[Secure-testing-commits] r35390 - data/CVE

Thijs Kinkhorst thijs at moszumanska.debian.org
Thu Jul 9 12:53:14 UTC 2015


Author: thijs
Date: 2015-07-09 12:53:14 +0000 (Thu, 09 Jul 2015)
New Revision: 35390

Modified:
   data/CVE/list
Log:
openssl alternative chains certificate forgery


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-07-09 12:21:49 UTC (rev 35389)
+++ data/CVE/list	2015-07-09 12:53:14 UTC (rev 35390)
@@ -9852,8 +9852,11 @@
 	- glusterfs <not-affected> (Vulnerable code specific to glusterfs.spec and not present in source in Debian)
 CVE-2015-1794
 	RESERVED
-CVE-2015-1793
+CVE-2015-1793 [Alternative chains certificate forgery]
 	RESERVED
+	- openssl <unfixed>
+	[squeeze] - openssl <not-affected> (Vulnerable code not present)
+	NOTE: http://openssl.org/news/secadv_20150709.txt
 CVE-2015-1792 (The do_free_upto function in crypto/cms/cms_smime.c in OpenSSL before ...)
 	{DSA-3287-1 DLA-247-1}
 	- openssl 1.0.2b-1




More information about the Secure-testing-commits mailing list