[Bugs] [Bug 13514] [CVE 21] dmidecode 3.3 CVEs found
bugzilla
bugzilla на rosalinux.ru
Пт Сен 8 13:46:18 MSK 2023
https://bugzilla.rosalinux.ru/show_bug.cgi?id=13514
ilfat <i.gaptrakhmanov на rosalinux.ru> changed:
What |Removed |Added
----------------------------------------------------------------------------
Status|CONFIRMED |RESOLVED
CC| |i.gaptrakhmanov на rosalinux.r
| |u
Resolution|--- |FIXED
Flags| |qa_verified?
--- Comment #1 from ilfat <i.gaptrakhmanov на rosalinux.ru> ---
********** QA ADVISORY **********
CVE closed by project update:
Updated from 3.3 to 3.5 and added upstream fix
Changelog:
Version 3.5 (Tue Mar 14 2023)
- Decode HPE OEM records 216, 224, 230, 238 and 242.
- Fortify entry point length checks.
- Add a --no-quirks option.
- Drop the CPUID exception list.
- Do not let --dump-bin overwrite an existing file.
- Ensure /dev/mem is a character device file.
- Bug fixes:
Fix segmentation fault in HPE OEM record 240
- Minor improvements:
Typo fixes
Write the whole dump file at once
Fix a build warning when USE_MMAP isn't set
Version 3.4 (Mon Jun 27 2022)
- Support for SMBIOS 3.4.0. This includes new memory device types, new
processor upgrades, new slot types and characteristics, decoding of memory
module extended speed, new system slot types, new processor characteristics
and new format of Processor ID.
- Support for SMBIOS 3.5.0. This includes new processor upgrades, BIOS
characteristics, new slot characteristics, new on-board device types, new
pointing device interface types, and a new record type (type 45 -
Firmware Inventory Information).
- Decode HPE OEM records 194, 199, 203, 236, 237, 238 and 240.
- Bug fixes:
Fix OEM vendor name matching
Fix ASCII filtering of strings
Fix crash with option -u
- Minor improvements:
Skip details of uninstalled memory modules
Don't display the raw CPU ID in quiet mode
Improve the formatting of the manual pages
https://abf.rosalinux.ru/build_lists/4681679 aarch64
https://abf.rosalinux.ru/build_lists/4681677 i686
https://abf.rosalinux.ru/build_lists/4681678 x86_64
https://abf.rosalinux.ru/build_lists/4681680 riscv64
https://abf.rosalinux.ru/build_lists/4681681 e2kv4
--
You are receiving this mail because:
You are the QA Contact for the bug.
You are the assignee for the bug.
----------- следущая часть -----------
Вложение в формате HTML было извлечено…
URL: <http://lists.rosalinux.ru/pipermail/bugs/attachments/20230908/4290fe64/attachment-0001.html>
Подробная информация о списке рассылки Bugs