[Secure-testing-commits] r39246 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Wed Jan 27 21:19:27 UTC 2016


Author: carnil
Date: 2016-01-27 21:19:27 +0000 (Wed, 27 Jan 2016)
New Revision: 39246

Modified:
   data/CVE/list
Log:
Add CVE-2016-1567/chrony

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-01-27 21:17:06 UTC (rev 39245)
+++ data/CVE/list	2016-01-27 21:19:27 UTC (rev 39246)
@@ -1350,7 +1350,9 @@
 	NOTE: http://xenbits.xen.org/xsa/advisory-167.html
 	TODO: check
 CVE-2016-1567 (chrony before 1.31.2 and 2.x before 2.2.1 do not verify peer ...)
-	TODO: check
+	- chrony <unfixed>
+	NOTE: http://www.talosintel.com/reports/TALOS-2016-0071/
+	NOTE: http://chrony.tuxfamily.org/news.html#_20_jan_2016_chrony_2_2_1_and_chrony_1_31_2_released
 CVE-2016-1566
 	RESERVED
 CVE-2016-1565 (Cross-site scripting (XSS) vulnerability in the Field Group module ...)




More information about the Secure-testing-commits mailing list