[Secure-testing-commits] r24747 - in data: . DSA

Luciano Bello luciano at moszumanska.debian.org
Sat Dec 14 10:40:19 UTC 2013


Author: luciano
Date: 2013-12-14 10:40:19 +0000 (Sat, 14 Dec 2013)
New Revision: 24747

Modified:
   data/DSA/list
   data/dsa-needed.txt
Log:
DSA-2817-1: libtar

Modified: data/DSA/list
===================================================================
--- data/DSA/list	2013-12-14 10:39:55 UTC (rev 24746)
+++ data/DSA/list	2013-12-14 10:40:19 UTC (rev 24747)
@@ -1,3 +1,7 @@
+[14 Dec 2013] DSA-2817-1 libtar - Multiple integer overflows
+	{CVE-2013-4397}
+	[squeeze] - libtar 1.2.11-6+deb6u1
+	[wheezy] - libtar 1.2.16-1+deb7u1
 [12 Dec 2013] DSA-2816-1 php5 - several
 	{CVE-2013-6420 CVE-2013-6712}
 	[squeeze] - php5 5.3.3-7+squeeze18

Modified: data/dsa-needed.txt
===================================================================
--- data/dsa-needed.txt	2013-12-14 10:39:55 UTC (rev 24746)
+++ data/dsa-needed.txt	2013-12-14 10:40:19 UTC (rev 24747)
@@ -40,6 +40,7 @@
 libcommons-fileupload-java
 --
 libtar (luciano)
+  CVE-2013-4420 still pending
 --
 libv8
 --




More information about the Secure-testing-commits mailing list