[Secure-testing-commits] r36463 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Sep 4 04:49:22 UTC 2015


Author: carnil
Date: 2015-09-04 04:49:22 +0000 (Fri, 04 Sep 2015)
New Revision: 36463

Modified:
   data/CVE/list
Log:
Mention possible removal for dnsval in jessie, needs update for irssi and kamilio as well

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2015-09-04 04:44:12 UTC (rev 36462)
+++ data/CVE/list	2015-09-04 04:49:22 UTC (rev 36463)
@@ -1,6 +1,8 @@
 CVE-2015-XXXX [val_dane_check: usage DANE-TA(2) may bypass cert validation entirely]
 	[experimental] - dnsval 2.1-1
 	- dnsval 2.0-2 (bug #797470)
+	[jessie] - dnsval <no-dsa> (Should possibly be removed in a stable-proposed-update from Jessie)
+	NOTE: Removal in jessie would need as well update to irssi and kamailio
 	NOTE: dnsval/2.0-2 only disables/let val_dane_check fail on usage 2 because not implemented correctly
 CVE-2015-XXXX [Memory corruption]
 	- libvncserver 0.9.8-1




More information about the Secure-testing-commits mailing list