[Secure-testing-commits] r43403 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sat Jul 23 13:09:50 UTC 2016


Author: carnil
Date: 2016-07-23 13:09:49 +0000 (Sat, 23 Jul 2016)
New Revision: 43403

Modified:
   data/CVE/list
Log:
Drop some uneeded workarounds for stretch

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-07-23 13:09:36 UTC (rev 43402)
+++ data/CVE/list	2016-07-23 13:09:49 UTC (rev 43403)
@@ -33156,7 +33156,6 @@
 CVE-2015-3991 [strongSwan DoS and potential RCE]
 	RESERVED
 	- strongswan 5.3.0-2
-	[stretch] - strongswan <not-affected> (only affects 5.2.2+ and 5.3.0+)
 	[jessie] - strongswan <not-affected> (only affects 5.2.2+ and 5.3.0+)
 	[wheezy] - strongswan <not-affected> (only affects 5.2.2+ and 5.3.0+)
 	[squeeze] - strongswan <not-affected> (only affects 5.2.2+ and 5.3.0+)
@@ -34570,8 +34569,6 @@
 CVE-2015-3636 (The ping_unhash function in net/ipv4/ping.c in the Linux kernel before ...)
 	{DSA-3290-1}
 	- linux 4.0.2-1
-	[stretch] - linux 3.16.7-ckt11-1
-	NOTE: added as workaround until linux >= 4.0.2-1 migrates to testing
 	[jessie] - linux 3.16.7-ckt11-1
 	- linux-2.6 <removed>
 	[squeeze] - linux-2.6 <not-affected> (Vulnerable code not present)
@@ -35574,7 +35571,6 @@
 CVE-2015-3187 (The svn_repos_trace_node_locations function in Apache Subversion ...)
 	{DSA-3331-1 DLA-293-1}
 	- subversion 1.9.0-1
-	[stretch] - subversion 1.8.13-1+deb9u1
 	NOTE: https://subversion.apache.org/security/CVE-2015-3187-advisory.txt
 CVE-2015-3186 (Cross-site scripting (XSS) vulnerability in Apache Ambari before 2.1.0 ...)
 	NOT-FOR-US: Apache Ambari
@@ -35590,7 +35586,6 @@
 CVE-2015-3184 (mod_authz_svn in Apache Subversion 1.7.x before 1.7.21 and 1.8.x ...)
 	{DSA-3331-1}
 	- subversion 1.9.0-1
-	[stretch] - subversion 1.8.13-1+deb9u1
 	[wheezy] - subversion <not-affected> (1.6 does not build with apache 2.4)
 	[squeeze] - subversion <not-affected> (1.6 does not build with apache 2.4)
 	NOTE: https://subversion.apache.org/security/CVE-2015-3184-advisory.txt




More information about the Secure-testing-commits mailing list