[Secure-testing-commits] r56882 - in data: . DSA
Sebastien Delafond
seb at moszumanska.debian.org
Fri Oct 20 05:33:09 UTC 2017
Author: seb
Date: 2017-10-20 05:33:09 +0000 (Fri, 20 Oct 2017)
New Revision: 56882
Modified:
data/DSA/list
data/dsa-needed.txt
Log:
Reserve DSA-4004-1 for jackson-databind (CVE-2017-7525)
Modified: data/DSA/list
===================================================================
--- data/DSA/list 2017-10-20 04:42:55 UTC (rev 56881)
+++ data/DSA/list 2017-10-20 05:33:09 UTC (rev 56882)
@@ -1,3 +1,7 @@
+[20 Oct 2017] DSA-4004-1 jackson-databind - security update
+ {CVE-2017-7525}
+ [jessie] - jackson-databind 2.4.2-2+deb8u1
+ [stretch] - jackson-databind 2.8.6-1+deb9u1
[19 Oct 2017] DSA-4003-1 libvirt - security update
{CVE-2017-1000256}
[stretch] - libvirt 3.0.0-4+deb9u1
Modified: data/dsa-needed.txt
===================================================================
--- data/dsa-needed.txt 2017-10-20 04:42:55 UTC (rev 56881)
+++ data/dsa-needed.txt 2017-10-20 05:33:09 UTC (rev 56882)
@@ -26,9 +26,6 @@
imagemagick (jmm)
wait until more issues have piled up
--
-jackson-databind (seb)
- 2017-10-19: ack'ed patch from apo
---
libav/oldstable
several issues unfixed upstream
--
More information about the Secure-testing-commits
mailing list