[Git][security-tracker-team/security-tracker][master] dla: clarify radare2 status a little bit

Sylvain Beucler beuc at debian.org
Wed Sep 4 14:18:19 BST 2019



Sylvain Beucler pushed to branch master at Debian Security Tracker / security-tracker


Commits:
20e99edd by Sylvain Beucler at 2019-09-04T13:17:29Z
dla: clarify radare2 status a little bit

- - - - -


1 changed file:

- data/dla-needed.txt


Changes:

=====================================
data/dla-needed.txt
=====================================
@@ -125,10 +125,11 @@ qemu
 --
 radare2
   NOTE: 20190816: Affected by CVE-2019-14745. Vulnerable code is in
-  NOTE: libr/core/bin.c. Many no-dsa issues in Jessie and Stretch. Should we
-  NOTE: continue the current approach, update to a newer upstream version or mark
-  NOTE: radare2 as unsupported? Also note that there is a r2-pwnDebian challenge...
+  NOTE: libr/core/bin.c. Many no-dsa issues in Jessie and Stretch.
+  NOTE: Also note that there is a r2-pwnDebian challenge...
   NOTE: https://bananamafia.dev/post/r2-pwndebian/ (apo)
+  NOTE: Support status is being discussed at:
+  NOTE: https://lists.debian.org/debian-lts/2019/08/msg00064.html
 --
 ruby-mini-magick (Thorsten Alteholz)
   NOTE: 20190818: backporting patch



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/20e99edd492732ea04e66be10884c26398be6835

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/commit/20e99edd492732ea04e66be10884c26398be6835
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20190904/b3fbac6c/attachment-0001.html>


More information about the debian-security-tracker-commits mailing list