Markus Koschany pushed to branch master at Debian Security Tracker /
security-tracker
Commits:
7931a010 by Markus Koschany at 2018-07-28T02:30:10Z
CVE-2018-0732,CVE-2018-0737,openssl will be fixed via DLA.
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
--- a/data/CVE/list
+++ b/data/CVE/list
@@ -38704,7 +38704,6 @@ CVE-2018-0738
CVE-2018-0737 (The OpenSSL RSA Key generation algorithm has been shown to be
...)
- openssl 1.1.0h-3 (low; bug #895844)
[stretch] - openssl <postponed> (Can wait for next DSA and upstream
release)
- [jessie] - openssl <postponed> (Can wait for next DSA and upstream
release)
[wheezy] - openssl <postponed> (Can wait for next update)
- openssl1.0 <unfixed> (low; bug #895845)
[stretch] - openssl1.0 <postponed> (Can wait for next DSA and upstream
release)
@@ -38729,7 +38728,6 @@ CVE-2018-0733 (Because of an implementation bug the
PA-RISC CRYPTO_memcmp functi
CVE-2018-0732 (During key agreement in a TLS handshake using a DH(E) based ...)
- openssl <unfixed> (low)
[stretch] - openssl <postponed> (Minor issue, can be fixed along with
next OpenSSL security release)
- [jessie] - openssl <postponed> (Minor issue, can be fixed along with
next OpenSSL security release)
- openssl1.0 <unfixed> (low)
[stretch] - openssl1.0 <postponed> (Minor issue, can be fixed along
with next OpenSSL security release)
NOTE: OpenSSL_1_1_0-stable:
https://git.openssl.org/?p=openssl.git;a=commit;h=ea7abeeabf92b7aca160bdd0208636d4da69f4f4
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/commit/7931a010ed936d155530a135c654f2181ae7f647
--
View it on GitLab:
https://salsa.debian.org/security-tracker-team/security-tracker/commit/7931a010ed936d155530a135c654f2181ae7f647
You're receiving this email because of your account on salsa.debian.org.
_______________________________________________
debian-security-tracker-commits mailing list
[email protected]
https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits