[Secure-testing-commits] r57053 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Sat Oct 28 08:51:46 UTC 2017


Author: jmm
Date: 2017-10-28 08:51:46 +0000 (Sat, 28 Oct 2017)
New Revision: 57053

Modified:
   data/CVE/list
Log:
busybox n/a


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-10-28 08:45:37 UTC (rev 57052)
+++ data/CVE/list	2017-10-28 08:51:46 UTC (rev 57053)
@@ -138,9 +138,10 @@
 	RESERVED
 CVE-2017-15874 (archival/libarchive/decompress_unlzma.c in BusyBox 1.27.2 has an ...)
 	- busybox <unfixed> (bug #879732)
-	[stretch] - busybox <no-dsa> (Minor issue)
-	[jessie] - busybox <no-dsa> (Minor issue)
-	[wheezy] - busybox <no-dsa> (Minor issue)
+	[stretch] - busybox <not-affected> (Vulnerable code not present)
+	[jessie] - busybox <not-affected> (Vulnerable code not present)
+	[wheezy] - busybox <not-affected> (Vulnerable code not present)
+	NOTE: Introduced in 3989e5adf454a3ab98412b249c2c9bd2a3175ae0
 	NOTE: https://bugs.busybox.net/show_bug.cgi?id=10436
 	NOTE: https://git.busybox.net/busybox/commit/?id=9ac42c500586fa5f10a1f6d22c3f797df11b1f6b
 CVE-2017-15873 (The get_next_block function in archival/libarchive/decompress_bunzip2.c ...)




More information about the Secure-testing-commits mailing list