[Secure-testing-commits] r23878 - in data: . CVE

Moritz Muehlenhoff jmm at alioth.debian.org
Fri Oct 4 14:07:47 UTC 2013


Author: jmm
Date: 2013-10-04 14:07:46 +0000 (Fri, 04 Oct 2013)
New Revision: 23878

Modified:
   data/CVE/list
   data/dsa-needed.txt
Log:
mark transition package o.o as N/A/fixed
DSA needed for polarssl


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-10-04 13:49:46 UTC (rev 23877)
+++ data/CVE/list	2013-10-04 14:07:46 UTC (rev 23878)
@@ -9137,7 +9137,8 @@
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=954054
 CVE-2013-2189 (Apache OpenOffice.org (OOo) before 4.0 allows remote attackers to ...)
 	- libreoffice 1:3.4.3-1
-	- openoffice.org <removed>
+	- openoffice.org 1:3.3.0-1 (low)
+	NOTE: Since 3.3.0 openoffice.org is a transitional source package
 CVE-2013-2188 (A certain Red Hat patch to the do_filp_open function in fs/namei.c in ...)
 	- linux-2.6 <not-affected> (RHEL-specific issue)
 	- linux <not-affected> (RHEL-specific issue)

Modified: data/dsa-needed.txt
===================================================================
--- data/dsa-needed.txt	2013-10-04 13:49:46 UTC (rev 23877)
+++ data/dsa-needed.txt	2013-10-04 14:07:46 UTC (rev 23878)
@@ -75,6 +75,8 @@
 pidgin/oldstable
   The version in squeeze is likely too outdated anyway, so end-of-life might be the better option
 --
+polarssl
+--
 policykit-1
 --
 quagga




More information about the Secure-testing-commits mailing list