[Secure-testing-commits] r57138 - data/CVE
Salvatore Bonaccorso
carnil at moszumanska.debian.org
Mon Oct 30 19:40:00 UTC 2017
Author: carnil
Date: 2017-10-30 19:40:00 +0000 (Mon, 30 Oct 2017)
New Revision: 57138
Modified:
data/CVE/list
Log:
Sort top-town
Modified: data/CVE/list
===================================================================
--- data/CVE/list 2017-10-30 19:12:01 UTC (rev 57137)
+++ data/CVE/list 2017-10-30 19:40:00 UTC (rev 57138)
@@ -59049,8 +59049,8 @@
- puppet <not-affected> (Limited to Puppet Enterprise)
CVE-2016-5714 (Puppet Enterprise 2015.3.3 and 2016.x before 2016.4.0, and Puppet ...)
- puppet 4.8.0-1
+ [jessie] - puppet <not-affected> (Vulnerable code introduced later)
[wheezy] - puppet <not-affected> (Vulnerable code introduced later)
- [jessie] - puppet <not-affected> (Vulnerable code introduced later)
NOTE: https://puppet.com/security/cve/pxp-agent-oct-2016
NOTE: triaged away in Ubuntu: "Default configurations of FOSS Puppet Agent are not vulnerable."
NOTE: gentoo released a fix: https://security.gentoo.org/glsa/201710-12
More information about the Secure-testing-commits
mailing list