[Secure-testing-commits] r46977 - in data: . CVE DSA

Michael Gilbert mgilbert at moszumanska.debian.org
Sun Dec 11 20:53:33 UTC 2016


Author: mgilbert
Date: 2016-12-11 20:53:33 +0000 (Sun, 11 Dec 2016)
New Revision: 46977

Modified:
   data/CVE/list
   data/DSA/list
   data/embedded-code-copies
Log:
clarify chromium ffmpeg issue (package in unstable now uses system ffmpeg)

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-12-11 20:53:15 UTC (rev 46976)
+++ data/CVE/list	2016-12-11 20:53:33 UTC (rev 46977)
@@ -22901,7 +22901,7 @@
 	NOTE: libv8 not covered by security support
 CVE-2016-5199 [heap corruption in ffmpeg]
 	RESERVED
-	- chromium-browser <unfixed>
+	- chromium-browser 44.0.2403.157-1
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 	- ffmpeg 7:3.2-1
 	- libav <undetermined>

Modified: data/DSA/list
===================================================================
--- data/DSA/list	2016-12-11 20:53:15 UTC (rev 46976)
+++ data/DSA/list	2016-12-11 20:53:33 UTC (rev 46977)
@@ -1,5 +1,5 @@
 [11 Dec 2016] DSA-3731-1 chromium-browser - security update
-	{CVE-2016-5181 CVE-2016-5182 CVE-2016-5183 CVE-2016-5184 CVE-2016-5185 CVE-2016-5186 CVE-2016-5187 CVE-2016-5188 CVE-2016-5189 CVE-2016-5190 CVE-2016-5191 CVE-2016-5192 CVE-2016-5193 CVE-2016-5194 CVE-2016-5198 CVE-2016-5200 CVE-2016-5201 CVE-2016-5202 CVE-2016-5203 CVE-2016-5204 CVE-2016-5205 CVE-2016-5206 CVE-2016-5207 CVE-2016-5208 CVE-2016-5209 CVE-2016-5210 CVE-2016-5211 CVE-2016-5212 CVE-2016-5213 CVE-2016-5214 CVE-2016-5215 CVE-2016-5216 CVE-2016-5217 CVE-2016-5218 CVE-2016-5219 CVE-2016-5220 CVE-2016-5221 CVE-2016-5222 CVE-2016-5223 CVE-2016-5224 CVE-2016-5225 CVE-2016-5226 CVE-2016-9650 CVE-2016-9651 CVE-2016-9652}
+	{CVE-2016-5181 CVE-2016-5182 CVE-2016-5183 CVE-2016-5184 CVE-2016-5185 CVE-2016-5186 CVE-2016-5187 CVE-2016-5188 CVE-2016-5189 CVE-2016-5190 CVE-2016-5191 CVE-2016-5192 CVE-2016-5193 CVE-2016-5194 CVE-2016-5198 CVE-2016-5199 CVE-2016-5200 CVE-2016-5201 CVE-2016-5202 CVE-2016-5203 CVE-2016-5204 CVE-2016-5205 CVE-2016-5206 CVE-2016-5207 CVE-2016-5208 CVE-2016-5209 CVE-2016-5210 CVE-2016-5211 CVE-2016-5212 CVE-2016-5213 CVE-2016-5214 CVE-2016-5215 CVE-2016-5216 CVE-2016-5217 CVE-2016-5218 CVE-2016-5219 CVE-2016-5220 CVE-2016-5221 CVE-2016-5222 CVE-2016-5223 CVE-2016-5224 CVE-2016-5225 CVE-2016-5226 CVE-2016-9650 CVE-2016-9651 CVE-2016-9652}
 	[jessie] - chromium-browser 55.0.2883.75-1~deb8u1
 [11 Dec 2016] DSA-3730-1 icedove - security update
 	{CVE-2016-5290 CVE-2016-5291 CVE-2016-5296 CVE-2016-5297 CVE-2016-9066 CVE-2016-9074 CVE-2016-9079}

Modified: data/embedded-code-copies
===================================================================
--- data/embedded-code-copies	2016-12-11 20:53:15 UTC (rev 46976)
+++ data/embedded-code-copies	2016-12-11 20:53:33 UTC (rev 46977)
@@ -373,7 +373,7 @@
 	TODO: gimp-gap (potentially using ffmpeg code as well)
 	- avifile 1:0.7.48~20090503.ds-1 (embed; bug #538750)
 	- audacity 1.3.7-2 (embed; bug #512278)
-	- chromium-browser <unfixed> (fork; bug #763632)
+	- chromium-browser 44.0.2403.157-1 (fork; bug #763632)
 	- libav <unfixed>
 
 faad2




More information about the Secure-testing-commits mailing list