[Secure-testing-commits] r26568 - in data: . CVE DSA

Michael Gilbert mgilbert at moszumanska.debian.org
Wed Apr 16 01:19:31 UTC 2014


Author: mgilbert
Date: 2014-04-16 01:19:31 +0000 (Wed, 16 Apr 2014)
New Revision: 26568

Modified:
   data/CVE/list
   data/DSA/list
   data/dsa-needed.txt
Log:
chromium dsa

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-04-15 21:14:09 UTC (rev 26567)
+++ data/CVE/list	2014-04-16 01:19:31 UTC (rev 26568)
@@ -2957,6 +2957,8 @@
 CVE-2014-1724 (Use-after-free vulnerability in Free(b)soft Laboratory Speech ...)
 	- chromium-browser 34.0.1847.116-1
 	[squeeze] - chromium-browser <end-of-life>
+	- speech-dispatcher <unfixed> (low)
+	NOTE: no specific information available (possibly already be fixed in 0.8), the fix in chromium was to disable speechd by default
 CVE-2014-1723 (The UnescapeURLWithOffsetsImpl function in net/base/escape.cc in ...)
 	- chromium-browser 34.0.1847.116-1
 	[squeeze] - chromium-browser <end-of-life>

Modified: data/DSA/list
===================================================================
--- data/DSA/list	2014-04-15 21:14:09 UTC (rev 26567)
+++ data/DSA/list	2014-04-16 01:19:31 UTC (rev 26568)
@@ -1,3 +1,6 @@
+[15 Apr 2014] DSA-2905-1 chromium-browser - security update
+	{CVE-2014-1716 CVE-2014-1717 CVE-2014-1718 CVE-2014-1719 CVE-2014-1720 CVE-2014-1721 CVE-2014-1722 CVE-2014-1723 CVE-2014-1724 CVE-2014-1725 CVE-2014-1726 CVE-2014-1727 CVE-2014-1728 CVE-2014-1729}
+	[wheezy] - chromium-browser 34.0.1847.116-1~deb7u1
 [15 Apr 2014] DSA-2904-1 virtualbox - security update
 	{CVE-2014-0981 CVE-2014-0983}
 	[squeeze] - virtualbox-ose 3.2.10-dfsg-1+squeeze3

Modified: data/dsa-needed.txt
===================================================================
--- data/dsa-needed.txt	2014-04-15 21:14:09 UTC (rev 26567)
+++ data/dsa-needed.txt	2014-04-16 01:19:31 UTC (rev 26568)
@@ -17,8 +17,6 @@
 --
 cacti
 --
-chromium-browser
---
 fail2ban
 --
 icedove (jmm)




More information about the Secure-testing-commits mailing list