.0 + v3.0.0 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-0.11 + v0.11.0 + v0.11.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-0.12 + v0.12.0 + v0.12.1 + v0.12.2 + v0.12.3 + v0.12.4 + v0.12.5 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-0.13 + v0.13.0 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-0.14 + v0.14.0 + v0.14.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-0.15 + v0.15.0 + v0.15.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-1.0 + v1.0.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-1.1 + v1.1.1 + v1.1.2 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-1.2 + v1.2.1 + v1.2.2 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-1.3 + v1.3.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-1.4 + v1.4.1 + v1.4.2 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-1.5 + v1.5.1 + v1.5.2 + v1.5.3 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-1.6 + v1.6.1 + v1.6.2 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-1.7 + v1.7.1 + v1.7.2 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.0 + v2.0.1 + v2.0.2 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.1 + v2.1.1 + v2.1.2 + v2.1.3 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.2 + v2.2.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.3 + v2.3.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.4 + v2.4.0.1 + v2.4.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.5 + v2.5.1 + v2.5.1.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.6 + v2.6.1 + v2.6.2 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.7 + v2.7.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.8 + v2.8.1 + v2.8.1.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.9 + v2.9.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.10 + v2.10.1 + v2.10.2 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.11 + v2.11.1 + v2.11.2 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.12 + v2.12.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + + diff --git a/secnotice/2018/006.xml b/secnotice/2018/006.xml new file mode 100644 index 0000000..7a7908c --- /dev/null +++ b/secnotice/2018/006.xml @@ -0,0 +1,247 @@ + + 2018-006 + + slirp buffer overflow assembling fragmented datastream + + + + + + + + + + + + + + + + ZDI Disclosures + zdi-disclosures@trendmicro.com + + + Prasad J Pandit + pjp@fedoraproject.org + + + + + 20180427 + 20180605 + 20180608 + + + + + + + + + master + v3.0.0 + 864036e251f54c99d31df124aad7f34f01f5344c + bac5ba3dc5da706f52c149fa6c0bd1dc96899bec<= /change> + v0.6.0 + v0.6.1 + v0.7.0 + v0.7.1 + v0.8.1 + v0.8.2 + v0.9.0 + v0.9.1 + v1.0 + v1.1.0 + v1.2.0 + v1.3.0 + v1.4.0 + v1.5.0 + v1.6.0 + v1.7.0 + v2.0.0 + v2.1.0 + v2.2.0 + v2.3.0 + v2.4.0 + v2.5.0 + v2.6.0 + v2.7.0 + v2.8.0 + v2.9.0 + v2.10.0 + v2.11.0 + v2.12.0 + f0cbd3ec9f4a3de1a9ef94deda09704543889= f44 + + + stable-0.10 + v0.10.0 + v0.10.1 + v0.10.2 + v0.10.3 + v0.10.4 + v0.10.5 + v0.10.6 + f0cbd3ec9f4a3de1a9ef94deda09704543889= f44 + + + stable-0.11 + v0.11.0 + v0.11.1 + f0cbd3ec9f4a3de1a9ef94deda09704543889= f44 + + + stable-0.12 + v0.12.0 + v0.12.1 + v0.12.2 + v0.12.3 + v0.12.4 + v0.12.5 + f0cbd3ec9f4a3de1a9ef94deda09704543889= f44 + + + stable-0.13 + v0.13.0 + f0cbd3ec9f4a3de1a9ef94deda09704543889= f44 + + + stable-0.14 + v0.14.0 + v0.14.1 + f0cbd3ec9f4a3de1a9ef94deda09704543889= f44 + + + stable-0.15 + v0.15.0 + v0.15.1 + f0cbd3ec9f4a3de1a9ef94deda09704543889= f44 + + + stable-1.0 + v1.0.1 + f0cbd3ec9f4a3de1a9ef94deda09704543889= f44 + + + stable-1.1 + v1.1.1 + v1.1.2 + f0cbd3ec9f4a3de1a9ef94deda09704543889= f44 + + + stable-1.2 + v1.2.1 + v1.2.2 + f0cbd3ec9f4a3de1a9ef94deda09704543889= f44 + + + stable-1.3 + v1.3.1 + f0cbd3ec9f4a3de1a9ef94deda09704543889= f44 + + + stable-1.4 + v1.4.1 + v1.4.2 + f0cbd3ec9f4a3de1a9ef94deda09704543889= f44 + + + stable-1.5 + v1.5.1 + v1.5.2 + v1.5.3 + f0cbd3ec9f4a3de1a9ef94deda09704543889= f44 + + + stable-1.6 + v1.6.1 + v1.6.2 + f0cbd3ec9f4a3de1a9ef94deda09704543889= f44 + + + stable-1.7 + v1.7.1 + v1.7.2 + f0cbd3ec9f4a3de1a9ef94deda09704543889= f44 + + + stable-2.0 + v2.0.1 + v2.0.2 + f0cbd3ec9f4a3de1a9ef94deda09704543889= f44 + + + stable-2.1 + v2.1.1 + v2.1.2 + v2.1.3 + f0cbd3ec9f4a3de1a9ef94deda09704543889= f44 + + + stable-2.2 + v2.2.1 + f0cbd3ec9f4a3de1a9ef94deda09704543889= f44 + + + stable-2.3 + v2.3.1 + f0cbd3ec9f4a3de1a9ef94deda09704543889= f44 + + + stable-2.4 + v2.4.0.1 + v2.4.1 + f0cbd3ec9f4a3de1a9ef94deda09704543889= f44 + + + stable-2.5 + v2.5.1 + v2.5.1.1 + f0cbd3ec9f4a3de1a9ef94deda09704543889= f44 + + + stable-2.6 + v2.6.1 + v2.6.2 + f0cbd3ec9f4a3de1a9ef94deda09704543889= f44 + + + stable-2.7 + v2.7.1 + f0cbd3ec9f4a3de1a9ef94deda09704543889= f44 + + + stable-2.8 + v2.8.1 + v2.8.1.1 + f0cbd3ec9f4a3de1a9ef94deda09704543889= f44 + + + stable-2.9 + v2.9.1 + f0cbd3ec9f4a3de1a9ef94deda09704543889= f44 + + + stable-2.10 + v2.10.1 + v2.10.2 + f0cbd3ec9f4a3de1a9ef94deda09704543889= f44 + + + stable-2.11 + v2.11.1 + v2.11.2 + f0cbd3ec9f4a3de1a9ef94deda09704543889= f44 + + + stable-2.12 + v2.12.1 + f0cbd3ec9f4a3de1a9ef94deda09704543889= f44 + + + + diff --git a/secnotice/2018/007.xml b/secnotice/2018/007.xml new file mode 100644 index 0000000..4de353b --- /dev/null +++ b/secnotice/2018/007.xml @@ -0,0 +1,201 @@ + + 2018-007 + + qemu-guest-agent integer overflow reading guest file + + + + + + + + + + + + + + + + Fakhri Zulkifli + mohdfakhrizulkifli@gmail.com + + + Prasad J Pandit + pjp@fedoraproject.org + + + + + 20180622 + 20180622 + 20180705 + + + + + + + + + master + v3.0.0 + 141b197408ab398c4f474ac1a728ab316e921f2b + 8beb8cc64da2868acec270e4becb9fea8f9093dc<= /change> + v1.0 + v1.1.0 + v1.2.0 + v1.3.0 + v1.4.0 + v1.5.0 + v1.6.0 + v1.7.0 + v2.0.0 + v2.1.0 + v2.2.0 + v2.3.0 + v2.4.0 + v2.5.0 + v2.6.0 + v2.7.0 + v2.8.0 + v2.9.0 + v2.10.0 + v2.11.0 + v2.12.0 + e3d4d25206a13ca48936e4357a53591997ce6= d57 + + + stable-0.15 + v0.15.0 + v0.15.1 + e3d4d25206a13ca48936e4357a53591997ce6= d57 + + + stable-1.0 + v1.0.1 + e3d4d25206a13ca48936e4357a53591997ce6= d57 + + + stable-1.1 + v1.1.1 + v1.1.2 + e3d4d25206a13ca48936e4357a53591997ce6= d57 + + + stable-1.2 + v1.2.1 + v1.2.2 + e3d4d25206a13ca48936e4357a53591997ce6= d57 + + + stable-1.3 + v1.3.1 + e3d4d25206a13ca48936e4357a53591997ce6= d57 + + + stable-1.4 + v1.4.1 + v1.4.2 + e3d4d25206a13ca48936e4357a53591997ce6= d57 + + + stable-1.5 + v1.5.1 + v1.5.2 + v1.5.3 + e3d4d25206a13ca48936e4357a53591997ce6= d57 + + + stable-1.6 + v1.6.1 + v1.6.2 + e3d4d25206a13ca48936e4357a53591997ce6= d57 + + + stable-1.7 + v1.7.1 + v1.7.2 + e3d4d25206a13ca48936e4357a53591997ce6= d57 + + + stable-2.0 + v2.0.1 + v2.0.2 + e3d4d25206a13ca48936e4357a53591997ce6= d57 + + + stable-2.1 + v2.1.1 + v2.1.2 + v2.1.3 + e3d4d25206a13ca48936e4357a53591997ce6= d57 + + + stable-2.2 + v2.2.1 + e3d4d25206a13ca48936e4357a53591997ce6= d57 + + + stable-2.3 + v2.3.1 + e3d4d25206a13ca48936e4357a53591997ce6= d57 + + + stable-2.4 + v2.4.0.1 + v2.4.1 + e3d4d25206a13ca48936e4357a53591997ce6= d57 + + + stable-2.5 + v2.5.1 + v2.5.1.1 + e3d4d25206a13ca48936e4357a53591997ce6= d57 + + + stable-2.6 + v2.6.1 + v2.6.2 + e3d4d25206a13ca48936e4357a53591997ce6= d57 + + + stable-2.7 + v2.7.1 + e3d4d25206a13ca48936e4357a53591997ce6= d57 + + + stable-2.8 + v2.8.1 + v2.8.1.1 + e3d4d25206a13ca48936e4357a53591997ce6= d57 + + + stable-2.9 + v2.9.1 + e3d4d25206a13ca48936e4357a53591997ce6= d57 + + + stable-2.10 + v2.10.1 + v2.10.2 + e3d4d25206a13ca48936e4357a53591997ce6= d57 + + + stable-2.11 + v2.11.1 + v2.11.2 + e3d4d25206a13ca48936e4357a53591997ce6= d57 + + + stable-2.12 + v2.12.1 + e3d4d25206a13ca48936e4357a53591997ce6= d57 + + + + diff --git a/secnotice/2018/008.xml b/secnotice/2018/008.xml new file mode 100644 index 0000000..5cf8d5a --- /dev/null +++ b/secnotice/2018/008.xml @@ -0,0 +1,225 @@ + + 2018-008 + + rtl8139 integer overflow accessing buffer + + + + + + + + + + + + + + + + Daniel Shapira + daniel@twistlock.com + + + Jason Wang + jasonwang@redhat.com + + + + + 20180521 + 20180926 + + + + + + + + + + master + + 784b912f722bc86126b290c00de72c1bc8d34950 + + v1.0 + v1.1.0 + v1.2.0 + v1.3.0 + v1.4.0 + v1.5.0 + v1.6.0 + v1.7.0 + v2.0.0 + v2.1.0 + v2.2.0 + v2.3.0 + v2.4.0 + v2.5.0 + v2.6.0 + v2.7.0 + v2.8.0 + v2.9.0 + v2.10.0 + v2.11.0 + v2.12.0 + v3.0.0 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-0.11 + v0.11.0 + v0.11.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-0.12 + v0.12.0 + v0.12.1 + v0.12.2 + v0.12.3 + v0.12.4 + v0.12.5 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-0.13 + v0.13.0 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-0.14 + v0.14.0 + v0.14.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-0.15 + v0.15.0 + v0.15.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-1.0 + v1.0.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-1.1 + v1.1.1 + v1.1.2 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-1.2 + v1.2.1 + v1.2.2 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-1.3 + v1.3.