[Secure-testing-commits] r52001 - data/CVE
Moritz Muehlenhoff
jmm at moszumanska.debian.org
Sat May 27 22:04:53 UTC 2017
Author: jmm
Date: 2017-05-27 22:04:53 +0000 (Sat, 27 May 2017)
New Revision: 52001
Modified:
data/CVE/list
Log:
jasypt no-dsa
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2017-05-27 22:00:56 UTC (rev 52000)
+++ data/CVE/list 2017-05-27 22:04:53 UTC (rev 52001)
@@ -372,6 +372,7 @@
NOT-FOR-US: PlaySMS
CVE-2014-9970 (jasypt before 1.9.2 allows a timing attack against the password hash ...)
- jasypt 1.9.2-1
+ [jessie] - jasypt <no-dsa> (Minor issue)
[wheezy] - jasypt <no-dsa> (Minor issue)
NOTE: https://sourceforge.net/p/jasypt/code/668/
CVE-2017-9100 (login.cgi on D-Link DIR-600M devices with firmware 3.04 allows remote ...)
More information about the Secure-testing-commits
mailing list