CVE-2014-1447

NameCVE-2014-1447
DescriptionRace condition in the virNetServerClientStartKeepAlive function in ...
SourceCVE (at NVD; oss-sec, OSVDB, EDB, Red Hat, Ubuntu, Gentoo, SuSE, more)
ReferencesDSA-2846-1
Debian Bugs735676
Debian/oldstablepackage libvirt is vulnerable.
Debian/stablenot vulnerable.
Debian/testingnot vulnerable.
Debian/unstablenot vulnerable.

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
libvirt (PTS)squeeze, squeeze (security)0.8.3-5+squeeze5vulnerable
wheezy, wheezy (security)0.9.12.3-1fixed
jessie, sid1.2.1-1fixed

The information above is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
libvirtsource(unstable)1.2.1-1735676
libvirtsourcewheezy0.9.12.3-1DSA-2846-1

Notes

https://bugzilla.redhat.com/show_bug.cgi?id=1047577
http://libvirt.org/git/?p=libvirt.git;a=commit;h=066c8ef6c18bc1faf8b3e10787b39796a7a06cc0
http://libvirt.org/git/?p=libvirt.git;a=commit;h=173c2914734eb5c32df6d35a82bf503e12261bcf

Search for package or bug name: Reporting problems

Home - Testing Security Team - Debian Security - Source (SVN)