[Secure-testing-commits] r46365 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sun Nov 20 19:38:40 UTC 2016


Author: carnil
Date: 2016-11-20 19:38:40 +0000 (Sun, 20 Nov 2016)
New Revision: 46365

Modified:
   data/CVE/list
Log:
Update information for CVE-2016-5285, asked back Mike Hommey

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-11-20 18:45:40 UTC (rev 46364)
+++ data/CVE/list	2016-11-20 19:38:40 UTC (rev 46365)
@@ -13535,9 +13535,10 @@
 	RESERVED
 CVE-2016-5285
 	RESERVED
-	- nss 2:3.26-1+debu7u1
+	- nss <undetermined>
 	NOTE: Fixed by https://hg.mozilla.org/projects/nss/rev/45c047d18ac4
-	TODO: check this entry for first fixing version, 2:3.26-1+debu7u1 might be correct for wheezy
+	NOTE: Upstream bug: https://bugzilla.mozilla.org/show_bug.cgi?id=1306103
+	TODO: Check if this affects only the NSS_3_21 branch, upstream bug not public
 CVE-2016-5284 (Mozilla Firefox before 49.0 and Firefox ESR 45.x before 45.4 rely on ...)
 	{DSA-3674-1 DLA-636-1}
 	- firefox 49.0-1




More information about the Secure-testing-commits mailing list