[Secure-testing-commits] r32676 - data/CVE

Alessandro Ghedini ghedo at moszumanska.debian.org
Fri Mar 6 12:19:57 UTC 2015


Author: ghedo
Date: 2015-03-06 12:19:57 +0000 (Fri, 06 Mar 2015)
New Revision: 32676

Modified:
   data/CVE/list
Log:
Mark sqlite3 issue as unfixed in sid (but fixed in experimental), add link to patch

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-03-06 11:27:00 UTC (rev 32675)
+++ data/CVE/list	2015-03-06 12:19:57 UTC (rev 32676)
@@ -3880,8 +3880,10 @@
 	NOTE: http://www.openwall.com/lists/oss-security/2015/01/12/3
 	NOTE: Patch: http://lists.nongnu.org/archive/html/chicken-hackers/2014-12/txt2UqAS9CtvH.txt
 CVE-2015-XXXX [Crashes due to fuzzed input]
-	- sqlite3 <undetermined>
+	[experimental] - sqlite3 3.8.8.2-1
+	- sqlite3 <unfixed>
 	NOTE: https://www.sqlite.org/src/info/a59ae93ee990a55
+	NOTE: Patch: https://www.sqlite.org/src/info/fe5788633131281a
 CVE-2015-1194 (pax 1:20140703 allows remote attackers to write to arbitrary files via ...)
 	- pax <unfixed> (low; bug #774716)
 	[jessie] - pax <no-dsa> (Minor issue)




More information about the Secure-testing-commits mailing list