Hello,

the problem still exists. example with --format report:

*** Available security updates

CVE-2017-0786 A elevation of privilege vulnerability in the...
 <https://security-tracker.debian.org/tracker/CVE-2017-0786>
 - linux-libc-dev, linux-image-4.9.0-8-686-pae
   (remotely exploitable, medium urgency)


with --format detail:

CVE-2017-0786 (fixed, remotely exploitable, medium urgency)
 A elevation of privilege vulnerability in the Broadcom wi-fi driver. ...
 installed: linux-libc-dev 4.9.144-3.1
            (built from linux 4.9.144-3.1)
[...]
 fixed on branch:   linux 4.9.110-3+deb9u6 (source package)
 fixed on branch:   linux 4.9.130-1 (source package)
 fixed on branch:   linux 4.9.135-1 (source package)
 fixed on branch:   linux 4.9.144-1 (source package)
 fixed on branch:   linux 4.9.144-3 (source package)
[...]


% apt-cache policy linux-libc-dev
linux-libc-dev:
 Installed: 4.9.144-3.1
 Candidate: 4.9.144-3.1
 Version table:
*** 4.9.144-3.1 500
       500 file:/mount/mirrors/debian stretch-updates/main i386 Packages
       100 /var/lib/dpkg/status
    4.9.144-3 500
       500 file:/mount/mirrors/debian stretch/main i386 Packages
    4.9.110-3+deb9u6 500
       500 http://security.debian.org/debian-security stretch/updates/main i386 
Packages

according to dpkg log, the exact fixed version was installed for 6 days
before it started complaining (I run debsecan from cron)

2019-02-16 19:43:54 upgrade linux-libc-dev:i386 4.9.130-2 4.9.144-3
2019-02-16 19:43:54 status half-configured linux-libc-dev:i386 4.9.130-2
2019-02-16 19:43:54 status unpacked linux-libc-dev:i386 4.9.130-2
2019-02-16 19:43:54 status half-installed linux-libc-dev:i386 4.9.130-2
2019-02-16 19:43:55 status half-installed linux-libc-dev:i386 4.9.130-2
2019-02-16 19:43:55 status unpacked linux-libc-dev:i386 4.9.144-3
2019-02-16 19:43:55 status unpacked linux-libc-dev:i386 4.9.144-3
2019-02-16 19:44:27 configure linux-libc-dev:i386 4.9.144-3 <none>
2019-02-16 19:44:27 status unpacked linux-libc-dev:i386 4.9.144-3
2019-02-16 19:44:27 status half-configured linux-libc-dev:i386 4.9.144-3
2019-02-16 19:44:27 status installed linux-libc-dev:i386 4.9.144-3
2019-02-22 14:40:30 upgrade linux-libc-dev:i386 4.9.144-3 4.9.144-3.1
2019-02-22 14:40:30 status half-configured linux-libc-dev:i386 4.9.144-3
2019-02-22 14:40:30 status unpacked linux-libc-dev:i386 4.9.144-3
2019-02-22 14:40:30 status half-installed linux-libc-dev:i386 4.9.144-3
2019-02-22 14:40:30 status half-installed linux-libc-dev:i386 4.9.144-3
2019-02-22 14:40:31 status unpacked linux-libc-dev:i386 4.9.144-3.1
2019-02-22 14:40:31 status unpacked linux-libc-dev:i386 4.9.144-3.1
2019-02-22 14:40:32 configure linux-libc-dev:i386 4.9.144-3.1 <none>
2019-02-22 14:40:32 status unpacked linux-libc-dev:i386 4.9.144-3.1
2019-02-22 14:40:32 status half-configured linux-libc-dev:i386 4.9.144-3.1
2019-02-22 14:40:32 status installed linux-libc-dev:i386 4.9.144-3.1



--
Matus UHLAR - fantomas, uh...@fantomas.sk ; http://www.fantomas.sk/
Warning: I wish NOT to receive e-mail advertising to this address.
Varovanie: na tuto adresu chcem NEDOSTAVAT akukolvek reklamnu postu.
Posli tento mail 100 svojim znamim - nech vidia aky si idiot
Send this email to 100 your friends - let them see what an idiot you are

Reply via email to