[Secure-testing-commits] r30904 - data/CVE

Raphaël Hertzog hertzog at moszumanska.debian.org
Mon Dec 22 09:33:13 UTC 2014


Author: hertzog
Date: 2014-12-22 09:33:13 +0000 (Mon, 22 Dec 2014)
New Revision: 30904

Modified:
   data/CVE/list
Log:
Mark CVE-2014-8132/libssh as not-affected on squeeze

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-12-22 09:29:40 UTC (rev 30903)
+++ data/CVE/list	2014-12-22 09:33:13 UTC (rev 30904)
@@ -3945,6 +3945,7 @@
 CVE-2014-8132 [Possible double free on a dangling pointer with crafted kexinit packet]
 	RESERVED
 	- libssh <unfixed> (bug #773577)
+	[squeeze] - libssh <not-affected> (Issue only present in versions > 0.5.1, squeeze has 0.4.5)
 	NOTE: http://www.libssh.org/2014/12/19/libssh-0-6-4-security-and-bugfix-release/
 CVE-2014-8131 [deadlock and segfault in qemuConnectGetAllDomainStats]
 	RESERVED




More information about the Secure-testing-commits mailing list