Your message dated Tue, 15 Apr 2014 19:47:17 +0000
with message-id <[email protected]>
and subject line Bug#741602: fixed in virtualbox 4.1.18-dfsg-2+deb7u3
has caused the Debian Bug report #741602,
regarding virtualbox: CVE-2014-0981 CVE-2014-0982 CVE-2014-0983
to be marked as done.
This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.
(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact [email protected]
immediately.)
--
741602: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=741602
Debian Bug Tracking System
Contact [email protected] with problems
--- Begin Message ---
Package: virtualbox
Severity: grave
Tags: security
Justification: user security hole
Hi,
please see
http://www.coresecurity.com/advisories/oracle-virtualbox-3d-acceleration-multiple-memory-corruption-vulnerabilities
Cheers,
Moritz
--- End Message ---
--- Begin Message ---
Source: virtualbox
Source-Version: 4.1.18-dfsg-2+deb7u3
We believe that the bug you reported is fixed in the latest version of
virtualbox, which is due to be installed in the Debian FTP archive.
A summary of the changes between this version and the previous one is
attached.
Thank you for reporting the bug, which will now be closed. If you
have further comments please address them to [email protected],
and the maintainer will reopen the bug report if appropriate.
Debian distribution maintenance software
pp.
Felix Geyer <[email protected]> (supplier of updated virtualbox package)
(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [email protected])
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256
Format: 1.8
Date: Mon, 14 Apr 2014 11:19:01 +0200
Source: virtualbox
Binary: virtualbox-qt virtualbox virtualbox-dbg virtualbox-dkms
virtualbox-source virtualbox-guest-dkms virtualbox-guest-source
virtualbox-guest-x11 virtualbox-guest-utils virtualbox-fuse virtualbox-ose-qt
virtualbox-ose virtualbox-ose-dbg virtualbox-ose-dkms virtualbox-ose-source
virtualbox-ose-guest-dkms virtualbox-ose-guest-source virtualbox-ose-guest-x11
virtualbox-ose-guest-utils virtualbox-ose-fuse
Architecture: source amd64 all
Version: 4.1.18-dfsg-2+deb7u3
Distribution: wheezy-security
Urgency: high
Maintainer: Debian Virtualbox Team
<[email protected]>
Changed-By: Felix Geyer <[email protected]>
Description:
virtualbox - x86 virtualization solution - base binaries
virtualbox-dbg - x86 virtualization solution - debugging symbols
virtualbox-dkms - x86 virtualization solution - kernel module sources for dkms
virtualbox-fuse - x86 virtualization solution - virtual filesystem
virtualbox-guest-dkms - x86 virtualization solution - guest addition module
source for dk
virtualbox-guest-source - x86 virtualization solution - guest addition module
source
virtualbox-guest-utils - x86 virtualization solution - non-X11 guest utilities
virtualbox-guest-x11 - x86 virtualization solution - X11 guest utilities
virtualbox-ose - transitional package for virtualbox
virtualbox-ose-dbg - transitional package for virtualbox-dbg
virtualbox-ose-dkms - transitional package for virtualbox-dkms
virtualbox-ose-fuse - transitional package for virtualbox-fuse
virtualbox-ose-guest-dkms - transitional package for virtualbox-guest-dkms
virtualbox-ose-guest-source - transitional package for virtualbox-guest-source
virtualbox-ose-guest-utils - transitional package for virtualbox-guest-utils
virtualbox-ose-guest-x11 - transitional package for virtualbox-guest-x11
virtualbox-ose-qt - transitional package for virtualbox-qt
virtualbox-ose-source - transitional package for virtualbox-source
virtualbox-qt - x86 virtualization solution - Qt based user interface
virtualbox-source - x86 virtualization solution - kernel module source
Closes: 741602
Changes:
virtualbox (4.1.18-dfsg-2+deb7u3) wheezy-security; urgency=high
.
