[Secure-testing-commits] r52816 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Thu Jun 22 16:42:12 UTC 2017
Author: carnil
Date: 2017-06-22 16:42:11 +0000 (Thu, 22 Jun 2017)
New Revision: 52816
Modified:
data/CVE/list
Log:
openvpn fixed in unstable
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2017-06-22 16:37:29 UTC (rev 52815)
+++ data/CVE/list 2017-06-22 16:42:11 UTC (rev 52816)
@@ -7859,7 +7859,7 @@
RESERVED
CVE-2017-7522 [Crash mbed TLS/PolarSSL-based server]
RESERVED
- - openvpn <unfixed> (unimportant)
+ - openvpn 2.4.3-1 (unimportant)
[jessie] - openvpn <not-affected> (x509-track implemented in 2.4.0)
[wheezy] - openvpn <not-affected> (x509-track implemented in 2.4.0)
NOTE: Fixed by: https://github.com/OpenVPN/openvpn/commit/426392940c
@@ -7869,14 +7869,14 @@
NOTE: code present.
CVE-2017-7521 [Potential double-free in --x509-alt-username and memory leaks]
RESERVED
- - openvpn <unfixed> (bug #865480)
+ - openvpn 2.4.3-1 (bug #865480)
NOTE: Fixed by: https://github.com/OpenVPN/openvpn/commit/cb4e35ece4
NOTE: Fixed by: https://github.com/OpenVPN/openvpn/commit/2d032c7fcd
NOTE: https://community.openvpn.net/openvpn/wiki/VulnerabilitiesFixedInOpenVPN243
NOTE: http://www.openwall.com/lists/oss-security/2017/06/21/6
CVE-2017-7520 [Pre-authentication remote crash/information disclosure for clients]
RESERVED
- - openvpn <unfixed> (bug #865480)
+ - openvpn 2.4.3-1 (bug #865480)
NOTE: Fixed by: https://github.com/OpenVPN/openvpn/commit/7718c8984f
NOTE: https://community.openvpn.net/openvpn/wiki/VulnerabilitiesFixedInOpenVPN243
NOTE: http://www.openwall.com/lists/oss-security/2017/06/21/6
@@ -7915,7 +7915,7 @@
NOT-FOR-US: Red Hat Certificate System
CVE-2017-7508 [Remotely-triggerable ASSERT() on malformed IPv6 packet]
RESERVED
- - openvpn <unfixed> (bug #865480)
+ - openvpn 2.4.3-1 (bug #865480)
NOTE: http://www.openwall.com/lists/oss-security/2017/06/21/6
NOTE: https://community.openvpn.net/openvpn/wiki/VulnerabilitiesFixedInOpenVPN243
NOTE: Fixed by: https://github.com/OpenVPN/openvpn/commit/c3f47077a7
More information about the Secure-testing-commits
mailing list