[Secure-testing-commits] r39494 - data/CVE

Antoine Beaupré anarcat at moszumanska.debian.org
Fri Feb 5 20:15:33 UTC 2016


Author: anarcat
Date: 2016-02-05 20:15:33 +0000 (Fri, 05 Feb 2016)
New Revision: 39494

Modified:
   data/CVE/list
Log:
add todo for libxml, maybe we're not vulnerable like the previous one?

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-02-05 20:08:10 UTC (rev 39493)
+++ data/CVE/list	2016-02-05 20:15:33 UTC (rev 39494)
@@ -306,6 +306,7 @@
 	RESERVED
 	- libxml2 <unfixed> (bug #813613)
 	NOTE: https://bugzilla.gnome.org/show_bug.cgi?id=749115
+	TODO: confirm which versions affected
 CVE-2015-8805 [miscomputation bugs in secp-256r1 modulo functions]
 	RESERVED
 	- nettle <unfixed> (bug #813679)
@@ -520,6 +521,7 @@
 	- libxml2 <unfixed> (bug #812807)
 	NOTE: http://www.openwall.com/lists/oss-security/2016/01/25/6
 	NOTE: http://www.openwall.com/lists/oss-security/2016/01/26/8 has details
+	TODO: confirm which versions affected
 CVE-2016-2070 [division by zero in TCP code]
 	RESERVED
 	- linux <unfixed>




More information about the Secure-testing-commits mailing list