* Fix memory corruption vulnerabilities in 3D acceleration. (Closes: #741602)
- CVE-2014-0981, CVE-2014-0983
- Backport fixes from version 4.1.32 in debian/patches/CVE-2014-0981.patch
and debian/patches/CVE-2014-0983.patch
Checksums-Sha1:
078e704bf367de5a423492a075b1ca406548bf71 4113
virtualbox_4.1.18-dfsg-2+deb7u3.dsc
571f1cd7d7d03cec3d1858284bdf7e58bb546e45 102004
virtualbox_4.1.18-dfsg-2+deb7u3.debian.tar.gz
e1efde850280484e326ff40383d09c96aa4f32b5 4226390
virtualbox-qt_4.1.18-dfsg-2+deb7u3_amd64.deb
1c98f8291cdb7ab57fcab95dbacea6b4aada3e88 12757352
virtualbox_4.1.18-dfsg-2+deb7u3_amd64.deb
417bf423abb5c41bdaceeaf6976f45c3b4a09c25 51509388
virtualbox-dbg_4.1.18-dfsg-2+deb7u3_amd64.deb
d4396684fa75afa5a7636583d598877a3e870cac 497400
virtualbox-dkms_4.1.18-dfsg-2+deb7u3_all.deb
84db0b06a770f4d8933dd6fce064d65e4ade49ff 597366
virtualbox-source_4.1.18-dfsg-2+deb7u3_all.deb
13843889c40ece6bafebe80c6f1920251030904c 435482
virtualbox-guest-dkms_4.1.18-dfsg-2+deb7u3_all.deb
ea2d24f02586f5c7ffa90f1ad3bcb17798de2482 539050
virtualbox-guest-source_4.1.18-dfsg-2+deb7u3_all.deb
f25fb540576d7b81c23ea1961954670932144253 851030
virtualbox-guest-x11_4.1.18-dfsg-2+deb7u3_amd64.deb
09878914ce56595270b3f700a7aef8bb49390c93 306702
virtualbox-guest-utils_4.1.18-dfsg-2+deb7u3_amd64.deb
3ff2dfe169834694867aacfcbe68407e3d30a5be 43750
virtualbox-fuse_4.1.18-dfsg-2+deb7u3_amd64.deb
fdb68be961a1dbf98dd1d2e76888a930fa044fac 40930
virtualbox-ose-qt_4.1.18-dfsg-2+deb7u3_all.deb
3e4c922b8ac07b5b15d3487a176d71efddf29fbf 40924
virtualbox-ose_4.1.18-dfsg-2+deb7u3_all.deb
889157beef71fbf29404e815816d01e1425f9ec2 40930
virtualbox-ose-dbg_4.1.18-dfsg-2+deb7u3_all.deb
cb65d222c117aebb7c7ed9bfec0d3229cdece7ce 40932
virtualbox-ose-dkms_4.1.18-dfsg-2+deb7u3_all.deb
1c3d016bbfcd7aef18a0557042158ce191fdeb34 40940
virtualbox-ose-source_4.1.18-dfsg-2+deb7u3_all.deb
c762c478933125e5d60e612d206f954a6f0286b9 40946
virtualbox-ose-guest-dkms_4.1.18-dfsg-2+deb7u3_all.deb
c9b6a99b412d8c61e2ec2fcc93d6af772cd889e5 40948
virtualbox-ose-guest-source_4.1.18-dfsg-2+deb7u3_all.deb
4a4503b2317057a5e85de777ff6b3c65037521c5 40940
virtualbox-ose-guest-x11_4.1.18-dfsg-2+deb7u3_all.deb
0ace7bbd0af0fb9c1a1a36c14e2c5723f2c3c2e3 40944
virtualbox-ose-guest-utils_4.1.18-dfsg-2+deb7u3_all.deb
29d5f49b87acccd3ccc4b410116d3a3c957d8917 40934
virtualbox-ose-fuse_4.1.18-dfsg-2+deb7u3_all.deb
Checksums-Sha256:
1d4db2a4673a7d8e30ea58ae84dd59b46cb798a9e8bed21c9695109a09b9bb38 4113
virtualbox_4.1.18-dfsg-2+deb7u3.dsc
42313af2dbdb9270ed2a12915c8b2640585708707a5d4e8aa1eaf4090b5c1d06 102004
virtualbox_4.1.18-dfsg-2+deb7u3.debian.tar.gz
6db8cdbcfd205129d2ba9a047123a83beab1447031491045598c18b99e570185 4226390
virtualbox-qt_4.1.18-dfsg-2+deb7u3_amd64.deb
