thijs at alioth.debian.org
2008-May-28 18:57 UTC
[Secure-testing-commits] r8924 - data/CVE
Author: thijs Date: 2008-05-28 18:57:57 +0000 (Wed, 28 May 2008) New Revision: 8924 Modified: data/CVE/list Log: new openssl issues do not affect etch Modified: data/CVE/list ==================================================================--- data/CVE/list 2008-05-28 18:27:46 UTC (rev 8923) +++ data/CVE/list 2008-05-28 18:57:57 UTC (rev 8924) @@ -1627,6 +1627,7 @@ CVE-2008-1672 RESERVED - openssl 0.9.8g-10.1 (bug #483379) + [etch] - openssl <not-affected> (Vulnerable code (TLS extensions) not present) CVE-2008-1671 (start_kdeinit in KDE 3.5.5 through 3.5.9, when installed setuid root, ...) - kdelibs 4:3.5.9.dfsg.1-4 (low; bug #478024) NOTE: unimportant, opinions? @@ -3454,6 +3455,7 @@ CVE-2008-0891 RESERVED - openssl 0.9.8g-10.1 (bug #483379) + [etch] - openssl <not-affected> (Vulnerable code (TLS extensions) not present) CVE-2008-0890 (Red Hat Directory Server 7.1 before SP4 uses insecure permissions for ...) NOT-FOR-US: Red Hat Directory Server CVE-2008-0889 (Red Hat Directory Server 8.0, when running on Red Hat Enterprise ...)