[Secure-testing-commits] r36305 - in data: CVE DLA DSA

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Aug 26 05:00:43 UTC 2015


Author: carnil
Date: 2015-08-26 05:00:42 +0000 (Wed, 26 Aug 2015)
New Revision: 36305

Modified:
   data/CVE/list
   data/DLA/list
   data/DSA/list
Log:
CVEs assigned for insircd issues

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-08-25 21:10:11 UTC (rev 36304)
+++ data/CVE/list	2015-08-26 05:00:42 UTC (rev 36305)
@@ -11454,22 +11454,18 @@
 	[jessie] - dokuwiki <no-dsa> (Minor issue)
 	[wheezy] - dokuwiki <no-dsa> (Minor issue)
 	[squeeze] - dokuwiki <no-dsa> (Minor issue)
-CVE-2015-XXXX [Incorrect fix for CVE-2012-1836]
+CVE-2015-6674 [problem of "i =- 12" where "i -= 12" was intended]
 	- inspircd 2.0.16-1 (bug #780880)
-	[wheezy] - inspircd 2.0.5-1+deb7u1
-	[squeeze] - inspircd 1.1.22+dfsg-4+squeeze2
-	NOTE: wheezy-tagged entry as temporary workaround until CVE assigned for issue solved in DSA-3226-1
-	NOTE: squeeze-tagged entry as temporary workaround until CVE assigned for issue solved in DLA-276-1
 	NOTE: Correct fix: https://github.com/inspircd/inspircd/commit/ed28c1ba666b39581adb860bf51cdde43c84cc89
-	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2015/03/29/5
-CVE-2014-XXXX [infinite loop cauesd by invalid dns packets]
+	NOTE: http://www.openwall.com/lists/oss-security/2015/03/29/5
+CVE-2012-6696 [mishandling of unsigned values]
 	- inspircd 2.0.16-1 (bug #780880)
-	[wheezy] - inspircd 2.0.5-1+deb7u1
-	[squeeze] - inspircd 1.1.22+dfsg-4+squeeze2
-	NOTE: wheezy-tagged entry as temporary workaround until CVE assigned for issue solved in DSA-3226-1
-	NOTE: squeeze-tagged entry as temporary workaround until CVE assigned for issue solved in DLA-276-1
+	NOTE: Correct fix: https://github.com/inspircd/inspircd/commit/ed28c1ba666b39581adb860bf51cdde43c84cc89
+	NOTE: http://www.openwall.com/lists/oss-security/2015/03/29/5
+CVE-2012-6697 [infinite loop cauesd by invalid dns packets]
+	- inspircd 2.0.16-1 (bug #780880)
 	NOTE: https://github.com/inspircd/inspircd/commit/58c893e834ff20495d007709220881a3ff13f423
-	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2015/03/29/5
+	NOTE: http://www.openwall.com/lists/oss-security/2015/03/29/5
 CVE-2015-2788 (Multiple stack-based buffer overflows in the ib_fill_isqlda function ...)
 	{DSA-3219-1}
 	- libdbd-firebird-perl 1.18-2 (bug #780925)

Modified: data/DLA/list
===================================================================
--- data/DLA/list	2015-08-25 21:10:11 UTC (rev 36304)
+++ data/DLA/list	2015-08-26 05:00:42 UTC (rev 36305)
@@ -69,6 +69,7 @@
 	{CVE-2015-2059}
 	[squeeze] - libidn 1.15-2+deb6u1
 [18 Jul 2015] DLA-276-1 inspircd - security update
+	{CVE-2012-6696 CVE-2012-6697 CVE-2015-6674}
 	[squeeze] - inspircd 1.1.22+dfsg-4+squeeze2
 [18 Jul 2015] DLA-275-1 ruby1.9.1 - security update
 	{CVE-2014-6438}

Modified: data/DSA/list
===================================================================
--- data/DSA/list	2015-08-25 21:10:11 UTC (rev 36304)
+++ data/DSA/list	2015-08-26 05:00:42 UTC (rev 36305)
@@ -427,6 +427,7 @@
 	{CVE-2015-0845}
 	[wheezy] - movabletype-opensource 5.1.4+dfsg-4+deb7u3
 [15 Apr 2015] DSA-3226-1 inspircd - security update
+	{CVE-2012-6696 CVE-2012-6697 CVE-2015-6674}
 	[wheezy] - inspircd 2.0.5-1+deb7u1
 [15 Apr 2015] DSA-3225-1 gst-plugins-bad0.10 - security update
 	{CVE-2015-0797}




More information about the Secure-testing-commits mailing list