From 8df0fe001b215cef155ac08e3e9a9b474c35ca1b Mon Sep 17 00:00:00 2001 From: Thorsten Alteholz Date: Thu, 25 Nov 2021 23:31:12 +0100 Subject: mark CVE-2021-43398 as no-dsa for Stretch --- data/CVE/2021.list | 1 + 1 file changed, 1 insertion(+) diff --git a/data/CVE/2021.list b/data/CVE/2021.list index ffaff61488..5fa23c522d 100644 --- a/data/CVE/2021.list +++ b/data/CVE/2021.list @@ -1958,6 +1958,7 @@ CVE-2021-43398 (Crypto++ (aka Cryptopp) 8.6.0 and earlier contains a timing leak - libcrypto++ (bug #1000227) [bullseye] - libcrypto++ (Minor issue) [buster] - libcrypto++ (Minor issue) + [stretch] - libcrypto++ (Minor issue) NOTE: https://github.com/weidai11/cryptopp/issues/1080 CVE-2021-43397 (LiquidFiles before 3.6.3 allows remote attackers to elevate their priv ...) NOT-FOR-US: LiquidFiles -- cgit v1.2.3