Package: debsecan Version: 0.4.1 Severity: normal libcurl3/unstable is reported as insecure but it's not:
web1:~# debsecan --suite sarge --only-fixed CVE-2006-1061 libcurl3 (fixed) web1:~# dpkg -l libcurl3 debsecan Desired=Unknown/Install/Remove/Purge/Hold | Status=Not/Installed/Config-files/Unpacked/Failed-config/Half-installed |/ Err?=(none)/Hold/Reinst-required/X=both-problems (Status,Err: uppercase=bad) ||/ Name Version Description +++-===============================================-===============================================-============================================================================================================== ii libcurl3 7.15.2-3 Multi-protocol file transfer library ii debsecan 0.4.1 Debian Security Analyzer web1:~# apt-get install libcurl3/unstable Reading Package Lists... Done Building Dependency Tree... Done Selected version 7.15.2-3 (Debian:unstable) for libcurl3 libcurl3 is already the newest version. 0 upgraded, 0 newly installed, 0 to remove and 0 not upgraded. web1:~# apt-get install libcurl3 Reading Package Lists... Done Building Dependency Tree... Done libcurl3 is already the newest version. 0 upgraded, 0 newly installed, 0 to remove and 0 not upgraded. web1:~# Please also have a look at http://bugs.debian.org/345158 Thanks. -- System Information: Debian Release: testing/unstable APT prefers unstable APT policy: (500, 'unstable'), (500, 'stable') Architecture: i386 (i686) Shell: /bin/sh linked to /bin/bash Kernel: Linux 2.6.15-1-686 Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8) Versions of packages debsecan depends on: ii debconf [debconf-2.0] 1.4.71 Debian configuration management sy ii python 2.3.5-5 An interactive high-level object-o Versions of packages debsecan recommends: ii cron 3.0pl1-93 management of regular background p ii exim4 4.60-4 metapackage to ease exim MTA (v4) ii exim4-daemon-heavy [mail-tran 4.60-4 exim MTA (v4) daemon with extended -- debconf-show failed -- Cyril Bouthors
pgpo3vxePaVDk.pgp
Description: PGP signature