[Secure-testing-commits] r39301 - in data: . CVE

Guido Guenther agx at moszumanska.debian.org
Fri Jan 29 17:05:09 UTC 2016


Author: agx
Date: 2016-01-29 17:05:09 +0000 (Fri, 29 Jan 2016)
New Revision: 39301

Modified:
   data/CVE/list
   data/dla-needed.txt
Log:
phpmyadmin in squeeze affected CVE-2016-2039 and CVE-2016-2041

Others are no-dsa or not-affected

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-01-29 16:45:08 UTC (rev 39300)
+++ data/CVE/list	2016-01-29 17:05:09 UTC (rev 39301)
@@ -143,34 +143,42 @@
 CVE-2016-2045
 	RESERVED
 	- phpmyadmin 4:4.5.4-1
+	[squeeze] - phpmyadmin <not-affected> (vulnerable code not present)
 	NOTE: https://www.phpmyadmin.net/security/PMASA-2016-9/
 CVE-2016-2044
 	RESERVED
 	- phpmyadmin 4:4.5.4-1
+	[squeeze] - phpmyadmin <not-affected> (vulnerable code not present)
 	NOTE: https://www.phpmyadmin.net/security/PMASA-2016-8/
 CVE-2016-2043
 	RESERVED
 	- phpmyadmin 4:4.5.4-1
+	[squeeze] - phpmyadmin <not-affected> (vulnerable code not present)
 	NOTE: https://www.phpmyadmin.net/security/PMASA-2016-7/
 CVE-2016-2042
 	RESERVED
 	- phpmyadmin 4:4.5.4-1
+	[squeeze] - phpmyadmin <not-affected> (vulnerable code not present)
 	NOTE: https://www.phpmyadmin.net/security/PMASA-2016-6/
 CVE-2016-2041
 	RESERVED
 	- phpmyadmin 4:4.5.4-1
 	NOTE: https://www.phpmyadmin.net/security/PMASA-2016-5/
+	NOTE: https://github.com/phpmyadmin/phpmyadmin/commit/fe62b69a5b032de8e1d9d0a04456c1cecf46428c
 CVE-2016-2040
 	RESERVED
 	- phpmyadmin 4:4.5.4-1
+	[squeeze] - phpmyadmin <no-dsa> (minor issue)
 	NOTE: https://www.phpmyadmin.net/security/PMASA-2016-3/
 CVE-2016-2039
 	RESERVED
 	- phpmyadmin 4:4.5.4-1
 	NOTE: https://www.phpmyadmin.net/security/PMASA-2016-2/
+	NOTE: https://github.com/phpmyadmin/phpmyadmin/commit/6fe54dfa000dd6f43f237e859781fad7111ac1bd
 CVE-2016-2038
 	RESERVED
 	- phpmyadmin 4:4.5.4-1
+	[squeeze] - phpmyadmin <no-dsa> (minor issue)
 	NOTE: https://www.phpmyadmin.net/security/PMASA-2016-1/
 CVE-2016-2036
 	RESERVED
@@ -522,7 +530,9 @@
 CVE-2016-1927
 	RESERVED
 	- phpmyadmin 4:4.5.4-1
+	[squeeze] - phpmyadmin <no-dsa> (minor issue)
 	NOTE: https://www.phpmyadmin.net/security/PMASA-2016-4/
+	NOTE: https://github.com/phpmyadmin/phpmyadmin/commit/6a96e67487f2faecb4de4204fee9b96b94020720
 CVE-2016-1983 (The client_host function in parsers.c in Privoxy before 3.0.24 allows ...)
 	{DLA-398-1}
 	- privoxy 3.0.24-1

Modified: data/dla-needed.txt
===================================================================
--- data/dla-needed.txt	2016-01-29 16:45:08 UTC (rev 39300)
+++ data/dla-needed.txt	2016-01-29 17:05:09 UTC (rev 39301)
@@ -68,8 +68,10 @@
 openssh (Guido Günther)
 --
 php5 (Thorsten Alteholz)
-  NOTE: next upload end of December  
+  NOTE: next upload end of December
 --
+phpmyadmin
+--
 prosody
   NOTE: affected code in core/s2smanager.lua
 --




More information about the Secure-testing-commits mailing list