[Git][security-tracker-team/security-tracker][master] Mark CVE-2018-14938 (tcpflow) as no-dsa in jessie.
Chris Lamb
lamby at debian.org
Sun Aug 19 08:26:08 BST 2018
Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker
Commits:
a5d1eb25 by Chris Lamb at 2018-08-19T07:25:31Z
Mark CVE-2018-14938 (tcpflow) as no-dsa in jessie.
- - - - -
2 changed files:
- data/CVE/list
- data/dla-needed.txt
Changes:
=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -1181,6 +1181,7 @@ CVE-2018-XXXX [Heap-based buffer overflow in zutils zcat]
CVE-2018-14938 (An issue was discovered in wifipcap/wifipcap.cpp in TCPFLOW through ...)
- tcpflow <unfixed> (bug #905483)
[stretch] - tcpflow <no-dsa> (Minor issue)
+ [jessie] - tcpflow <no-dsa> (Minor issue)
NOTE: https://github.com/simsong/tcpflow/commit/a4e1cd14eb5ccc51ed271b65b3420f7d692c40eb
NOTE: https://github.com/simsong/tcpflow/issues/182
CVE-2018-14937 (The Add page option in my little forum 2.4.12 allows XSS via the Menu ...)
=====================================
data/dla-needed.txt
=====================================
--- a/data/dla-needed.txt
+++ b/data/dla-needed.txt
@@ -109,8 +109,6 @@ suricata
symfony
NOTE: 20180630: email sent to maintainer, please wait some time before working on this package
--
-tcpflow
---
tiff
NOTE: 20180816: See debian-lts post: https://lists.debian.org/debian-lts/2018/08/msg00036.html (Brian May)
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/a5d1eb2527f27c446531a0dd85723968d593d4aa
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/a5d1eb2527f27c446531a0dd85723968d593d4aa
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20180819/c443f533/attachment-0001.html>
More information about the debian-security-tracker-commits
mailing list