[Secure-testing-commits] r43617 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Jul 29 17:15:04 UTC 2016


Author: carnil
Date: 2016-07-29 17:15:04 +0000 (Fri, 29 Jul 2016)
New Revision: 43617

Modified:
   data/CVE/list
Log:
Add CVE-2016-6489/nettle

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-07-29 16:41:20 UTC (rev 43616)
+++ data/CVE/list	2016-07-29 17:15:04 UTC (rev 43617)
@@ -4,6 +4,10 @@
 CVE-2016-6491 [Buffer overflow]
 	- imagemagick <unfixed>
 	NOTE: Fixed by: https://github.com/ImageMagick/ImageMagick/commit/dd84447b63a71fa8c3f47071b09454efc667767b
+CVE-2016-6489 [RSA code is vulnerable to cache sharing related attacks]
+	- nettle <unfixed>
+	NOTE: https://lists.lysator.liu.se/pipermail/nettle-bugs/2016/003093.html
+	NOTE: https://git.lysator.liu.se/nettle/nettle/commit/3fe1d6549765ecfb24f0b80b2ed086fdc818bff3
 CVE-2016-6485
 	RESERVED
 CVE-2016-6484




More information about the Secure-testing-commits mailing list