[Secure-testing-commits] r44713 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sun Sep 18 12:59:13 UTC 2016


Author: carnil
Date: 2016-09-18 12:59:12 +0000 (Sun, 18 Sep 2016)
New Revision: 44713

Modified:
   data/CVE/list
Log:
Mark CVE-2016-7409 as unimportant, add note

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-09-18 12:47:57 UTC (rev 44712)
+++ data/CVE/list	2016-09-18 12:59:12 UTC (rev 44713)
@@ -2303,8 +2303,10 @@
 	NOTE: Reproducer does not show any errors (heap-based overflow) for Jessie version too.
 CVE-2016-7409
 	RESERVED
-	- dropbear 2016.74-1
+	- dropbear 2016.74-1 (unimportant)
 	NOTE: https://secure.ucc.asn.au/hg/dropbear/rev/6a14b1f6dc04
+	NOTE: Not an issue for the the Debian binary package since we do not
+	NOTE: compile with DEBUG_TRACE.
 CVE-2016-7408
 	RESERVED
 	- dropbear 2016.74-1




More information about the Secure-testing-commits mailing list