[Secure-testing-commits] r38076 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Thu Dec 3 16:25:36 UTC 2015


Author: jmm
Date: 2015-12-03 16:25:34 +0000 (Thu, 03 Dec 2015)
New Revision: 38076

Modified:
   data/CVE/list
Log:
yubiserver no-dsa


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-12-03 15:55:18 UTC (rev 38075)
+++ data/CVE/list	2015-12-03 16:25:34 UTC (rev 38076)
@@ -22243,6 +22243,7 @@
 CVE-2015-0843 [Buffer overflows due to misuse of sprintf]
 	RESERVED
 	- yubiserver 0.6-1 (bug #796495)
+	[jessie] - yubiserver <no-dsa> (Mitigated by toolchain hardening)
 CVE-2015-0842 [SQL injection issues (potential auth bypass)]
 	RESERVED
 	- yubiserver 0.6-1 (bug #796495)




More information about the Secure-testing-commits mailing list