summaryrefslogtreecommitdiffstats
path: root/data
diff options
context:
space:
mode:
authorEmilio Pozuelo Monfort <pochu@debian.org>2017-12-28 10:20:11 +0000
committerEmilio Pozuelo Monfort <pochu@debian.org>2017-12-28 10:20:11 +0000
commita3703c3b348952a879c42b554d25cec9b688765e (patch)
tree776c9a1429141aaff200b0dade7eb53d8f366c5e /data
parent3aca1badafef69b74a7df841b3166d29cdd2c822 (diff)
nasm no-dsa on wheezy as well
git-svn-id: svn+ssh://svn.debian.org/svn/secure-testing@58994 e39458fd-73e7-0310-bf30-c45bca0a0e42
Diffstat (limited to 'data')
-rw-r--r--data/CVE/list11
-rw-r--r--data/dla-needed.txt2
2 files changed, 11 insertions, 2 deletions
diff --git a/data/CVE/list b/data/CVE/list
index ebf6a08903..d82dfb3468 100644
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -405,59 +405,70 @@ CVE-2017-17820 (In Netwide Assembler (NASM) 2.14rc0, there is a use-after-free i
- nasm 2.13.02-0.1
[stretch] - nasm <no-dsa> (Minor issue)
[jessie] - nasm <no-dsa> (Minor issue)
+ [wheezy] - nasm <no-dsa> (Minor issue)
NOTE: https://bugzilla.nasm.us/show_bug.cgi?id=3392433
CVE-2017-17819 (In Netwide Assembler (NASM) 2.14rc0, there is an illegal address access ...)
- nasm 2.13.02-0.1
[stretch] - nasm <no-dsa> (Minor issue)
[jessie] - nasm <no-dsa> (Minor issue)
+ [wheezy] - nasm <no-dsa> (Minor issue)
NOTE: https://bugzilla.nasm.us/show_bug.cgi?id=3392435
NOTE: http://repo.or.cz/nasm.git/commit/7524cfd91492e6e3719b959498be584a9ced13af (nasm-2.13.02rc3)
CVE-2017-17818 (In Netwide Assembler (NASM) 2.14rc0, there is a heap-based buffer ...)
- nasm 2.13.02-0.1
[stretch] - nasm <no-dsa> (Minor issue)
[jessie] - nasm <no-dsa> (Minor issue)
+ [wheezy] - nasm <no-dsa> (Minor issue)
NOTE: https://bugzilla.nasm.us/show_bug.cgi?id=3392428
CVE-2017-17817 (In Netwide Assembler (NASM) 2.14rc0, there is a use-after-free in ...)
- nasm 2.13.02-0.1
[stretch] - nasm <no-dsa> (Minor issue)
[jessie] - nasm <no-dsa> (Minor issue)
+ [wheezy] - nasm <no-dsa> (Minor issue)
NOTE: https://bugzilla.nasm.us/show_bug.cgi?id=3392427
CVE-2017-17816 (In Netwide Assembler (NASM) 2.14rc0, there is a use-after-free in ...)
- nasm 2.13.02-0.1
[stretch] - nasm <no-dsa> (Minor issue)
[jessie] - nasm <no-dsa> (Minor issue)
+ [wheezy] - nasm <no-dsa> (Minor issue)
NOTE: https://bugzilla.nasm.us/show_bug.cgi?id=3392426
CVE-2017-17815 (In Netwide Assembler (NASM) 2.14rc0, there is an illegal address access ...)
- nasm 2.13.02-0.1
[stretch] - nasm <no-dsa> (Minor issue)
[jessie] - nasm <no-dsa> (Minor issue)
+ [wheezy] - nasm <no-dsa> (Minor issue)
NOTE: http://repo.or.cz/nasm.git/commit/c9244eaadd05b27637cde06021bac3fa1d920aa3 (nasm-2.13.02rc3)
NOTE: https://bugzilla.nasm.us/show_bug.cgi?id=3392436
CVE-2017-17814 (In Netwide Assembler (NASM) 2.14rc0, there is a use-after-free in ...)
- nasm 2.13.02-0.1
[stretch] - nasm <no-dsa> (Minor issue)
[jessie] - nasm <no-dsa> (Minor issue)
+ [wheezy] - nasm <no-dsa> (Minor issue)
NOTE: https://bugzilla.nasm.us/show_bug.cgi?id=3392430
CVE-2017-17813 (In Netwide Assembler (NASM) 2.14rc0, there is a use-after-free in the ...)
- nasm 2.13.02-0.1
[stretch] - nasm <no-dsa> (Minor issue)
[jessie] - nasm <no-dsa> (Minor issue)
+ [wheezy] - nasm <no-dsa> (Minor issue)
NOTE: https://bugzilla.nasm.us/show_bug.cgi?id=3392429
CVE-2017-17812 (In Netwide Assembler (NASM) 2.14rc0, there is a heap-based buffer ...)
- nasm 2.13.02-0.1
[stretch] - nasm <no-dsa> (Minor issue)
[jessie] - nasm <no-dsa> (Minor issue)
+ [wheezy] - nasm <no-dsa> (Minor issue)
NOTE: http://repo.or.cz/nasm.git/commit/9b7ee09abfd426b99aa1ea81d19a3b2818eeabf9 (nasm-2.13.02rc3)
NOTE: https://bugzilla.nasm.us/show_bug.cgi?id=3392424
CVE-2017-17811 (In Netwide Assembler (NASM) 2.14rc0, there is a heap-based buffer ...)
- nasm 2.13.02-0.1
[stretch] - nasm <no-dsa> (Minor issue)
[jessie] - nasm <no-dsa> (Minor issue)
+ [wheezy] - nasm <no-dsa> (Minor issue)
NOTE: https://bugzilla.nasm.us/show_bug.cgi?id=3392432
CVE-2017-17810 (In Netwide Assembler (NASM) 2.14rc0, there is a &quot;SEGV on unknown ...)
- nasm 2.13.02-0.1
[stretch] - nasm <no-dsa> (Minor issue)
[jessie] - nasm <no-dsa> (Minor issue)
+ [wheezy] - nasm <no-dsa> (Minor issue)
NOTE: http://repo.or.cz/nasm.git/commit/59ce1c67b16967c652765e62aa130b7e43f21dd4 (nasm-2.13.02rc3)
NOTE: https://bugzilla.nasm.us/show_bug.cgi?id=3392431
CVE-2017-17809 (In Golden Frog VyprVPN before 2.15.0.5828 for macOS, the vyprvpnservice ...)
diff --git a/data/dla-needed.txt b/data/dla-needed.txt
index c5e7ff569b..fe5bb31e9e 100644
--- a/data/dla-needed.txt
+++ b/data/dla-needed.txt
@@ -53,8 +53,6 @@ ming (Hugo Lefeuvre)
mupdf
NOTE: 20171224: Upstream patch does not apply to LTS cleanly. Might need hanges to apps/pdfclean.c rather than pdf-write.c (lamby)
--
-nasm
---
rtpproxy
NOTE: it's not clear to me if a fix is even possible. (Raphaƫl Hertzog)
--

© 2014-2024 Faster IT GmbH | imprint | privacy policy