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-1.4 + v1.4.1 + v1.4.2 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-1.5 + v1.5.1 + v1.5.2 + v1.5.3 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-1.6 + v1.6.1 + v1.6.2 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-1.7 + v1.7.1 + v1.7.2 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.0 + v2.0.1 + v2.0.2 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.1 + v2.1.1 + v2.1.2 + v2.1.3 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.2 + v2.2.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.3 + v2.3.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.4 + v2.4.0.1 + v2.4.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.5 + v2.5.1 + v2.5.1.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.6 + v2.6.1 + v2.6.2 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.7 + v2.7.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.8 + v2.8.1 + v2.8.1.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.9 + v2.9.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.10 + v2.10.1 + v2.10.2 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.11 + v2.11.1 + v2.11.2 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.12 + v2.12.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + + diff --git a/secnotice/2018/009.xml b/secnotice/2018/009.xml new file mode 100644 index 0000000..6ad782f --- /dev/null +++ b/secnotice/2018/009.xml @@ -0,0 +1,225 @@ + + 2018-009 + + pcnet integer overflow accessing buffer + + + + + + + + + + + + + + + + Daniel Shapira + daniel@twistlock.com + + + Jason Wang + jasonwang@redhat.com + + + + + 20180521 + 20180926 + + + + + + + + + + master + + 2fc84f6b39577ccd6fd57bdd270902f5098c3a88 + + v1.0 + v1.1.0 + v1.2.0 + v1.3.0 + v1.4.0 + v1.5.0 + v1.6.0 + v1.7.0 + v2.0.0 + v2.1.0 + v2.2.0 + v2.3.0 + v2.4.0 + v2.5.0 + v2.6.0 + v2.7.0 + v2.8.0 + v2.9.0 + v2.10.0 + v2.11.0 + v2.12.0 + v3.0.0 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-0.11 + v0.11.0 + v0.11.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-0.12 + v0.12.0 + v0.12.1 + v0.12.2 + v0.12.3 + v0.12.4 + v0.12.5 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-0.13 + v0.13.0 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-0.14 + v0.14.0 + v0.14.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-0.15 + v0.15.0 + v0.15.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-1.0 + v1.0.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-1.1 + v1.1.1 + v1.1.2 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-1.2 + v1.2.1 + v1.2.2 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-1.3 + v1.3.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-1.4 + v1.4.1 + v1.4.2 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-1.5 + v1.5.1 + v1.5.2 + v1.5.3 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-1.6 + v1.6.1 + v1.6.2 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-1.7 + v1.7.1 + v1.7.2 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.0 + v2.0.1 + v2.0.2 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.1 + v2.1.1 + v2.1.2 + v2.1.3 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.2 + v2.2.