[Secure-testing-commits] r41633 - data/CVE

Chris Lamb lamby at moszumanska.debian.org
Wed May 11 09:02:59 UTC 2016


Author: lamby
Date: 2016-05-11 09:02:59 +0000 (Wed, 11 May 2016)
New Revision: 41633

Modified:
   data/CVE/list
Log:
Triage vlc for LTS

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-05-11 09:00:56 UTC (rev 41632)
+++ data/CVE/list	2016-05-11 09:02:59 UTC (rev 41633)
@@ -2478,6 +2478,7 @@
 	RESERVED
 CVE-2016-3941 (Buffer overflow in the AStreamPeekStream function in input/stream.c in ...)
 	- vlc 2.2.0-1
+	[wheezy] - vlc <end-of-life> (Unsupported in -lts)
 	NOTE: https://bugs.launchpad.net/bugs/1533633
 	NOTE: It is unclear when this was fixed exactly, marking the version in jessie as fixed for now
 CVE-2016-3688 (SQL injection vulnerability in dotCMS before 3.5 allows remote ...)
@@ -20389,6 +20390,7 @@
 CVE-2014-9743 (Cross-site scripting (XSS) vulnerability in the httpd_HtmlError ...)
 	- vlc 2.2.0~rc2-1
 	[squeeze] - vlc <end-of-life> (Unsupported in squeeze-lts)
+	[wheezy] - vlc <end-of-life> (Unsupported in wheezy-lts)
 CVE-2015-6526 (The perf_callchain_user_64 function in arch/powerpc/perf/callchain.c ...)
 	- linux 4.1.3-1
 	[jessie] - linux 3.16.7-ckt11-1




More information about the Secure-testing-commits mailing list