[Secure-testing-commits] r53337 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sun Jul 9 14:18:28 UTC 2017


Author: carnil
Date: 2017-07-09 14:18:28 +0000 (Sun, 09 Jul 2017)
New Revision: 53337

Modified:
   data/CVE/list
Log:
Mark ncurses as no-dsa

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-07-09 14:17:10 UTC (rev 53336)
+++ data/CVE/list	2017-07-09 14:18:28 UTC (rev 53337)
@@ -1,8 +1,12 @@
 CVE-2017-11113 (In ncurses 6.0, there is a NULL Pointer Dereference in the ...)
 	- ncurses 6.0+20170701-1
+	[stretch] - ncurses <no-dsa> (Minor issue)
+	[jessie] - ncurses <no-dsa> (Minor issue)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1464691
 CVE-2017-11112 (In ncurses 6.0, there is an attempted 0xffffffffffffffff access in the ...)
 	- ncurses 6.0+20170701-1
+	[stretch] - ncurses <no-dsa> (Minor issue)
+	[jessie] - ncurses <no-dsa> (Minor issue)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1464686
 CVE-2017-11111 (In Netwide Assembler (NASM) 2.14rc0, preproc.c allows remote attackers ...)
 	- nasm <unfixed>
@@ -979,9 +983,13 @@
 	NOTE: https://bugzilla.nasm.us/show_bug.cgi?id=3392414
 CVE-2017-10685 (In ncurses 6.0, there is a format string vulnerability in the fmt_entry ...)
 	- ncurses 6.0+20170701-1
+	[stretch] - ncurses <no-dsa> (Minor issue)
+	[jessie] - ncurses <no-dsa> (Minor issue)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1464692
 CVE-2017-10684 (In ncurses 6.0, there is a stack-based buffer overflow in the fmt_entry ...)
 	- ncurses 6.0+20170708-1
+	[stretch] - ncurses <no-dsa> (Minor issue)
+	[jessie] - ncurses <no-dsa> (Minor issue)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1464687
 CVE-2017-10683 (In mpg123 1.25.0, there is a heap-based buffer over-read in the ...)
 	{DLA-1017-1}




More information about the Secure-testing-commits mailing list