[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] Update information for CVE-2012-6709

Salvatore Bonaccorso carnil at debian.org
Mon Feb 26 20:30:31 UTC 2018


Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
919002c6 by Salvatore Bonaccorso at 2018-02-26T21:30:05+01:00
Update information for CVE-2012-6709

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -157,9 +157,12 @@ CVE-2017-18195
 	RESERVED
 CVE-2012-6709 (ELinks 0.12 and Twibright Links 2.3 have Missing SSL Certificate ...)
 	- elinks <unfixed> (bug #891575)
-	- links2 2.7-1 (bug #694658)
+	- links2 2.6-1 (bug #694658; bug #510417)
 	NOTE: Patch proposed upstream (when using): http://lists.linuxfromscratch.org/pipermail/elinks-dev/2015-June/002099.html
 	NOTE: tested links2 against badssl.com, no apparent issue back in wheezy
+	NOTE: src:links2/2.6-1 adds verify-ssl-certs-510417.diff to verify SSL certs.
+	NOTE: src:links2 upstream in 2.11 adds support for verifying SSL certificates.
+	TODO: double check links2 again, since #694658 claims not all issues are fixed
 CVE-2018-7422
 	RESERVED
 CVE-2018-7421 (In Wireshark 2.2.0 to 2.2.12 and 2.4.0 to 2.4.4, the DMP dissector ...)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/919002c6da7db69fa6c2b7a7d70fc30a32fcc8c7

---
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/919002c6da7db69fa6c2b7a7d70fc30a32fcc8c7
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.alioth.debian.org/pipermail/secure-testing-commits/attachments/20180226/1cf32bdc/attachment.html>


More information about the Secure-testing-commits mailing list