[Secure-testing-commits] r25992 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Thu Mar 6 15:57:34 UTC 2014


Author: carnil
Date: 2014-03-06 15:57:34 +0000 (Thu, 06 Mar 2014)
New Revision: 25992

Modified:
   data/CVE/list
Log:
Mark stunnel4 not-affected, stunnel4 in Debian is compiled with --with-threads=pthread

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-03-06 15:23:27 UTC (rev 25991)
+++ data/CVE/list	2014-03-06 15:57:34 UTC (rev 25992)
@@ -5947,7 +5947,7 @@
 	NOTE: http://git.libssh.org/projects/libssh.git/commit/?id=e99246246b4061f7e71463f8806b9dcad65affa0
 CVE-2014-0016 [PRNG vulnerability]
 	RESERVED
-	- stunnel4 <unfixed> (bug #740802)
+	- stunnel4 <not-affected> (Debian package compiled with --with-threads=pthread)
 CVE-2014-0015 (cURL and libcurl 7.10.6 through 7.34.0, when more than one ...)
 	{DSA-2849-1}
 	- curl 7.35.0-1




More information about the Secure-testing-commits mailing list