[Secure-testing-commits] r32384 - in data: . CVE
Moritz Muehlenhoff
jmm at moszumanska.debian.org
Sat Feb 21 17:49:55 UTC 2015
Author: jmm
Date: 2015-02-21 17:49:55 +0000 (Sat, 21 Feb 2015)
New Revision: 32384
Modified:
data/CVE/list
data/dsa-needed.txt
Log:
take linux
two glance issues not in wheezy
yap no-dsa for jessie
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2015-02-21 17:00:33 UTC (rev 32383)
+++ data/CVE/list 2015-02-21 17:49:55 UTC (rev 32384)
@@ -913,8 +913,8 @@
CVE-2014-9684 [Glance import task leaks image in backend]
RESERVED
- glance <unfixed>
+ [wheezy] - glance <not-affected> (Vulnerable code not present)
NOTE: https://review.openstack.org/#/c/122427/
- TODO: check
CVE-2014-9683 [ecryptfs 1-byte overwrite]
RESERVED
- linux 3.16.7-ckt4-1
@@ -1037,6 +1037,7 @@
[squeeze] - newlib <no-dsa> (Minor issue)
[wheezy] - newlib <no-dsa> (Minor issue)
- yap <unfixed> (low; bug #778410)
+ [jessie] - yap <no-dsa> (Minor issue)
[squeeze] - yap <no-dsa> (Minor issue)
[wheezy] - yap <no-dsa> (Minor issue)
- vnc4 <unfixed> (bug #778403)
@@ -1064,8 +1065,8 @@
CVE-2015-1881 [Glance import task leaks image in backend]
RESERVED
- glance <unfixed>
+ [wheezy] - glance <not-affected> (Vulnerable code not present)
NOTE: https://review.openstack.org/#/c/156553
- TODO: check
CVE-2015-1877 [command injection vulnerability]
RESERVED
- xdg-utils <unfixed> (bug #777722)
Modified: data/dsa-needed.txt
===================================================================
--- data/dsa-needed.txt 2015-02-21 17:00:33 UTC (rev 32383)
+++ data/dsa-needed.txt 2015-02-21 17:49:55 UTC (rev 32384)
@@ -38,7 +38,7 @@
--
libphp-snoopy
--
-linux
+linux (jmm)
Current issues rather harmless, maybe wait more for further issues
--
movabletype-opensource (carnil)
More information about the Secure-testing-commits
mailing list