[Secure-testing-commits] r36017 - in data: . CVE DSA
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Wed Aug 12 14:41:59 UTC 2015
Author: carnil
Date: 2015-08-12 14:41:58 +0000 (Wed, 12 Aug 2015)
New Revision: 36017
Modified:
data/CVE/list
data/DSA/list
data/dsa-needed.txt
Log:
Reserve DSA number for gnutls28
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2015-08-12 14:15:34 UTC (rev 36016)
+++ data/CVE/list 2015-08-12 14:41:58 UTC (rev 36017)
@@ -39,6 +39,8 @@
NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2015/08/06/2
CVE-2015-XXXX [GNUTLS-SA-2015-3 double free in certificate DN decoding]
- gnutls28 3.3.17-1 (bug #795068)
+ [jessie] - gnutls28 3.3.8-6+deb8u2
+ NOTE: Added workaround item until CVE assigned
- gnutls26 <not-affected> (Vulnerable code not present)
NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2015/08/10/1
NOTE: https://gitlab.com/gnutls/gnutls/commit/272854367efc130fbd4f1a51840d80c630214e12
Modified: data/DSA/list
===================================================================
--- data/DSA/list 2015-08-12 14:15:34 UTC (rev 36016)
+++ data/DSA/list 2015-08-12 14:41:58 UTC (rev 36017)
@@ -1,3 +1,5 @@
+[12 Aug 2015] DSA-3334-1 gnutls28 - security update
+ [jessie] - gnutls28 3.3.8-6+deb8u2
[12 Aug 2015] DSA-3333-1 iceweasel - security update
{CVE-2015-4473 CVE-2015-4478 CVE-2015-4479 CVE-2015-4480 CVE-2015-4484 CVE-2015-4487 CVE-2015-4488 CVE-2015-4489 CVE-2015-4492 CVE-2015-4493}
[wheezy] - iceweasel 38.2.0esr-1~deb7u1
Modified: data/dsa-needed.txt
===================================================================
--- data/dsa-needed.txt 2015-08-12 14:15:34 UTC (rev 36016)
+++ data/dsa-needed.txt 2015-08-12 14:41:58 UTC (rev 36017)
@@ -27,8 +27,6 @@
glibc (aurel32)
some of the other no-dsa bugs could be fixed along
--
-gnutls28/stable (carnil)
---
icu (ghedo)
--
imagemagick/oldstable
More information about the Secure-testing-commits
mailing list