[Secure-testing-commits] r38183 - data/CVE

Guido Guenther agx at moszumanska.debian.org
Wed Dec 9 08:01:07 UTC 2015


Author: agx
Date: 2015-12-09 08:01:07 +0000 (Wed, 09 Dec 2015)
New Revision: 38183

Modified:
   data/CVE/list
Log:
Squeeze's proftpd-dfsg not affected

Extended attribute parsing code not yet used

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-12-09 08:00:41 UTC (rev 38182)
+++ data/CVE/list	2015-12-09 08:01:07 UTC (rev 38183)
@@ -629,6 +629,7 @@
 	RESERVED
 CVE-2015-XXXX [Avoid unbounded SFTP extended attribute key/values]
 	- proftpd-dfsg <unfixed>
+	[squeeze] - proftpd-dfsg <not-affected> (Vulerable code not present)
 	NOTE: http://bugs.proftpd.org/show_bug.cgi?id=4210
 	NOTE: https://github.com/proftpd/proftpd/pull/171
 	TODO: check




More information about the Secure-testing-commits mailing list