[Secure-testing-commits] r47379 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Dec 23 09:49:15 UTC 2016


Author: carnil
Date: 2016-12-23 09:49:15 +0000 (Fri, 23 Dec 2016)
New Revision: 47379

Modified:
   data/CVE/list
Log:
Add fixing version for CVE-2016-5405/389-ds-base, #842121

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-12-23 09:48:01 UTC (rev 47378)
+++ data/CVE/list	2016-12-23 09:49:15 UTC (rev 47379)
@@ -22464,7 +22464,7 @@
 	NOT-FOR-US: JBoss EAP
 CVE-2016-5405 [Password verification vulnerable to timing attack]
 	RESERVED
-	- 389-ds-base <unfixed> (bug #842121)
+	- 389-ds-base 1.3.5.15-1 (bug #842121)
 CVE-2016-5404 (The cert_revoke command in FreeIPA does not check for the "revoke ...)
 	- freeipa 4.3.2-5 (bug #835131)
 	NOTE: https://git.fedorahosted.org/cgit/freeipa.git/commit/?id=cf74584d0f772f3f5eccc1d30c001e4212a104fd (master)




More information about the Secure-testing-commits mailing list