[Secure-testing-commits] r25788 - in data: . DSA

Luciano Bello luciano at moszumanska.debian.org
Tue Feb 18 21:35:51 UTC 2014


Author: luciano
Date: 2014-02-18 21:35:51 +0000 (Tue, 18 Feb 2014)
New Revision: 25788

Modified:
   data/DSA/list
   data/dsa-needed.txt
Log:
CVE-2013-4420 libtar

Modified: data/DSA/list
===================================================================
--- data/DSA/list	2014-02-18 20:32:19 UTC (rev 25787)
+++ data/DSA/list	2014-02-18 21:35:51 UTC (rev 25788)
@@ -1,3 +1,7 @@
+[18 Feb 2014] DSA-2863-1 libtar - directory traversal
+	{CVE-2013-4420}
+	[squeeze] - libtar 1.2.11-6+deb6u2
+	[wheezy] - libtar 1.2.16-1+deb7u2
 [16 Feb 2014] DSA-2862-1 chromium-browser - several
 	{CVE-2013-6641 CVE-2013-6643 CVE-2013-6644 CVE-2013-6645 CVE-2013-6646 CVE-2013-6649 CVE-2013-6650}
 	[wheezy] - chromium-browser 32.0.1700.123-1~deb7u1

Modified: data/dsa-needed.txt
===================================================================
--- data/dsa-needed.txt	2014-02-18 20:32:19 UTC (rev 25787)
+++ data/dsa-needed.txt	2014-02-18 21:35:51 UTC (rev 25788)
@@ -36,9 +36,6 @@
 --
 libplrpc-perl
 --
-libtar (luciano)
-  CVE-2013-4420 still pending, proposed patch in http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=731860
---
 libv8
 --
 libxml-security-java




More information about the Secure-testing-commits mailing list