[Secure-testing-commits] r31426 - in data: . CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Sat Jan 17 13:42:01 UTC 2015


Author: jmm
Date: 2015-01-17 13:42:01 +0000 (Sat, 17 Jan 2015)
New Revision: 31426

Modified:
   data/CVE/list
   data/dsa-needed.txt
Log:
add typo to dsa-needed
lftp no-dsa


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-01-17 11:26:25 UTC (rev 31425)
+++ data/CVE/list	2015-01-17 13:42:01 UTC (rev 31426)
@@ -1445,7 +1445,9 @@
 	[wheezy] - arc <no-dsa> (Minor issue)
 	[jessie] - arc <no-dsa> (Minor issue)
 CVE-2015-XXXX [saves unknown host's fingerprint in known_hosts without any prompt]
-	- lftp <unfixed> (bug #774769)
+	- lftp <unfixed> (low; bug #774769)
+	[squeeze] - lftp <no-dsa> (Minor issue)
+	[wheezy] - lftp <no-dsa> (Minor issue)
 CVE-2014-9587 [possible CSRF attacks to some address book operations as well as to the ACL and Managesieve plugins]
 	RESERVED
 	- roundcube <unfixed>

Modified: data/dsa-needed.txt
===================================================================
--- data/dsa-needed.txt	2015-01-17 11:26:25 UTC (rev 31425)
+++ data/dsa-needed.txt	2015-01-17 13:42:01 UTC (rev 31426)
@@ -57,6 +57,8 @@
 --
 tomcat7
 --
+typo3-src
+--
 unrtf (carnil)
 --
 wireshark




More information about the Secure-testing-commits mailing list