Author: jmm Date: 2017-02-20 21:35:35 +0000 (Mon, 20 Feb 2017) New Revision: 49085
Modified: data/CVE/list data/DSA/list Log: another chromium issue fixed qemu n/a in stable/oldstable Modified: data/CVE/list =================================================================== --- data/CVE/list 2017-02-20 21:32:21 UTC (rev 49084) +++ data/CVE/list 2017-02-20 21:35:35 UTC (rev 49085) @@ -99,10 +99,10 @@ CVE-2017-6058 [net: vmxnet3: OOB NetRxPkt::ehdr_buf access when doing vlan stripping] RESERVED - qemu <unfixed> (bug #855616) - - qemu-kvm <removed> + [jessie] - qemu <not-affected> (Vulnerable code not present) + - qemu-kvm <not-affected> (Vulnerable code not present) NOTE: https://lists.nongnu.org/archive/html/qemu-devel/2017-02/msg03527.html NOTE: https://bugzilla.redhat.com/show_bug.cgi?id=1423358 - TODO: check affected versions CVE-2017-6057 RESERVED CVE-2017-6055 (XML external entity (XXE) vulnerability in eParakstitajs 3 before 1.3.9 ...) @@ -266,7 +266,7 @@ NOTE: https://bugs.ghostscript.com/show_bug.cgi?id=697500 NOTE: http://git.ghostscript.com/?p=mupdf.git;h=1912de5f08e90af1d9d0a9791f58ba3afdb9d465 CVE-2017-5990 (An issue was discovered in PhreeBooksERP before 2017-02-13. The ...) - TODO: check + NOT-FOR-US: PhreeBooksERP CVE-2017-5989 RESERVED CVE-2017-5988 @@ -3394,7 +3394,9 @@ CVE-2017-5028 RESERVED CVE-2017-5027 (Blink in Google Chrome prior to 56.0.2924.76 for Linux, Windows and ...) - TODO: check + {DSA-3776-1} + - chromium-browser 56.0.2924.76-3 + [wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy) CVE-2017-5026 (Google Chrome prior to 56.0.2924.76 for Linux, Windows and Mac, failed ...) {DSA-3776-1} - chromium-browser 56.0.2924.76-3 Modified: data/DSA/list =================================================================== --- data/DSA/list 2017-02-20 21:32:21 UTC (rev 49084) +++ data/DSA/list 2017-02-20 21:35:35 UTC (rev 49085) @@ -41,7 +41,7 @@ {CVE-2016-6906 CVE-2016-6912 CVE-2016-9317 CVE-2016-10166 CVE-2016-10167 CVE-2016-10168} [jessie] - libgd2 2.1.0-5+deb8u9 [31 Jan 2017] DSA-3776-1 chromium-browser - security update - {CVE-2017-5006 CVE-2017-5007 CVE-2017-5008 CVE-2017-5009 CVE-2017-5010 CVE-2017-5011 CVE-2017-5012 CVE-2017-5013 CVE-2017-5014 CVE-2017-5015 CVE-2017-5016 CVE-2017-5017 CVE-2017-5018 CVE-2017-5019 CVE-2017-5020 CVE-2017-5021 CVE-2017-5022 CVE-2017-5023 CVE-2017-5024 CVE-2017-5025 CVE-2017-5026} + {CVE-2017-5006 CVE-2017-5007 CVE-2017-5008 CVE-2017-5009 CVE-2017-5010 CVE-2017-5011 CVE-2017-5012 CVE-2017-5013 CVE-2017-5014 CVE-2017-5015 CVE-2017-5016 CVE-2017-5017 CVE-2017-5018 CVE-2017-5019 CVE-2017-5020 CVE-2017-5021 CVE-2017-5022 CVE-2017-5023 CVE-2017-5024 CVE-2017-5025 CVE-2017-5026 CVE-2017-5027} [jessie] - chromium-browser 56.0.2924.76-1~deb8u1 [29 Jan 2017] DSA-3775-1 tcpdump - security update {CVE-2016-7922 CVE-2016-7923 CVE-2016-7924 CVE-2016-7925 CVE-2016-7926 CVE-2016-7927 CVE-2016-7928 CVE-2016-7929 CVE-2016-7930 CVE-2016-7931 CVE-2016-7932 CVE-2016-7933 CVE-2016-7934 CVE-2016-7935 CVE-2016-7936 CVE-2016-7937 CVE-2016-7938 CVE-2016-7939 CVE-2016-7940 CVE-2016-7973 CVE-2016-7974 CVE-2016-7975 CVE-2016-7983 CVE-2016-7984 CVE-2016-7985 CVE-2016-7986 CVE-2016-7992 CVE-2016-7993 CVE-2016-8574 CVE-2016-8575 CVE-2017-5202 CVE-2017-5203 CVE-2017-5204 CVE-2017-5205 CVE-2017-5341 CVE-2017-5342 CVE-2017-5482 CVE-2017-5483 CVE-2017-5484 CVE-2017-5485 CVE-2017-5486} _______________________________________________ Secure-testing-commits mailing list Secure-testing-commits@lists.alioth.debian.org http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/secure-testing-commits