[Secure-testing-commits] r25938 - in data: . CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Mon Mar 3 07:50:21 UTC 2014


Author: jmm
Date: 2014-03-03 07:50:21 +0000 (Mon, 03 Mar 2014)
New Revision: 25938

Modified:
   data/CVE/list
   data/dsa-needed.txt
Log:
mantis no-dsa
KVM issue not in oldstable/stable


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-03-02 21:14:11 UTC (rev 25937)
+++ data/CVE/list	2014-03-03 07:50:21 UTC (rev 25938)
@@ -21,6 +21,7 @@
 	NOTE: https://gerrit.wikimedia.org/r/#/q/7d923a6b53f7fbcb0cbc3a19797d741bf6f440eb,n,z
 CVE-2014-2238 [mantis: sql injection]
 	- mantis <removed>
+	[squeeze] - mantis <no-dsa> (Minor issue)
 	NOTE: http://www.mantisbt.org/bugs/view.php?id=17055
 CVE-2014-2237 [Trustee token revocation does not work with memcache backend]
 	- keystone <unfixed>
@@ -5449,7 +5450,8 @@
 CVE-2014-0049
 	RESERVED
 	- linux <unfixed>
-	- linux-2.6 <removed>
+	[wheezy] - linux <not-affected> (Introduced in 3.5)
+	- linux-2.6 <not-affected> (Introduced in 3.5)
 	NOTE: fix: http://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=a08d3b3b99efd509133946056531cdf8f3a0c09b
 CVE-2014-0048
 	RESERVED

Modified: data/dsa-needed.txt
===================================================================
--- data/dsa-needed.txt	2014-03-02 21:14:11 UTC (rev 25937)
+++ data/dsa-needed.txt	2014-03-03 07:50:21 UTC (rev 25938)
@@ -59,10 +59,8 @@
  patches are not yet avaialble
 --
 openjdk-6
-  icedtea updates not yet ready
 --
 openjdk-7/stable
-  icedtea updates not yet ready
 --
 openswan (corsac)
 --
@@ -85,10 +83,9 @@
 virtualbox
 --
 vlc
-  it probably makes sense to update to the 2.0.x point releases
 --
 xen
- maintainer prepared updates
+ ijc prepared updates
 --
 xlhtml
 --




More information about the Secure-testing-commits mailing list