CVE-2017-10911

NameCVE-2017-10911
DescriptionThe make_response function in drivers/block/xen-blkback/blkback.c in t ...
SourceCVE (at NVD; CERT, ENISA, LWN, oss-sec, fulldisc, Debian ELTS, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)
ReferencesDLA-1099-1, DLA-1497-1, DSA-3920-1, DSA-3927-1, DSA-3945-1
Debian Bugs869706

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
linux (PTS)bullseye5.10.223-1fixed
bullseye (security)5.10.251-1fixed
bookworm6.1.159-1fixed
bookworm (security)6.1.164-1fixed
trixie6.12.73-1fixed
trixie (security)6.12.74-2fixed
forky6.19.13-1fixed
sid6.19.14-1fixed
qemu (PTS)bullseye1:5.2+dfsg-11+deb11u3fixed
bullseye (security)1:5.2+dfsg-11+deb11u5fixed
bookworm1:7.2+dfsg-7+deb12u18fixed
bookworm (security)1:7.2+dfsg-7+deb12u15fixed
trixie1:10.0.8+ds-0+deb13u1fixed
trixie (security)1:10.0.2+ds-2+deb13u1fixed
forky1:10.2.2+ds-1fixed
sid1:11.0.0+ds-1fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
linuxsourcewheezy3.2.93-1DLA-1099-1
linuxsourcejessie3.16.43-2+deb8u3DSA-3945-1
linuxsourcestretch4.9.30-2+deb9u3DSA-3927-1
linuxsource(unstable)4.11.11-1
qemusourcejessie1:2.1+dfsg-12+deb8u7DLA-1497-1
qemusourcestretch1:2.8+dfsg-6+deb9u1DSA-3920-1
qemusource(unstable)1:2.8+dfsg-7869706
qemu-kvmsource(unstable)(unfixed)

Notes

[wheezy] - qemu <no-dsa> (Wheezy's xen uses an embedded qemu copy)
[wheezy] - qemu-kvm <no-dsa> (Wheezy's xen uses an embedded qemu copy)
https://xenbits.xen.org/xsa/advisory-216.html

Search for package or bug name: Reporting problems