[Secure-testing-commits] r31825 - in data: . CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Thu Jan 29 16:02:32 UTC 2015


Author: jmm
Date: 2015-01-29 16:02:32 +0000 (Thu, 29 Jan 2015)
New Revision: 31825

Modified:
   data/CVE/list
   data/dsa-needed.txt
Log:
new xen issue
fso-* no-dsa
add vlc to dsa-needed


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-01-29 15:47:01 UTC (rev 31824)
+++ data/CVE/list	2015-01-29 16:02:32 UTC (rev 31825)
@@ -1,3 +1,7 @@
+CVE-2015-XXXX [XSA-118]
+	- xen <unfixed> (low)
+	[wheezy] - xen <not-affected> (Only affects 4.4 and later on arm)
+	[squeeze] - xen <not-affected> (Only affects 4.4 and later on arm)
 CVE-2015-XXXX [AST-2015-002: Mitigation for libcURL HTTP request injection vulnerability]
 	- asterisk <unfixed>
 	NOTE: https://issues.asterisk.org/jira/browse/ASTERISK-24676
@@ -23,7 +27,6 @@
 	- linux <unfixed>
 	- linux-2.6 <removed>
 	NOTE: http://marc.info/?l=linux-kernel&m=142247707318982&w=2
-	TODO: check
 CVE-2015-1405
 	NOT-FOR-US: typo3 extension
 CVE-2015-1404
@@ -3611,6 +3614,7 @@
 CVE-2014-9328
 	RESERVED
 	- clamav 0.98.6+dfsg-1
+	[wheezy] - clamav <no-dsa> (Updated through stable-updates)
 CVE-2014-9327
 	RESERVED
 CVE-2014-9326
@@ -7524,9 +7528,12 @@
 CVE-2014-8156
 	RESERVED
 	- fso-deviced 0.12.0-5
+	[wheezy] - fso-deviced <no-dsa> (Minor issue)
 	- fso-datad 0.12.0-3
+	[wheezy] - fso-datad <no-dsa> (Minor issue)
 	- fso-frameworkd 0.9.5.9+git20110512-5
 	- fso-gsmd 0.12.0-4
+	[wheezy] - fso-gsmd <no-dsa> (Minor issue)
 	- fso-usaged 0.12.0-3
 	- phonefsod 0.1+git20121018-2
 CVE-2014-8155

Modified: data/dsa-needed.txt
===================================================================
--- data/dsa-needed.txt	2015-01-29 15:47:01 UTC (rev 31824)
+++ data/dsa-needed.txt	2015-01-29 16:02:32 UTC (rev 31825)
@@ -83,4 +83,6 @@
 unrtf (carnil)
   NOTE: This is still work in progress as tricky (maintainer is involved)
 --
+vlc
+--
 zendframework




More information about the Secure-testing-commits mailing list