[Secure-testing-commits] r28567 - in data: . CVE DLA
Thorsten Alteholz
alteholz at moszumanska.debian.org
Tue Sep 2 18:02:05 UTC 2014
Author: alteholz
Date: 2014-09-02 18:02:05 +0000 (Tue, 02 Sep 2014)
New Revision: 28567
Modified:
data/CVE/list
data/DLA/list
data/lts-needed.txt
Log:
eglibc done
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2014-09-02 17:52:08 UTC (rev 28566)
+++ data/CVE/list 2014-09-02 18:02:05 UTC (rev 28567)
@@ -1831,9 +1831,10 @@
[squeeze] - rawstudio <not-affected> (Vulnerable code not present)
CVE-2014-5119 [glibc locale issues]
RESERVED
- {DSA-3012-1}
+ {DSA-3012-1 DLA-43-1}
- glibc 2.19-10 (medium)
- eglibc <removed> (medium)
+ [squeeze] - eglibc 2.11.3-4+deb6u1
NOTE: http://www.openwall.com/lists/oss-security/2014/07/14/2
NOTE: http://googleprojectzero.blogspot.com/2014/08/the-poisoned-nul-byte-2014-edition.html
CVE-2014-4909 (Integer overflow in the tr_bitfieldEnsureNthBitAlloced function in ...)
@@ -12599,9 +12600,10 @@
- chkrootkit 0.49-5
[squeeze] - chkrootkit 0.49-4+deb6u1
CVE-2014-0475 (Multiple directory traversal vulnerabilities in GNU C Library (aka ...)
- {DSA-2976-1}
+ {DSA-2976-1 DLA-43-1}
- glibc 2.19-6
- eglibc <removed>
+ [squeeze] - eglibc 2.11.3-4+deb6u1
CVE-2014-0474 (The (1) FilePathField, (2) GenericIPAddressField, and (3) ...)
{DSA-2934-1}
- python-django 1.6.3-1
Modified: data/DLA/list
===================================================================
--- data/DLA/list 2014-09-02 17:52:08 UTC (rev 28566)
+++ data/DLA/list 2014-09-02 18:02:05 UTC (rev 28567)
@@ -1,3 +1,6 @@
+[02 Sep 2014] DLA-43-1 eglibc - security update
+ {CVE-2014-0475 CVE-2014-5119}
+ [squeeze] - eglibc 2.11.3-4+deb6u1
[27 Aug 2014] DLA-42-1 live-config - security update
[squeeze] - live-config 2.0.15-1.1+deb6u1
[24 Aug 2014] DLA-41-1 python-imaging - security update
Modified: data/lts-needed.txt
===================================================================
--- data/lts-needed.txt 2014-09-02 17:52:08 UTC (rev 28566)
+++ data/lts-needed.txt 2014-09-02 18:02:05 UTC (rev 28567)
@@ -9,8 +9,6 @@
--
commons-beanutils
--
-eglibc (Thorsten Alteholz)
---
evince
--
fex (non-free)
More information about the Secure-testing-commits
mailing list