[Secure-testing-commits] r25956 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Mar 5 05:40:55 UTC 2014


Author: carnil
Date: 2014-03-05 05:40:55 +0000 (Wed, 05 Mar 2014)
New Revision: 25956

Modified:
   data/CVE/list
Log:
Add CVE-2014-0017/libssh

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-03-05 05:40:44 UTC (rev 25955)
+++ data/CVE/list	2014-03-05 05:40:55 UTC (rev 25956)
@@ -5573,8 +5573,10 @@
 	[wheezy] - socat <no-dsa> (Minor issue)
 CVE-2014-0018 (Red Hat JBoss Enterprise Application Platform (JBEAP) 6.2.0 and JBoss ...)
 	NOT-FOR-US: Red Hat JBoss Enterprise Application Platform
-CVE-2014-0017
+CVE-2014-0017 [PRNG vulnerability]
 	RESERVED
+	- libssh <unfixed>
+	NOTE: http://git.libssh.org/projects/libssh.git/commit/?id=e99246246b4061f7e71463f8806b9dcad65affa0
 CVE-2014-0016 [PRNG vulnerability]
 	RESERVED
 	- stunnel4 <unfixed>




More information about the Secure-testing-commits mailing list