[Secure-testing-commits] r57077 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Sat Oct 28 15:18:12 UTC 2017


Author: carnil
Date: 2017-10-28 15:18:12 +0000 (Sat, 28 Oct 2017)
New Revision: 57077

Modified:
   data/CVE/list
Log:
Update status for CVE-2017-15096/glusterfs

Issue introduced starting in 3.10 release. Thus marking the previous
releases as not-affected.

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-10-28 15:16:00 UTC (rev 57076)
+++ data/CVE/list	2017-10-28 15:18:12 UTC (rev 57077)
@@ -2026,7 +2026,9 @@
 	RESERVED
 CVE-2017-15096 (A flaw was found in GlusterFS in versions prior to 3.10. A null ...)
 	- glusterfs <unfixed> (bug #880017)
-	[wheezy] - glusterfs <no-dsa> (Minor issue)
+	[stretch] - glusterfs <not-affected> (Vulnerable code introduced later)
+	[jessie] - glusterfs <not-affected> (Vulnerable code introduced later)
+	[wheezy] - glusterfs <not-affected> (Vulnerable code introduced later)
 	NOTE: https://review.gluster.org/18538 (master)
 	NOTE: https://review.gluster.org/18539 (release-3.10)
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1502928




More information about the Secure-testing-commits mailing list