[Secure-testing-commits] r58053 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Mon Nov 27 18:02:01 UTC 2017


Author: carnil
Date: 2017-11-27 18:02:01 +0000 (Mon, 27 Nov 2017)
New Revision: 58053

Modified:
   data/CVE/list
Log:
Add CVE-2017-15090/pdns-recursor

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-11-27 17:58:30 UTC (rev 58052)
+++ data/CVE/list	2017-11-27 18:02:01 UTC (rev 58053)
@@ -6315,8 +6315,13 @@
 	NOTE: https://doc.powerdns.com/recursor/security-advisories/powerdns-advisory-2017-05.html
 CVE-2017-15091
 	RESERVED
-CVE-2017-15090
+CVE-2017-15090 [Insufficient validation of DNSSEC signatures]
 	RESERVED
+	- pdns-recursor <unfixed>
+	[stretch] - pdns-recursor <no-dsa> (Minor issue)
+	[jessie] - pdns-recursor <not-affected> (Issue introduced in 4.0.0)
+	[wheezy] - pdns-recursor <not-affected> (Issue introduced in 4.0.0)
+	NOTE: https://doc.powerdns.com/recursor/security-advisories/powerdns-advisory-2017-03.html
 CVE-2017-15089
 	RESERVED
 CVE-2017-15088 (plugins/preauth/pkinit/pkinit_crypto_openssl.c in MIT Kerberos 5 (aka ...)




More information about the Secure-testing-commits mailing list