[Secure-testing-commits] r29804 - in data: . CVE

Sebastien Delafond seb at moszumanska.debian.org
Mon Nov 3 09:12:13 UTC 2014


Author: seb
Date: 2014-11-03 09:12:13 +0000 (Mon, 03 Nov 2014)
New Revision: 29804

Modified:
   data/CVE/list
   data/dsa-needed.txt
Log:
[libxml-security-java] No DSA for CVE-2013-4517, will fix CVE-2013-2172 though

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2014-11-03 05:37:47 UTC (rev 29803)
+++ data/CVE/list	2014-11-03 09:12:13 UTC (rev 29804)
@@ -28383,6 +28383,8 @@
 	NOT-FOR-US: Red Hat Update Infrastructure
 CVE-2013-4517 (Apache Santuario XML Security for Java before 1.5.6, when applying ...)
 	- libxml-security-java 1.5.6-1 (bug #733938)
+        [squeeze] - libxml-security-java <no-dsa> (Minor issue, too intrusive to backport)
+        [wheezy] - libxml-security-java <no-dsa> (Minor issue, too intrusive to backport)
 	NOTE: http://santuario.apache.org/secadv.data/cve-2013-4517.txt.asc
 CVE-2013-4516 (The mp_get_count function in drivers/staging/sb105x/sb_pci_mp.c in the ...)
 	- linux 3.12-1 (unimportant)

Modified: data/dsa-needed.txt
===================================================================
--- data/dsa-needed.txt	2014-11-03 05:37:47 UTC (rev 29803)
+++ data/dsa-needed.txt	2014-11-03 09:12:13 UTC (rev 29804)
@@ -27,7 +27,7 @@
 --
 libvncserver
 --
-libxml-security-java
+libxml-security-java (seb)
 --
 konversation (jmm)
 --




More information about the Secure-testing-commits mailing list