[Secure-testing-commits] r38716 - data/CVE

Scott Kitterman kitterman at moszumanska.debian.org
Tue Jan 5 14:52:33 UTC 2016


Author: kitterman
Date: 2016-01-05 14:52:33 +0000 (Tue, 05 Jan 2016)
New Revision: 38716

Modified:
   data/CVE/list
Log:
Update affected status of CVE-2015-2778/9 based on feedback from upstream.

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-01-05 14:48:50 UTC (rev 38715)
+++ data/CVE/list	2016-01-05 14:52:33 UTC (rev 38716)
@@ -20904,10 +20904,14 @@
 	NOTE: http://www.openwall.com/lists/oss-security/2015/03/20/14
 CVE-2015-2779 (Stack consumption vulnerability in the message splitting functionality ...)
 	- quassel 1:0.10.0-2.3 (bug #781024)
+	[wheezy] - quassel <not-affected> (According to upstream issue isn't triggerable in 0.8)
+	[squeeze] - quassel <not-affected> (According to upstream issue isn't triggerable in 0.6)
 	NOTE: https://github.com/quassel/quassel/commit/b5e38970ffd55e2dd9f706ce75af9a8d7730b1b8
 	NOTE: http://www.openwall.com/lists/oss-security/2015/03/20/12
 CVE-2015-2778 (Quassel before 0.12-rc1 uses an incorrect data-type size when ...)
 	- quassel 1:0.10.0-2.3 (bug #781024)
+	[wheezy] - quassel <not-affected> (According to upstream issue isn't triggerable in 0.8)
+	[squeeze] - quassel <not-affected> (According to upstream issue isn't triggerable in 0.6)
 	NOTE: https://github.com/quassel/quassel/commit/b5e38970ffd55e2dd9f706ce75af9a8d7730b1b8
 	NOTE: http://www.openwall.com/lists/oss-security/2015/03/20/12
 CVE-2014-9706 (The build_index_from_tree function in index.py in Dulwich before 0.9.9 ...)




More information about the Secure-testing-commits mailing list