[Secure-testing-commits] r54255 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Fri Aug 4 10:58:32 UTC 2017


Author: jmm
Date: 2017-08-04 10:58:32 +0000 (Fri, 04 Aug 2017)
New Revision: 54255

Modified:
   data/CVE/list
Log:
gnupg1/stretch no-dsa


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-08-04 10:47:33 UTC (rev 54254)
+++ data/CVE/list	2017-08-04 10:58:32 UTC (rev 54255)
@@ -13514,6 +13514,7 @@
 	- libgcrypt11 <removed>
 	- gnupg2 <not-affected> (Uses system libgcrypt)
 	- gnupg1 1.4.22-1
+	[stretch] - gnupg1 <no-dsa> (Only affects the legacy packages)
 	- gnupg <removed>
 	NOTE: https://eprint.iacr.org/2017/627
 	NOTE: Fixes for RSA exponent blinding fixes (A):
@@ -14852,7 +14853,6 @@
 CVE-2017-7208 (The decode_residual function in libavcodec in libav 9.21 allows remote ...)
 	- libav <removed> (low)
 	[jessie] - libav <no-dsa> (Minor issue)
-	- ffmpeg <undetermined>
 	NOTE: https://bugzilla.libav.org/show_bug.cgi?id=1000
 	NOTE: https://git.libav.org/?p=libav.git;a=commit;h=522d850e68ec4b77d3477b3c8f55b1ba00a9d69a
 CVE-2017-7207 (The mem_get_bits_rectangle function in Artifex Software, Inc. ...)




More information about the Secure-testing-commits mailing list