[Secure-testing-commits] r48395 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Thu Jan 26 05:27:41 UTC 2017


Author: carnil
Date: 2017-01-26 05:27:41 +0000 (Thu, 26 Jan 2017)
New Revision: 48395

Modified:
   data/CVE/list
Log:
Triage CVE-2015-3204/libreswan

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-01-26 05:21:31 UTC (rev 48394)
+++ data/CVE/list	2017-01-26 05:27:41 UTC (rev 48395)
@@ -60440,7 +60440,9 @@
 	[squeeze] - libmimedir <no-dsa> (Minor issue)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1222251
 CVE-2015-3204 (libreswan 3.9 through 3.12 allows remote attackers to cause a denial ...)
-	- libreswan <unfixed>
+	- libreswan <not-affected> (Fixed before the initial upload to Debian)
+	NOTE: https://libreswan.org/security/CVE-2015-3204/CVE-2015-3204.txt
+	NOTE: https://libreswan.org/security/CVE-2015-3204/CVE-2015-3204-libreswan.patch
 CVE-2015-3203 (Unrestricted file upload vulnerability in h5ai before 0.25.0 allows ...)
 	NOT-FOR-US: h5ai
 CVE-2015-3202 (fusermount in FUSE before 2.9.3-15 does not properly clear the ...)




More information about the Secure-testing-commits mailing list