[Secure-testing-commits] r53506 - data/CVE

Raphaël Hertzog hertzog at moszumanska.debian.org
Sat Jul 15 09:51:03 UTC 2017


Author: hertzog
Date: 2017-07-15 09:51:02 +0000 (Sat, 15 Jul 2017)
New Revision: 53506

Modified:
   data/CVE/list
Log:
Mark CVE-2017-9789 as not-affecting wheezy

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-07-15 09:19:09 UTC (rev 53505)
+++ data/CVE/list	2017-07-15 09:51:02 UTC (rev 53506)
@@ -2458,6 +2458,7 @@
 	RESERVED
 CVE-2017-9789 (When under stress, closing many connections, the HTTP/2 handling code ...)
 	- apache2 <unfixed>
+	[wheezy] - apache2 <not-affected> (Vulnerable code not present, no mod_http2)
 	TODO: check, possibly affects only 2.4.26
 CVE-2017-9788 (In Apache httpd before 2.2.34 and 2.4.x before 2.4.27, the value ...)
 	- apache2 <unfixed>




More information about the Secure-testing-commits mailing list