Source: qemu Version: 1:2.8+dfsg-4 Severity: normal Tags: security patch upstream
Hi, the following vulnerability was published for qemu. CVE-2017-8380[0]: scsi: megasas: out-of-bounds read in megasas_mmio_write If you fix the vulnerability please also make sure to include the CVE (Common Vulnerabilities & Exposures) id in your changelog entry. For further information see: [0] https://security-tracker.debian.org/tracker/CVE-2017-8380 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-8380 [1] https://lists.gnu.org/archive/html/qemu-devel/2017-04/msg04147.html [2] http://www.openwall.com/lists/oss-security/2017/05/03/3 Please adjust the affected versions in the BTS as needed. Regards, Salvatore