30ec06ac2ee0140585dd5130537d1f971355bfe68ba0a0559173292e423130f9 12757352
virtualbox_4.1.18-dfsg-2+deb7u3_amd64.deb
cae21ee749426a966a955e65c17166b21a2d5631a5ae2883a0740680e740ee7c 51509388
virtualbox-dbg_4.1.18-dfsg-2+deb7u3_amd64.deb
c3092de2bc594255904a84713495c451736ee73e3a8dd07b2647c1b9207d006f 497400
virtualbox-dkms_4.1.18-dfsg-2+deb7u3_all.deb
48b32f983a409b3063c6d1ae931be66ce4ffa92f6daa71a739a672730cefd5d0 597366
virtualbox-source_4.1.18-dfsg-2+deb7u3_all.deb
f3f4936fd368ce67a4ce17b4986fa9be4a43798a8a4eb64c8d50710de071b446 435482
virtualbox-guest-dkms_4.1.18-dfsg-2+deb7u3_all.deb
385aa3f4a432723d1a26665ea3027a830559b8398216de0ae30c833078616450 539050
virtualbox-guest-source_4.1.18-dfsg-2+deb7u3_all.deb
1473721044cb814d12e1e6a394f2a70bd64710663390a31d961c3682fc32fed4 851030
virtualbox-guest-x11_4.1.18-dfsg-2+deb7u3_amd64.deb
9b687e4fdb07b38626da4bb888cf36e535f85bea7d07774dae7eae9e019cf840 306702
virtualbox-guest-utils_4.1.18-dfsg-2+deb7u3_amd64.deb
c2bfd82749d0432d12343ec0f1c10b8048ff4471785ce4f0997cd4d4bd6e1c0a 43750
virtualbox-fuse_4.1.18-dfsg-2+deb7u3_amd64.deb
643baea597a2277d4b6f1ad5ed3f2167d1b0c31172fda397f370179e61689722 40930
virtualbox-ose-qt_4.1.18-dfsg-2+deb7u3_all.deb
3f5c3b9aa4e28bf8e169227969f9096acf03b770befdaa2ac30346887985768a 40924
virtualbox-ose_4.1.18-dfsg-2+deb7u3_all.deb
c483768303ccc7d303e9f68299e71bbb2804e0d32801ddd4d37e838f75fd6fa8 40930
virtualbox-ose-dbg_4.1.18-dfsg-2+deb7u3_all.deb
5baf31fbb6ab20958fbd4459e4dabc10e3dce7499bc2489b8f7fcf97aed7c41f 40932
virtualbox-ose-dkms_4.1.18-dfsg-2+deb7u3_all.deb
cd8e361feb804ef34c92913f95d443450acc5c3bca21df3b98827d740003fa9a 40940
virtualbox-ose-source_4.1.18-dfsg-2+deb7u3_all.deb
4bff22f791de1cef97fd2838921951778d79aeaee095ba4cdd235d1e538500e0 40946
virtualbox-ose-guest-dkms_4.1.18-dfsg-2+deb7u3_all.deb
b763b5c52b42b75e35ee43469704ec90c66dd3bb3fad5abaed60e0e3251b0db0 40948
virtualbox-ose-guest-source_4.1.18-dfsg-2+deb7u3_all.deb
e7ea85deea5d2d501dd0a0bde2b7deef7d5d75a5e38089b07202e9f8d8b7f0b9 40940
virtualbox-ose-guest-x11_4.1.18-dfsg-2+deb7u3_all.deb
5f8f4c47e9481f6198de718f5298b27206371646f15412b29b8930d425b7dc99 40944
virtualbox-ose-guest-utils_4.1.18-dfsg-2+deb7u3_all.deb
02dd59534863bceb00cbe659bfa029a00ec7a57a88e8a68b45512e9fc194c7fc 40934
virtualbox-ose-fuse_4.1.18-dfsg-2+deb7u3_all.deb
Files:
7908a714e3b34363664000b7dc0a893f 4113 misc optional
virtualbox_4.1.18-dfsg-2+deb7u3.dsc
1615e64dc1802a8fe3807da238f0d247 102004 misc optional
virtualbox_4.1.18-dfsg-2+deb7u3.debian.tar.gz
e76f540cfa49a86e64ef8c64c97ebe6d 4226390 misc optional
virtualbox-qt_4.1.18-dfsg-2+deb7u3_amd64.deb
761a6797af805b09d44cd0ef8560167c 12757352 misc optional
virtualbox_4.1.18-dfsg-2+deb7u3_amd64.deb
