[Secure-testing-commits] r26393 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Apr 1 14:36:36 UTC 2014


Author: carnil
Date: 2014-04-01 14:36:36 +0000 (Tue, 01 Apr 2014)
New Revision: 26393

Modified:
   data/CVE/list
Log:
Update three net-snmp issues

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-04-01 11:05:51 UTC (rev 26392)
+++ data/CVE/list	2014-04-01 14:36:36 UTC (rev 26393)
@@ -1392,12 +1392,14 @@
 	NOTE: unimportant since it only segfaults with older Perl version
 	NOTE: http://www.nntp.perl.org/group/perl.perl5.porters/2006/09/msg116250.html
 	NOTE: http://perl5.git.perl.org/perl.git/commitdiff/ddfa59c
+	NOTE: fixed with 5.7.2.1~dfsg-1 upload to experimental, adjust when enters unstable
 CVE-2014-2284 (The Linux implementation of the ICMP-MIB in Net-SNMP 5.5 before ...)
 	- net-snmp <unfixed> (bug #742817)
 	[wheezy] - net-snmp <not-affected> (Only affects code from 5.5 through 5.7.2)
 	[squeeze] - net-snmp <not-affected> (Only affects code from 5.5 through 5.7.2)
 	NOTE: http://sourceforge.net/p/net-snmp/mailman/message/32026655/
 	NOTE: http://sourceforge.net/p/net-snmp/code/ci/a1fd64716f6794c55c34d77e618210238a73bfa1/
+	NOTE: fixed with 5.7.2.1~dfsg-1 upload to experimental, adjust when enters unstable
 CVE-2014-XXXX [buffer overflow]
 	- mp3gain <unfixed> (low; bug #740268)
 	[squeeze] - mp3gain <no-dsa> (Minor issue)
@@ -26288,6 +26290,7 @@
 	[squeeze] - net-snmp <no-dsa> (Minor issue)
 	NOTE: http://sourceforge.net/p/net-snmp/bugs/2411/
 	NOTE: Upstream patch: http://sourceforge.net/p/net-snmp/code/ci/793d596838ff7cb48a73b675d62897c56c9e62df/
+	NOTE: fixed with 5.7.2.1~dfsg-1 upload to experimental, adjust when enters unstable
 CVE-2012-6150 (The winbind_name_list_to_sid_string_list function in ...)
 	- samba 2:4.0.13+dfsg-1 (low)
 	[wheezy] - samba <no-dsa> (Can be fixed along in a future DSA)




More information about the Secure-testing-commits mailing list