[Secure-testing-commits] r49305 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Tue Feb 28 18:32:04 UTC 2017


Author: jmm
Date: 2017-02-28 18:32:04 +0000 (Tue, 28 Feb 2017)
New Revision: 49305

Modified:
   data/CVE/list
Log:
xorg no-dsa


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-02-28 18:25:53 UTC (rev 49304)
+++ data/CVE/list	2017-02-28 18:32:04 UTC (rev 49305)
@@ -10303,14 +10303,17 @@
 CVE-2017-2626 [Weak Entropy Usage in Session Keys in libICE]
 	RESERVED
 	- libice <unfixed> (bug #856400)
+	[jessie] - libice <no-dsa> (Minor issue, can be fixed in a point update or next DSA)
 	NOTE: https://www.x41-dsec.de/lab/advisories/x41-2017-001-xorg/
 CVE-2017-2625 [Weak entropy usage for session keys in libxdm]
 	RESERVED
 	- libxdmcp <unfixed> (bug #856399)
+	[jessie] - libxdmcp <no-dsa> (Minor issue, can be fixed in a point update or next DSA)
 	NOTE: https://www.x41-dsec.de/lab/advisories/x41-2017-001-xorg/
 CVE-2017-2624 [Timing attack against MIT Cookie]
 	RESERVED
-	- xorg-server <unfixed> (bug #856398)
+	- xorg-server <unfixed> (low; bug #856398)
+	[jessie] - xorg-server <no-dsa> (Minor issue, can be fixed in a point update or next DSA)
 	NOTE: https://www.x41-dsec.de/lab/advisories/x41-2017-001-xorg/
 CVE-2017-2623
 	RESERVED




More information about the Secure-testing-commits mailing list