[Secure-testing-commits] r34003 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Fri May 1 10:10:36 UTC 2015


Author: jmm
Date: 2015-05-01 10:10:36 +0000 (Fri, 01 May 2015)
New Revision: 34003

Modified:
   data/CVE/list
Log:
clamav is updated through oldstable/stable-updates (since it
  needs to be frequently up-to-date in its scan engine)


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-05-01 09:10:18 UTC (rev 34002)
+++ data/CVE/list	2015-05-01 10:10:36 UTC (rev 34003)
@@ -2062,6 +2062,8 @@
 CVE-2015-2668 [Infinite loop condition on a crafted "xz" archive file]
 	RESERVED
 	- clamav <unfixed>
+	[wheezy] - clamav <no-dsa> (Clamav is only updated through -updates)
+	[jessie] - clamav <no-dsa> (Clamav is only updated through -updates)
 CVE-2015-2667
 	RESERVED
 CVE-2015-2665
@@ -3301,9 +3303,13 @@
 CVE-2015-2222 [Crash on crafted petite packed file]
 	RESERVED
 	- clamav <unfixed>
+	[wheezy] - clamav <no-dsa> (Clamav is only updated through -updates)
+	[jessie] - clamav <no-dsa> (Clamav is only updated through -updates)
 CVE-2015-2221 [Infinite loop condition on crafted y0da cryptor file]
 	RESERVED
 	- clamav <unfixed>
+	[wheezy] - clamav <no-dsa> (Clamav is only updated through -updates)
+	[jessie] - clamav <no-dsa> (Clamav is only updated through -updates)
 CVE-2015-2220 (Multiple cross-site scripting (XSS) vulnerabilities in the Ninja Forms ...)
 	NOT-FOR-US: Ninja Forms plugin for WordPress
 CVE-2015-2219
@@ -3453,6 +3459,8 @@
 CVE-2015-2170 [Crash in upx decoder with crafted file]
 	RESERVED
 	- clamav <unfixed>
+	[wheezy] - clamav <no-dsa> (Clamav is only updated through -updates)
+	[jessie] - clamav <no-dsa> (Clamav is only updated through -updates)
 CVE-2015-2169
 	RESERVED
 CVE-2015-2168




More information about the Secure-testing-commits mailing list