[Secure-testing-commits] r55076 - data/CVE

Markus Koschany apo at moszumanska.debian.org
Fri Aug 25 16:03:35 UTC 2017


Author: apo
Date: 2017-08-25 16:03:35 +0000 (Fri, 25 Aug 2017)
New Revision: 55076

Modified:
   data/CVE/list
Log:
Revert 55074.

On second thought CVE-2017-10982 is relevant for Wheezy because similar code can be
found in fr_dhcp_decode


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-08-25 15:50:55 UTC (rev 55075)
+++ data/CVE/list	2017-08-25 16:03:35 UTC (rev 55076)
@@ -7368,7 +7368,6 @@
 CVE-2017-10982 (An FR-GV-205 issue in FreeRADIUS 2.x before 2.2.10 allows "DHCP - ...)
 	- freeradius 3.0.12+dfsg-3
 	[jessie] - freeradius 2.2.5+dfsg-0.2+deb8u1
-	[wheezy] - freeradius <not-affected> (vulnerable code not present)
 	NOTE: http://freeradius.org/security/fuzzer-2017.html#FR-GV-205
 	NOTE: https://github.com/FreeRADIUS/freeradius-server/commit/10b6de9345c9e0d9d4d5e0426fa5c3d68d702875
 	NOTE: Mark as fixed in 3.0.12+dfsg-3 the first 3.x version in unstable




More information about the Secure-testing-commits mailing list