[Secure-testing-commits] r48537 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Sun Jan 29 18:21:11 UTC 2017


Author: jmm
Date: 2017-01-29 18:21:11 +0000 (Sun, 29 Jan 2017)
New Revision: 48537

Modified:
   data/CVE/list
Log:
mark two current wireshark issues as no-dsa
  not suitable for code injection, can be fixed along with next wireshark round


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-01-29 17:41:22 UTC (rev 48536)
+++ data/CVE/list	2017-01-29 18:21:11 UTC (rev 48537)
@@ -139,10 +139,12 @@
 	NOTE: http://www.openwall.com/lists/oss-security/2017/01/24/10
 CVE-2017-5597 (In Wireshark 2.2.0 to 2.2.3 and 2.0.0 to 2.0.9, the DHCPv6 dissector ...)
 	- wireshark 2.2.4+gcc3dc1b-1
+	[jessie] - wireshark <no-dsa> (Can be fixed along with the next round of Wireshark vulnerabilities)
 	NOTE: https://www.wireshark.org/security/wnpa-sec-2017-02.html
 	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=13345
 CVE-2017-5596 (In Wireshark 2.2.0 to 2.2.3 and 2.0.0 to 2.0.9, the ASTERIX dissector ...)
 	- wireshark 2.2.4+gcc3dc1b-1
+	[jessie] - wireshark <no-dsa> (Can be fixed along with the next round of Wireshark vulnerabilities)
 	NOTE: https://www.wireshark.org/security/wnpa-sec-2017-01.html
 	NOTE: https://bugs.wireshark.org/bugzilla/show_bug.cgi?id=13344
 CVE-2017-XXXX [phpMyAdmin PMASA-2017-1 - PMASA-2017-7]




More information about the Secure-testing-commits mailing list