[Secure-testing-commits] r49413 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sat Mar 4 17:09:51 UTC 2017


Author: carnil
Date: 2017-03-04 17:09:51 +0000 (Sat, 04 Mar 2017)
New Revision: 49413

Modified:
   data/CVE/list
Log:
Bug #395572 unlikely to be fixed for stretch, still no-dsa and mark already as it

Note for reviewers: Wonder if that should live in the security-tracker
at al, but it was recently added, so we might keep it for a while.

The major important note is at
https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=395572#15 regarding
impact on PAM component of ecryptfs and umounting the filesystem.

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-03-04 17:09:40 UTC (rev 49412)
+++ data/CVE/list	2017-03-04 17:09:51 UTC (rev 49413)
@@ -1701,6 +1701,7 @@
 	NOTE: https://bitbucket.org/openpyxl/openpyxl/commits/3b4905f428e1
 CVE-2017-XXXX [gnome-keyring lives on after ssh session stops]
 	- gnome-keyring <unfixed> (low; bug #395572)
+	[stretch] - gnome-keyring <no-dsa> (Minor issue)
 	[jessie] - gnome-keyring <no-dsa> (Minor issue)
 	[wheezy] - gnome-keyring <no-dsa> (Minor issue)
 CVE-2017-6059 [information leak in error messages]




More information about the Secure-testing-commits mailing list