[Secure-testing-commits] r8924 - data/CVE

thijs at alioth.debian.org thijs at alioth.debian.org
Wed May 28 18:57:58 UTC 2008


Author: thijs
Date: 2008-05-28 18:57:57 +0000 (Wed, 28 May 2008)
New Revision: 8924

Modified:
   data/CVE/list
Log:
new openssl issues do not affect etch


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2008-05-28 18:27:46 UTC (rev 8923)
+++ data/CVE/list	2008-05-28 18:57:57 UTC (rev 8924)
@@ -1627,6 +1627,7 @@
 CVE-2008-1672
 	RESERVED
 	- openssl 0.9.8g-10.1 (bug #483379)
+	[etch] - openssl <not-affected> (Vulnerable code (TLS extensions) not present)
 CVE-2008-1671 (start_kdeinit in KDE 3.5.5 through 3.5.9, when installed setuid root, ...)
 	- kdelibs 4:3.5.9.dfsg.1-4 (low; bug #478024)
 	NOTE: unimportant, opinions?
@@ -3454,6 +3455,7 @@
 CVE-2008-0891
 	RESERVED
 	- openssl 0.9.8g-10.1 (bug #483379)
+	[etch] - openssl <not-affected> (Vulnerable code (TLS extensions) not present)
 CVE-2008-0890 (Red Hat Directory Server 7.1 before SP4 uses insecure permissions for ...)
 	NOT-FOR-US: Red Hat Directory Server
 CVE-2008-0889 (Red Hat Directory Server 8.0, when running on Red Hat Enterprise ...)




More information about the Secure-testing-commits mailing list