[Secure-testing-commits] r45605 - in data: . CVE DLA

Ola Lundqvist opal at moszumanska.debian.org
Tue Oct 25 19:12:44 UTC 2016


Author: opal
Date: 2016-10-25 19:12:44 +0000 (Tue, 25 Oct 2016)
New Revision: 45605

Modified:
   data/CVE/list
   data/DLA/list
   data/dla-needed.txt
Log:
NSS DLA allocated.

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-10-25 19:09:19 UTC (rev 45604)
+++ data/CVE/list	2016-10-25 19:12:44 UTC (rev 45605)
@@ -417,6 +417,7 @@
 CVE-2016-XXXX [Privilege escalation possible to other user than root]
 	- bash <unfixed> (bug #841856)
 	[jessie] - bash <no-dsa> (Minor issue)
+	[wheezy] - bash 4.2+dfsg-0.1+deb7u4
 	NOTE: This is strongly related to the problem described in CVE-2016-7543 and the correction
 	NOTE: is very similar.
 	NOTE: https://lists.gnu.org/archive/html/bug-bash/2015-12/msg00112.html

Modified: data/DLA/list
===================================================================
--- data/DLA/list	2016-10-25 19:09:19 UTC (rev 45604)
+++ data/DLA/list	2016-10-25 19:12:44 UTC (rev 45605)
@@ -1,3 +1,5 @@
+[25 Oct 2016] DLA-677-1 nss - security update
+	[wheezy] - nss 3.26-1+debu7u1
 [25 Oct 2016] DLA-676-1 nspr - security update
 	[wheezy] - nspr 2:4.12-1+deb7u1
 [25 Oct 2016] DLA-675-1 potrace - security update

Modified: data/dla-needed.txt
===================================================================
--- data/dla-needed.txt	2016-10-25 19:09:19 UTC (rev 45604)
+++ data/dla-needed.txt	2016-10-25 19:12:44 UTC (rev 45605)
@@ -68,9 +68,6 @@
 --
 mingw32
 --
-nss (Ola Lundqvist)
- NOTE: No need to contact maintainer, Mike already opted out with firefox-esr
---
 openjdk-7 (Guido Günther)
   NOTE: contacted maintainers wether they're preparing a package in exp
 --




More information about the Secure-testing-commits mailing list