[Secure-testing-commits] r53147 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Mon Jul 3 17:07:49 UTC 2017


Author: jmm
Date: 2017-07-03 17:07:49 +0000 (Mon, 03 Jul 2017)
New Revision: 53147

Modified:
   data/CVE/list
Log:
firefox no-dsa


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-07-03 16:47:31 UTC (rev 53146)
+++ data/CVE/list	2017-07-03 17:07:49 UTC (rev 53147)
@@ -7952,8 +7952,10 @@
 	RESERVED
 CVE-2017-7789 [Firefox ignores Strict-Transport-Security when two more STS headers are sent from server]
 	RESERVED
-	- firefox <unfixed>
-	- firefox-esr <unfixed>
+	- firefox <unfixed> (low)
+	- firefox-esr <unfixed> (low)
+	[stretch] - firefox-esr <no-dsa> (Wait for next ESR release, if it doesn't get merged into ESR ignore)
+	[jessie] - firefox-esr <no-dsa> (Wait for next ESR release, if it doesn't get merged into ESR ignore)
 	NOTE: https://bugzilla.mozilla.org/show_bug.cgi?id=1074642
 CVE-2017-7788
 	RESERVED




More information about the Secure-testing-commits mailing list