[Secure-testing-commits] r48692 - in data: . CVE
Guido Guenther
agx at moszumanska.debian.org
Fri Feb 3 23:49:07 UTC 2017
Author: agx
Date: 2017-02-03 23:49:06 +0000 (Fri, 03 Feb 2017)
New Revision: 48692
Modified:
data/CVE/list
data/dla-needed.txt
Log:
lts: triage libevent
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2017-02-03 21:10:13 UTC (rev 48691)
+++ data/CVE/list 2017-02-03 23:49:06 UTC (rev 48692)
@@ -352,17 +352,17 @@
RESERVED
CVE-2016-10197
RESERVED
- - libevent <unfixed>
+ - libevent <unfixed> (bug #854092)
NOTE: https://github.com/libevent/libevent/issues/332
NOTE: http://www.openwall.com/lists/oss-security/2017/01/31/17
CVE-2016-10196
RESERVED
- - libevent <unfixed>
+ - libevent <unfixed> (bug #854092)
NOTE: https://github.com/libevent/libevent/issues/318
NOTE: http://www.openwall.com/lists/oss-security/2017/01/31/17
CVE-2016-10195
RESERVED
- - libevent <unfixed>
+ - libevent <unfixed> (bug #854092)
NOTE: https://github.com/libevent/libevent/issues/317
NOTE: http://www.openwall.com/lists/oss-security/2017/01/31/17
CVE-2017-5848 [gst-plugins-bad/mpegdemux: Invalid memory read in gst_ps_demux_parse_psm]
Modified: data/dla-needed.txt
===================================================================
--- data/dla-needed.txt 2017-02-03 21:10:13 UTC (rev 48691)
+++ data/dla-needed.txt 2017-02-03 23:49:06 UTC (rev 48692)
@@ -52,6 +52,8 @@
NOTE: Upstream should provide new point-releases fixing open security issues in the next months.
NOTE: Lots of CVEs are open, this is going to take some time. (See debian-lts ML)
--
+libevent
+--
libical
NOTE: No known solution as of 2017-01-16.
--
More information about the Secure-testing-commits
mailing list