[Secure-testing-commits] r39182 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue Jan 26 06:13:32 UTC 2016


Author: carnil
Date: 2016-01-26 06:13:32 +0000 (Tue, 26 Jan 2016)
New Revision: 39182

Modified:
   data/CVE/list
Log:
Add todo item for CVE-2016-1897, see previous commit

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-01-26 06:12:26 UTC (rev 39181)
+++ data/CVE/list	2016-01-26 06:13:32 UTC (rev 39182)
@@ -852,6 +852,7 @@
 	- libav <removed>
 	NOTE: http://habrahabr.ru/company/mailru/blog/274855
 	NOTE: Fixed in 2.8.5 upstream
+	TODO: Recheck, the issue might be fixed incompletely, cf. #811519
 CVE-2016-1867 (The jpc_pi_nextcprl function in JasPer 1.900.1 allows remote attackers ...)
 	- jasper <unfixed> (bug #811023)
 	[jessie] - jasper <no-dsa> (Minor issue)




More information about the Secure-testing-commits mailing list