[Secure-testing-commits] r36017 - in data: . CVE DSA

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Aug 12 14:41:59 UTC 2015


Author: carnil
Date: 2015-08-12 14:41:58 +0000 (Wed, 12 Aug 2015)
New Revision: 36017

Modified:
   data/CVE/list
   data/DSA/list
   data/dsa-needed.txt
Log:
Reserve DSA number for gnutls28

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-08-12 14:15:34 UTC (rev 36016)
+++ data/CVE/list	2015-08-12 14:41:58 UTC (rev 36017)
@@ -39,6 +39,8 @@
 	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2015/08/06/2
 CVE-2015-XXXX [GNUTLS-SA-2015-3 double free in certificate DN decoding]
 	- gnutls28 3.3.17-1 (bug #795068)
+	[jessie] - gnutls28 3.3.8-6+deb8u2
+	NOTE: Added workaround item until CVE assigned
 	- gnutls26 <not-affected> (Vulnerable code not present)
 	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2015/08/10/1
 	NOTE: https://gitlab.com/gnutls/gnutls/commit/272854367efc130fbd4f1a51840d80c630214e12

Modified: data/DSA/list
===================================================================
--- data/DSA/list	2015-08-12 14:15:34 UTC (rev 36016)
+++ data/DSA/list	2015-08-12 14:41:58 UTC (rev 36017)
@@ -1,3 +1,5 @@
+[12 Aug 2015] DSA-3334-1 gnutls28 - security update
+	[jessie] - gnutls28 3.3.8-6+deb8u2
 [12 Aug 2015] DSA-3333-1 iceweasel - security update
 	{CVE-2015-4473 CVE-2015-4478 CVE-2015-4479 CVE-2015-4480 CVE-2015-4484 CVE-2015-4487 CVE-2015-4488 CVE-2015-4489 CVE-2015-4492 CVE-2015-4493}
 	[wheezy] - iceweasel 38.2.0esr-1~deb7u1

Modified: data/dsa-needed.txt
===================================================================
--- data/dsa-needed.txt	2015-08-12 14:15:34 UTC (rev 36016)
+++ data/dsa-needed.txt	2015-08-12 14:41:58 UTC (rev 36017)
@@ -27,8 +27,6 @@
 glibc (aurel32)
   some of the other no-dsa bugs could be fixed along
 --
-gnutls28/stable (carnil)
---
 icu (ghedo)
 --
 imagemagick/oldstable




More information about the Secure-testing-commits mailing list