[Secure-testing-commits] r52262 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Sat Jun 3 20:59:16 UTC 2017


Author: jmm
Date: 2017-06-03 20:59:16 +0000 (Sat, 03 Jun 2017)
New Revision: 52262

Modified:
   data/CVE/list
Log:
golang fixed
haskell-tls no-dsa


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-06-03 19:58:02 UTC (rev 52261)
+++ data/CVE/list	2017-06-03 20:59:16 UTC (rev 52262)
@@ -1480,8 +1480,8 @@
 	[wheezy] - perltidy <no-dsa> (Minor issue)
 CVE-2017-8932 [Elliptic curves carry propagation issue in x86-64 P-256]
 	RESERVED
-	- golang-1.8 <unfixed> (bug #863307)
-	- golang-1.7 <unfixed> (bug #863308)
+	- golang-1.8 1.8.3-1 (bug #863307)
+	- golang-1.7 1.7.6-1 (bug #863308)
 	- golang <removed>
 	[wheezy] - golang <not-affected> (Vulnerable code not present, no ASM implementation of the p256 elliptic curve)
 	[jessie] - golang <not-affected> (Vulnerable code not present, no ASM implementation of the p256 elliptic curve)
@@ -127505,6 +127505,7 @@
 	- gnutls28 3.0.22-3
 	- cyassl 2.9.4+dfsg-1
 	- haskell-tls <unfixed> (bug #796342)
+	[stretch] - haskell-tls <no-dsa> (Minor issue)
 	[jessie] - haskell-tls <no-dsa> (Minor issue)
 	[wheezy] - haskell-tls <no-dsa> (Minor issue)
 	- matrixssl <removed> (low)




More information about the Secure-testing-commits mailing list