[Secure-testing-commits] r57577 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sun Nov 12 15:44:02 UTC 2017


Author: carnil
Date: 2017-11-12 15:44:00 +0000 (Sun, 12 Nov 2017)
New Revision: 57577

Modified:
   data/CVE/list
Log:
Update status for CVE-2017-16672 in jessie

res_pjsip_session does not exist in jessie's version. Adapt status for
wheezy in same run.

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-11-12 14:58:27 UTC (rev 57576)
+++ data/CVE/list	2017-11-12 15:44:00 UTC (rev 57577)
@@ -249,7 +249,8 @@
 	NOT-FOR-US: Datto Backup Agent
 CVE-2017-16672 (An issue was discovered in Asterisk Open Source 13 before 13.18.1, 14 ...)
 	- asterisk 1:13.18.1~dfsg-1 (bug #881256)
-	[wheezy] - asterisk <no-dsa> (Minor issue)
+	[jessie] - asterisk <not-affected> (Vulnerable code not present)
+	[wheezy] - asterisk <not-affected> (Vulnerable code not present)
 	NOTE: http://downloads.digium.com/pub/security/AST-2017-011.html
 	NOTE: http://downloads.asterisk.org/pub/security/AST-2017-011-13.diff
 	NOTE: https://issues.asterisk.org/jira/browse/ASTERISK-27345




More information about the Secure-testing-commits mailing list