[Secure-testing-commits] r10527 - data/CVE

sf at alioth.debian.org sf at alioth.debian.org
Sat Nov 29 10:48:56 UTC 2008


Author: sf
Date: 2008-11-29 10:48:55 +0000 (Sat, 29 Nov 2008)
New Revision: 10527

Modified:
   data/CVE/list
Log:
new openssh issue

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2008-11-29 10:36:17 UTC (rev 10526)
+++ data/CVE/list	2008-11-29 10:48:55 UTC (rev 10527)
@@ -206,7 +206,10 @@
 CVE-2008-5162
 	RESERVED
 CVE-2008-5161 (Error handling in the SSH protocol in (1) SSH Tectia Client and Server ...)
-	TODO: check
+	- openssh <unfixed> (low; bug #506115)
+	[etch] - openssh <no-dsa> (minor issue)
+	NOTE: difficult to exploit
+	NOTE: see http://www.openssh.org/txt/cbc.adv
 CVE-2008-5185 (The highlighting functionality in geshi.php in GeSHi before 1.0.8 ...)
 	- geshi <unfixed> (medium)
 	NOTE: the maintainer is aware of this




More information about the Secure-testing-commits mailing list