[Secure-testing-commits] r775 - sarge-checks/CAN

Joey Hess joeyh@costa.debian.org
Thu, 07 Apr 2005 18:44:52 +0000


Author: joeyh
Date: 2005-04-07 18:44:49 +0000 (Thu, 07 Apr 2005)
New Revision: 775

Modified:
   sarge-checks/CAN/list
Log:
hashcash 1.17 is also safe


Modified: sarge-checks/CAN/list
===================================================================
--- sarge-checks/CAN/list	2005-04-06 21:49:58 UTC (rev 774)
+++ sarge-checks/CAN/list	2005-04-07 18:44:49 UTC (rev 775)
@@ -900,6 +900,7 @@
 	NOTE: not-for-us (Windows)
 CAN-2005-0687 (Format string vulnerability in Hashcash 1.16 allows remote attackers ...)
 	NOTE: hashcash 1.13 (which is in Debian) is not vulnerable
+	NOTE: hashcash 1.17 is also ok
 CAN-2005-0686 (Integer overflow in mlterm 2.5.0 through 2.9.1, with gdk-pixbuf ...)
 	- mlterm 2.9.2
 	NOTE: see bug #298621, was stalled in NEW, now accepted