[Secure-testing-commits] r20849 - data/CVE

Moritz Muehlenhoff jmm at alioth.debian.org
Tue Jan 8 08:26:06 UTC 2013


Author: jmm
Date: 2013-01-08 08:26:06 +0000 (Tue, 08 Jan 2013)
New Revision: 20849

Modified:
   data/CVE/list
Log:
three new issues don't apply to us:   \o/
   cups, xen (except exp), qt
charybdis fixed


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-01-07 21:30:37 UTC (rev 20848)
+++ data/CVE/list	2013-01-08 08:26:06 UTC (rev 20849)
@@ -1711,6 +1711,7 @@
 	RESERVED
 CVE-2013-0154
 	RESERVED
+	- xen <not-affected> (Only applies to Xen 4.2, which is only available in experimental)
 CVE-2013-0153
 	RESERVED
 CVE-2013-0152
@@ -2284,9 +2285,10 @@
 	NOTE: CVE requested: http://www.openwall.com/lists/oss-security/2013/01/07/1
 CVE-2012-6094
 	RESERVED
+	- cups <not-affected> (systemd patch not applied in Debian, see bug #697584)
 CVE-2012-6093 [QSslSocket may report incorrect errors when certificate verification fails]
 	RESERVED
-	- qt4-x11 <unfixed> (low; bug #697582)
+	- qt4-x11 <not-affected> (Only affects environments where a different OpenSSL is used, doesn't apply to Debian; bug #697582)
 	NOTE: http://lists.qt-project.org/pipermail/announce/2013-January/000020.html
 	NOTE: https://codereview.qt-project.org/#change,42461
 	NOTE: Fixed in Qt 4.8.5, and the 4.7.6 and 4.6.5 patch releases.
@@ -2324,7 +2326,7 @@
 	- gnupg 1.4.12-7 (bug #697108)
 	- gnupg2 2.0.19-2 (bug #697251)
 CVE-2012-6084 (modules/m_capab.c in (1) ircd-ratbox before 3.0.8 and (2) Charybdis ...)
-	- charybdis <unfixed> (bug #697092)
+	- charybdis 3.3.0-7.1 (bug #697092)
 	- ircd-ratbox <unfixed> (bug #697093)
 	NOTE: http://www.openwall.com/lists/oss-security/2013/01/01/1
 	NOTE: http://www.openwall.com/lists/oss-security/2013/01/01/2




More information about the Secure-testing-commits mailing list