a8bb09c02ecdd0b79dbbe84813d98a81 51509388 debug extra
virtualbox-dbg_4.1.18-dfsg-2+deb7u3_amd64.deb
306aed4a21edf181aa2b8a079c657d5e 497400 kernel optional
virtualbox-dkms_4.1.18-dfsg-2+deb7u3_all.deb
2e88ed076dd9e4f43d3bf34666e9b0d3 597366 kernel optional
virtualbox-source_4.1.18-dfsg-2+deb7u3_all.deb
9f32fa03c2683999904e4f666a658f31 435482 kernel optional
virtualbox-guest-dkms_4.1.18-dfsg-2+deb7u3_all.deb
93a31ee2a33b94d25873e6e1739c71a7 539050 kernel optional
virtualbox-guest-source_4.1.18-dfsg-2+deb7u3_all.deb
6a261021bfa6546c2e54dab53f6dfee8 851030 x11 optional
virtualbox-guest-x11_4.1.18-dfsg-2+deb7u3_amd64.deb
8d81f2177316e43af7d1d3b87862b781 306702 misc optional
virtualbox-guest-utils_4.1.18-dfsg-2+deb7u3_amd64.deb
cc27bd489487c0cc7da7b6e4e2e383a8 43750 misc optional
virtualbox-fuse_4.1.18-dfsg-2+deb7u3_amd64.deb
fb353e773eb4feaec2a62ce37392cfe9 40930 oldlibs extra
virtualbox-ose-qt_4.1.18-dfsg-2+deb7u3_all.deb
e48b10293b68960bfb86e8cd466d1423 40924 oldlibs extra
virtualbox-ose_4.1.18-dfsg-2+deb7u3_all.deb
d5230adc13d7647e5b8a42e471f8dda9 40930 oldlibs extra
virtualbox-ose-dbg_4.1.18-dfsg-2+deb7u3_all.deb
e98482fb22f502a620da8383b6b17f87 40932 oldlibs extra
virtualbox-ose-dkms_4.1.18-dfsg-2+deb7u3_all.deb
e9083f5a27a7c10c972224493fd523bd 40940 oldlibs extra
virtualbox-ose-source_4.1.18-dfsg-2+deb7u3_all.deb
781c7d8f6e14a4a012cd844ea7cc158c 40946 oldlibs extra
virtualbox-ose-guest-dkms_4.1.18-dfsg-2+deb7u3_all.deb
bffb928a99627dec87c1f86b8fb4f099 40948 oldlibs extra
virtualbox-ose-guest-source_4.1.18-dfsg-2+deb7u3_all.deb
7e0c706484f381020294e14e3a2e44de 40940 oldlibs extra
virtualbox-ose-guest-x11_4.1.18-dfsg-2+deb7u3_all.deb
c7cea92017573373aad46c1245fadef9 40944 oldlibs extra
virtualbox-ose-guest-utils_4.1.18-dfsg-2+deb7u3_all.deb
8fbd338f95c14e0f8bffec4569d2a677 40934 oldlibs extra
virtualbox-ose-fuse_4.1.18-dfsg-2+deb7u3_all.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
iQIcBAEBCAAGBQJTS/95AAoJEP4ixv2DE11FEakQAJoJDYm9B5lEiwEj2sl8CNkq
VnkDWa59RVJij7j+nO+RbV/KprZ6kWGhdWufqAd8648sPH7HGXy/K4NwX4dq+Dxo
HFJxVYawKiJ44uuSceWZGm2k/YUqwqktQztlDKdwZHXUl2E5T+mkPczDTEBJcQd9
/AWem0ttFimLo1bepivWC6Qe/uUikWyD3ieO8/hILn4l3FWaOSctEJHFhlWyF+ev
245+9809GNpeN9tZ1LbQA9P7PakxzHbcnVuNMN3Q4DM8w+YTqIl059n3gKwI63sF
rdAZ+HohgZGfNw/ca7pwPsbOi+3/wWx3Ync3POrlztxExiywTk65puYfILQaM+7F
nxpUk+ZQN6m0laxljNgIXdxaW+ZRuglNheqDVjvOGf3uI+rRFtYVTecQv7azxqrg
9iWBDKXYTL1+oTlrqrs67BFcAtymc4Tmjbd4vzloE57MzeTXAtS5Lmwlp2m1ruIY
FXCUOr1OAFmz3UEFfq8RQ30QyLT+rsLc7Apks9qgQYAIPpqVnyEK9H4NPhrH75lX
U7MR4z5qXeRNxgIOLAuTlmaphaR4KN/djkk80ZjD06P7xQcM16iREPOaEjYkq06d
HljJs++0o+7ybsCIBh1oCKemvF+55AFcbGCM/5eL1LXb2rRZgYtCGTftlpFffK7H
ZEhkcK8Z0f0KkTyyjCZt
=2JWk
-----END PGP SIGNATURE-----
--- End Message ---