[Secure-testing-commits] r27317 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Tue Jun 17 06:54:25 UTC 2014


Author: jmm
Date: 2014-06-17 06:54:25 +0000 (Tue, 17 Jun 2014)
New Revision: 27317

Modified:
   data/CVE/list
Log:
ppc64-diag is an ITP


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-06-17 05:45:33 UTC (rev 27316)
+++ data/CVE/list	2014-06-17 06:54:25 UTC (rev 27317)
@@ -37,8 +37,7 @@
 	[wheezy] - eglibc <no-dsa> (Minor issue)
 	[squeeze] - eglibc <no-dsa> (Minor issue)
 CVE-2014-4040
-	- powerpc-ibm-utils <unfixed>
-	TODO: double check
+	- ppc64-diag <itp> (bug #740179)
 CVE-2014-4020 [Frame metadissector crash (wnpa-sec-2014-07)]
 	- wireshark <unfixed>
 	[wheezy] - wireshark <not-affected> (Only affects 1.10.0 to 1.10.7)
@@ -5785,10 +5784,11 @@
 	[squeeze] - chromium-browser <end-of-life>
 CVE-2014-1739 [linux: infoleak in media_enum_entities()]
 	RESERVED
-	- linux 3.14.7-1
+	- linux 3.14.7-1 (unimportant)
 	- linux-2.6 <removed>
 	[squeeze] - linux-2.6 <not-affected> (Vulnerability introduced in 2.6.38)
 	NOTE: https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=e6a623460e5fc960ac3ee9f946d3106233fd28d8
+	NOTE: Not exploitable with any sane setup
 CVE-2014-1738 (The raw_cmd_copyout function in drivers/block/floppy.c in the Linux ...)
 	{DSA-2928-1 DSA-2926-1}
 	- linux 3.14.4-1




More information about the Secure-testing-commits mailing list