[Git][security-tracker-team/security-tracker][master] 2 commits: mark CVE-2018-19764 as no-dsa for Jessie
Thorsten Alteholz
alteholz at debian.org
Fri Nov 30 13:23:51 GMT 2018
Thorsten Alteholz pushed to branch master at Debian Security Tracker / security-tracker
Commits:
4ccd4b06 by Thorsten Alteholz at 2018-11-30T13:15:20Z
mark CVE-2018-19764 as no-dsa for Jessie
- - - - -
c6d81f34 by Thorsten Alteholz at 2018-11-30T13:16:56Z
mark CVE-2018-19755 as no-dsa for Jessie
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -31,6 +31,7 @@ CVE-2018-19765
CVE-2018-19764 (Mini-XML (aka mxml) 2.12 has memory leaks. ...)
- mxml <unfixed> (bug #915085)
[stretch] - mxml <no-dsa> (Minor issue)
+ [jessie] - mxml <no-dsa> (Minor issue)
NOTE: https://github.com/michaelrsweet/mxml/issues/232
CVE-2018-19763 (There is a heap-based buffer over-read at writer.c (function: ...)
TODO: check
@@ -51,6 +52,7 @@ CVE-2018-19756 (There is a heap-based buffer over-read at stb_image.h (function:
CVE-2018-19755 (There is an illegal address access at asm/preproc.c (function: ...)
- nasm <unfixed> (bug #915087)
[stretch] - nasm <no-dsa> (Minor issue)
+ [jessie] - nasm <no-dsa> (Minor issue)
NOTE: https://bugzilla.nasm.us/show_bug.cgi?id=3392528
NOTE: https://repo.or.cz/nasm.git/commit/3079f7966dbed4497e36d5067cbfd896a90358cb
CVE-2018-19754
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/compare/fee7c5029a120af90de82604ddfdf2c9b5c891e9...c6d81f343ff5f9a09e3ac43759114fa2954f93b8
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/compare/fee7c5029a120af90de82604ddfdf2c9b5c891e9...c6d81f343ff5f9a09e3ac43759114fa2954f93b8
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20181130/13a59dfc/attachment.html>
More information about the debian-security-tracker-commits
mailing list