[Secure-testing-commits] r21619 - in data: . CVE

Moritz Muehlenhoff jmm at alioth.debian.org
Thu Mar 14 17:47:07 UTC 2013


Author: jmm
Date: 2013-03-14 17:47:06 +0000 (Thu, 14 Mar 2013)
New Revision: 21619

Modified:
   data/CVE/list
   data/next-point-update.txt
Log:
wireshark fixed
libssh spu upload


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-03-14 16:08:43 UTC (rev 21618)
+++ data/CVE/list	2013-03-14 17:47:06 UTC (rev 21619)
@@ -146,7 +146,7 @@
 CVE-2013-2489
 	RESERVED
 CVE-2013-2488 (The DTLS dissector in Wireshark 1.6.x before 1.6.14 and 1.8.x before ...)
-	- wireshark <unfixed>
+	- wireshark 1.8.2-5
 	NOTE: http://www.wireshark.org/security/wnpa-sec-2013-22.html
 	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=8380
 	NOTE: Versions affected: 1.8.0 to 1.8.X, 1.6.0 to 1.6.X
@@ -171,12 +171,12 @@
 	NOTE: Versions affected: 1.8.0 to 1.8.5, 1.6.0 to 1.6.13
 	NOTE: Not suitable for code injection
 CVE-2013-2484 (The CIMD dissector in Wireshark 1.6.x before 1.6.14 and 1.8.x before ...)
-	- wireshark <unfixed>
+	- wireshark 1.8.2-5
 	NOTE: http://www.wireshark.org/security/wnpa-sec-2013-19.html
 	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=8346
 	NOTE: Versions affected: 1.8.0 to 1.8.5, 1.6.0 to 1.6.13
 CVE-2013-2483 (The acn_add_dmp_data function in epan/dissectors/packet-acn.c in the ...)
-	- wireshark <unfixed> (unimportant)
+	- wireshark 1.8.2-5 (unimportant)
 	NOTE: http://www.wireshark.org/security/wnpa-sec-2013-18.html
 	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=8340
 	NOTE: Versions affected: 1.8.0 to 1.8.5, 1.6.0 to 1.6.13
@@ -188,13 +188,13 @@
 	NOTE: Versions affected: 1.8.0 to 1.8.5, 1.6.0 to 1.6.13
 	NOTE: Not suitable for code injection
 CVE-2013-2481 (Integer signedness error in the dissect_mount_dirpath_call function in ...)
-	- wireshark <unfixed> (unimportant)
+	- wireshark 1.8.2-5 (unimportant)
 	NOTE: http://www.wireshark.org/security/wnpa-sec-2013-16.html
 	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=8335
 	NOTE: Versions affected: 1.8.0 to 1.8.5, 1.6.0 to 1.6.13
 	NOTE: Not suitable for code injection
 CVE-2013-2480 (The RTPS and RTPS2 dissectors in Wireshark 1.6.x before 1.6.14 and ...)
-	- wireshark <unfixed>
+	- wireshark 1.8.2-5
 	NOTE: http://www.wireshark.org/security/wnpa-sec-2013-15.html
 	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=8332
 	NOTE: Versions affected: 1.8.0 to 1.8.5, 1.6.0 to 1.6.13
@@ -206,12 +206,12 @@
 	NOTE: Versions affected: 1.8.0 to 1.8.5
 	NOTE: Not suitable for code injection
 CVE-2013-2478 (The dissect_server_info function in epan/dissectors/packet-ms-mms.c in ...)
-	- wireshark <unfixed>
+	- wireshark 1.8.2-5
 	NOTE: http://www.wireshark.org/security/wnpa-sec-2013-13.html
 	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=8382
 	NOTE: announce mentions: Versions affected: 1.8.0 to 1.8.5, 1.6.0 to 1.6.13
 CVE-2013-2477 (The CSN.1 dissector in Wireshark 1.8.x before 1.8.6 does not properly ...)
-	- wireshark <unfixed>
+	- wireshark 1.8.2-5
 	[squeeze] - wireshark <not-affected> (only affecting 1.8.x)
 	NOTE: http://www.wireshark.org/security/wnpa-sec-2013-12.html
 	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=8383
@@ -224,7 +224,7 @@
 	NOTE: Versions affected: 1.8.0 to 1.8.5
 	NOTE: Not suitable for code injection
 CVE-2013-2475 (The TCP dissector in Wireshark 1.8.x before 1.8.6 allows remote ...)
-	- wireshark <unfixed>
+	- wireshark 1.8.2-5
 	[squeeze] - wireshark <not-affected> (only affecting 1.8.x)
 	NOTE: http://www.wireshark.org/security/wnpa-sec-2013-10.html
 	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=8274

Modified: data/next-point-update.txt
===================================================================
--- data/next-point-update.txt	2013-03-14 16:08:43 UTC (rev 21618)
+++ data/next-point-update.txt	2013-03-14 17:47:06 UTC (rev 21619)
@@ -1,2 +1,4 @@
 CVE-2011-5000
 	[squeeze] - openssh 1:5.5p1-6+squeeze4
+CVE-2013-0176
+	[squeeze] - libssh 0.4.5-3+squeeze2




More information about the Secure-testing-commits mailing list