[Secure-testing-commits] r39859 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Feb 23 20:14:48 UTC 2016


Author: carnil
Date: 2016-02-23 20:14:48 +0000 (Tue, 23 Feb 2016)
New Revision: 39859

Modified:
   data/CVE/list
Log:
Update information on CVE-2015-3217/pcre3

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-02-23 19:59:48 UTC (rev 39858)
+++ data/CVE/list	2016-02-23 20:14:48 UTC (rev 39859)
@@ -22578,8 +22578,8 @@
 	[wheezy] - pcre3 <no-dsa> (Minor issue)
 	[squeeze] - pcre3 <no-dsa> (Minor issue)
 	NOTE: https://bugs.exim.org/show_bug.cgi?id=1638
-	NOTE: Related commit: http://vcs.pcre.org/pcre/code/trunk/pcre_compile.c?r1=1560&r2=1562&pathrev=1562
-	NOTE: http://vcs.pcre.org/pcre/code/trunk/pcre_compile.c?r1=1559&r2=1560&pathrev=1562
+	NOTE: Upstream fix: http://vcs.pcre.org/pcre?view=revision&revision=1566
+	NOTE: More information: https://bugzilla.redhat.com/show_bug.cgi?id=1228283#c2
 CVE-2015-3216 (Race condition in a certain Red Hat patch to the PRNG lock ...)
 	- openssl <not-affected> (Affects Red Hat specific patch)
 	NOTE: More information in https://bugzilla.redhat.com/show_bug.cgi?id=1225994




More information about the Secure-testing-commits mailing list