[Secure-testing-commits] r32285 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Tue Feb 17 16:35:58 UTC 2015


Author: jmm
Date: 2015-02-17 16:35:58 +0000 (Tue, 17 Feb 2015)
New Revision: 32285

Modified:
   data/CVE/list
Log:
no-dsa: yap, newlib, gnome-orca
knews n/a


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-02-17 16:03:07 UTC (rev 32284)
+++ data/CVE/list	2015-02-17 16:35:58 UTC (rev 32285)
@@ -107,12 +107,16 @@
 	- openrpt <unfixed> (bug #778398)
 	- z88dk <unfixed> (bug #778399)
 	- newlib <unfixed> (bug #778408)
-	- yap <unfixed> (bug #778410)
+	[squeeze] - newlib <no-dsa> (Minor issue)
+	[wheezy] - newlib <no-dsa> (Minor issue)
+	- yap <unfixed> (low; bug #778410)
+	[squeeze] - yap <no-dsa> (Minor issue)
+	[wheezy] - yap <no-dsa> (Minor issue)
 	- vnc4 <unfixed> (bug #778403)
 	- sma <not-affected> (Local regex copy only used when building on Windows, see #778411)
 	- clamav <unfixed> (unimportant; bug #778406)
 	NOTE: Only exploitable through virusdb updates, which need to be trusted anywaya
-	- knews <unfixed> (bug #778401)
+	- knews <not-affected> (Uses system regex code, see #778401)
 	- radare2 <unfixed> (bug #778402)
 	- efl <unfixed> (bug #778414)
 	- ptlib <unfixed> (unimportant; bug #778404)
@@ -37519,6 +37523,7 @@
 CVE-2013-4245 [Arbitrary code execution due to insecure CWD Python module load]
 	RESERVED
 	- gnome-orca <unfixed>
+	[jessie] - gnome-orca <no-dsa> (Minor issue)
 	[wheezy] - gnome-orca <no-dsa> (Minor issue)
 	[squeeze] - gnome-orca <no-dsa> (Minor issue)
 CVE-2013-4244 (The LZW decompressor in the gif2tiff tool in libtiff 4.0.3 and earlier ...)




More information about the Secure-testing-commits mailing list