[Secure-testing-commits] r47858 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Mon Jan 9 23:12:19 UTC 2017


Author: jmm
Date: 2017-01-09 23:12:19 +0000 (Mon, 09 Jan 2017)
New Revision: 47858

Modified:
   data/CVE/list
Log:
drop proftpd entries, these are fixed anyway and there's no evidence that these are security issues


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-01-09 23:11:11 UTC (rev 47857)
+++ data/CVE/list	2017-01-09 23:12:19 UTC (rev 47858)
@@ -33030,21 +33030,6 @@
 	[jessie] - openjpeg2 <not-affected> (Vulnerable code not yet present in 2.1.0)
 	NOTE: http://www.openwall.com/lists/oss-security/2016/03/14/12
 	NOTE: https://github.com/uclouvain/openjpeg/issues/724
-CVE-2016-XXXX [An invalid off by one read can happen in the function pr_fs_dircat()]
-	- proftpd-dfsg <undetermined>
-	NOTE: http://bugs.proftpd.org/show_bug.cgi?id=4194
-	NOTE: https://github.com/proftpd/proftpd/commit/f99ef850a05f46c56be8deae97e59efa50575e69
-	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/03/11/12
-CVE-2016-XXXX [An invalid off by one read can happen in the string handling function pr_ascii_ftp_to_crlf()]
-	- proftpd-dfsg <undetermined>
-	NOTE: http://bugs.proftpd.org/show_bug.cgi?id=4195
-	NOTE: https://github.com/proftpd/proftpd/pull/145
-	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/03/11/12
-CVE-2016-XXXX [A missing null termination of a string causes an out of bounds memory read in a test]
-	- proftpd-dfsg <unfixed> (unimportant)
-	NOTE: http://bugs.proftpd.org/show_bug.cgi?id=4193
-	NOTE: https://github.com/proftpd/proftpd/commit/d9f9d469ce1da09c7935f509797d488fa2d08697
-	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/03/11/12
 CVE-2016-3140 (The digi_port_init function in drivers/usb/serial/digi_acceleport.c in ...)
 	{DSA-3607-1 DLA-516-1}
 	- linux 4.5.1-1 (low)




More information about the Secure-testing-commits mailing list