[Secure-testing-commits] r32384 - in data: . CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Sat Feb 21 17:49:55 UTC 2015


Author: jmm
Date: 2015-02-21 17:49:55 +0000 (Sat, 21 Feb 2015)
New Revision: 32384

Modified:
   data/CVE/list
   data/dsa-needed.txt
Log:
take linux
two glance issues not in wheezy
yap no-dsa for jessie


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-02-21 17:00:33 UTC (rev 32383)
+++ data/CVE/list	2015-02-21 17:49:55 UTC (rev 32384)
@@ -913,8 +913,8 @@
 CVE-2014-9684 [Glance import task leaks image in backend]
 	RESERVED
 	- glance <unfixed>
+	[wheezy] - glance <not-affected> (Vulnerable code not present)
 	NOTE: https://review.openstack.org/#/c/122427/
-	TODO: check
 CVE-2014-9683 [ecryptfs 1-byte overwrite]
 	RESERVED
 	- linux 3.16.7-ckt4-1
@@ -1037,6 +1037,7 @@
 	[squeeze] - newlib <no-dsa> (Minor issue)
 	[wheezy] - newlib <no-dsa> (Minor issue)
 	- yap <unfixed> (low; bug #778410)
+	[jessie] - yap <no-dsa> (Minor issue)
 	[squeeze] - yap <no-dsa> (Minor issue)
 	[wheezy] - yap <no-dsa> (Minor issue)
 	- vnc4 <unfixed> (bug #778403)
@@ -1064,8 +1065,8 @@
 CVE-2015-1881 [Glance import task leaks image in backend]
 	RESERVED
 	- glance <unfixed>
+	[wheezy] - glance <not-affected> (Vulnerable code not present)
 	NOTE: https://review.openstack.org/#/c/156553
-	TODO: check
 CVE-2015-1877 [command injection vulnerability]
 	RESERVED
 	- xdg-utils <unfixed> (bug #777722)

Modified: data/dsa-needed.txt
===================================================================
--- data/dsa-needed.txt	2015-02-21 17:00:33 UTC (rev 32383)
+++ data/dsa-needed.txt	2015-02-21 17:49:55 UTC (rev 32384)
@@ -38,7 +38,7 @@
 --
 libphp-snoopy
 --
-linux
+linux (jmm)
   Current issues rather harmless, maybe wait more for further issues
 --
 movabletype-opensource (carnil)




More information about the Secure-testing-commits mailing list