[Secure-testing-commits] r49310 - in data: . CVE

Ola Lundqvist opal at moszumanska.debian.org
Tue Feb 28 20:48:50 UTC 2017


Author: opal
Date: 2017-02-28 20:48:50 +0000 (Tue, 28 Feb 2017)
New Revision: 49310

Modified:
   data/CVE/list
   data/dla-needed.txt
Log:
Some investigation results.

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-02-28 19:55:45 UTC (rev 49309)
+++ data/CVE/list	2017-02-28 20:48:50 UTC (rev 49310)
@@ -114438,6 +114438,7 @@
 CVE-2013-1430 (An issue was discovered in xrdp before 0.9.1. When successfully logging ...)
 	- xrdp 0.9.1~2016121126+git5171fa7-1
 	[jessie] - xrdp <no-dsa> (Minor issue)
+	[wheezy] - xrdp <no-dsa> (Minor issue)
 	NOTE: https://github.com/neutrinolabs/xrdp/pull/497
 	NOTE: When successfully logging in using RDP into a xrdp session, the file
 	NOTE: ~/.vnc/sesman_${username}_passwd is created.  Its content is the

Modified: data/dla-needed.txt
===================================================================
--- data/dla-needed.txt	2017-02-28 19:55:45 UTC (rev 49309)
+++ data/dla-needed.txt	2017-02-28 20:48:50 UTC (rev 49310)
@@ -64,7 +64,7 @@
 libreoffice (Balint Reczey)
 --
 libxml-twig-perl
-  NOTE: no upstream fix yet (as of 2017-01-20) for expand_external_ents
+  NOTE: no upstream fix yet (as of 2017-02-28) for expand_external_ents
   NOTE: but new no_xxe flag in 3.50 that could be backported
   NOTE: 2016-12-13: Upstream ping here: https://rt.cpan.org/Public/Bug/Display.html?id=118097#txn-1690223
   NOTE: 2017-01-20: Ping upstream by private email -- Raphael Hertzog
@@ -118,10 +118,6 @@
 --
 xen
 --
-xrdp
-  NOTE: Dominik George (maintainer) will take care of the issue:
-  NOTE: https://lists.debian.org/debian-lts/2016/12/msg00135.html
---
 zoneminder
 --
 zziplib




More information about the Secure-testing-commits mailing list