[Secure-testing-commits] r39865 - data/CVE

Guido Guenther agx at moszumanska.debian.org
Tue Feb 23 20:38:48 UTC 2016


Author: agx
Date: 2016-02-23 20:38:48 +0000 (Tue, 23 Feb 2016)
New Revision: 39865

Modified:
   data/CVE/list
Log:
MD5 signatures never got disabled by default

since

https://bugzilla.mozilla.org/show_bug.cgi?id=590364

is not applied to the version in Squeeze. So it's of no point fixing
this in squeeze for the remaining week of support.

Mark the right CVE this time.

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-02-23 20:37:06 UTC (rev 39864)
+++ data/CVE/list	2016-02-23 20:38:48 UTC (rev 39865)
@@ -1842,7 +1842,6 @@
 	NOTE: unstable though used the system library.
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2016-07/
 	- nss 2:3.21-1
-	[squeeze] - nss <not-affected> (only affects nss post 2012-07-26)
 	NOTE: https://hg.mozilla.org/projects/nss/rev/a555bf0fc23a
 	NOTE: https://hg.mozilla.org/projects/nss/rev/608645309ab9
 	NOTE: https://hg.mozilla.org/projects/nss/rev/cfd0ad4726cb
@@ -10354,6 +10353,7 @@
 	- icedove 38.6.0-1
 	[squeeze] - icedove <end-of-life>
 	- nss 2:3.21-1
+	[squeeze] - nss <not-affected> (only affects nss post 2012-07-26)
 	NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2015-150/
 	NOTE: Patch in SuSE Bugzilla: https://bugzilla.novell.com/attachment.cgi?id=660286
 	- openssl 1.0.1f-1




More information about the Secure-testing-commits mailing list