[Secure-testing-commits] r2685 - data/DSA

Moritz Muehlenhoff jmm-guest at costa.debian.org
Mon Nov 7 12:59:27 UTC 2005


Author: jmm-guest
Date: 2005-11-07 12:59:27 +0000 (Mon, 07 Nov 2005)
New Revision: 2685

Modified:
   data/DSA/list
Log:
new openvpn dsa + regression in squid dsa


Modified: data/DSA/list
===================================================================
--- data/DSA/list	2005-11-07 11:24:40 UTC (rev 2684)
+++ data/DSA/list	2005-11-07 12:59:27 UTC (rev 2685)
@@ -1,4 +1,8 @@
-[04 Nov 2005] DSA-884-1 horde3 - design error
+[07 Nov 2005] DSA-885-1 openvpn - several
+	{CVE-2005-3393 CVE-2005-3409}
+	[sarge] - openvpn 2.0-1sarge2
+	NOTE: not fixed in testing at time of DSA (too young 0/2 days)
+[07 Nov 2005] DSA-884-1 horde3 - design error
 	{CVE-2005-3344}
 	[sarge] - horde3 3.0.4-4sarge1
 	NOTE: fixed in testing at time of DSA
@@ -252,12 +256,12 @@
 	[woody] - squid <not-affected> (not affected according to DSA)
 	[sarge] - squid 2.5.9-10sarge2
 	NOTE: fixed in testing at time of DSA
-[30 Sep 2005] DSA-809-2 squid - assertion error
+[07 Nov 2005] DSA-809-3 squid - assertion error
 	{CVE-2005-2794}
-	[woody] - squid 2.4.6-2woody10
+	[woody] - squid 2.4.6-2woody11
 	[sarge] - squid 2.5.9-10sarge1
 	NOTE: fixed in testing at time of DSA
-	NOTE: This is partly an update for another DSA.
+	NOTE: -1 and -2 had regressions
 [29 Sep 2005] DSA-827-1 backupninja - insecure temporary file creation
 	{CVE-2005-3111}
 	[sarge] - backupninja 0.5-3sarge1 (medium)	




More information about the Secure-testing-commits mailing list