[Secure-testing-commits] r33496 - data/CVE
Raphaël Hertzog
hertzog at moszumanska.debian.org
Fri Apr 10 19:04:07 UTC 2015
Author: hertzog
Date: 2015-04-10 19:04:07 +0000 (Fri, 10 Apr 2015)
New Revision: 33496
Modified:
data/CVE/list
Log:
Mark asterisk CVE as end-of-life in Squeeze
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2015-04-10 18:43:23 UTC (rev 33495)
+++ data/CVE/list 2015-04-10 19:04:07 UTC (rev 33496)
@@ -9,6 +9,7 @@
TODO: check
CVE-2015-3008 [asterisk: TLS Certificate Common name NULL byte exploit]
- asterisk <unfixed>
+ [squeeze] - asterisk <end-of-life> (Not supported in Squeeze LTS)
NOTE: http://downloads.asterisk.org/pub/security/AST-2015-003.html
NOTE: https://issues.asterisk.org/jira/browse/ASTERISK-24847
NOTE: Patch: https://issues.asterisk.org/jira/secure/attachment/52082/asterisk-null-in-cn.patch
More information about the Secure-testing-commits
mailing list