[Secure-testing-commits] r33793 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Apr 24 05:31:13 UTC 2015


Author: carnil
Date: 2015-04-24 05:31:13 +0000 (Fri, 24 Apr 2015)
New Revision: 33793

Modified:
   data/CVE/list
Log:
Update note for wpa in wheezy

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-04-24 04:23:10 UTC (rev 33792)
+++ data/CVE/list	2015-04-24 05:31:13 UTC (rev 33793)
@@ -4007,11 +4007,11 @@
 CVE-2015-1863 [P2P SSID processing vulnerability]
 	RESERVED
 	- wpa <unfixed> (bug #783148)
-	[wheezy] - wpa <no-dsa> (WiFi P2P is disabled in wheezy)
 	- wpasupplicant <not-affected> (Vulnerable code present since v1.0)
 	NOTE: http://w1.fi/security/2015-1/
 	NOTE: Vulnerable are v1.0-v2.4 with CONFIG_P2P build option enabled
 	NOTE: CONFIG_P2P enabled since 1.1-1 in debian/config/wpasupplicant/linux
+	NOTE: Binary packages built for wheezy are not affected since WiFI P2P is disabled
 CVE-2015-1862
 	RESERVED
 	NOT-FOR-US: abrt is Red Hat / Fedora specific




More information about the Secure-testing-commits mailing list