[Secure-testing-commits] r37652 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Nov 10 19:03:32 UTC 2015


Author: carnil
Date: 2015-11-10 19:03:32 +0000 (Tue, 10 Nov 2015)
New Revision: 37652

Modified:
   data/CVE/list
Log:
Add bug reference for CVE-2015-531{4,5}/wpa, #804708

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-11-10 19:03:22 UTC (rev 37651)
+++ data/CVE/list	2015-11-10 19:03:32 UTC (rev 37652)
@@ -7083,7 +7083,7 @@
 	NOTE: https://w1.fi/security/2015-8/0001-EAP-pwd-peer-Fix-error-path-for-unexpected-Confirm-m.patch
 CVE-2015-5315 [wpa_supplicant: EAP-pwd missing last fragment length validation]
 	RESERVED
-	- wpa <unfixed>
+	- wpa <unfixed> (bug #804708)
 	[wheezy] - wpa <not-affected> (v2.0-v2.5 with CONFIG_EAP_PWD=y)
 	- wpasupplicant <not-affected> (v2.0-v2.5 with CONFIG_EAP_PWD=y)
 	- hostapd <not-affected> (v2.0-v2.5 with CONFIG_EAP_PWD=y)
@@ -7092,7 +7092,7 @@
 	NOTE: https://w1.fi/security/2015-7/0001-EAP-pwd-peer-Fix-last-fragment-length-validation.patch
 CVE-2015-5314 [hostapd: EAP-pwd missing last fragment length validation]
 	RESERVED
-	- wpa <unfixed>
+	- wpa <unfixed> (bug #804708)
 	[wheezy] - wpa <not-affected> (v2.0-v2.5 with CONFIG_EAP_PWD=y)
 	- wpasupplicant <not-affected> (v2.0-v2.5 with CONFIG_EAP_PWD=y)
 	- hostapd <not-affected> (v2.0-v2.5 with CONFIG_EAP_PWD=y)




More information about the Secure-testing-commits mailing list