[Secure-testing-commits] r34687 - in data: . CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Wed Jun 3 17:21:38 UTC 2015


Author: jmm
Date: 2015-06-03 17:21:38 +0000 (Wed, 03 Jun 2015)
New Revision: 34687

Modified:
   data/CVE/list
   data/next-point-update.txt
Log:
ufraw spu
sharutils unimportant


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-06-03 17:11:42 UTC (rev 34686)
+++ data/CVE/list	2015-06-03 17:21:38 UTC (rev 34687)
@@ -9,7 +9,8 @@
 	- linux-2.6 <removed>
 	NOTE: https://git.kernel.org/cgit/linux/kernel/git/torvalds/linux.git/commit/?id=beb39db59d14990e401e235faf66a6b9b31240b0
 CVE-2015-XXXX [uudecode: stack out of bounds read access]
-	- sharutils <unfixed>
+	- sharutils <unfixed> (unimportant)
+	NOTE: Negligable security impact
 	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2015/06/02/8
 CVE-2015-XXXX [fs: udf heap overflow in __udf_adinicb_readpage]
 	- linux 4.0.2-1

Modified: data/next-point-update.txt
===================================================================
--- data/next-point-update.txt	2015-06-03 17:11:42 UTC (rev 34686)
+++ data/next-point-update.txt	2015-06-03 17:21:38 UTC (rev 34687)
@@ -59,6 +59,7 @@
 CVE-2015-3885
 	[jessie] - exactimage 0.8.9-7+deb8u1
 	[jessie] - libraw 0.16.0-9+deb8u1
+	[jessie] - ufraw 0.20-2+deb8u1
 CVE-2015-XXXX [XSS in group administration]
 	[jessie] - php-horde 5.2.1+debian0-2+deb8u1
 	NOTE: for #785364




More information about the Secure-testing-commits mailing list