[Secure-testing-commits] r23945 - in data: . CVE DSA

Thijs Kinkhorst thijs at alioth.debian.org
Thu Oct 10 17:31:56 UTC 2013


Author: thijs
Date: 2013-10-10 17:31:55 +0000 (Thu, 10 Oct 2013)
New Revision: 23945

Modified:
   data/CVE/list
   data/DSA/list
   data/dsa-needed.txt
Log:
DSA-2775-1 ejabberd - insecure SSL usage
DSA-2774-1 gnupg2 - several
DSA-2773-1 gnupg - several


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2013-10-10 14:19:46 UTC (rev 23944)
+++ data/CVE/list	2013-10-10 17:31:55 UTC (rev 23945)
@@ -3678,11 +3678,11 @@
 CVE-2013-4351 [GnuPG treats no-usage-permitted keys as all-usages-permitted]
 	RESERVED
 	- gnupg 1.4.15-1 (low; bug #722722)
-	[squeeze] - gnupg <no-dsa> (Minor issue)
-	[wheezy] - gnupg <no-dsa> (Minor issue)
+	[squeeze] - gnupg 1.4.10-4+squeeze3
+	[wheezy] - gnupg 1.4.12-7+deb7u2
 	- gnupg2 2.0.22-1 (low; bug #722724)
-	[squeeze] - gnupg2 <no-dsa> (Minor issue)
-	[wheezy] - gnupg2 <no-dsa> (Minor issue)
+	[squeeze] - gnupg2 2.0.14-2+squeeze2
+	[wheezy] - gnupg2 2.0.19-2+deb7u1
 CVE-2013-4350 (The IPv6 SCTP implementation in net/sctp/ipv6.c in the Linux kernel ...)
 	- linux-2.6 <removed>
 	- linux <unfixed>

Modified: data/DSA/list
===================================================================
--- data/DSA/list	2013-10-10 14:19:46 UTC (rev 23944)
+++ data/DSA/list	2013-10-10 17:31:55 UTC (rev 23945)
@@ -1,3 +1,14 @@
+[10 Oct 2013] DSA-2775-1 ejabberd - insecure SSL usage
+	[squeeze] - ejabberd 2.1.5-3+squeeze2
+	[wheezy] - ejabberd 2.1.10-4+deb7u1
+[10 Oct 2013] DSA-2774-1 gnupg2 - several
+	{CVE-2013-4351 CVE-2013-4402}
+	[squeeze] - gnupg2 2.0.14-2+squeeze2
+	[wheezy] - gnupg2 2.0.19-2+deb7u1
+[10 Oct 2013] DSA-2773-1 gnupg - several
+	{CVE-2013-4351 CVE-2013-4402}
+	[squeeze] - gnupg 1.4.10-4+squeeze3
+	[wheezy] - gnupg 1.4.12-7+deb7u2
 [10 Oct 2013] DSA-2772-1 typo3-src - cross-site scripting
 	{CVE-2013-1464}
 	[wheezy] - typo3-src 4.5.19+dfsg1-5+wheezy1

Modified: data/dsa-needed.txt
===================================================================
--- data/dsa-needed.txt	2013-10-10 14:19:46 UTC (rev 23944)
+++ data/dsa-needed.txt	2013-10-10 17:31:55 UTC (rev 23945)
@@ -25,10 +25,6 @@
 --
 gimp/oldstable
 --
-gnupg
---
-gnupg2
---
 gnutls26/oldstable
 --
 hplip




More information about the Secure-testing-commits mailing list