[Secure-testing-commits] r32897 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sun Mar 15 20:24:16 UTC 2015


Author: carnil
Date: 2015-03-15 20:24:16 +0000 (Sun, 15 Mar 2015)
New Revision: 32897

Modified:
   data/CVE/list
Log:
Mark squeeze-lts version for MATTA-2015-002 issue in putty

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-03-15 20:12:23 UTC (rev 32896)
+++ data/CVE/list	2015-03-15 20:24:16 UTC (rev 32897)
@@ -545,6 +545,8 @@
 CVE-2015-XXXX [MATTA-2015-002: Enforce acceptable range for Diffie-Hellman server value]
 	- putty 0.63-10
 	[wheezy] - putty 0.62-9+deb7u2
+	[squeeze] - putty 0.60+2010-02-20-1+squeeze3
+	NOTE: temporary workaround until CVE assigned to explitly tag for wheezy+squeeze
 	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2015/02/27/4
 	NOTE: https://www.trustmatta.com/advisories/MATTA-2015-002.txt (not yet published)
 CVE-2015-2172 [DokuWiki privilege escalation in RPC API]




More information about the Secure-testing-commits mailing list