[Secure-testing-commits] r36460 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Sep 4 04:33:14 UTC 2015


Author: carnil
Date: 2015-09-04 04:33:14 +0000 (Fri, 04 Sep 2015)
New Revision: 36460

Modified:
   data/CVE/list
Log:
Add note for dnsval issue

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-09-03 23:28:39 UTC (rev 36459)
+++ data/CVE/list	2015-09-04 04:33:14 UTC (rev 36460)
@@ -1,6 +1,7 @@
 CVE-2015-XXXX [val_dane_check: usage DANE-TA(2) may bypass cert validation entirely]
 	[experimental] - dnsval 2.1-1
 	- dnsval 2.0-2 (bug #797470)
+	NOTE: dnsval/2.0-2 only disables usage 2 because not implemented correctly
 CVE-2015-XXXX [Memory corruption]
 	- libvncserver 0.9.8-1
 	NOTE: https://github.com/LibVNC/libvncserver/commit/804335f9d296440bb708ca844f5d89b58b50b0c6




More information about the Secure-testing-commits mailing list