[Secure-testing-commits] [Git][security-tracker-team/security-tracker][master] 2 commits: icu in Wheezy not vulnerable

Thorsten Alteholz alteholz at debian.org
Fri Mar 16 22:07:46 UTC 2018


Thorsten Alteholz pushed to branch master at Debian Security Tracker / security-tracker


Commits:
7bf4c688 by Thorsten Alteholz at 2018-03-16T23:07:14+01:00
icu in Wheezy not vulnerable

- - - - -
71e33f2f by Thorsten Alteholz at 2018-03-16T23:07:44+01:00
unclaim opencv

- - - - -


2 changed files:

- data/CVE/list
- data/dla-needed.txt


Changes:

=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -28378,6 +28378,7 @@ CVE-2017-15423
 CVE-2017-15422 [integer overflow in icu]
 	RESERVED
 	- icu 57.1-9 (bug #892766)
+	[wheezy] - icu <not-affected> (Vulnerable code not present)
 	NOTE: https://code.google.com/p/chromium/issues/detail?id=774382
 	NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1523136
 	NOTE: Issue fixed in: https://ssl.icu-project.org/trac/changeset/40654


=====================================
data/dla-needed.txt
=====================================
--- a/data/dla-needed.txt
+++ b/data/dla-needed.txt
@@ -39,9 +39,6 @@ graphicsmagick
 --
 graphite2 (Abhijith PA)
 --
-icu (Thorsten Alteholz)
-  NOTE: 20171229: CVE-2017-15422 was reported via Google Code issue report in Chromium project; report is not visible to the public
---
 isc-dhcp (Thorsten Alteholz)
 --
 jruby
@@ -96,7 +93,7 @@ mp4v2
 --
 mupdf (Hugo Lefeuvre)
 --
-opencv (Thorsten Alteholz)
+opencv
 --
 openjdk-7 (Emilio Pozuelo)
 --



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/compare/149ac27b5a4923a7d35128fc18d700a3a22faa74...71e33f2fd312b5d0a51e23e972f7a6023d4587a2

---
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/compare/149ac27b5a4923a7d35128fc18d700a3a22faa74...71e33f2fd312b5d0a51e23e972f7a6023d4587a2
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.alioth.debian.org/pipermail/secure-testing-commits/attachments/20180316/bb0d01d5/attachment.html>


More information about the Secure-testing-commits mailing list