[Secure-testing-commits] r32017 - data/CVE

Raphaël Hertzog hertzog at moszumanska.debian.org
Fri Feb 6 09:52:52 UTC 2015


Author: hertzog
Date: 2015-02-06 09:52:51 +0000 (Fri, 06 Feb 2015)
New Revision: 32017

Modified:
   data/CVE/list
Log:
Add more data on CVE-2015-0418 and CVE-2015-0377

Upstream provided patches to the respective security fixes.

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-02-06 09:22:45 UTC (rev 32016)
+++ data/CVE/list	2015-02-06 09:52:51 UTC (rev 32017)
@@ -3551,6 +3551,7 @@
 	- virtualbox 4.3.2-dfsg-1 (low; bug #775888)
 	- virtualbox-ose <removed> (low)
 	NOTE: This only affects releases < 4.3, so marking the first 4.3 upload as the fixed version
+	NOTE: Upstream patches in https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=775888#30
 CVE-2015-0417 (Unspecified vulnerability in the Siebel UI Framework component in ...)
 	NOT-FOR-US: Oracle
 CVE-2015-0416 (Unspecified vulnerability in the Oracle Agile PLM component in Oracle ...)
@@ -3683,10 +3684,11 @@
 	NOT-FOR-US: Oracle Sun Solaris
 CVE-2015-0377 (Unspecified vulnerability in the Oracle VM VirtualBox component in ...)
 	{DSA-3143-1}
-	- virtualbox 4.3.2-dfsg-1
+	- virtualbox 4.3.2-dfsg-1 (bug #775888)
 	- virtualbox-ose <removed>
 	NOTE: According to http://www.oracle.com/technetwork/topics/security/cpujan2015-1972971.html the 4.3
 	NOTE: series is not affected, so marking the first 4.3 upload as fixed
+	NOTE: Upstream patches in https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=775888#30
 CVE-2015-0376 (Unspecified vulnerability in the Oracle WebCenter Content component in ...)
 	NOT-FOR-US: Oracle
 CVE-2015-0375 (Unspecified vulnerability in Oracle Sun Solaris 10 and 11 allows ...)




More information about the Secure-testing-commits mailing list