[Secure-testing-commits] r41620 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Tue May 10 18:13:42 UTC 2016


Author: carnil
Date: 2016-05-10 18:13:42 +0000 (Tue, 10 May 2016)
New Revision: 41620

Modified:
   data/CVE/list
Log:
One libarchive issue fixed in experimental

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-05-10 18:03:36 UTC (rev 41619)
+++ data/CVE/list	2016-05-10 18:13:42 UTC (rev 41620)
@@ -28484,12 +28484,14 @@
 CVE-2015-3410
 	RESERVED
 CVE-2015-XXXX [crash with malformed cpio archive]
+	[experimental] - libarchive 3.2.0-1
 	- libarchive <unfixed> (low; bug #784213)
+	[jessie] - libarchive <no-dsa> (Minor issue)
+	[wheezy] - libarchive <no-dsa> (Minor issue)
 	[squeeze] - libarchive <no-dsa> (Minor issue)
-	[wheezy] - libarchive <no-dsa> (Minor issue)
-	[jessie] - libarchive <no-dsa> (Minor issue)
 	NOTE: https://github.com/libarchive/libarchive/issues/502
 	NOTE: https://github.com/libarchive/libarchive/commit/e6c9668f3202215ddb71617b41c19b6f05acf008
+	NOTE: https://github.com/libarchive/libarchive/commit/3865cf2bcb0eebc1baef28a7841b1cadae6e0f7c
 	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2015/05/04/1
 CVE-2015-3427 (Quassel before 0.12.2 does not properly re-initialize the database ...)
 	{DSA-3258-1}




More information about the Secure-testing-commits mailing list