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.3 + v2.3.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.4 + v2.4.0.1 + v2.4.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.5 + v2.5.1 + v2.5.1.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.6 + v2.6.1 + v2.6.2 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.7 + v2.7.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.8 + v2.8.1 + v2.8.1.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.9 + v2.9.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.10 + v2.10.1 + v2.10.2 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.11 + v2.11.1 + v2.11.2 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + stable-2.12 + v2.12.1 + 4f1c942b7fb29864ad86cb3af9076da38f38f= 74e + + + + diff --git a/secnotice/2018/010.xml b/secnotice/2018/010.xml new file mode 100644 index 0000000..23719d4 --- /dev/null +++ b/secnotice/2018/010.xml @@ -0,0 +1,223 @@ + + 2018-010 + + Ignore network packet sizes larger than INT_MAX + + + + + + + + + + + + + + + + Daniel Shapira + daniel@twistlock.com + + + Jason Wang + jasonwang@redhat.com + + + + + 20180521 + 20180926 + + + + + + + + + + master + 9a6ecb308b1c668fff84d56a356dbd595c51d= 556 + + + master + + 36772a6341af7c0f100b8e55a1e779db5fe818da + + v1.0 + v1.1.0 + v1.2.0 + v1.3.0 + v1.4.0 + v1.5.0 + v1.6.0 + v1.7.0 + v2.0.0 + v2.1.0 + v2.2.0 + v2.3.0 + v2.4.0 + v2.5.0 + v2.6.0 + v2.7.0 + v2.8.0 + v2.9.0 + v2.10.0 + v2.11.0 + v2.12.0 + v3.0.0 + 9a6ecb308b1c668fff84d56a356dbd595c51d= 556 + + + stable-0.12 + v0.12.0 + v0.12.1 + v0.12.2 + v0.12.3 + v0.12.4 + v0.12.5 + 9a6ecb308b1c668fff84d56a356dbd595c51d= 556 + + + stable-0.13 + v0.13.0 + 9a6ecb308b1c668fff84d56a356dbd595c51d= 556 + + + stable-0.14 + v0.14.0 + v0.14.1 + 9a6ecb308b1c668fff84d56a356dbd595c51d= 556 + + + stable-0.15 + v0.15.0 + v0.15.1 + 9a6ecb308b1c668fff84d56a356dbd595c51d= 556 + + + stable-1.0 + v1.0.1 + 9a6ecb308b1c668fff84d56a356dbd595c51d= 556 + + + stable-1.1 + v1.1.1 + v1.1.2 + 9a6ecb308b1c668fff84d56a356dbd595c51d= 556 + + + stable-1.2 + v1.2.1 + v1.2.2 + 9a6ecb308b1c668fff84d56a356dbd595c51d= 556 + + + stable-1.3 + v1.3.1 + 9a6ecb308b1c668fff84d56a356dbd595c51d= 556 + + + stable-1.4 + v1.4.1 + v1.4.2 + 9a6ecb308b1c668fff84d56a356dbd595c51d= 556 + + + stable-1.5 + v1.5.1 + v1.5.2 + v1.5.3 + 9a6ecb308b1c668fff84d56a356dbd595c51d= 556 + + + stable-1.6 + v1.6.1 + v1.6.2 + 9a6ecb308b1c668fff84d56a356dbd595c51d= 556 + + + stable-1.7 + v1.7.1 + v1.7.2 + 9a6ecb308b1c668fff84d56a356dbd595c51d= 556 + + + stable-2.0 + v2.0.1 + v2.0.2 + 9a6ecb308b1c668fff84d56a356dbd595c51d= 556 + + + stable-2.1 + v2.1.1 + v2.1.2 + v2.1.3 + 9a6ecb308b1c668fff84d56a356dbd595c51d= 556 + + + stable-2.2 + v2.2.1 + 9a6ecb308b1c668fff84d56a356dbd595c51d= 556 + + + stable-2.3 + v2.3.1 + 9a6ecb308b1c668fff84d56a356dbd595c51d= 556 + + + stable-2.4 + v2.4.0.1 + v2.4.1 + 9a6ecb308b1c668fff84d56a356dbd595c51d= 556 + + + stable-2.5 + v2.5.1 + v2.5.1.1 + 9a6ecb308b1c668fff84d56a356dbd595c51d= 556 + + + stable-2.6 + v2.6.1 + v2.6.2 + 9a6ecb308b1c668fff84d56a356dbd595c51d= 556 + + + stable-2.7 + v2.7.1 + 9a6ecb308b1c668fff84d56a356dbd595c51d= 556 + + + stable-2.8 + v2.8.1 + v2.8.1.1 + 9a6ecb308b1c668fff84d56a356dbd595c51d= 556 + + + stable-2.9 + v2.9.1 + 9a6ecb308b1c668fff84d56a356dbd595c51d= 556 + + + stable-2.10 + v2.10.1 + v2.10.2 + 9a6ecb308b1c668fff84d56a356dbd595c51d= 556 + + + stable-2.11 + v2.11.1 + v2.11.2 + 9a6ecb308b1c668fff84d56a356dbd595c51d= 556 + + + stable-2.12 + v2.12.1 + 9a6ecb308b1c668fff84d56a356dbd595c51d= 556 + + + + diff --git a/secnotice/2018/011.xml b/secnotice/2018/011.xml new file mode 100644 index 0000000..811df0d --- /dev/null +++ b/secnotice/2018/011.xml @@ -0,0 +1,199 @@ + + 2018-011 + + CCID integer overflow reading data + + + + + + + + + + + + + + + + Arash Tohidi + tohidi.arash@gmail.com + + + Philippe Mathieu-Daud=C3=A9 + philmd@redhat.com + + + + + 20180726 + 20181011 + + + + + + + + + + master + + + + v1.0 + v1.1.0 + v1.2.0 + v1.3.0 + v1.4.0 + v1.5.0 + v1.6.0 + v1.7.0 + v2.0.0 + v2.1.0 + v2.2.0 + v2.3.0 + v2.4.0 + v2.5.0 + v2.6.0 + v2.7.0 + v2.8.0 + v2.9.0 + v2.10.0 + v2.11.0 + v2.12.0 + v3.0.0 + edbb21363fbfe40e050f583df921484cbc31c= 79d + + + stable-0.15 + v0.15.0 + v0.15.1 + edbb21363fbfe40e050f583df921484cbc31c= 79d + + + stable-1.0 + v1.0.1 + edbb21363fbfe40e050f583df921484cbc31c= 79d + + + stable-1.1 + v1.1.1 + v1.1.2 + edbb21363fbfe40e050f583df921484cbc31c= 79d + + + stable-1.2 + v1.2.1 + v1.2.2 + edbb21363fbfe40e050f583df921484cbc31c= 79d + + + stable-1.3 + v1.3.1 + edbb21363fbfe40e050f583df921484cbc31c= 79d + + + stable-1.4 + v1.4.1 + v1.4.2 + edbb21363fbfe40e050f583df921484cbc31c= 79d + + + stable-1.5 + v1.5.1 + v1.5.2 + v1.5.3 + edbb21363fbfe40e050f583df921484cbc31c= 79d + + + stable-1.6 + v1.6.1 + v1.6.2 + edbb21363fbfe40e050f583df921484cbc31c= 79d + + + stable-1.7 + v1.7.1 + v1.7.2 + edbb21363fbfe40e050f583df921484cbc31c= 79d + + + stable-2.0 + v2.0.1 + v2.0.2 + edbb21363fbfe40e050f583df921484cbc31c= 79d + + + stable-2.1 + v2.1.1 + v2.1.2 + v2.1.3 + edbb21363fbfe40e050f583df921484cbc31c= 79d + + + stable-2.2 + v2.2.1 + edbb21363fbfe40e050f583df921484cbc31c= 79d + + + stable-2.3 + v2.3.1 + edbb21363fbfe40e050f583df921484cbc31c= 79d + + + stable-2.4 + v2.4.0.1 + v2.4.1 + edbb21363fbfe40e050f583df921484cbc31c= 79d + + + stable-2.5 + v2.5.1 + v2.5.1.1 + edbb21363fbfe40e050f583df921484cbc31c= 79d + + + stable-2.6 + v2.6.1 + v2.6.2 + edbb21363fbfe40e050f583df921484cbc31c= 79d + + + stable-2.7 + v2.7.1 + edbb21363fbfe40e050f583df921484cbc31c= 79d + + + stable-2.8 + v2.8.1 + v2.8.1.1 + edbb21363fbfe40e050f583df921484cbc31c= 79d + + + stable-2.9 + v2.9.1 + edbb21363fbfe40e050f583df921484cbc31c= 79d + + + stable-2.10 + v2.10.1 + v2.10.2 + edbb21363fbfe40e050f583df921484cbc31c= 79d + + + stable-2.11 + v2.11.1 + v2.11.2 + edbb21363fbfe40e050f583df921484cbc31c= 79d + + + stable-2.12 + v2.12.1 + edbb21363fbfe40e050f583df921484cbc31c= 79d + + + + --=20 2.17.2