[Secure-testing-commits] r56882 - in data: . DSA

Sebastien Delafond seb at moszumanska.debian.org
Fri Oct 20 05:33:09 UTC 2017


Author: seb
Date: 2017-10-20 05:33:09 +0000 (Fri, 20 Oct 2017)
New Revision: 56882

Modified:
   data/DSA/list
   data/dsa-needed.txt
Log:
Reserve DSA-4004-1 for jackson-databind (CVE-2017-7525)

Modified: data/DSA/list
===================================================================
--- data/DSA/list	2017-10-20 04:42:55 UTC (rev 56881)
+++ data/DSA/list	2017-10-20 05:33:09 UTC (rev 56882)
@@ -1,3 +1,7 @@
+[20 Oct 2017] DSA-4004-1 jackson-databind - security update
+	{CVE-2017-7525}
+	[jessie] - jackson-databind 2.4.2-2+deb8u1
+	[stretch] - jackson-databind 2.8.6-1+deb9u1
 [19 Oct 2017] DSA-4003-1 libvirt - security update
 	{CVE-2017-1000256}
 	[stretch] - libvirt 3.0.0-4+deb9u1

Modified: data/dsa-needed.txt
===================================================================
--- data/dsa-needed.txt	2017-10-20 04:42:55 UTC (rev 56881)
+++ data/dsa-needed.txt	2017-10-20 05:33:09 UTC (rev 56882)
@@ -26,9 +26,6 @@
 imagemagick (jmm)
   wait until more issues have piled up
 --
-jackson-databind (seb)
-  2017-10-19: ack'ed patch from apo
---
 libav/oldstable
   several issues unfixed upstream
 --




More information about the Secure-testing-commits mailing list